Skip to main content
← Back to Jobs

Senior Security Engineer

Credit SesameUnited States🌍 Remote
Full-timeSenior
$170k - $215k
per year
👁️ 0 views📝 0 applicationsPosted 8/21/2026Expires 10/20/2026
Tailor Resume for This JobCheck ATS Score

Get alerts for roles like this

More Senior Security Engineer roles in United States — straight to your inbox. No account needed.

Applying to this role? Tailor your résumé to this job description in one click, then download it clean — no watermark, no subscription.

Job Description

Credit Sesame is a leading financial wellness platform dedicated to helping consumers achieve better financial health through cutting-edge technology and data-driven solutions.

With a decade of credit expertise and a proven track record of serving over 18 million users, Credit Sesame leverages AI and advanced analytics to empower individuals to better understand and manage their credit.

Our recently launched Sesame Platform extends our mission by providing financial institutions with a turnkey AI-powered credit intelligence solution.

As our security engineer, you'll own security end-to-end for our platform — standing up open-source tooling, writing your own scripts and automation, and running assessments. You'll...

Run security reviews for new tools, vendors, and projects — data handling, AI usage, DPAs, PII, authentication/authorization, and third-party security reports (SOC 2, PCI, ISO, pentest results); Own access and infrastructure security — IAM least-privilege reviews, S3/database access controls, environment segregation, service-to-service authentication, and network configuration audits (VPC flow logs, inbound/outbound rules); Run vulnerability management across cloud and endpoints, and manage IDS/IPS (e.

g.

, Palo Alto Panorama, AWS WAF) and EDR/MDR tooling; Lead security incident response end to end — triage, investigate, contain, document, and build the runbooks as you go; Implement and maintain the technical controls supporting our PCI DSS and SOC 2 / ISO 27001 compliance programs, including internal audits, risk metrics, and disaster recovery planning; Partner with DevOps/IT on patch management and secure infrastructure defaults, and present tooling and risk recommendations to engineering leadership; Build our in-house AppSec scanning program — evaluate and pilot SAST/SCA/IaC tooling (Semgrep, Trivy, Upwind), integrate into GitLab CI and Jenkins, define severity-based remediation SLAs, and drive rollout across services; Build internal security tooling and

Required Skills

AWSInternal AuditJenkinsLeadership

Prepare to Win This Role

Everything you need to ace the interview and negotiate top-of-band compensation.

The best-paying roles in your field. Every week. Free.

Join 10,000+ professionals getting job alerts and salary insights in their inbox

We respect your privacy. Unsubscribe anytime with one click.