API Security Engineer
Fiserv
Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv. Job Title API Security Engineer About your role: You will help build a best-in-class API security program designed for the speed of modern financial services and shape how APIs are secured end-to-end, design through runtime, using cutting-edge protection technologies and analytics, partnering closely with top engineers across product, platform, and security. You will help turn API telemetry into actionable intelligence, reduce risk at scale, and raise the bar for secure engineering across the organization. As an API Security Engineer, you will focus on protecting critical API ecosystems by combining secure-by-design guidance, runtime protections, automation, and data-driven governance. You will be hands-on with modern API security capabilities (discovery, posture, threat detection, abuse prevention, and response) and help integrate them into the DevSecOps lifecycle so teams can move fast without compromising trust. What you will do: Runtime API protection: Implement and tune runtime controls (e.g., behavioral detection, anomaly and abuse prevention, bot defense, schema enforcement, mTLS/OAuth validation, rate limiting, and threat response) across API gateways, service mesh, and edge layers. Secure API design guidance: Partner with engineering teams to define and promote secure API patterns (authentication/authorization, input validation, error handling, pagination, idempotency, versioning, and least-privilege access). Provide practical guidance aligned to OWASP API Security Top 10 and modern design standards (Open API/JSON Schema). Automation and integration: Build automation that embeds API security into CI/CD (policy-as-code, automated checks against Open API specs, secrets scanning, SAST/DAST/API testing, and runtime-to-ticket workflows). Reduce friction through reusable tooling and self-service guardrails. Data analytics and insights: Develop dashboards and analytics using API telemetry and security findings to measure risk, adoption, control effectiveness, and program outcomes. Translate signals into prioritized actions for engineering and leadership. API security governance: Help define governance for API inventories, ownership, classification, security requirements, exception handling, and control validation. Drive consistent standards across teams while enabling delivery velocity. DevSecOps lifecycle partnership: Work with product and platform teams to integrate security requirements into backlog planning, threat modeling, design reviews, testing, release readiness, and incident response. Framework alignment (financial services): Map controls and program outcomes to relevant industry frameworks and expectations (e.g., NIST, ISO 27001, PCI DSS, FAPI, and OWASP guidance). Support audit readiness through clear control documentation and evidence automation. Continuous improvement and innovation: Evaluate emerging technologies and techniques for API discovery, posture management, and runtime detection. Pilot, measure, and scale what works. What you will need to have: 5+ years related IT and cyber protection experience desired. Strong foundation in API security concepts: authN/authZ (OAuth2/OIDC, JWT), session/token handling, scopes/claims, rate limiting, schema validation, and common API abuse patterns. Practical experience with runtime protection in one or more of API gateways, WAF/WAAP, service mesh, ingress controllers, or specialized API security platforms. Experience building automation in CI/CD and cloud-native environments (policy-as-code, scripting, pipelines, Git-based workflows). Ability to use data and telemetry (logs, traces, metrics) to detect issues, tell a clear story, and drive priorities and working knowledge of secure software development and DevSecOps practices, and the ability to influence engineering outcomes through partnerships. Comfort collaborating across security, SRE, platform, and application teams with clear communication, pragmatic decision-making, and strong follow-through. Expert knowledge of and experience with maintaining cyber technologies that can protect operational API systems, such as: Traceable Salt Security NoName Bachelor’s degree in computer science, or a relevant field, or an equivalent combination of education, work, and/or military experience What would be great to have: Experience with Open API tooling, API testing, fuzzing, and contract testing. Familiarity with threat modeling approaches and abuse-case analysis for APIs. Experience aligning security controls to financial industry expectations and. producing evidence that stands up to audit scrutiny. CISSP or other professional cyber certification desirable. How you’ll work This role is on-site Monday through Friday. Fiserv considers in-person collaboration to be an essential part of this role as in-person office experiences help you with your overall onboarding experience and leads to stronger productivity. Travel Approximately 10% travel off-site or to other office locations is expected. Sponsorship You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered. #LI-RM1 Salary Range $110,000.00 - $186,000.00 These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ. It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran. For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company’s sole discretion. Thank you for considering employment with Fiserv. Please: Apply using your legal name Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable). Our commitment to Equal Opportunity: Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law. If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information. Note to agencies: Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions. Warning about fake job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address. There's a reason why Fiserv is the global leader in information management and electronic commerce systems for the financial services industry. It's our people. If you are a talented professional who gets excited by the challenge of helping Fiserv lead the transformation of financial services technology for our clients' benefit, we encourage you to explore career opportunities with Fiserv, where turning possibilities into realities is the norm.
