Security Engineer
$180k - $250kBastion
About Bastion
Bastion provides the regulated infrastructure businesses need to hold, move, and issue stablecoins. Our platform combines custodial wallets, global payment orchestration, and stablecoin issuance. Customers can use each product independently or connect them into a single end-to-end flow.
We operate through our own regulated entities, with compliance and risk controls built directly into the platform. We can also support customers operating under their own licenses with the compliance and financial operations required to run their programs.Overview
We're looking for a hands-on Security Engineer to join our security team as its second engineer. You'll work alongside our Staff Security Engineer and report to our CTO/CISO.
The foundation is already in place: a SOC 2 Type II report, conditional approval from the OCC for a national trust charter, a SIEM and detection pipeline, runtime security for Kubernetes, and time-limited, auditable access to production. You'll help scale that program across security engineering, infrastructure, product and application security, detection and response, and the technical side of GRC (SOC 1, SOC 2, OCC, and MiCA/DORA).
As a 40-person company, your work will directly protect our users and partners. You'll build on a strong foundation (we're featured in this AWS case study). Our platform is almost entirely Go, running on Kubernetes (EKS) in AWS and managed with Terraform, and our security services are written in Go too. You must be able to write production code. Expect to spend most of your time writing code, reviewing design docs, and building security tooling and middleware that engineers can easily drop into any service.
This role can be remote within the US, though we'd prefer someone in NYC or open to relocating.
Work to Be Done
Instead of a list of requirements, we want to give you a directional look into the first 30, 90, and 180 days on the job.
We are a startup, so the pace is fast and the specific work will change. People who thrive here find ways to contribute in their first week and are fully productive by their third month. You need to be okay with that.
If you think this is something you can handle, we'll be excited to speak with you.
First 30 days: Learn and ship from week one
Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services
Contribute security feedback to at least one engineering design doc
Ship your first security fix, guardrail, or detection to production
Learn our incident response and on-call procedures, and join our security rotation
Get up to speed on our DLP program and start contributing to its rollout
Outcomes
Production code shipped in your first month
Join the security on-call rotation, so the team has real coverage
By 90 days: Own initiatives independently
Own at least one security domain end to end, such as Kubernetes and cloud hardening, application security in CI, or detection engineering
Write and tune detections as code, add new telemetry sources, and reduce alert noise
Ship your first reusable security library or middleware in Go (for example authorization, tenant isolation, request signing, or input validation) and get it adopted by at least one service team
Be the security reviewer on design docs for new product features and architecture changes
Deliver control automation and evidence for an active audit or regulatory workstream (SOC 1, SOC 2, OCC)
Help launch and triage our bug bounty program, and grow our DLP coverage and policies
Outcomes
Measurable risk reduction from controls, fixes, or detections you built
Recognized as the owner of at least one security domain
By 180 days: Scale your impact
Drive multi-quarter initiatives such as default-deny service-to-service networking, security policy evaluation, or just-in-time, granular access across more systems
Expand our Kubernetes cluster and container security, including image scanning and signing, admission policies, pod security standards, and runtime protection
Grow a shared set of security middleware and libraries that is adopted across the codebase, so the secure path is the easy path for our Go engineers
Help expand our compliance scope with automation instead of spreadsheets
Turn tabletop exercises and resilience testing into concrete fixes
Join cross-functional planning and influence the security roadmap
Outcomes
Function-wide improvements to how we build and ship secure systems
Clear, measurable business impact from your security work
Some challenges you might tackle
Building reusable security building blocks that make secure defaults easy across our platform
Protecting the critical systems at the core of a regulated stablecoin platform
Turning OCC and MiCA/DORA requirements into controls that are engineered, tested, and continuously evidenced
Building high-signal detections across cloud, Kubernetes, identity, endpoint, and SaaS telemetry
Hardening our Kubernetes clusters and container supply chain, from build to admission to runtime, without slowing deploys
If you think this is something you can handle, we will be excited to speak with you.
