API Security Engineer
$128k - $216kFiserv
Calling all innovators - find your future at Fiserv.
We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.
Job Title
API Security Engineer
What does a successful API Security Engineer do at Fiserv?
Help build a best-in-class API security program designed for the speed of modern financial services. This role is an opportunity to shape how APIs are secured end-to-end, design through runtime, using cutting-edge protection technologies and analytics, partnering closely with top engineers across product, platform, and security. You will help turn API telemetry into actionable intelligence, reduce risk at scale, and raise the bar for secure engineering across the
organization. As an API Security Engineer, you will focus on protecting critical API ecosystems by combining secure-by-design guidance, runtime protections, automation, and data-driven governance. You will be hands-on with modern API security capabilities (discovery, posture, threat detection, abuse prevention, and response) and help integrate them into the DevSecOps lifecycle so teams can move fast without compromising trust. You'll have the space and support
to help build a program that is measurable, automated, and resilient-one that protects customers and enables teams to deliver with confidence. If you enjoy solving tough security problems, working shoulder-to-shoulder with strong engineers, and turning complex signals into simple, scalable controls, this is the role for you.
What you'll do:
Runtime API protection: Implement and tune runtime controls (e.g., behavioral detection anomaly and abuse prevention, bot defense, schema enforcement, mTLS/OAuth validation, rate limiting, and threat response) across API gateways, service mesh, and edge layers.
Secure API design guidance: Partner with engineering teams to define and promote secure API patterns (authentication/authorization, input validation, error handling, pagination, idempotency, versioning, and least-privilege access). Provide practical guidance aligned to OWASP API Security Top 10 and modern design standards (OpenAPI/JSON Schema).
Automation and integration: Build automation that embeds API security into CI/CD (policy-as[1]code, automated checks against OpenAPI specs, secrets scanning, SAST/DAST/API testing, and runtime-to-ticket workflows). Reduce friction through reusable tooling and self-service guardrails.
Data analytics and insights: Develop dashboards and analytics using API telemetry and security findings to measure risk, adoption, control effectiveness, and program outcomes.
Translate signals into prioritized actions for engineering and leadership.
API security governance: Help define governance for API inventories, ownership,
classification, security requirements, exception handling, and control validation. Drive consistent standards across teams while enabling delivery velocity.
DevSecOps lifecycle partnership: Work with product and platform teams to integrate security requirements into backlog planning, threat modeling, design reviews, testing, release readiness and incident response.
Framework alignment (financial services): Map controls and program outcomes to relevant industry frameworks and expectations (e.g., NIST, ISO 27001, PCI DSS, FAPI, and OWASP guidance).
Support audit readiness through clear control documentation and evidence automation.
Continuous improvement and innovation: Evaluate emerging technologies and technique for API discovery, posture management, and runtime detection.
Pilot, measure, and scale what works.
Experience you'll need to have:
5+ years related IT and cyber protection experience desired.
MS preferred or bachelor's degree with equivalent work experience
Strong foundation in API security concepts: authN/authZ (OAuth2/OIDC, JWT), session/token handling, scopes/claims, rate limiting, schema validation, and common API abuse patterns.
Practical experience with runtime protection in one or more of: API gateways, WAF/WAAP, service mesh, ingress controllers, or specialized API security platforms.
Experience building automation in CI/CD and cloud-native environments (policy-as-code, scripting, pipelines, Git-based workflows).
Ability to use data and telemetry (logs, traces, metrics) to detect issues, tell a clear story, and drive priorities.
Working knowledge of secure software development and DevSecOps practices, and the ability to influence engineering outcomes through partnerships.
Comfort collaborating across security, SRE, platform, and application teams-clear communication, pragmatic decision-making, and strong follow-through.
Experience communicating with CISO/CIO/CTO level leadership.
CISSP or other professional cyber certification desirable
Expert knowledge of and experience with maintaining cyber technologies that can protect operational API systems, such as:
o Traceable
o Salt Security
o NoName
What would be great to have:
Experience with OpenAPI tooling, API testing, fuzzing, and contract testing.
Familiarity with threat modeling approaches and abuse-case analysis for APIs.
