Staff Security Engineer

Roman Health Pharmacy LLC

Berlin (VT)

On-site

USD 140,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work structure
30‑day holiday allowance
€1,000 annual learning budget
Insurance – travel/Disability
Gym membership
Family leave support
Mental Health Platform
Pet-friendly office

Job summary

PPRO is seeking a Staff Security Engineer to lead its Security Engineering team, driving secure-by-design practices across applications and cloud environments. You will collaborate with engineers to embed security into the SDLC, build reusable Security as Code artefacts, and perform threat modeling and security assessments.

You’ll champion AI to enhance security operations, guide architecture decisions, and ensure scalable security controls across the payments ecosystem.

Qualifications

  • Experience leading security engineers and cross-team collaboration.
  • Deep security expertise across applications and cloud domains.
  • Proven ability to implement secure-by-design patterns.
  • Strong knowledge of DevSecOps practices.

Responsibilities

  • Act as technical lead for the Security Engineering team, setting technical direction, coaching and mentoring other security engineers.
  • Partner with Engineering teams to integrate security principles, practices, and tools into all stages of the software development lifecycle.
  • Design and build reusable Security as Code artefacts and patterns that reduce developer friction while improving security outcomes.
  • Conduct threat modeling exercises and security assessments to identify and address risks in critical applications and systems.
  • Write Hardening Standards and Security Guidelines for various technologies and processes.
  • Develop automations for recurrent and manual tasks around auditing activities, cloud security posture management (CSPM) and other security processes.
  • Maintain and expand our IaC codebase and CI/CD pipelines.
  • Champion the use of AI to streamline security operations, scaling our defensive capabilities and enabling non-security teams to adopt security-first practices.
  • Collaborate on cross-functional security projects, enhancing PPRO’s security posture at scale.
  • Continuously monitor emerging security trends and technologies to drive proactive improvements.

Skills

AWS security
Kubernetes
Terraform
CI/CD security
Python

Tools

GitHub Actions

Job description

At PPRO, our mission is to simplify access to local payment methods and our vision is to enable the sale of goods and services to anyone in the world using their preferred way to pay. We empower partners such as Ant Group, PayPal and Stripe to access new markets, connect with more customers, and accelerate their growth.

Our strength lies in our diverse global team with 50+ nationalities and 10+ international locations - united around one goal: to deliver the best possible products and services to our partners and customers. While our company mission is to keep innovating global commerce, our internal mission is to #chooseaction, #beopen, #thinkcustomer, #gofurther and #wintogether.

The Purpose:

As Staff Security Engineer at PPRO, you’ll act as the technical lead for the Security Engineering (SecEng) team, driving technical and operational excellence while coaching and developing your colleagues. You’ll be pivotal in supporting our mission to build robust, secure, and resilient systems.

This role offers the opportunity to apply deep security expertise across application and cloud domains. You will serve as the primary technical interface between the SecEng team and engineers across the organisation, influencing architecture and guiding teams to embed a "secure by design" philosophy in everything we build. You will build Security as Code solutions that enable consistent controls and high-velocity delivery. You will also perform security assessments for new projects and technologies, utilizing threat modeling to identify risks early and define standardized, repeatable security patterns for the wider engineering organization. If you thrive on finding win-win solutions that embed security into modern development workflows to safeguard our customers, this is a great opportunity to have a positive impact at scale across the payments ecosystem.

