Beyond Finance Logo

Beyond Finance

Senior Security Automation Engineer

Posted 2 Hours Ago
Be an Early Applicant
Easy Apply
Remote or Hybrid
Hiring Remotely in United States
140K-165K Annually
Senior level
Easy Apply
Remote or Hybrid
Hiring Remotely in United States
140K-165K Annually
Senior level
Build and operate security log pipelines, SIEM detections, endpoint controls, security automation, and internal tooling across AWS, macOS, Windows, CI/CD, and infrastructure repositories. Develop primarily in Python, implement Terraform-based infrastructure and policy-as-code safeguards, integrate security tools through APIs, and embed scanning and secrets detection into developer workflows. Own the reliability and coverage of security platforms while independently driving projects and implementing fixes directly in systems managed by other teams.
The summary above was generated by AI

At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care, a culture focused on compliance and ethics, supportive user-centric technology, and customized financial solutions, we've helped over 1 million clients on their path to a brighter future.

While we're proud of what we've already accomplished, we're searching for new collaborators to help us get to the next level! If you're looking to join a forward-thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you.


The Role

As a Senior Security Engineer, you'll build and deploy the controls, automation, and log pipelines that let a lean security team cover a large and growing surface. Much of the role is hands-on: standing up controls, wiring up tooling, and building the internal tooling that makes the team and our processes better. When the work calls for custom code, you write it yourself rather than waiting on someone else.

You'll sit inside security engineering and work hands-on across our AWS environment, our SIEM, our endpoint fleet, our CI/CD systems, and our application and infrastructure repos. Where a lot of security teams find a problem and hand off a ticket, we implement the fix ourselves, and this person is a big part of how we do that at scale.

Key Responsibilities
  • Build and own our security log pipelines: get logs out of the systems that produce them, transform and enrich them, and land them in our SIEM where the team can detect and investigate. This is a large part of the role.
  • Operate and improve our SIEM: onboard new sources, and build and tune the detections and alerts the team runs on.
  • Deploy and tune security controls across our endpoint fleet of managed macOS and Windows workstations and AWS WorkSpaces virtual desktops running Windows Server.
  • Build internal tooling and automation that makes the team and our processes better, from removing manual toil in triage and remediation to giving the team capabilities it doesn't have today. When it calls for custom code, it's primarily Python.
  • Instrument our environment for security signal by integrating our tooling through their APIs and writing the connective code that ties the stack together.
  • Establish secure defaults in our Infrastructure as Code through reusable modules and policy as code.
  • Build security into CI/CD: scanning, secrets detection, and policy-as-code gates that live in the developer workflow.
  • Treat the pipelines and tooling you build as a platform you own, including their reliability and coverage.
  • Work directly in systems your team does not own: read the code or infra, make the change safely, and get it through review rather than filing a ticket.
Requirements
  • 5+ years of hands-on security engineering with a focus on automation, tooling, and instrumentation.
  • Comfortable writing custom code and scripting, primarily in Python, to build your own tooling and log pipelines from scratch. You do not have to be a career software engineer, but you are well past copy-and-paste.
  • Hands-on experience building and operating log pipelines end to end: collection, parsing, enrichment, and delivery into a SIEM.
  • Hands-on SIEM experience: onboarding sources and building or tuning detections and alerts.
  • Experience deploying and managing endpoint security across a mixed fleet of macOS and Windows workstations, including virtual desktops.
  • Hands-on Infrastructure as Code experience; Terraform required.
  • Experience building CI/CD pipelines and wiring security checks into them.
  • Working knowledge of a major cloud provider, ideally AWS.
  • Operates independently and drives projects without day-to-day oversight.
Nice to Have
  • A background in Cloud Security or Application Security to build on from a more automation-focused seat.
  • Experience with our stack: Wiz, Cloudflare, GitHub Advanced Security, Spacelift, and AWS-native services.
  • Policy as code experience such as OPA/Rego or Sentinel.
  • Experience with a SIEM or log platform as a pipeline destination.
  • AI/ML security exposure: prompt injection, data poisoning, model abuse, and the controls that mitigate them.
  • PCI-regulated or financial services environment.
  • Familiarity with Ruby on Rails, Python, or Go.
The Ideal Candidate

The ideal candidate is a Driver, not a Passenger. They take an ambiguous problem, find the biggest-impact piece, and start building rather than waiting for a fully specified ticket, and they would rather ship 60% this week and iterate to the rest than spend a quarter on the perfect design. They reach for automation by instinct, and when the fix lives in someone else's system they go make it rather than recommend it.

#LI-LB2

The base annual salary range is listed below. This role is eligible for additional incentives, including an annual bonus.

Base Salary Range
$140,000$165,000 USD

Why Join Us?

While you make a difference for others, we’ll work to make a difference for you, providing an uplifting, collaborative work environment and benefits that reflect your value to us. For eligible full-time employees, we offer:

  • Considerable employer contributions for health, dental, and vision programs
  • Generous PTO, paid holidays, and paid parental leave
  • 401(k) matching program
  • Merit advancement opportunities
  • Career development & training

And finally, our team spirit and culture! We cultivate an environment of community, connection, and belonging across our entire organization.

Beyond Finance does not accept unsolicited resumes from individual recruiters or third-party recruiting agencies in response to job positions.  No fee will be paid to their parties who submit unsolicited candidates directly to Beyond Finance employees or the Beyond Finance HR team.  No placement fee will be paid to any third party unless such a request has been made by the Beyond HR team.

Similar Jobs at Beyond Finance

2 Hours Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
140K-165K Annually
Senior level
140K-165K Annually
Senior level
Fintech • Financial Services
Own AWS cloud security posture and vulnerability management using Wiz and AWS-native services. Build Infrastructure as Code guardrails, secure CI/CD pipelines, automate vulnerability workflows, and operate WAF protections. Partner with DevOps and engineering on IAM, network segmentation, containers, secrets, data exposure, telemetry, threat modeling, and application security. Drive projects independently while reducing organizational risk.
Top Skills: AWSAws Secrets ManagerCi/CdCloudflareContainer OrchestrationGithub Advanced SecurityGoIamInfisicalInfrastructure As CodeKeeperOwasp Top 10PythonRuby On RailsSpaceliftTerraformWafWiz
2 Hours Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
160K-195K Annually
Senior level
160K-195K Annually
Senior level
Fintech • Financial Services
Staff Security Engineer partners with Product, Engineering, and DevOps to embed security into application architecture, cloud infrastructure, and CI/CD processes. Responsibilities include secure design and code review, vulnerability remediation, AWS cloud security, WAF tuning, security automation in Python, SIEM and log pipeline contributions, endpoint controls, and security standards. The role requires deep expertise in application security, cloud security, or security automation, plus threat modeling and independent project ownership.
Top Skills: AsmAWSCi/CdCnappContainer OrchestrationDastGoIamInfrastructure As CodePythonRuby On RailsSastScaSIEMTerraformWaf
Yesterday
Easy Apply
Remote or Hybrid
United States
Easy Apply
21-21 Annually
Mid level
21-21 Annually
Mid level
Fintech • Financial Services
Negotiate delinquent accounts with law firms to secure reduced balances, extended payment terms, or lump-sum settlements. Review legal documents, manage escalated portfolios and client accounts, maintain attorney relationships, meet monthly settlement and compliance goals, and handle high-volume inbound/outbound calls to resolve lawsuits and prevent further legal action.
Top Skills: CRMSalesforce

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account