Security Engineer
Onramp
Department: Engineering
Location: Remote (US)
Type: Contract-to-hire
Intro: Onramp is hiring a Security Engineer. Remote (US). You'd own and advance the security program for a bitcoin custody platform, lead incident response, build AI-driven continuous pen testing, and still ship product code. Two-thirds security, one-third engineering. If irreversible transactions and small-team ownership sound like your kind of problem: View email address on click.appcast.io
About OnrampOnramp is building the money platform of the future for individuals, businesses, and financial institutions: Bitcoin, dollars, and stablecoins in one place, secured by multi-institution custody and delivered through products people love and APIs institutions build on. We are a FinCEN-registered Money Services Business, run an active SOC 2 Type II program, and work directly with banks, custodians, and financial institutions. Security is not a department here. It is the product.
The RoleYou'll be the day-to-day owner of Onramp's security roadmap, reporting to our Engineering Lead and partnering with our CCO, who owns SOC 2 and compliance. We already run a layered program mapped to our SOC 2 controls; your job is to take it further and keep it ahead of the threat landscape. About two-thirds of your time is security, the rest is product engineering on the same team. On any given week, you might:
- Advance our controls across identity, endpoint, network, email, and browser layers, and handle the change management that gets a small team to adopt them
- Lead incident response: triage, run the response, coordinate with custody partners when needed, and turn every event into a stronger playbook
- Build AI-driven offensive testing: continuous, agent-assisted pen testing and attack simulation that complements our manual program and feeds findings straight to engineering
- Harden the developer pipeline and cloud posture across GitHub, GCP, and Vercel: supply chain scanning, secrets management, IAM least-privilege, required checks on auth, withdrawal, and KYC paths
- Extend custody-specific monitoring and runbooks: fee wallet controls, signing and quorum alerting, address verification
- Refine the verification SOPs sales and ops use against deepfakes, synthetic identity, impersonation, and coerced withdrawals, and train the team on them
- Run access reviews, service account inventory, vendor risk reviews, and SOC 2 evidence as part of the work rather than after it
- Govern our AI-native toolchain with a lightweight pre-adoption review for new connectors and agents
- Ship product code in our TypeScript/Next.js and Elixir/Phoenix services
- 4+ years hands-on security engineering, ideally at an early- or growth-stage fintech, custody, or exchange, where you owned the controls, not just the findings
- You've run incident response end to end and written the post-incident review
- Offensive-minded, with pen testing experience and real interest in making it continuous with AI agents
- A working software engineer on at least one side of a modern stack (React/Next.js and TypeScript, or Elixir/Phoenix, Node, or comparable)
- Deep on identity, endpoint, and cloud security in a Google Workspace, GitHub, GCP, and Vercel environment, and opinionated about right-sizing tooling for a small team
- Fluent in today's threats: AI-driven supply chain attacks, session theft, OAuth phishing, deepfake social engineering
- SOC 2 in practice: you know what an auditor asks for and build evidence into the workflow
- Insanely AI-native, with strong views on securing agents without adding friction
- A clear writer of runbooks, threat models, and async updates people actually read
- Calm in an incident, direct in a review, comfortable with early-stage ambiguity and pace
- You don't need Bitcoin protocol experience to apply. You do need to be curious about it and willing to go deep on custody fast.
Bitcoin custody experience (multisig, PSBT, key-agent architectures), Elixir/Phoenix, agentic security tooling, GCP Security Command Center or Wiz, Terraform, OSCP or equivalent, CTFs or public disclosures.
Why This Role, Why Now- Ownership: the program, standards, and tooling are yours to drive as we scale
- Stakes: we custody bitcoin for HNW clients, RIAs, and institutions. Withdrawals are irreversible
- The AI moment: budget and mandate to push AI-native security on both the defensive and offensive side
- Range: security engineer and product engineer in one seat, on a small team where you see the whole system
Remote-first (US), high-trust, low-ceremony. Small pods, direct communication, written culture, biweekly all-hands with live AI demos. We care about output, not hours.
