SonicJobs Logo
Left arrow iconBack to search

Member of Technical Staff, Security Engineer

bareinsights
Posted 2 days ago, valid for 13 days
Location

Los Angeles, Los Angeles, CA

Salary

$150,000 - $250,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • This role is for a founding security engineer at a fast-paced fintech startup, focusing on end-to-end security ownership.
  • Candidates should have at least 3 years of hands-on security engineering experience, particularly in AWS environments.
  • The position involves managing infrastructure security, application security, and identity access controls.
  • The base salary for this role ranges from $150,000 to $250,000 USD annually.
  • The position requires on-site work in Los Angeles, CA, with consideration for candidates in New York City or San Francisco.

About the Role

This is a founding security engineering role at a fast-moving fintech startup, giving you end-to-end ownership of infrastructure, application, and identity security across the organization. You'll set the security posture from the ground up — building programs that make the secure path the easy path, not a bottleneck — at a company where security is central to earning client and partner trust.

What You'll Do

  • Own infrastructure security across the full AWS environment, including VPC/VPN peering, network segmentation, IAM, and secrets management.

  • Lead application security for web and desktop clients, embedding threat modeling, supply-chain controls, and secure code review into the development lifecycle.

  • Design and implement identity and access controls (SSO, RBAC, least-privilege) for both human users and AI/agent systems.

  • Build audit trails and access controls that make autonomous agent activity fully reconstructable — what happened, on whose behalf, with what data, and why.

  • Partner with the IT managed service provider to secure endpoints, devices, and access for the in-office team.

  • Stand up and run compliance, auditability, bug bounty, VDP, and pentest programs that demonstrate security posture to clients, partners, and auditors.

What We're Looking For

  • 3+ years of hands-on security engineering or infrastructure security experience, with a strong track record in AWS (VPC, IAM, secrets management, network segmentation).

  • Practical application security experience: threat modeling, dependency/supply-chain controls, and secure code review.

  • Prior experience as a first or sole security hire at a startup, building programs from scratch with high autonomy.

  • Identity and access management implementation across both human and non-human (e.g. service, agent) actors.

  • Endpoint security and device management experience in an IT security context.

  • Compliance and auditability program experience (SOC 2, vulnerability management, pentest coordination).

  • Comfort operating in fast-moving environments with broad ownership and minimal established process.

  • Familiarity with Kubernetes is a plus.

  • Background in financial services or other regulated industries is a plus.

  • Experience securing AI or autonomous agent systems is a plus.

Compensation & Benefits

Base salary: $150,000 – $250,000 USD annually. Visa sponsorship is not available for this role.

Location

On-site in Los Angeles, CA. Candidates based in New York City, NY or San Francisco, CA may also be considered.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.