- ...career. Position Summary We are hiring a Security Engineer to support a high-impact enterprise initiative focused on secrets... ..., helping resolve risks tied to plaintext credentials such as API keys, personal access tokens (PATs), and SSH keys. You'll also...SuggestedRemote work
- ...Position Summary We are seeking a Cloud Network & Security Engineer to join a global consultancy team supporting a Fortune 50... ...and scripting tools (PowerShell, Python, Bash, Postman, REST APIs). Experience with Infrastructure-as-Code frameworks (Terraform...SuggestedRemote work
- ...API Governance Rules Designer The purpose of this job is to design and build API governance rules sets to govern and manage APIs... ...needs to understand the ins and outs of API standards and how to secure an API environment. Must be VERY good at writing API Guidelines...Suggested
- ...a professional like you is headed and only reach out when we genuinely believe there's a fit worth exploring. Role: Security Engineer Location: Remote (EST) Engagement type: Contract - 6 Months Job Description: The IAM Security Engineer will be...SuggestedContract workWork experience placementRemote work
$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you ’ll collaborate with...SuggestedWork at officeRemote work- ...candidates ) Description : We are looking for a security engineer to help build our client's next generation Policy Based Access... ...years of development experience delivering full-stack, RESTful APIs and interactive user interfaces using Java, Python, Spring...Local area
- ...travel tech company based in Roswell, GA is seeking a full-stack engineer focusing on integrating capabilities for their AI travel advisor... ...agents. Ideal candidates should have direct experience with GDS APIs like Sabre or Amadeus, and a background in web application...Flexible hours
$90k - $158.4k
...Senior Api Engineer - Advisor I Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and... ...one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app...Temporary workWork experience placementH1bWork at officeMonday to Friday$90k - $158.4k
...one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app... ...scale, come make a difference at Fiserv. Job Title Senior API Engineer - Advisor I About your role: We are seeking a Software...Temporary workWork experience placementH1bWork at officeMonday to Friday- ...Title: Senior Data Security Engineer, Big ID Deployment Lead Location: Remote Position Overview This role will wear two hats to... ...enterprise. Development & Integration: Support and manage API integrations, develop necessary scripting (Python, Shell), and...Remote work
- ...Penetration Tester to conduct in-depth security assessments and drive remediation across... ...penetration testing of web applications, APIs, thick clients, mobile applications (iOS... ...Collaborate closely with application and engineering teams to explain findings, coordinate...
- ...Job Title: Security Software Engineer(Candidates should be ready for Coding Test) Duration: 6+ Months Location: 3 days onsite... ...years of development experience delivering full-stack, RESTful APIs and interactive user interfaces using Java, Python, Spring...Local area
$90k - $158.4k
...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay... ...will lead in-depth assessments of web, API, mobile, and thick-client applications to... ...a culture of application security engineering and secure SDLC integration. Responsibilities...Temporary workH1bWork at officeMonday to Friday$35 - $40 per hour
...Responsibilities: Conduct penetration testing on web applications, APIs, mobile applications, and Active Directory. Identify and... ...Collaborate with the development and IT teams to remediate security issues. Utilize tools such as Burp Suite, OWASP ZAP,...Contract workLocal areaImmediate start- ...Sr. Security/Network Engineer Location: Atlanta, GA Duration: 6 months + Extensions !!NOTE: Need Local!! Job Description: McAfee DLP Cisco Switches and Routers Splunk Symantec Qualys Check Point/Cisco Excellent Communication Skills Soft skills are extremely important...Local areaImmediate start
- ...Our client, a leading organization in the technology and security sector, is seeking a Security Engineer IV (Cloud Security Engineer - SRE) to join their innovative team. As a Security Engineer IV (Cloud Security Engineer - SRE), you will be part of the Security Operations...