This role starts as a remote contract with a clear path to full-time and equity once fit is confirmed on both sides.
The ProcessIntro call, technical conversation with the Engineering Lead and CCO, a working session (bring your AI toolkit), founder conversation, offer.
What We Offer- High agency and first-principles thinkers
- Flat structure, builder-first execution culture
- Mission-driven: Bitcoin only, no altcoins
- Collaborative, transparent, and low-ego
- Competitive compensation, with meaningful equity on conversion to full-time
Send your resume and a short intro video to View email address on click.appcast.io covering:
- A security control or program you owned end to end and how you got a team to adopt it
- An incident you helped run and what changed because of it
- One AI-leveraged workflow you've built or wished you had
- Why Onramp
Email subject: Application — Security Engineer
$73.9k - $110.8k
...our team to Bring the Future! Job Purpose The Honda Development and Manufacturing Production Engineering team is responsible for the operational technology security of the manufacturing environment. The Operational Technology Security Cyber Prevention Engineer works...SuggestedFull timeTemporary workWork experience placementRelocation packageFlexible hours$82.8k - $103.5k
...our team to Bring the Future! Job Purpose The Honda Development and Manufacturing Production Engineering team is responsible for the operational technology security of the manufacturing environment. The OT Security Site Lead works across multiple technical and...SuggestedFull timeTemporary workWork experience placementH1bWork visaRelocation packageFlexible hours- ...business development efforts for upcoming opportunities with the U.S. Department of State’s Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining our understanding of the client landscape, validating...SuggestedContract workWork at office
$237.6k - $297k
We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the...SuggestedFull time$10 per hour
...impact business, society, and the environment? Come join us.All security disciplines work under the umbrella of the combined PSI (... ...Infrastructure) team: we build the paved path and tooling that hundreds of engineers around the world rely on every day to ship. Corporate Security...SuggestedWork at officeImmediate startRelocationRelocation packageFlexible hours$175.1k - $236.9k
...checkout retail, we push the boundaries of technology in every direction using the globe’s largest AWS deployment.As a Senior Security Engineer, you will collaborate with software development teams to ensure we keep our customers safe while developing these novel services...InternshipFlexible hours$200k - $220k
...employees, their laptops, their identities, and the SaaS apps they rely on every day.We are looking for a hands-on Corporate Security Engineer to own and improve the technical controls that keep our workforce and corporate environment safe. This is a security engineering...Work at officeLocal area- ...following job description:Designs and implements application security capabilities across the software development lifecycle, including... ...requirements. Collaborates closely with developers, DevOps engineers, and security teams to identify, assess, and remediate security...Full timePart timeShift workDay shift
$183k - $247.6k
...part of this goal is achieved through the work of our dedicated security teams. Our attack surface spans over consumer devices, mobile... ...and apply appropriate technologies while following security engineering best practices. You are also expected to mentor more junior engineers...InternshipLocal areaFlexible hours$159.3k - $202.4k
Amazon Healthcare Security's (HealthSec) team is hiring a Security Engineer II to protect Amazon One Medical's network infrastructure. As a team lead you will assess security risks, develop mitigation strategies, and integrate security controls into rapidly evolving operational...Flexible hours$136k - $184k
Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively...InternshipFlexible hoursShift work$178.4k - $226.7k
The Senior Security Engineer is a senior individual contributor responsible for independently driving security initiatives across multiple services and teams. This role requires deep technical expertise and leadership in application security, threat modeling, and secure...InternshipFlexible hours$178.4k - $226.7k
AWS Security is on the innovation of many security issues for a wide variety of platforms and technologies including cloud services, Internet... ...grows.AWS Security is looking for a Sr. Application Security Engineer to help validate that our services, applications, and websites...InternshipFlexible hours$178.4k - $226.7k
Come join Earth's most customer-centric company!Amazon is looking for an AI Security Engineer with strong insight and passion for security to ensure our AI applications are designed and built to the highest standards. Your mission is to secure the AI experiences of hundreds...InternshipFlexible hours$159.3k - $212.8k
