Director of Security Risk Engineering
$200k - $210kFlywire
Job Description
Job Description
Company Description
Are you ready to trade your job for a journey? Become a FlyMate!
Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, we’re on a mission to deliver the world’s most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.
What more do we need to truly be unstoppable? Perhaps, that is you!
Who we are:
Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments in higher education. We’ve since scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients around the world.
Today we support more than 5,100 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.
With over 1,200 global FlyMates, representing more than 40 nationalities, and in 12 offices world-wide, we’re looking for FlyMates to join the next stage of our journey as we continue to grow.
The Opportunity:
As the Director of Security Risk Engineering, you will serve as a key senior leader working in direct partnership with the CISO to drive, shape, and mature Flywire's global enterprise security infrastructure and systems. In this role, you will bridge the gap between high-level security strategy and tactical engineering execution across six core domains: Application Security, AI Security, Cloud Security, Corporate Security, Security Operations (SecOps), and Red Teaming (Penetration Testing).
In partnership with the internal stakeholder organizations, you will lead the organizational shift from technical recovery to global enterprise operational resilience, managing a highly impactful program that safeguards our global payment rails while fostering a culture of collaboration, innovation, and continuous improvement. A solid working knowledge of all aspects of cloud-native infrastructure, software applications, AI/LLM model development, governance & validation, and automated risk mitigation is required.
Responsibilities:
- Strategic Domain Leadership: Define, implement, and monitor a comprehensive security engineering strategy across Application Security, AI Security, Cloud Security, Corporate Security, Security Operations (SecOps/Incident Detection & Response), and Red Teaming (Penetration Testing), aligning initiatives with global business objectives and emerging financial threats.
- Team Management & Mentorship: Support the CISO to lead and manage the global security engineering organization, including hiring, training, mentoring, performance management, and budget oversight.
- Secure Architecture & Governance: Oversee the design and continuous improvement of secure architecture for systems, cloud infrastructure, networks, and applications, ensuring strict alignment with security best practices.
- Global Cross-Functional Collaboration: Partner with Business, Development, DevOps, Product, Program, Risk/Compliance, and IT leaders to seamlessly integrate security controls into all phases of the engineering and CI/CD lifecycle. Engage actively with external stakeholders, auditors and global regulators on related fronts.
- Advanced Cyber Risk Efficacy: Leverage AI and automated tooling to develop proactive measures, threat intelligence capabilities, and scalable defenses against vulnerabilities across all engineering domains.
- Adversarial / Penetration Testing: Personally adopt an attacker's mindset to identify complex attack chains, logic flaws, and zero-day vulnerabilities within financial platforms and product architectures.
- Incident Response & Operational Resilience: Direct and coordinate responses to critical enterprise security incidents, managing containment, forensic investigation, and rapid remediation efforts alongside SecOps.
- Regulatory Compliance Frameworks: Maintain an information security framework that ensures continuous readiness for strict industry audits and regulatory compliance requirements globally (e.g., NIST CSF 2.0, ISO 27001, PCI-DSS 4.0, DORA).
- Executive & Stakeholder Reporting: Define and maintain metrics that communicate security posture, program progress, and incident risk analysis to the CISO, senior executive leadership, and the Board.
- Innovation & Emerging Tech: Stay ahead of global fintech trends, adopting cutting-edge technologies and methodologies—specifically regarding secure AI deployment—to continuously strengthen the organization's security posture.
Here's What We're Looking For:
- Education: Bachelor's degree required in Computer Science, Information Security, or a related technical field. A Master's degree is highly preferred.
- Core Experience: 12+ years of progressive experience in information security, IT risk management, or cyber defense roles. Must be an active technical practitioner with a proven track record of independently performing manual penetration testing, vulnerability exploitation, detection/response activities, and code reviews across cloud and application infrastructures, without relying solely on automated commercial tools.
- Leadership Experience: 3+ years of proven experience in senior leadership or management roles specifically within a security engineering organization, managing people, cross-functional teams and complex security programs.
- Domain Mastery: In-depth technical knowledge of security architecture, secure cloud infrastructure (e.g., AWS/Azure/GCP), application security principles, and adversarial emulation (Red Teaming).
Highly Preferred Certifications
- Core Security: CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager)
- Governance & Risk: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), or ISACA AAISM™ (Advanced in AI Security Management)
- Hands-On Offensive & AI: OffSec OSAI (Offensive Security AI Red Teamer), OSCP (Offensive Security Certified Professional), OSCE (Offensive Security Certified Expert), or SANS GXPN (GIAC Exploit Researcher and Advanced Penetration Tester)
Skills and Abilities
- Strategic & Tactical Balancer with a Commercial Mindset: Highly hands-on and technically skilled. Strong strategic thinker with the ability to contribute to and translate the CISO’s high-level vision into actionable plans and drive successful execution. Balances technical risk reduction with business enablement, ensuring security infrastructure serves as a competitive advantage that unblocks global revenue and enterprise-client acquisition.
