Security and Threat Operations Engineer
$140k - $190kOnePay
About OnePay
OnePay is the consumer fintech trusted by millions of Americans to make money better.
Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. We’re fixing it. And we’re moving fast.
We’re an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.
We’re backed by Walmart, the world’s largest retailer, and Ribbit Capital, one of fintech’s most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.
But what really sets OnePay apart is how we move. Our customers don’t have time to wait… and neither do we. This place moves fast, and we’re looking for people who are:
Ready to run
Hungry and driven by urgency
Exceptional at what they do, with low ego
Comfortable operating in motion
The Role
As a Security and Threat Operations Engineer at OnePay, your work will have a direct impact on protecting our fast-moving fintech environment. You will turn production signals into actionable detection, response, and hardening initiatives, partnering closely with Product Security, Platform Security, and Engineering teams. Your efforts will enable us to proactively identify, monitor, and stop compromised behaviors across OnePay's products and infrastructure, ensuring the continued safety and trust of our business and customers. You will:
Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments.
Review traffic patterns across APIs, authentication flows, and WAF telemetry to identify malicious activity, abuse patterns, and anomalous behavior.
Use AI responsibly as a force multiplier for triage, analysis, and workflow automation, while helping define guardrails for AI-enabled systems.
Help operate OnePay's vulnerability management program by triaging, prioritizing, and driving remediation for findings from Wiz, vulnerability scanning, and related workflows.
Develop Python-based tooling and automation to improve investigations, enrichment, response, and operational scale.
Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks.
Investigate security events end to end, including triage, scoping, containment support, and follow-through on remediation.
Support vulnerability management and operational security practices in ways that align with PCI and SOC 2 expectations.
Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation.
You Bring
5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response, ideally in a cloud-native or product-focused environment.
Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry, with the ability to distinguish attacker behavior from normal production noise.
Demonstrated ability to review traffic and event patterns for signs of malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts.
Strong Python programming skills and the ability to write maintainable code for automation, enrichment, analysis, and security operations tooling.
Experience building and tuning detections in a SIEM or detection platform and working with observability and logging systems such as CloudWatch, Datadog, or similar platforms.
Experience operating or supporting a vulnerability management program, including triage, prioritization, remediation tracking, and stakeholder coordination.
Familiarity with cloud and application security findings from platforms such as Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases.
Experience with at least one major cloud provider, preferably AWS.
Working knowledge of identity and access systems, modern authentication flows, and the security implications of internet-facing applications and APIs.
Strong understanding of threat modeling, risk prioritization, and practical security controls across applications, infrastructure, and cloud environments.
Practical experience using AI tools in security workflows, along with sound judgment about AI-specific risks such as prompt injection, data leakage, excessive tool access, and weak auditability.
Excellent analytical, communication, and cross-functional collaboration skills, especially in environments where security needs to move quickly with product and engineering teams.
Drive and proactivity - everyone here is a builder and executor
Tools We Use
We use Node and TypeScript on the server, leveraging the NestJS framework within a microservice-oriented architecture running on Kubernetes and AWS. On the client side, we build and ship product features for iOS, Android, and web platforms using React Native. We also embrace AI-assisted development, so engineers have their choice of Claude Code or Cursor to fit their workflow. While you don't need experience with our exact stack, familiarity with modern software engineering practices will help you ramp up quickly.
What We Offer
Competitive base salary, stock options, and health benefits from Day 1
401(k) plan with company match
Remote-friendly (US), flexible time off (FTO), and opportunities for growth
A high-growth, mission-driven, inclusive culture where your work has real impact
Standard Interview Process
Our process varies by role. Most candidates go through:
AI-assisted initial screen
Interview with Talent Partner
Technical or Hiring Manager Interview
Team Interview
Executive Interview
Offer!
Equal Employment Opportunity
To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at View email address on aiapply.co.
