API Security Engineer
$110k - $186kFiserv
Calling all innovators - find your future at Fiserv.
We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.
Job Title
API Security Engineer
About your role:
You will help build a best-in-class API security program designed for the speed of modern financial services and shape how APIs are secured end-to-end, design through runtime, using cutting-edge protection technologies and analytics, partnering closely with top engineers across product, platform, and security. You will help turn API telemetry into actionable intelligence, reduce risk at scale, and raise the bar for secure engineering across the organization. As an API Security Engineer, you will focus on protecting critical API ecosystems by combining secure-by-design guidance, runtime protections, automation, and data-driven governance. You will be hands-on with modern API security capabilities (discovery, posture, threat detection, abuse prevention, and response) and help integrate them into the DevSecOps lifecycle so teams can move fast without compromising trust.
What you will do:
Runtime API protection : Implement and tune runtime controls (e.g., behavioral detection, anomaly and abuse prevention, bot defense, schema enforcement, mTLS/OAuth validation, rate limiting, and threat response) across API gateways, service mesh, and edge layers.
Secure API design guidance : Partner with engineering teams to define and promote secure API patterns (authentication/authorization, input validation, error handling, pagination, idempotency, versioning, and least-privilege access). Provide practical guidance aligned to OWASP API Security Top 10 and modern design standards (Open API/JSON Schema).
Automation and integration : Build automation that embeds API security into CI/CD (policy-as-code, automated checks against Open API specs, secrets scanning, SAST/DAST/API testing, and runtime-to-ticket workflows). Reduce friction through reusable tooling and self-service guardrails.
Data analytics and insights : Develop dashboards and analytics using API telemetry and security findings to measure risk, adoption, control effectiveness, and program outcomes. Translate signals into prioritized actions for engineering and leadership.
API security governance : Help define governance for API inventories, ownership, classification, security requirements, exception handling, and control validation. Drive consistent standards across teams while enabling delivery velocity.
DevSecOps lifecycle partnership : Work with product and platform teams to integrate security requirements into backlog planning, threat modeling, design reviews, testing, release readiness, and incident response.
Framework alignment (financial services) : Map controls and program outcomes to relevant industry frameworks and expectations (e.g., NIST, ISO 27001, PCI DSS, FAPI, and OWASP guidance). Support audit readiness through clear control documentation and evidence automation.
Continuous improvement and innovation : Evaluate emerging technologies and techniques for API discovery, posture management, and runtime detection. Pilot, measure, and scale what works.
What you will need to have:
5+ years related IT and cyber protection experience desired.
Strong foundation in API security concepts: authN/authZ (OAuth2/OIDC, JWT), session/token handling, scopes/claims, rate limiting, schema validation, and common API abuse patterns.
Practical experience with runtime protection in one or more of API gateways, WAF/WAAP, service mesh, ingress controllers, or specialized API security platforms.
Experience building automation in CI/CD and cloud-native environments (policy-as-code, scripting, pipelines, Git-based workflows).
Ability to use data and telemetry (logs, traces, metrics) to detect issues, tell a clear story, and drive priorities and working knowledge of secure software development and DevSecOps practices, and the ability to influence engineering outcomes through partnerships.
Comfort collaborating across security, SRE, platform, and application teams with clear communication, pragmatic decision-making, and strong follow-through.
Expert knowledge of and experience with maintaining cyber technologies that can protect operational API systems, such as:
Traceable
Salt Security
NoName
Bachelor’s degree in computer science, or a relevant field, or an equivalent combination of education, work, and/or military experience
What would be great to have:
Experience with Open API tooling, API testing, fuzzing, and contract testing.
Familiarity with threat modeling approaches and abuse-case analysis for APIs.
Experience aligning security controls to financial industry expectations and. producing evidence that stands up to audit scrutiny.
CISSP or other professional cyber certification desirable.
How you’ll work
- This role is on-site Monday through Friday. Fiserv considers in-person collaboration to be an essential part of this role as in-person office experiences help you with your overall onboarding experience and leads to stronger productivity.
