API Security Engineer
$110k - $186kBentoBox
API Security Engineer
Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.
About your role:
You will help build a best-in-class API security program designed for the speed of modern financial services and shape how APIs are secured end-to-end, design through runtime, using cutting-edge protection technologies and analytics, partnering closely with top engineers across product, platform, and security. You will help turn API telemetry into actionable intelligence, reduce risk at scale, and raise the bar for secure engineering across the organization. As an API Security Engineer, you will focus on protecting critical API ecosystems by combining secure-by-design guidance, runtime protections, automation, and data-driven governance. You will be hands-on with modern API security capabilities (discovery, posture, threat detection, abuse prevention, and response) and help integrate them into the DevSecOps lifecycle so teams can move fast without compromising trust.
What you will do:
- Runtime API protection: Implement and tune runtime controls (e.g., behavioral detection, anomaly and abuse prevention, bot defense, schema enforcement, mTLS/OAuth validation, rate limiting, and threat response) across API gateways, service mesh, and edge layers.
- Secure API design guidance: Partner with engineering teams to define and promote secure API patterns (authentication/authorization, input validation, error handling, pagination, idempotency, versioning, and least-privilege access). Provide practical guidance aligned to OWASP API Security Top 10 and modern design standards (Open API/JSON Schema).
- Automation and integration: Build automation that embeds API security into CI/CD (policy-as-code, automated checks against Open API specs, secrets scanning, SAST/DAST/API testing, and runtime-to-ticket workflows). Reduce friction through reusable tooling and self-service guardrails.
- Data analytics and insights: Develop dashboards and analytics using API telemetry and security findings to measure risk, adoption, control effectiveness, and program outcomes. Translate signals into prioritized actions for engineering and leadership.
- API security governance: Help define governance for API inventories, ownership, classification, security requirements, exception handling, and control validation. Drive consistent standards across teams while enabling delivery velocity.
- DevSecOps lifecycle partnership: Work with product and platform teams to integrate security requirements into backlog planning, threat modeling, design reviews, testing, release readiness, and incident response.
- Framework alignment (financial services): Map controls and program outcomes to relevant industry frameworks and expectations (e.g., NIST, ISO 27001, PCI DSS, FAPI, and OWASP guidance). Support audit readiness through clear control documentation and evidence automation.
- Continuous improvement and innovation: Evaluate emerging technologies and techniques for API discovery, posture management, and runtime detection. Pilot, measure, and scale what works.
What you will need to have:
- 5+ years related IT and cyber protection experience desired.
- Strong foundation in API security concepts: authN/authZ (OAuth2/OIDC, JWT), session/token handling, scopes/claims, rate limiting, schema validation, and common API abuse patterns.
- Practical experience with runtime protection in one or more of API gateways, WAF/WAAP, service mesh, ingress controllers, or specialized API security platforms.
- Experience building automation in CI/CD and cloud-native environments (policy-as-code, scripting, pipelines, Git-based workflows).
- Ability to use data and telemetry (logs, traces, metrics) to detect issues, tell a clear story, and drive priorities and working knowledge of secure software development and DevSecOps practices, and the ability to influence engineering outcomes through partnerships.
- Comfort collaborating across security, SRE, platform, and application teams with clear communication, pragmatic decision-making, and strong follow-through.
- Expert knowledge of and experience with maintaining cyber technologies that can protect operational API systems, such as Traceable, Salt Security, NoName.
- Bachelor's degree in computer science, or a relevant field, or an equivalent combination of education, work, and/or military experience.
What would be great to have:
- Experience with Open API tooling, API testing, fuzzing, and contract testing.
- Familiarity with threat modeling approaches and abuse-case analysis for APIs.
- Experience aligning security controls to financial industry expectations and producing evidence that stands up to audit scrutiny.
- CISSP or other professional cyber certification desirable.
How you'll work:
- This role is on-site Monday through Friday. Fiserv considers in-person collaboration to be an essential part of this role as in-person office experiences help you with your overall onboarding experience and leads to stronger productivity.
Travel:
- Approximately 10% travel off-site or to other office locations is expected.