- ...anomalous behavior. Use AI for security triage, analysis, and... ...guardrails for AI-enabled systems. Operate vulnerability management... ...scale. Translate threat models, security reviews, and... ...security operations, detection engineering, or incident response. ~ Strong...SuggestedFull timeRemote workFlexible hours
$160.3k - $240.5k
...OpportunityOur SecOps team is seeking a senior, hands-on security engineer to serve as the team’s technical lead during... ....What We’re Looking ForExperience in Security Operations, Incident Response, Detection Engineering, Threat Hunting, or a related security role.Experience...SuggestedFull timeWork at officeRemote workWorldwide$192k - $240k
...finance teams to accelerate operations, gain real-time visibility,... ...you need to grow your career.Engineering at BrexEngineering at Brex is... ...teams span Software, Data, Security, and IT, and operate with high... ...and responding to security threats across Brex's corporate and...SuggestedWork at officeRemote workWork from home$160k - $200k
...missions in every domain. Umbra’s ecosystem operates through three business units: Remote... ...to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant... ...tasked with crafting and executing robust security strategies, performing in-depth...SuggestedPermanent employmentFull timeWork at officeLocal areaRemote workWorldwide- ...matters at a company where you matter.Your Impact As a Senior Security Operations Engineer II, you will play a key role in building secure, reliable,... ...and reduce manual drift.Continuously evaluate emerging threats and tooling to strengthen defenses and developer...SuggestedWork at officeRemote work
$145k - $175k
Job DescriptionWe are seeking an experienced Security Operations Engineer to help advance the next generation of security capabilities across our... ...security operations, with a strong understanding of modern threat actors, cloud-native technologies, enterprise...Temporary workWork at officeRemote work- ...Security Operations Engineer Poland CAPCO POLAND We are looking for Poland based candidate. Capco is a fully independent, global management... ...and optimizing SIEM detection capabilities, supporting threat verification, and enabling regulatory alignment with DORA...Contract workRemote workFlexible hours
- ...Security Operations Engineer Yellow Card is the largest licensed Stablecoin-based infrastructure provider operating across over 60 countries.... ...the organisation's AWS and EKS attack surface Integrate threat intelligence feeds to refresh rule logic for emerging threats...Local areaRemote work
$35 - $45 per hour
...Security Operations Engineer in the Autonomous Vehicles Industry!! Job Description We are seeking a Security Operations Engineer who will... ...for monitoring, triaging, and investigating security threats across our systems and networks. This role will involve continuously...Temporary workWork at officeRemote work- ...faster. And because Tines is secure and private by design, it's popular with security, IT, engineering, finance, and other security-... ...looking for a Senior Security Operations Engineer passionate about... ...date on the latest security threats. Act as an escalation point...Remote work
$132k - $161k
...Title: Operations Engineer (Space) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions... ...Indications and Warning against Space threats. Elicits system capability needs and user...Full timeWork at officeLocal areaHome officeFlexible hours$149k - $271.5k
...integral part of how we build and operate. AI tool usage during... ...About The Team The Information Security and Technology team is responsible... ..., earn adoption from engineering teams, and get better over time... ...us, and by the industry. The threat surface is expanding. The compliance...Summer workRemote workFlexible hours$180k - $220k
...built differently. The company operates as a true meritocracy, with... ...runs a mature, multi-framework security and compliance program—... ...hiring a Security Operations Engineer to join our IT & Security team... ...Application security fundamentals: threat modeling, secure code review,...Full timeRemote work- ...channel. This role sets and runs the security configuration of the company across different... ...everything else sits on. As a Security Operations Engineer, you will be reporting to the Chief... ...the tools we already have, including threat intelligence. - 15% Building internal tooling...Full timeWork at officeRemote workShift work
$68.46k - $161.82k
...applications and next steps. Our partner is looking for a Security Operations Center Engineer based in the United States. This role is responsible... ...You will monitor security events, investigate potential threats, and coordinate incident response from initial triage...Full timeRemote workNight shift- ...new standard for healthcare. Role As a Senior Security Engineer (Security Operations) at Sword, you will be at the forefront of safeguarding... ...scalable triage framework, aligned with business impact and threat context. Lead in-depth investigations, including...Full timeRemote workFlexible hours