Bastion provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, and placement. Bastion participates in E-Verify to authorize eligibility of employment in the United States.
- ...WRITER is seeking an Application Security Engineer with deep expertise in AppSec, DevSecOps automation, and red team operations to secure their AI and AGI applications. The role involves integrating security into development pipelines, conducting penetration testing, and...SuggestedH1bWork from homeRelocationHome officeFlexible hours
$130k - $165k
...SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. SECURITY ENGINEER SpaceX is looking for a Security Engineer to join Information Security to help protect and drive the SpaceX mission....SuggestedPermanent employmentTemporary workWork at officeRemote workMonday to FridayWeekend work- ...and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges,... ...the Role As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling...SuggestedLocal area
$168k - $198k
...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Our prevention-first approach safeguards... ...What you bring to the table ~5+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...SuggestedTemporary workWork at officeRemote workWorldwide- ...Security Engineer - Application Security Locations: Charlotte NC, Chandler AZ, Westlake TX (Hybrid), (3 days onsite/2 WFH) Duration: 12+ Months Contract US Citizen, Greencard Holder, EAD, H4-EAD ($65-70hr. on W2) Required Qualifications: ~5+ years of Application...SuggestedContract workWork experience placementWork from home
$112.8k - $257k
...Security Engineer The Opportunity: We need a technical professional responsible for designing, building, and maintaining systems that protect an organization's data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive...Full timeContract workPart timeWork at officeLocal areaRemote work$180k - $310k
...exploit software vulnerabilities. This works both ways: defenders who adopt AI tools can move just as fast. At Gamma, we believe security engineering must evolve to meet this moment. That means closing patch gaps faster, scanning our own code with the same frontier models...Full timeWork at officeWork from home$110k - $135k
...GetixHealth is seeking an experienced Security Engineer II, SecOps to join our Information Technology team. This mid-level role is responsible for implementing, maintaining, and improving technical security controls across cloud, endpoint, network, identity, and application...Full timeTemporary workRemote workFlexible hours- ...analysis, we are transforming railway safety worldwide. Our global engineering teams work collaboratively to develop step-change technologies... ...to be part of something different. Role Summary Security at Sperry is run today by our Global IT team, alongside everything...Work experience placementRemote workWorldwide
$230k - $290k
...teams to run agents across organizations without compromising security or reliability. Continue cloud agent runs that were triggered... ...at a company where your work reaches hundreds of thousands of engineers every day, we'd love to have you. The Role This is a rare...Work at officeRemote workFlexible hours$200k - $240k
...City, CA, Liftoff has a diverse, global presence. The Liftoff Security team protects Liftoff's customers, users, and employees. We... ...build the tools and systems that defend it, and partner with engineering teams as they ship new products and features. Our work spans the...Full timeRemote work- ...General Description The Security Engineer plays a key role in protecting NorthWinds Technology Solutions, its affiliated companies, and its clients by designing, implementing, and maintaining enterprise security solutions. This position focuses heavily on the Microsoft...Work at officeRemote work
- ...IAM Security Engineer The IAM Security Engineer role will be responsible for designing, developing, testing, implementing, and integrating the Identity and Access Management systems and solutions across the client IT ecosystem. Responsibilities will include the design...Remote work
- ...delivering enterprise transformation across cloud, data, software engineering, and artificial intelligence . We work with industry-leading... ...and effectively. We are looking for an Application Security Engineer to join a greenfield digital news platform build for...Remote work
- ...GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and... ...integrate best-fit solutions that mitigate risk. Endpoint Security Engineer General Description We are looking for a skilled Endpoint...Permanent employmentInterim roleCasual workRemote workFlexible hours
- ...Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced Security Engineer to support enterprise cybersecurity operations and IT administrative and operational support services for a federal government client. This position requires an active...Local areaRemote workFlexible hours