Experience aligning security controls to financial industry expectations and producing evidence that stands up to audit scrutiny
Sponsorship:
You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.
Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.
If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.
Note to agencies: Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.
Warning about fake job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.
Salary Range
$128,000.00 - $216,000.00
These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.
It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.
For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company's sole discretion.
Thank you for considering employment with Fiserv. Please:
Apply using your legal name
Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).
Our commitment to Equal Opportunity:
Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.
If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io . Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.
Note to agencies:
Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.
Warning about fake job posts:
Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.
- ...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay... ...role:You will help build a best-in-class API security program designed for the speed of... ...and analytics, partnering closely with top engineers across product, platform, and security....SuggestedFull timeContract workTemporary workH1bWork at officeMonday to Friday
- ...NAVA Software is looking for a Security Engineer Details: Security Engineer Location: Alpharetta, GA, Frisco, TX, Berkeley... ...Integration experience with SAML, OpenID Connect, Oauth ~ Ability to use Ping Federate and Ping Access admin API...SuggestedFull time
$135k - $155k
Job DescriptionWe are seeking an experienced Identity Security Engineer to help design, implement, and mature enterprise identity security capabilities... ...and technologies such as SAML, OIDC/OAuth, SCIM, REST APIs, API authentication methods, webhooks, and automation...SuggestedTemporary workWork at officeRemote work$145k - $175k
Job DescriptionWe are seeking an experienced Security Operations Engineer to help advance the next generation of security capabilities across our enterprise... ..., model access governance, prompt injection mitigation, API security, and monitoring of AI-generated outputs.Monitor...SuggestedTemporary workWork at officeRemote work$105.4k - $207.8k
Position Summary Cisco Network Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business is... ...State Transfer application programming interfaces (REST APIs), Ansible, Terraform, or Python for policy provisioning, compliance...SuggestedWork experience placementLocal areaVisa sponsorship$109k - $182.4k
...AI - Cyber Security Engineer - IICalling all innovators - find your future at Fiserv.We're Fiserv, a global leader in Fintech and payments,... ...(MLOps) frameworks, and application programming interfaces (APIs).8+ years of experience working with cybersecurity domains including...Temporary workH1bWork at officeMonday to Friday- Job ID: 28136329Reference Number: 26-00448Title: AWS Engineer (API Integration)Location: Iselin, NJ, 08830Posted Date: 2026-05-06Contact: Deepak KumarContact Email: ****@*****.*** Phone: (***) ***-****Company: HAN Staffing We are looking for an experienced...
- Job ID: 25634493Reference Number: 25-00572Title: IAM Security EngineerLocation: Iselin, NJ, 08830Posted Date: 2025-06-03Contact: Deepak... ...) 795-0621Company: HAN Staffing Job Title: Senior IAM Security Engineer Location: Jersey City, NJ (1 Pershing Plaza, Jersey City, NJ) -...
- We are seeking a Senior Security Automation Engineer to design, build, and scale enterprise-grade security automation that reduces manual effort, suppresses... ...and response patterns ~ Experience working with APIs, services, and distributed systems ~ Ability to design automation...Temporary workRemote work
- ...to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app,... ...TitleData Security EngineerAbout your role:As a Data Security Engineer, you design, implement, and enhance security controls that protect...Full timeTemporary workH1bWork at officeMonday to Friday
$122k - $179k
...March 2025. Learn more at .What You’ll DoCoreWeave is seeking a Security Engineer to spearhead the design, deployment, and integration of... ...alarms, events, and event-to-actions within Security Desk via API/SDK, syslog, or middleware as required.Deploy and tune Bastille...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$120.5k - $231k
...Want in? Join the #VTeamLife.What you'll be doing:As a Principal Engineer, you will be a key individual contributor within our... ...integration with upstream data producers.Developing and maintaining API integrations to support real-time and scheduled data exchange between...Full timeTemporary workPart timeWork experience placementWork at officeImmediate startWork from homeShift work3 days per week- ...Job Title: Cloud Security Engineer Location: Iselin, NJ - Hybrid Job Description: We are looking for a hands-on Cloud Security Engineer to join our team supporting Azure cloud security and API security initiatives. Key Requirements: Strong hands...