Travel
- Approximately 10% travel off-site or to other office locations is expected.
Sponsorship
- You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.
#LI-RM1
Salary Range
$110,000.00 - $186,000.00
These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.
It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.
For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company’s sole discretion.
Thank you for considering employment with Fiserv. Please:
Apply using your legal name
Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).
Our commitment to Equal Opportunity:
Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.
If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io . Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information.
Note to agencies:
Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.
Warning about fake job posts:
Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.
$100k - $160k
...Description: Our Opportunity: Chewy is seeking a DevSecOps Engineer II to join our established technology team in Plantation, FL... ...destination for pet parents and partners, and our Information Security team plays a critical role in supporting that vision by...SuggestedLocal areaRemote workFlexible hours- Job Benefits Generous medical, dental, and vision plans Paid and voluntary supplemental life insurance Healthcare spending account, flexible spending accounts, and transit benefit options Paid sick and personal time off, parental leave, and paid disability ...SuggestedImmediate startFlexible hours
- ...management skills ~ Practical knowledge of Industry standard Network/Security best practices & solutions ~ Excellent diagnostic skills in... ..., VxRails) Experience with Automation Toolsets, Scripting & Config Templating (GitLab, Python, Jinja, Netbox, Vendor API's)...Suggested
$100k - $110k
INSPYR Solutions is seeking an Offensive Security Analyst to join their team in Deerfield Beach, FL. This hybrid position involves conducting penetration testing and building security capabilities through custom tooling and automation. The ideal candidate will possess...Suggested- ...Job Description: We are seeking a highly skilled Senior Network Security Firewall Engineer with extensive experience in Palo Alto Networks technologies to join our IT infrastructure team. This role involves designing, implementing, managing, and optimizing network...Suggested
- ...Job Description Our client is looking for a Senior Security Engineer to join their Cyber team in Fort Lauderdale, FL. This position a critical role in safeguarding the company’s entire technology landscape; including networks, endpoints, cloud services, and applications...Remote work
- ...What You'll Do: • Secure & Optimize Enterprise Networks - Design, deploy, and manage next-generation firewalls (NGFW), network security... ...- Tackle complex network security challenges and mentor junior engineers. • Ensure Compliance & Best Practices - Implement security...
- ...Network Security Engineer ITRADE STEM is seeking a Network Security Engineer for a client in the vibrant city of Fort Lauderdale! The ideal candidate will have a deep understanding of Network and Cloud solutions. They should be keen on sharing their expertise to boost...
- Senior IAM Security Engineer page is loaded## Senior IAM Security Engineerremote type: Remote USlocations: Remote - USAposted on: Posted Todayjob requisition id: R3832**Join the Team Modernizing Medicine**At **ModMed**, we’re not just building software—we’re reimagining...Work at officeRemote workFlexible hours
$170.5k - $271.5k
...Opportunity: Chewy is seeking a hands-on Principal Cybersecurity Engineer to join our technology organization. This role is for a senior... ...leader who actively designs, builds, reviews, and evolves security capabilities across large-scale, cloud-native systems-not a...Local areaFlexible hours- ...Concierge Security Engineer At ITRADE STEM, we are shaping the future by fostering job creation and advancing key industries such as space, technology, energy, and manufacturing. Through innovative programs, we equip individuals with career opportunities that enhance...