- Executive Presence: Exceptional communication and stakeholder management skills, with a demonstrated ability to articulate complex security risks and technical concepts to both engineering teams and executive management/the Board.
- 2nd-Line Cyber Risk Oversight & Governance: Robust capability to operate as a strategic second-line risk leader. Proven experience defining enterprise security risk appetites, establishing governance frameworks, and executing independent control testing to validate that the first line (engineering/product teams) effectively manages cyber risk.
- Defense-in-Depth Expertise: Comprehensive understanding of modern system security design principles, intrusion prevention, API security, and automated vulnerability management.
- High-Pressure Decision Making: Demonstrated capability to prioritize tasks, maintain cross-functional transparency, and make critical risk decisions under pressure during live security incidents.
- Lateral Influencing / Influential Leadership: Ability to collaborate effectively as a trusted partner across the global organization, promoting a collaborative culture of continuous resilience and security awareness.
What We Offer:
- Competitive compensation
- Employee Stock Purchase Plan (ESPP)
- Competitive time off, including Digital Disconnect and FlyBetter Days to volunteer in a cause you believe in.
- Work with brilliant people globally Learn more about their journeys by checking out #InsideFlywire on social media
- Wellbeing Programs (Mental Health, Wellness, Yoga/Pilates/HIIT Classes) with Global FlyMates
- Be a meaningful part in our success - every FlyMate makes an impact
- Great Talent & Development Programs (Managers Taking Flight – for new or aspiring managers, OneFlywire Career Mobility)
Submit today and get started!
We are excited to get to know you! Throughout our process you can expect to meet with different FlyMates including the Hiring Manager, Peers on the team, the VP of the department, and a skills assessment. Your Talent Acquisition Partner will walk you through the steps and be your “go-to” person for any questions.
The US base salary range for this full-time position is $200,000 - 210,000 and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training.
Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual orientation, genetic disposition or carrier status, veteran status, or any other category protected under applicable national, federal, state or local law.
#LI-Hybrid
$180k - $270k
...An exciting opportunity within the Security Trust and Risk (STAR) team whose mission is to ensure... ...: The Senior Manager, Security Risk Engineering is a senior information security and... ...intelligence capability. Reporting into the Director of Security Trust and Risk, you will...Suggested- ...Locals only Title: Director of Information Security # Open (if applicable): 1... ...Management (IAM), Security Operations, Risk and Compliance, Consulting and Awareness... ...Managers, Architects, Analysts, and Engineers Key Responsibilities and Accountabilities...SuggestedFull timeContract workFor contractorsWork experience placementWork at officeLocal areaShift work
- ...Director of Information Security Duration: Full-Time Location: Remote About BigRio : BigRio... ..., our teams of data architects, engineers, developers, and consultants tackle complex... ...in information security governance, risk management, audit compliance, and...SuggestedFull timeRemote work
$190k - $220k
A leading health tech firm in Boston, MA seeks a Director of Information Security to lead their security engineering and operations. The role involves translating regulatory requirements into effective controls, managing a security team, and partnering with various departments...SuggestedFull time- ...Director of Cybersecurity and Privacy Risk Advisor About the Company Prestigious international law firm Industry Law Practice Type Privately Held About... ...Advisor to spearhead the advancement of its Information Security Governance and Risk functions. The successful...SuggestedWork experience placement
- ...Director of Risk Management Boston, MA 02118 MUST HAVE: Master's degree in healthcare-related field or JD required. CPHRM is required within 6 months of hire, CPPS preferred, CPHQ optional. At least 5 years of direct clinical...
- ...Job Description Position: Director of Risk Management Department: Risk Management Schedule: Full Time The Director of Risk Management oversees the operation of the Risk Management and Patient Safety programs and provides guidance to clinical staff....Full timeWork at officeImmediate start
$78k
Concierge Security Account Manager (Sadie) Cambridge, MA, United States of America $78,000.00 - $78,000.00 Overview Northeast Security... ...Supervisor experience or equivalent field. Concierge Security Director Requirements: Must have three years of Security Account...Full timeShift workNight shiftWeekend workDay shiftAfternoon shift$50 - $60 per hour
A technology firm specializing in AI is seeking a Director of Credit Risk to join their remote team. This role involves improving AI Assistant outputs related to finance and providing expert feedback. Candidates should have advanced degrees in finance and strong analytical...Remote jobHourly payFull timePart timeFlexible hours$153k - $222k
Position Summary The Senior Director for Risk Management leads the strategic direction, operational oversight, and continuous improvement of risk management across a three‑hospital system, including an academic medical center and affiliated hospitals. The role develops...Flexible hours- A leading global medtech company seeks a Director of Product Security to oversee the product security program for its medical devices. The role requires deep technical knowledge, leadership experience, and the ability to navigate regulatory requirements. Candidates should...Remote jobFlexible hours
$104k - $156k
...Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate... ..., and measurable endpoint security foundations that reduce risk while preserving productivity, partnering closely with IT and...Remote work$127.6k - $206.53k