What you’ll do:
  • Act as technical lead for the Security Engineering team, setting technical direction, coaching and mentoring other security engineers.
  • Partner with Engineering teams to integrate security principles, practices, and tools into all stages of the software development lifecycle.
  • Design and build reusable Security as Code artefacts and patterns that reduce developer friction while improving security outcomes.
  • Conduct threat modeling exercises and security assessments to identify and address risks in critical applications and systems.
  • Write Hardening Standards and Security Guidelines for various technologies and processes.
  • Develop automations for recurrent and manual tasks around auditing activities, cloud security posture management (CSPM) and other security processes.
  • Maintain and expand our IaC codebase and CI/CD pipelines.
  • Champion the use of AI to streamline security operations, scaling our defensive capabilities and enabling non-security teams to adopt security-first practices.
  • Collaborate on cross-functional security projects, enhancing PPRO’s security posture at scale.
  • Continuously monitor emerging security trends and technologies to drive proactive improvements.
What we look for in you:
  • A natural technical leader: able to guide, coach and mentor engineers, lead cross-team collaborations, and act as a trusted interface between security and the wider engineering organisation.
  • You view AI as an essential force multiplier; you are a power user who actively leverages modern AI/LLM frameworks to both accelerate your own workflows and build scalable security solutions.
  • Solid understanding of software engineering fundamentals, secure software development best practices, and security architecture.
  • Strong expertise in AWS (GCP is a bonus) and container security (e.g. Kubernetes).
  • Deep understanding of DevSecOps and CI/CD security controls, with hands‑on experience in Infrastructure as Code (preferably Terraform), CI/CD pipelines (preferably GitHub Actions) and scripting (Python, bash).
  • Results‑oriented, highly collaborative, pragmatic and proactive, and with a continuous improvement mindset.
  • Strong interpersonal and communication skills, able to unblock teams and foster security awareness throughout the company.
What's in it for you?
  • Hybrid working – We offer a hybrid structure with a 3 days / week on-site expectation.
  • 30‑day holiday allowance and a work‑from‑abroad policy, enabling employees to work remotely for up to another 30 days per year.
  • Learning and Development – €1,000 annual budget to support your professional growth, leadership cafés, on‑the‑job training, and other opportunities.
  • Insurance – accident, disability, direct insurance (bAV) and travel insurance.
  • Gym membership – contribution toward the costs of your gym membership.
  • Enhanced family leave – support you during key life moments.
  • Mental Health Platform – one‑on‑one therapy, chat therapy, therapist‑led courses, guided meditations, and more.
  • Pet‑friendly office – because work is better with your paw‑tners by your side.
Our Principles:
  • We get things done: We are courageous; we take ownership, make decisions and get things done.
  • We act with trust and integrity: We listen first and challenge respectfully. We seek out and leverage diverse perspectives. We welcome and offer honest and open feedback, always assuming positive intent.
  • We put the customer first: We are laser focused on delivering outstanding outcomes for our customers. We put the customer at the heart of what we do.
  • We make things better: We boldly explore new ideas and have an unwavering commitment to continuous improvement.
  • We work as a team: We collaborate closely and value team success over individual achievement.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Commercial Enablement Manager
Senior Commercial Enablement Manager

Roman Health Pharmacy LLC • London (OH)

Hybrid
USD 93,000 - 135,000
Hybrid working
GBP 500 learning budget
Medical insurance (BUPA)
+1
Senior Solutions Engineer
Senior Solutions Engineer

Roman Health Pharmacy LLC • Chicago (IL)

On-site
USD 120,000 - 165,000
Product Manager - Local Payments (Portuguese + Spanish)
Product Manager - Local Payments (Portuguese + Spanish)

Roman Health Pharmacy LLC • Berlin (VT)

Hybrid
USD 90,000 - 120,000
Hybrid work
€1,000 annual learning budget
Health and wellness benefits
Senior Payment Partnerships Manager
Senior Payment Partnerships Manager

Roman Health Pharmacy LLC • London (OH)

Hybrid
USD 120,000 - 161,000
Hybrid work model
GBP 500 learning budget
Pet-friendly office
+2
Senior Sales Engineer
Senior Sales Engineer

Ppro • Chicago (IL)

On-site
USD 120,000 - 180,000
Hybrid work arrangement (3 days on‑sit
Professional development budget (700–$
Health insurance
+2
Senior Sales Engineer
Senior Sales Engineer

PPRO • Chicago (IL)

Hybrid
USD 140,000 - 190,000
Hybrid work structure
Professional development budget
Medical, dental, vision insurance
+5
Account Executive, New Business (UK & Europe - Local Payments)
Account Executive, New Business (UK & Europe - Local Payments)

Roman Health Pharmacy LLC • London (KY)

Hybrid
USD 70,000 - 100,000
Hybrid working
Learning and Development budget
Medical insurance
+5
Staff Frontend Engineer
Staff Frontend Engineer

Tend • Munich (ND)

Hybrid
USD 102,000 - 138,000
Hybrid work
€1,000 learning budget
Insurance plans
+3
Customer Support Analyst
Customer Support Analyst

Roman Health Pharmacy LLC • Virginia (MN)

On-site
USD 60,000 - 80,000
Health Allowance
Gym Allowance
Mental health support
Payment Scheme Compliance Manager
Payment Scheme Compliance Manager

Roman Health Pharmacy LLC • London (OH)

Hybrid
USD 93,000 - 121,000
Hybrid working policy
GBP 500 learning budget
Medical insurance (BUPA)