A complete application in a minute — tailored resume and cover letter, ready to send.
Flywire is seeking a Security Engineer II to join the Active Operational Defender track, building hands-on experience across penetration testing, threat detection, and incident response within a fintech environment.
You will work under the guidance of senior and lead engineers, developing the skills to take on more independent responsibility over time and to contribute to live security operations and detection engineering tasks.
At this level, your focus sits within Offensive Penetration Testing and Security Operations, supporting the wider Active Operational Defender track under the guidance of senior engineers. You will assist with manual testing engagements, help tune SIEM detection rules, and support the team during live security incidents, building the operational depth needed to work independently over time.
As a Security Engineer II on the Active Operational Defender track, you will build hands‑on experience across penetration testing, threat detection, and incident response working under the direction of senior and lead engineers. You will support live operational work within a high‑velocity fintech environment, developing the manual testing and detection engineering skills needed to take on more independent responsibility over time.
Hands‑on exposure to manual web application testing, CTF‑style exploitation, or vulnerability research (via work experience, personal projects, or study).
Working knowledge of SIEM concepts, EDR tooling, or network packet analysis, alongside familiarity with frameworks such as MITRE ATT&CK.
Proficiency in reading and writing scripts (e.g., Python) to support security testing and automation workflows.
Basic working interest in the OWASP Top 10 for LLMs and understanding of how adversarial AI testing differs from traditional app security.
General understanding of compliance frameworks such as PCI‑DSS, SOC 2, or DORA, with a willingness to expand practical knowledge on the job.
Combines an attacker's drive to uncover vulnerabilities with a defender's discipline to build actionable SIEM detection rules.
Ability to stay calm and analytical during live security breaches or tight production release windows.
Capable of translating technical exploit chains and log anomalies into plain language for executive and non‑technical stakeholders.
Balances risk mitigation with business goals, helping position security as a driver for enterprise growth.
Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual ori