- Job DescriptionADP is Hiring a Lead Cloud Security Engineer - KubernetesUnlock Your Career Potential: Global Security Organization at ADP.Do you... ...(Python, Ansible, or PowerShell) and interacting with API’sGreat understanding and working experience in network security...Work experience placement
- Job DescriptionADP is Hiring a Lead Security Platform EngineerUnlock Your Career Potential:... ...clients.SummaryAs a Lead Security Platform Engineer, you will join a highly skilled team... ...Python development experienceExperience with APIs, automation, and enterprise...
$86.7k - $170.9k
Position Summary Integration Engineer II, API Developer with Integration Tool Experience - AI & Engineering/Engineering as a Service... ...systems for reliable, consistent data exchangeImplement API security (OAuth2, JWT, API keys), versioning, rate limiting, and robust...Local areaFlexible hours$105.4k - $207.8k
Position Summary Zscaler Network Security Engineer / Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business... ...Splunk, Microsoft Sentinel, Palo Alto XSOAR) via log streaming, API connectors, or syslog for threat detection and incident...Work experience placementLocal area$165k - $242k
...into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .Senior Security Engineer, SOARWhat You’ll Do:CoreWeave’s Detection and Response team is responsible for empowering and deploying decisive action across...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$139k - $204k
...Counter threat actors at a scale most practitioners never encounter — and build the capabilities to stay left of boomWork alongside security partners who hold a high bar and expect you to raise itShape how CoreWeave finds and responds to the threats that matter most,...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$164k - $242k
...Nasdaq: CRWV) in March 2025. Learn more at .What You’ll Do:CoreWeave’s Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect...Permanent employmentFull timeTemporary workCasual workWork at officeRemote workFlexible hours$134.5k - $265.1k
...confidence, and proactively manage their security posture.Recruiting for this role ends on... ...you will do:As a Cyber Forward Deployed Engineer (FDE) Sr Consultant, you will drive delivery... ...Experience building and integrating REST APIs, microservices, and serverless...Local areaVisa sponsorship- ...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay... ...technologies such as AI/ML, Kubernetes, APIs, IoT, and data platforms. Architect... ...on security tooling and partner across engineering and architecture teams to embed security...Full timeTemporary workH1bWork at officeMonday to Friday
$165k - $242k
...Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .What You’ll DoAs a Cloud Security Engineer at CoreWeave, you'll drive the security related efforts related to the design, implementation, and maintenance of secure cloud...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours- ...Application Security (AppSec) Engineer $60/hr W2 Onsite - Maryland Heights, MO Cog Kit BGV must be cleared to start What are the top 3 skills... ...SDLC / DevSecOps • SAST, DAST, IAST, SCA • Web, Mobile & API Security Testing • Manual Penetration Testing & Business Logic...Shift work
$153k - $204k
...publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .What You'll Do:The Cloud Platform API team builds the API platform and the tooling that every other engineering team at CoreWeave uses to ship and consume APIs. This role sits with the group that owns...Permanent employmentFull timeContract workTemporary workCasual workWork at officeFlexible hours- Job ID: 19494272Reference Number: 23-00686Title: API Automation EngineerLocation: Iselin, NJ, 08830Posted Date: 2023-04-07Company: HAN Staffing JOB DESCRIPTION " 5+ yrs. of experience in test automation framework, tools and techniques Must be proficient in Java Must...Local area
$101k - $194k
...communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife.Verizon is looking for a Security Engineer to join a specialized team responsible for the deployment, scaling, and operational health of our distributed intrusion detection...Full timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week$188k - $275k
...CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .What You’ll Do:We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave’s Vulnerability Management program. You will design and implement scalable...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$134.5k - $265.1k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...combines deep technical ownership with engineering expertise, governance, and stakeholder management... ...Entra ID, Ping Identity, ForgeRock), API gateways, microservices, and data...Local areaVisa sponsorship- ...Job Title Skill sets: Security, Routing and Switching Cisco SDWAN, Security switched and routed data networks, Routing protocols (BGP, OSPF, EIGRP, RIP) and a broad range of related technologies. Sound experience in designing, Implementing, and supporting medium -...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to API Security Engineer. Be the first to apply!