- ...becomes clarity, and AI becomes an engine for growth. Our ultimate... ...future where every business operates as an intelligent enterprise,... ...multiple aspects of AI information security operations, response, and... ...with emphasis on emerging AI threats and generative AI security....Full timeContract workImmediate start
- ...it. Overview We are seeking a Staff Detection Security Operations Engineer (Remote, US) to focus on leading the design and implementation... ...excellence across our multi-cloud environments for threat monitoring, detection, and security data analytics supporting...For contractorsWork at officeRemote workFlexible hours
- ...We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for... ...and high-value cyber targets against advanced persistent threats and state-level actors. We have more junior roles for exceptional...Full timeLocal areaRemote workWorldwide
- ...understandability and relevance of published security policies and their impact on the... ...supporting businesses based on the security and operational risks identified. Conduct BIA, risk... ...JIRA and automation. Submit for FDA 510k. Threat Modelling (STRIDE) for Products and...Remote work
$161.3k - $274.2k
Company DescriptionIt all started when engineer Fred Luddy wrote code that automated a tedious... ...people.Job DescriptionThe ServiceNow Security Organization (SSO)The ServiceNow... ...experience, including SailPoint IIQ 8.x+ operations in enterprise environmentsDeep operational...Work at officeImmediate startRemote workFlexible hours$96k - $124k
The Regional Security Operations Center (SOC)/Incident response Engineer is responsible for implementing and maintaining security controls and systems in the Americas region. This position also works within the global SOC to detect, analyze, respond to, and recover from...Work at office$102.4k - $128k
...agile, efficient, resilient, and secure. As an AI-forward enterprise,... ...to stay ahead of evolving threats. We believe in transparency... ...are looking for a Production Engineer to join our team. This role is... ...in the Cloud Infrastructure & Operations department. Join Zscaler to...Full timeWork at officeLocal areaRemote work3 days per week$90k - $120k
...missions in every domain. Umbra’s ecosystem operates through three business units: Remote... ...insights that strengthen U.S. national security and intelligence, support disaster response... ...seeking a Mission Operations Vehicle Engineer to become an integral part of our dynamic...Odd jobPermanent employmentFull timeWork at officeLocal areaRemote workWorldwideShift workNight shiftWeekend work$89.41k - $136.72k
The Security Operations Engineer II is responsible for leading day-to-day operations of the physical security systems and applications. In this role, the Security Operations Engineer will provide organizational expertise in usage of security equipment, train and monitor...Full timeRemote work$165k - $175k
...Senior Security Operations Center (SOC) Cloud EngineerThe IT Security Team is looking for a seasoned professional... ...Security Operations Center (SOC) Cloud Engineer is responsible for monitoring, detecting, and responding to threats in AWS and Azure environments. This role...Work experience placementLocal areaRemote workNight shift$86.8k - $198k
...EngineerThe Opportunity:Cyber threats are everywhere, and the... ...answer is you, help us develop security automation solutions that... ...support, and provide technical engineering services in support of... ...Directly support the cybersecurity operations teams to capture...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Responsibilities The Security Operations Engineer builds and operates security controls, tooling, and automation across DeepHealth's cloud and corporate environments. This role is responsible for configuring, integrating, and maintaining the enterprise security tooling...Work at officeLocal areaRemote work
$164.5k - $235k
...agile, efficient, resilient, and secure. As an AI-forward enterprise,... ...to stay ahead of evolving threats. We believe in transparency... ...looking for a Principal Production Engineer to join our team. This role... ...the Cloud Infrastructure & Operations department. Join Zscaler to...Work at officeLocal areaRemote work3 days per week$128.13k - $180.99k
...Senior Security Operations Engineer The Senior Security Operations Engineer is responsible for designing, implementing, and improving Data Loss Prevention (DLP) protections across Included Health's corporate and cloud environments. You will lead hands-on deployment...Full timeWork at officeLocal areaRemote workWork from homeHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security and Threat Operations Engineer. Be the first to apply!
- security engineering manager Remote
- physical security engineer Remote
- senior security operations engineer Remote
- information system security engineer Remote
- staff security engineer Remote
- offensive security engineer Remote
- security software engineer Remote
- network security engineer Remote
- sr information security engineer Remote
- cloud security engineer Remote