Sponsorship:
- You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.
Salary Range: $110,000.00 - $186,000.00
These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.
It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.
For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company's sole discretion.
Thank you for considering employment with Fiserv. Please:
- Apply using your legal name
- Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).
Our commitment to Equal Opportunity:
Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.
If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.
Note to agencies:
Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.
Warning about fake job posts:
Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.
$110k - $186k
...one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile... ...scale, come make a difference at Fiserv. Job Title API Security Engineer About your role: You will help build a best-in-class...SuggestedContract workTemporary workH1bWork at officeMonday to Friday- ...NAVA Software solutions is looking for a Security Engineer - Ping Details: Security Engineer - Ping Location: Frisco,... ...level Integration experience with SAML, OpenID Connect, Oauth. Ability to use Ping Federate and Ping Access admin API....Suggested
- Security Engineer Job ID: 2023-12074 Job Location: Alpharetta, GA (preferred), Frisco, TX (#2), Berkeley Heights, NJ (#3) Job Travel Location(s): # Positions: 1 Employment Type: W2 Candidate Constraints: Duration:Long Term # of Layers:0 Work Eligibility:All Work...Suggested
$90k - $158.4k
...one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app... ...scale, come make a difference at Fiserv. Job Title Senior API Engineer - Advisor I About your role: We are seeking a Software...SuggestedTemporary workWork experience placementH1bWork at officeMonday to Friday$90k - $158.4k
...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay... ...will lead in-depth assessments of web, API, mobile, and thick-client applications to... ...a culture of application security engineering and secure SDLC integration. Responsibilities...SuggestedTemporary workH1bWork at officeMonday to Friday$165k - $242k
...Learn more at What You'll Do: The Security Foundations organization at CoreWeave... ...About the Role: As a Senior Security Engineer on the PKI & Secrets team, you will shape... ...cases, including envelope encryption and KMS API design. Deliver PKI-based solutions...Permanent employmentTemporary workCasual workWork at officeFlexible hours- ...Job Title: Cloud Security Engineer Job Location: Berkeley Heights, NJ, Omaha, NE, Alpharetta, GA, Marietta, GA (100% Onsite - local only, no relocation) # Positions: 1 Employment Type: FTE Key Technology: Azure, IAM, Security Job Responsibilities...Work at officeLocal areaRelocation
$165k - $242k
...Offensive Security Engineer Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$188k - $275k
...publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at What You'll Do: We are seeking a Staff Network Security Engineer to architect the defense of our global backbone, edge, and massive-scale GPU clusters. We are looking for a builder, not an administrator...Permanent employmentTemporary workCasual workWork at officeFlexible hours- A technology solutions company is seeking a Security Engineer to architect and maintain build and deployment automation specifically for Azure. The role involves driving innovation in CI/CD efficiency and offering expertise across an enterprise environment. Candidates should...
$172.83k
...Security Engineer Purpose of the role To develop, implement and maintain solutions that support the safeguarding of the banks systems and sensitive information. Accountabilities Provision of subject matter expertise on security systems and engineering patterns...Hourly payRemote work- ...Armis Security Consultant - Pharma R&D Laboratory & OT/IoT Environments The ideal candidate will bring hands-on experience with... ...Bachelor's degree in computer science, Information Security, Engineering, or a related field (or equivalent practical experience)....
- ...ADP is looking for a senior Python API engineer. -AWS preferred but any cloud experience -senior in API development Plus: working with genAI or graphQL Required Skills : senior python api developer AWS previous ADP experience Basic Qualification : Additional...Local area
- ...Job title: Azure Cloud Security Engineer Location: Berkeley Heights, NJ Duration: 12+ Months Contract to hire Job Description Are you passionate about securing cloud environments and driving innovation? We're seeking an experienced...Contract work
$122k - $163k
...Learn more at What You'll Do CoreWeave is seeking a Security Engineer to spearhead the design, development, and maintenance of our rapidly... ..., and Synergis roles, as well as failover configurations and API/SDK integrations ~ Strong knowledge of Windows Server...Permanent employmentTemporary workCasual workWork at officeFlexible hours- ...management skills ~ Practical knowledge of Industry standard Network/Security best practices & solutions ~ Excellent diagnostic skills in... ..., VxRails) Experience with Automation Toolsets, Scripting & Config Templating (GitLab, Python, Jinja, Netbox, Vendor API's)...