- ...on administration instead of care. If you want to help change that, apply below. About the role We are looking for a Security Engineer to help build and strengthen security foundations from the ground up in a fast-moving startup environment, with a primary...Work at officeImmediate startRemote workFlexible hoursShift work
- ...Job Title: Security Engineer Location: On-site 4 days/week in Herndon or remote options Type: Contract Compensation: Work Model: 1099; 1 year, up to 5 years possible Hours: 40 Security Clearance: Public Trust Tier 2 / MBI Monitor systems for...Contract workLocal areaRemote work
$65 - $72 per hour
...recruiter to learn more. Base pay range $65.00/hr - $72.00/hr Software Guidance & Assistance, Inc., (SGA), is searching for a IAM Security Engineer (GCP) for a Contract assignment with one of our premier Regulatory clients in Rockville, MD. Candidate must be in the DMV area...Full timeContract workRemote work2 days per week3 days per week$120k - $150k
...Technology Fast 500 again, but we're just getting started. Location: Remote - the USA How You'll Make an Impact: As a Security Engineer on our Security Squad, you will fix the problems you find. Not file them. You will work inside our AWS environment and inside...Work at officeLocal areaRemote workWork from homeHome office- ...Seeking a mission-driven Endpoint Security Engineer, the full-time position will provide technical security engineering, endpoint device protection, and vulnerability reporting services while ensuring cybersecurity compliance for the Department of Health and Human Services...Full timeRemote work
$138.68k - $182.3k
...operate complex technology ecosystems. We build shared platforms, engineering foundations, and reusable services that enable mission teams... ...that enable teams across Medicare and Medicaid to deliver secure, resilient digital experiences. We're a remote-first team...Contract workImmediate startRemote work- ...Position Summary The Security Engineer is responsible for designing, implementing, and operating the organization’s cybersecurity program from the ground up, with a primary focus on software supply chain security, identity and access management (IAM), permissions architecture...Full timeRemote work
- ...–this isn’t it. The Role You will work very closely with backend, firmware, and data engineers, with R&D and clinical teams, and directly with the Head of Security. We are looking for an experienced Security Engineer who embraces an AI-first culture to enable...Full timeImmediate startRemote workWorldwideFlexible hoursNight shift
$96.68k - $157.59k
...make, what language you speak or what your health is, because everyone deserves great care . Position Summary: The Security Engineer designs and implements digital security that protects vital information. This position evaluates and identifies potential...Full timeLocal areaRemote workRelocation packageShift work- ...QualityWorks Consulting Group Cybersecurity Engineer Job Description Location On-site, U.S. — specific site shared during... ...We're deploying an autonomous software testing platform into a secure government environment spanning AWS GovCloud and on-premise...Contract workImmediate startRemote work
- ...customers, and what they find interesting and motivating to work on. Engineers lead product teams and make product decisions. Teams are... .... Who we're looking for We are looking for an expert security generalist (in EU/UK) to assist with all things security at PostHog...Remote workFlexible hoursNight shift
- ...Security Engineer Company: Ross Stores Work Type: Remote Employment: Full Time Location: US, California, US Seniority: Senior Level Technologies: Threat Intelligence Platforms (TIPs), SIEM, Endpoint Detection, Python, SQL, MITRE ATT&CK, STIX/TAXII, OSINT, IoCs, Threat...Full timeRemote work
- ...Your Role: Security Engineer We're looking for an experienced, hands-on Security Engineer to secure XBOW's product, cloud, and platform as we scale. This is a technical individual contributor role focused on building security into how we design, ship, and operate...Full timeContract workRemote work
- ...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Our prevention-first approach safeguards... ...What you bring to the table ~8+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...Work at officeRemote workWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- dlp security engineer Remote
- application security engineer Remote
- principal security engineer Remote
- security software engineer Remote
- aws cloud security engineer Remote
- sr security engineer Remote
- endpoint security engineer Remote
- offensive security engineer Remote
- sr information security engineer Remote
- security infrastructure engineer Remote