- ...QA Engineer – Observability & API Testing (Datadog) We are looking for a detail-oriented QA Engineer – Observability & API Testing to ensure the quality, reliability, and performance of APIs, microservices, and monitoring pipelines. The role involves validating application...
- ...Opportunity We are a leading technology consultancy supporting a Fortune 50 enterprise IT organization in delivering security-focused engineering initiatives. As part of a critical enterprise-wide program, we are seeking a Senior Security Engineer to support...Remote work
$105k - $160k
...The Senior Professional, Platform Engineering job designs, develops and maintains digital... ...Qualifications Proven experience with API management platforms such as Kong, Broadcom... ...traffic management, rate limiting, and security policies. Expertise in API lifecycle...Work experience placement- ...The resources focus on assessing, modeling, and mitigating security and resilience risks across agentic AI systems, data, and underlying... ...Recommend hardening controls for AI infrastructure, including IAM, API security, and data protection • Collaborate with AI,...
- ...Professional Security Engineer/Analyst 7+ years of experience working as a Professional Security Engineer/Analyst. 5+ years of expertise in Manual Penetration testing. Experience in Source Code Vulnerability Scan, SAST and DAST. Deep understanding and hands on experience...
$120.5k - $231k
...#VTeamLife. What you'll be doing... At Verizon, the Global Networks & Technology Network Security team is looking for a highly motivated and experienced Senior Engineer to join the Security Defense organization. The Defense teams are responsible for safeguarding critical...Full timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week$91.9k - $246.24k
...ADP is Hiring a Senior Application Security Architect Position Summary: We are seeking... ...you will partner closely with product, engineering, and cloud architecture teams to design... ...integrating secure coding practices, secure API design, CI/CD security controls, and...Minimum wageTemporary workLocal area- ...shape the future of our communities. This is a Lead Cybersecurity Engineering position at Vice President level, which is part of the job... ...organization's systems and networks against actual and potential security threats and vulnerabilities. Since 1935, Morgan Stanley...
- ...GCP Security SecDevOps Engineer We are seeking a highly skilled GCP Security SecDevOps Engineer to join our dynamic team and strengthen our security posture across our Google Cloud Platform (GCP) environment. In this critical role, you will collaborate closely with...Contract work3 days per week
- ...Job Title: Azure Security Engineer Location: Alpharetta GA Duration: 12+ Months (Possibility of Extension) The Cloud Security team is responsible for securely enabling the use of cloud technologies to support the firm's desire to leverage cloud-native...
- ...GCP Security SecDevOps Engineer Location: NYC or Alpharetta, GA - Onsite 3 days a week Duration: Long Term Rate: DOE US Citizens & Green Card Holders are preferred We are seeking a skilled GCP Security Engineer specializing in SecDevOps to enhance our security...3 days per week
- ...management skills ~ Practical knowledge of Industry standard Network/Security best practices & solutions ~ Excellent diagnostic skills in... ..., VxRails) Experience with Automation Toolsets, Scripting & Config Templating (GitLab, Python, Jinja, Netbox, Vendor API's)...
- ...over voice and messaging. We are the leading global provider of Secure Communication as a Service (SCaaS™). Our flagship solution,... ...Singtel, and more. Learn more at Senior Information Security Engineer Protect. Innovate. Lead. At Movius security isn't just...For contractorsRemote work
- ...CirrusLabs () is a great place to grow your career. Job Summary: We are seeking a highly experienced Senior Data Security Engineer with deep expertise in Sensitivity Classification Frameworks and implementing Data Loss Prevention (DLP) solutions using...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to API Security Engineer. Be the first to apply!
- sr information security engineer Alpharetta, GA
- senior application security engineer Alpharetta, GA
- aws cloud security engineer Alpharetta, GA
- sr security engineer Alpharetta, GA
- senior cloud security engineer Alpharetta, GA
- IT security engineer Alpharetta, GA
- information technology security engineer Alpharetta, GA
- network security engineer Alpharetta, GA
- security engineer Alpharetta, GA
- senior security operations engineer Alpharetta, GA



