Staff Security Engineer

5 days ago


San Francisco, California, United States Parafin Full time $235,000 - $280,000 per year

About Us:
At Parafin, we're on a mission to grow small businesses.

Small businesses are the backbone of our economy, but traditional banks often don't have their backs. We build tech that makes it simple for small businesses to access the financial tools they need through the platforms they already sell on.

We partner with companies like DoorDash, Amazon, Worldpay, and Mindbody to offer fast and flexible funding, spend management, and savings tools to their small business users via a simple integration. Parafin takes on all the complexity of capital markets, underwriting, servicing, compliance, and customer service for our partners.

We're a tight-knit team of innovators hailing from Stripe, Square, Plaid, Coinbase, Robinhood, CERN, and more — all united by a passion for building tools that help small businesses succeed. Parafin is backed by prominent venture capitalists including GIC, Notable Capital, Redpoint Ventures, Ribbit Capital, and Thrive Capital. Parafin is a Series C company, and we have raised more than $194M in equity and $340M in debt facilities.

Join us in creating a future where every small business has the financial tools they need.

About The Position
We're looking for an experienced security-focused engineer to help shape and scale Parafin's security posture across our cloud and platform environments. Our Security and Infrastructure team owns the foundational systems that power all of Parafin — from compute and networking to identity and compliance — and you'll play a central role in ensuring those systems are secure, reliable, and compliant.

In this role, you'll design and operate controls, tooling, and processes that keep our infrastructure resilient and compliant while enabling developers to move quickly and safely. You'll partner closely with teams across engineering and compliance to strengthen how we manage access, secure applications, monitor threats, and respond to incidents.

What You'll Be Doing

  • Lead efforts to improve Parafin's overall security posture across infrastructure, applications, and data systems.
  • Develop and maintain frameworks for identity, access management, and least-privilege enforcement.
  • Establish and operate best-in-class security monitoring, alerting, and incident response processes.
  • Partner with product and infrastructure engineers to embed secure-by-default patterns in our systems and applications.
  • Define and enforce standards for vulnerability management, secrets handling, and dependency integrity.
  • Collaborate with compliance and risk teams to build and maintain controls aligned with frameworks such as SOC 2, PCI DSS, and other fintech regulations.
  • Support audits and security assessments by ensuring controls are properly implemented and evidenced.
  • Contribute to security awareness and training efforts across engineering teams.
  • Influence long-term strategy on secure architecture, detection, and response automation.

What We're Searching For

  • 8+ years of experience in security operations or application security, preferably in a cloud-native and regulated environment.
  • Strong understanding of AWS security, including IAM, VPC, and network segmentation best practices.
  • Experience with threat detection and response, vulnerability management, and incident response workflows.
  • Familiarity with Kubernetes and container security principles, including RBAC, admission controls, and runtime monitoring.
  • Knowledge of compliance frameworks (SOC 2, PCI DSS, ISO and how to operationalize them in engineering environments.
  • Strong communication and collaboration skills — comfortable working across engineering, product, and compliance teams.

We Prefer If You Have

  • Experience building or maturing a security operations or application security program at scale.
  • Background in security automation, threat modeling, or secure architecture reviews.
  • Familiarity with developer-focused security enablement — e.g., SAST/DAST integration, dependency scanning, or security education.
  • Experience in regulated or fintech environments where security and speed must coexist.

What We Offer

  • Salary Range: $235k - $280k
  • Equity grant
  • Medical, dental & vision insurance
  • Unlimited PTO
  • Work From Home flexibility
  • Commuter benefits
  • Free lunches
  • Paid parental leave
  • 401(k)
  • Employee assistance program

If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please contact us.



  • San Francisco, California, United States Decagon Full time

    About DecagonDecagon is the leading conversational AI platform empowering every brand to deliver concierge customer experience. Our AI agents provide intelligent, human-like responses across chat, email, and voice, resolving millions of customer inquiries across every language and at any time.Since coming out of stealth, Decagon has experienced rapid growth....


  • San Francisco, California, United States Material Security Full time $210,000 - $250,000 per year

    As a Staff Product Manager at Material Security, you will lead a new feature team, owning the core product experience. This includes critical elements of the platform that supports all other product areas and horizontal product experiences. Your mission is to evolve the core product concepts to support the rest of the product by applying your strong product...


  • San Francisco, California, United States Abridge Full time

    About AbridgeAbridge was founded in 2018 with the mission of powering deeper understanding in healthcare. Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation efficiencies while enabling clinicians to focus on what matters most—their patients.Our enterprise-grade technology transforms patient-clinician...


  • San Diego, California, United States ServiceNow Full time $155,800 - $272,700

    Company Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500. Our intelligent cloud-based...


  • San Francisco, California, United States Opal Security Full time $140,000 - $215,000 per year

    Opal is redefining identity security for modern enterprises. The concept of least privilege access is well understood in theory but very hard in practice. We've all felt the pain of not getting the access we need to do our job - and security teams feel the pain of either being a bottleneck or authorizing everyone at the expense of risk. At Opal, we're...


  • San Francisco, California, United States Novia Infotech Full time

    Role : Staff Platform Engineer (Compute Migration)Location : San Francisco, CA (Hybrid)Contract RoleJob ResponsibilitiesWe're looking for an experienced Staff Platform Engineer, specializing in Compute Migration, to lead the strategic effort to migrate all of our existing AWS Lambda and ECS-based workloads to our next-generation Kubernetes platform. This is...


  • San Francisco, California, United States DoorDash Full time $120,000 - $180,000 per year

    About the TeamAt DoorDash we're building the industry's most scalable and reliable delivery network to support our three-sided marketplace of consumers, merchants, and Dashers. Security is paramount to the success of our business, and DoorDash Security aspires to be the world's most admired security team. We are committed to building the world's most trusted...

  • Sales Engineer

    7 days ago


    San Francisco, California, United States Upwind Security Full time $100,000 - $150,000 per year

    DescriptionUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters....


  • San Francisco, California, United States Perplexity Full time

    Perplexity is redefining how people search, reason, and interact with information. Our API team sits at the core of this vision, designing and operating the high-performance interfaces that expose Perplexity's intelligence to developers, enterprises, and products worldwide. This team owns the architecture, reliability, and security of the APIs that power...


  • San Francisco, California, United States Opal Security Full time $150,000 - $250,000 per year

    About Opal Security:At Opal, we're building modern identity governance for the AI era – intelligent access management that empowers enterprises to move fast while staying secure. Our mission is to bring clarity, control, and confidence to complex enterprise environments, helping teams govern access without slowing down innovation.The Role:As aSenior...