- ...Senior Full Stack Security Engineer Looking for a Senior Full Stack Security Engineer who is passionate about designing and building secure... ...understanding of Request/Response headers for web and Restful api calls Ability to explain in detail any of the OWASP top 10...
- ...solutions provider in Berkeley Heights is seeking an experienced QA Engineer to help develop and execute test plans ensuring the delivery of... ...teams and requires a strong understanding of Agile methodologies, APIs, and testing strategies. #J-18808-Ljbffr Highbrow LLC
- A technology company based in New Jersey is looking for a QA Engineer with over 9 years of experience. The role requires strong skills in... ...the testing processes. Candidates should also have experience in API testing and a solid understanding of Agile methodologies. A...
$150.55k
What will you be doing? Barclays Services LLC seeks API Governance Engineer in Whippany, NJ (multiple positions available): Onboard APIs on... ...configure authentication mechanisms such as OAuth and SAML. Ensure secure API access and compliance with organizational policies....Hourly payRemote work- Fiserv, a leader in Fintech and payments, is seeking a Data Protection Security Engineer in Berkeley Heights, New Jersey. The role requires designing and implementing security controls to protect sensitive data. Candidates should have over 6 years of cybersecurity experience...
$128k - $216k
...Cyber Network Engineer Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments... ...to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app,...Full timeContract workTemporary workH1b$100k - $150k
Bright Vision Technologies is seeking a Network Automation Engineer to join their fully remote team. The role involves designing and developing... ...network automation solutions using Python and modern network APIs, requiring 5+ years of experience and a bachelor's degree in a...Remote job- ...and colleagues alike. Job Summary Connell Foley LLP, one of New Jersey’s largest law firms, is seeking a Network and Security Engineer. This role provides advanced technical and engineering experience to support network and security solutions throughout the firm...
- A leading technology firm is seeking a Cloud Security Engineer to secure a government client's cloud environment. The ideal candidate will have extensive Azure experience and cyber security skills, with responsibilities including implementing security controls and enabling...Remote job
$151k - $226.25k
...Title: Senior Application Security Engineer Location: San Jose, CA / Morristown, NJ (hybrid) Reports To: Sr. Manager, Cybersecurity... ...authoritative guidance on secure design, authentication, identity flows, API security, and cloud-native application risks. Act as a...Temporary workFlexible hours- Sodexo in Piscataway Township, NJ, is seeking a Lead Infrastructure Security Engineer to oversee security technology services for a key manufacturing client. This role involves leading security projects, establishing operational procedures, and providing technical guidance...
$165k - $242k
...Senior Security Engineer II, Cloud Security Livingon, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to...Permanent employmentTemporary workCasual workWork at officeFlexible hours$21 - $26 per hour
Job Overview Pay Range: $21hr - $26hr Experience should include security policy development, security education, network penetration testing. Application vulnerability assessments, risk analysis and compliance testing.$139k - $204k
...Counter threat actors at a scale most practitioners never encounter - and build the capabilities to stay left of boom Work alongside security partners who hold a high bar and expect you to raise it Shape how CoreWeave finds and responds to the threats that matter most,...Permanent employmentTemporary workCasual workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to API Security Engineer. Be the first to apply!
- sr information security engineer Berkeley Heights, NJ
- senior application security engineer Berkeley Heights, NJ
- aws cloud security engineer Berkeley Heights, NJ
- senior cloud security engineer Berkeley Heights, NJ
- IT security engineer Berkeley Heights, NJ
- information technology security engineer Berkeley Heights, NJ
- network security engineer Berkeley Heights, NJ
- security engineer Berkeley Heights, NJ
- senior security operations engineer Berkeley Heights, NJ
- sr information security engineer


