Job description
Who we are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.
About Privy
Engineering at Privy is not just about writing world-class code. We create software that turns complex technical systems into delightful developer tools. We assemble tried-and-true primitives into intuitive, responsive APIs and beautiful interfaces. We believe in open-source work and transparency with our teammates and users. We encourage each other to think big, run experiments and follow our curiosity so we can build better tooling that lets developers shine and empower their users.
Learn more about Privy:
- Privy and Stripe: Bringing crypto to everyone
What you’ll do
Privy is seeking a staff application security engineer to work at the intersection of critically important authentication and data security surfaces and deep challenges of digital ownership and trusted execution environments. You’ll architect security as a core part of our product, own and build out internal best practices, work directly with customers to build secure infrastructure for millions, and triage and remediate issues within the codebase.
Who you are
We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
Minimum requirements
- 8+ years experience with implementing or maintaining security systems in production environments
- Comfortable making changes to production environments
- Understanding of modern web security best practices and common vulnerabilities
- Ability to communicate complex security concepts clearly to both technical and non-technical audiences
- A collaborative approach to security that emphasizes education and enablement
Preferred qualifications
- Experience with corporate security or information security in startups
- Blockchain security experience
- Detection and response or incident response background
- AWS security expertise
- Bug bounty hunting or red team experience
- Experience building security-focused developer tools
- Published about your work in security (presentations, blog posts, open source contributions)