$95.86k - $208.27k
...Responsibilities: Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick... ...Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive...H1bLocal area$110k - $186k
...one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app... ...technical signatures to directly support the SOC and Detection Engineering teams. Intelligence-Driven Threat Hunting: Collaborate with...Full timeContract workTemporary workH1b$150k
...Apply principles and techniques of computer science and computer engineering to build software and firmware to defend our nation’s vital... ...ships, on bases and installations and in Joint Intelligence Centers such as the National Security Agency, the Pentagon, among other....Full timeWorldwide- An innovative company is seeking an AWS Cloud Engineer with a strong background in DevOps and security expertise. This remote position involves designing and automating security controls for AWS applications, performing threat simulations, and providing security recommendations...Remote work
- ...Information Security Engineer Job Category: Information Technology Requisition Number: INFOR003784 Posted: April 24, 2026 Full-Time Boca Raton | Boca 4700 Exchange Ct Boca Raton, FL 33431, USA Description Responsibilities: Conduct security assessments...Full time
- LRP Media Group is seeking a Senior Software Engineer to join the Platform Engineering team. This role involves designing and maintaining software systems to meet business objectives, collaborating across teams, and mentoring junior engineers. The ideal candidate will...
$100k - $172.5k
...Learn more at Job Function: Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture Job Category:... ...for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote work options...Full timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week- ...Regular Expressions ~ Scanning Tools ~ Data Mining Tools ~ Data Repositories (Confluence, Bit Bucket, Github, etc) ~ Offensive security testing tools: Cobalt Strike, Red Team Toolkit, etc. ~ An understanding of OSI model ~ Security devices: Firewalls, VPN, AAA...For contractors
- ...We are seeking a skilled and detail-oriented System & Network Engineer to design, implement, manage, and support our IT infrastructure... ...network performance and troubleshoot connectivity, latency, and security issues Plan and execute cloud migrations from on-premise environments...Casual workWork at officeLocal areaRemote work
- ...Title: IT Security Consultant Location: Fort Lauderdale, FL - must be willing to go onsite 3-4 days a week in FTL. Client will allow for relocation Duration: 12+ month on-going contract to hire - client will convert around month 12 Must...Contract workRelocation3 days per week
- ...Cyber Security Analyst Reports to CISO and works with a team of Cyber Security specialists. The Cyber Security Analyst is responsible for identifying risks to the confidentiality, integrity, and availability of our clients products and services, while maintaining...Weekend work
- ...Cybersecurity Engineer (Software Development Background) Company: Security Industry Location: Boca Raton, FL (3 days onsite) Type: 6 month contract to hire FTE convert rate 120-130k Notes Needs to be someone who has an actual software development background...Contract work
- ...Senior Java Azure Engineer Location - Berkely Heights, NJ / Coral Springs, FL Duration:... ...controls, exception and error handling, security, etc. You create and execute test plans... ...Boot, OpenShift, producing & consuming REST API's. ~3 - 10 years of experience...Work experience placement
- ...IAM) solutions. The IAM Architect will be responsible for developing and executing our IAM strategy, ensuring that our systems are secure, compliant, and effectively managed. This role will partner with cross-functional teams to provide expert guidance on IAM best practices...
- ...principle Microsoft. Azure 365 AD SAS – integrations with other SAS products and platforms Cloud architect and cloud security architect Architect with network and security acumen within Microsoft Zero Trust Network Architecture (ZTNA) At least one...
- ...Overview: Security Architect Location: Ft. Lauderdale, FL (4-5 days onsite) Type: 6-month contract-to-hire Overview: Seeking a seasoned Security Architect with broad, enterprise-level expertise across all security domains. This role requires a strategic...Contract work
- ...Senior Security Engineer We need a senior Security Engineer with experience working with PCI, HIPPA and with experience mitigating attacks. This position must be onsite day one in Ft. Lauderdale/Plantation, FL and be in the office two days a week. The client really...Work at officeLocal areaRelocation2 days per week3 days per week
$96k - $144k
LRP Media Group is seeking a Senior Java Engineer (Java/Spring) to develop and maintain high-availability web services. This role involves working onsite a minimum of four days per week with one remote day. Candidates should have over 6 years of Java development experience...Remote work- ...utilize your expertise in creating configurations, settings, and automation with third-party tools, Azure, and AWS to ensure the security and integrity of our systems. Responsibilities: Policy Development: Design and establish comprehensive cybersecurity policies...Apprenticeship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to API Security Engineer. Be the first to apply!