...to no-checkout retail, we push the boundaries of technology in every direction using the globe’s largest AWS deployment.As a Security Engineer, you will collaborate with software development teams to ensure we keep our customers safe while developing these novel services...InternshipFlexible hours$159.3k - $212.8k
...players and developers to the games and communities they love, ATG Security is at the center of customer, builder and content journeys. Our... ....Key job responsibilitiesAs a successful Application Security Engineer within ATG Security, you will be seen as a leader and play a...Temporary workInternshipFlexible hours$159.3k - $202.4k
Amazon Healthcare Security's (HealthSec) Detections & Monitoring team is hiring a Security Engineer II to design, build, and operate detection and monitoring capabilities that protect Amazon Health Services (AHS) across cloud infrastructure, applications, endpoints, and...Flexible hours$165k - $242k
...CRWV) in March 2025. Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people... ..., this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$174k - $252k
Identify security issues and implement and design security controls, tools, and services to improve security systems and processes.Drive... ...or threat modeling.5 years of experience with security engineering, computer and network security and security protocols.5 years...$159.3k - $202.4k
...communities around the world.Have you wanted an opportunity to secure an advanced satellite based broadband telecom service? The Leo... ...mentor builders who aspire to become security advocates & security engineers via 1-1 sessions & office hours.You will assist Red Teams in...Permanent employmentInternshipWork at officeFlexible hours$174k - $252k
Identify security issues and implement and design security controls, tools, and services to improve security systems and processes.Create... ...or threat modeling.5 years of experience with security engineering, computer and network security and security protocols.5 years...Local area- ...review the following job description:• This team uses automated API security tools like Akamai, Salt Security and ReadyAPI tools to identify vulnerabilities in running APIs.• This Senior Security Engineer will be experienced with API development and/or API security...Full timePart timeShift workDay shift
$209k - $313k
...in addition to Bitmoji, Saturn, and other digital services.Snap Security teams protect the trust and safety of our global community by... ...execute with privacy at the forefront.We’re looking for a Security Engineer to join our Offensive Security Team! What you’ll do:Design,...Full timeLive inWork at officeLocal area$159.3k - $212.8k
The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions...InternshipFlexible hours$135.2k - $185.9k
...achievements, the knowledge you've gained, and the personal interests that shape who you are.Position OverviewZelis is seeking a Security Engineer - Email Security to support and enhance the security, reliability, and protection of our enterprise email environment. This...Full timeWork at officeLocal areaVisa sponsorshipFlexible hours$159.3k - $202.4k
The Ads Security organization at Amazon is dedicated to creating innovative technical solutions that detect, assess, and mitigate security... ...are inherently secure. We are seeking a talented Security Engineer to join our team, where you will have the opportunity to contribute...Flexible hours$159.3k - $202.4k
We're looking for a Security Engineer to join the team that secures the foundational compute and networking systems powering AWS — the systems behind EC2, Nitro, EBS, VPC, and more.You'll work directly with service teams across some of the most critical systems in cloud...InternshipFlexible hours$183k - $247.6k
...underserved communities around the world.We are a specialized security team that sits inside a global satellite communications business... ...mitigation plans- Experience in threat hunting, detection engineering, or product/application security, including moving from a security...Permanent employmentLocal areaImmediate startFlexible hoursShift work$296k - $395k
...designated work from home day is currently Tuesday.About the RoleLambda Security protects some of the world's most valuable digital assets:... ...apply and help us understand your readiness for a Sr. Security Engineer role. Your application is not a waste of our time.What You’ll...Work at officeLocal areaRemote workWork from homeFlexible hours$159.3k - $212.8k
The ideal candidate will have a broad understanding of proactive security, have past experience leading security assessments, and have the ability to work with product and engineering teams in designing secure systems. In this role, you will conduct secure design reviews...InternshipFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- application security engineer United States
- principal security engineer United States
- senior cloud security engineer United States
- security operations engineer United States
- security engineer intern United States
- security support engineer United States
- associate security engineer United States
- azure security engineer United States
- junior security engineer United States
- cloud security engineer United States