...outcomes. Job Summary The Team Information Security – We’re not your ordinary Information... ...Job Summary As a Staff Network Security Engineer on our Enterprise Security team, you will... ...critical vulnerabilities and data exposure risks in cloud and network environments using a...Full timeWork at officeVisa sponsorshipWork visa- Senior Cash Management and Treasury Manager Location Remote - United States Employment Type Full time Location Type Remote Department Compensation Forward Financing is a financial technology company based in Boston, Massachusetts with team members...Full timeTemporary workWork at officeRemote workWork from homeFlexible hours
$128.7k - $193k
We take play seriously. We’re looking for curious adventurers ready to find their party, fueled by imagination and drive to build what’s never been built before. At Hasbro and Wizards of the Coast, you’ll collaborate with passionate teams to reimagine our iconic brands ...Temporary workInterim role- ...Description: The organization is seeking a visionary Director of Information Security to lead our cybersecurity program and safeguard the university... ...As Director, you will overseecybersecurity operations, risk management, compliance, and awareness programs,ensuring...3 days per week
$15 - $16.6 per hour
Transit Safety & Security Engineering Intern EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive... ...industry. We specialize in the identification of enterprise risks and develop tailored solutions to mitigate those risks to a...Hourly payContract workInternshipWork at officeLocal areaRemote workMonday to FridayFlexible hoursNight shiftWeekend work- ...A technology company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems to train AI systems. You will work remotely and enjoy a flexible schedule while helping shape the future of AI technologies for...Hourly payRemote workFlexible hours
$200k - $250k
...research, construction, and day‑to‑day management of our Alternative Risk Premia (ARP) strategies. Responsibilities Own the full... ...quantitative discipline (mathematics, statistics, physics, financial engineering, computer science, economics, or related field). Advanced...Local area$80k
Manager of Buildings, Grounds, and Security Reports To: Director of Facilities Management and Campus Planning Position Summary The Manager of Buildings, Grounds, and Security reports to and works under the general direction of the Director of Facilities Management and...Full timeTemporary workFor contractorsWork at officeImmediate startRelocation$78k - $113k
...POSITION SUMMARY: The Risk Manager is responsible for the overall management of potential risks and liabilities within Boston Medical Center (BMC) and serves as a role model displaying behaviors that support a strong culture of safety. The Risk Manager responds to...Fixed term contractWork experience placementWork at officeFlexible hours$120.1k - $138.2k
...Risk Manager Under the direction of the Director of Patient Safety & Risk Management, the Risk Manager is a member of the Patient Safety & Risk Management team of the Dana-Farber Cancer Institute's (DFCI) Quality and Patient Safety (QPS) Department is responsible for...Work at office$120k - $125k
Company Overview Founded in 1973, Inter‑Con Security Systems, Inc. is a leading US‑owned security company, providing integrated security solutions to government and commercial customers on four continents. Inter‑Con remains under family ownership and control and operates...Contract workWorldwideFlexible hoursWeekend work- ...Job Description Risk Management Examinations Manager (260002AD) The Division of Banks is seeking an experienced professional to serve as Risk Management Examinations Manager within the Depository Institution Supervision (DIS) Risk Management Unit. This management role...Full timePart timeBank staffPlacement yearWork at officeRemote workFlexible hoursNight shift
$212.7k - $259.1k
...future! WSP is currently initiating a search for a Senior Risk Manager in Boston, MA. Your Impact Provide risk... ...You Are Required Qualifications: ~ Bachelor's Degree in Engineering, Construction Management, Economics, Finance or relevant field...Contract workLocal areaFlexible hours- ...is part of the Application Development Security Framework Program within Bank of America... ...vulnerabilities, and reporting on associated risk. These individuals partner closely with... ...3 of the following areas: security engineering; application architecture; authentication...Work at officeShift workDay shift
$94.3k - $173k
...the global economy is healthy, growing and secure. If you have a passion for rallying... ...products, monitoring progress and managing risk Develop, maintain and build long-term client... ...in finance, economics, accounting, engineering or a related discipline; MBA or MS preferred...Work experience placementSummer holidayFlexible hours- ..., Inc. - A97 Employer: Amazon Web Services, Inc. | Position: Security Engineer II - AMZ27256.1 | Location: Boston, MA Multiple Positions Available... ...information security. Experience with threat modeling or risk identification techniques. Knowledge of system security...Relocation package
$166k - $253k
...in months, not years. ABOUT THE JOB We're seeking a Security Software Engineer to develop novel security tooling for securing embedded... ...using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing...Full timeWork experience placementImmediate start$141.6k - $212.4k
...Senior Security Engineer - Detection and Response IT & Security At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyos brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director of Security Risk Engineering. Be the first to apply!
- head of security Boston, MA
- director of security Boston, MA
- chief security officer Boston, MA
- director of corporate security Boston, MA
- risk management specialist Boston, MA
- senior risk manager Boston, MA
- director of risk management Boston, MA
- enterprise risk manager Boston, MA
- risk management manager Boston, MA
- risk management associate Boston, MA


