Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

API Security Engineer

$110k - $186k

BentoBox

API Security Engineer

Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

About your role:

You will help build a best-in-class API security program designed for the speed of modern financial services and shape how APIs are secured end-to-end, design through runtime, using cutting-edge protection technologies and analytics, partnering closely with top engineers across product, platform, and security. You will help turn API telemetry into actionable intelligence, reduce risk at scale, and raise the bar for secure engineering across the organization. As an API Security Engineer, you will focus on protecting critical API ecosystems by combining secure-by-design guidance, runtime protections, automation, and data-driven governance. You will be hands-on with modern API security capabilities (discovery, posture, threat detection, abuse prevention, and response) and help integrate them into the DevSecOps lifecycle so teams can move fast without compromising trust.

What you will do:

  • Runtime API protection: Implement and tune runtime controls (e.g., behavioral detection, anomaly and abuse prevention, bot defense, schema enforcement, mTLS/OAuth validation, rate limiting, and threat response) across API gateways, service mesh, and edge layers.
  • Secure API design guidance: Partner with engineering teams to define and promote secure API patterns (authentication/authorization, input validation, error handling, pagination, idempotency, versioning, and least-privilege access). Provide practical guidance aligned to OWASP API Security Top 10 and modern design standards (Open API/JSON Schema).
  • Automation and integration: Build automation that embeds API security into CI/CD (policy-as-code, automated checks against Open API specs, secrets scanning, SAST/DAST/API testing, and runtime-to-ticket workflows). Reduce friction through reusable tooling and self-service guardrails.
  • Data analytics and insights: Develop dashboards and analytics using API telemetry and security findings to measure risk, adoption, control effectiveness, and program outcomes. Translate signals into prioritized actions for engineering and leadership.
  • API security governance: Help define governance for API inventories, ownership, classification, security requirements, exception handling, and control validation. Drive consistent standards across teams while enabling delivery velocity.
  • DevSecOps lifecycle partnership: Work with product and platform teams to integrate security requirements into backlog planning, threat modeling, design reviews, testing, release readiness, and incident response.
  • Framework alignment (financial services): Map controls and program outcomes to relevant industry frameworks and expectations (e.g., NIST, ISO 27001, PCI DSS, FAPI, and OWASP guidance). Support audit readiness through clear control documentation and evidence automation.
  • Continuous improvement and innovation: Evaluate emerging technologies and techniques for API discovery, posture management, and runtime detection. Pilot, measure, and scale what works.

What you will need to have:

  • 5+ years related IT and cyber protection experience desired.
  • Strong foundation in API security concepts: authN/authZ (OAuth2/OIDC, JWT), session/token handling, scopes/claims, rate limiting, schema validation, and common API abuse patterns.
  • Practical experience with runtime protection in one or more of API gateways, WAF/WAAP, service mesh, ingress controllers, or specialized API security platforms.
  • Experience building automation in CI/CD and cloud-native environments (policy-as-code, scripting, pipelines, Git-based workflows).
  • Ability to use data and telemetry (logs, traces, metrics) to detect issues, tell a clear story, and drive priorities and working knowledge of secure software development and DevSecOps practices, and the ability to influence engineering outcomes through partnerships.
  • Comfort collaborating across security, SRE, platform, and application teams with clear communication, pragmatic decision-making, and strong follow-through.
  • Expert knowledge of and experience with maintaining cyber technologies that can protect operational API systems, such as:
    • Traceable
    • Salt Security
    • NoName
  • Bachelor's degree in computer science, or a relevant field, or an equivalent combination of education, work, and/or military experience

What would be great to have:

  • Experience with Open API tooling, API testing, fuzzing, and contract testing.
  • Familiarity with threat modeling approaches and abuse-case analysis for APIs.
  • Experience aligning security controls to financial industry expectations and producing evidence that stands up to audit scrutiny.
  • CISSP or other professional cyber certification desirable.

How you'll work:

  • This role is on-site Monday through Friday. Fiserv considers in-person collaboration to be an essential part of this role as in-person office experiences help you with your overall onboarding experience and leads to stronger productivity.

Travel:

  • Approximately 10% travel off-site or to other office locations is expected.

Sponsorship:

  • You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.

Salary Range: $110,000.00 - $186,000.00

These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company's sole discretion.

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact View email address on click.appcast.io. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the API Security Engineer in Alpharetta, GA vacancy
  •  ...access to cloud-enabled, enterprise-grade security solutions that are easy to buy, deploy,...  ...looking for a talented Security Automation Engineer . This position is responsible for...  ...ongoing R&D efforts. Integrating various APIs into the SOC tech stack. Proactive threat... 
    Suggested
    Local area
    Remote work
    Worldwide
    Flexible hours

    Barracuda Networks Inc

    Alpharetta, GA
    1 day ago
  • $71.6k - $119.4k

     ...Job Description LexisNexis Risk Solutions, Inc. Security Engineer III Help achieve compliance by identifying compliance initiatives, and promote appropriate security policies. Lead the exploration of practical security solutions to address emerging threats and compliance... 
    Suggested
    Work at office
    Local area
    Remote work

    LexisNexis Risk Solutions

    Alpharetta, GA
    2 days ago
  • $98.9k

     ...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you'll collaborate with... 
    Suggested
    Work at office
    Remote work

    Zoom Corporation

    Alpharetta, GA
    5 days ago
  •  ...candidates ) Description : We are looking for a security engineer to help build our client's next generation Policy Based Access...  ...years of development experience delivering full-stack, RESTful APIs and interactive user interfaces using Java, Python, Spring... 
    Suggested
    Local area

    ShiftCode Analytics

    Alpharetta, GA
    2 days ago
  • $120k

     .... Position Overview Role Summary The Senior Cloud & Identity Security Engineer reports to the Cloud and Network Security Manager and serves as...  ...access strategy including SSO, MFA, lifecycle management, and API access. Identify opportunities for automation, simplification... 
    Suggested
    Minimum wage
    Temporary work
    Local area

    SiteOne Landscape Supply

    Roswell, GA
    16 hours ago
  • $90k - $158.4k

     ...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay...  ...will lead in-depth assessments of web, API, mobile, and thick-client applications to...  ...a culture of application security engineering and secure SDLC integration. Responsibilities... 
    Temporary work
    H1b
    Work at office
    Monday to Friday

    Fiserv

    Alpharetta, GA
    5 days ago
  •  ...Responsibilities: Conduct penetration testing on web applications, APIs, mobile applications, and Active Directory. Identify and...  .... Collaborate with the development and IT teams to remediate security issues. Utilize tools such as Burp Suite, OWASP ZAP,... 
    Contract work
    Immediate start

    Pyramid Consulting

    Alpharetta, GA
    3 days ago
  • $136.1k - $226.9k

     ...Position Summary The Network Systems Engineering - serves as a principal technical...  ...influencing technology roadmaps to ensure secure, scalable, and high-performing connectivity...  ...technologies, including TCP/IP, load-balancing, API gateways, firewalls, and advanced routing... 

    McKesson

    Alpharetta, GA
    2 days ago
  •  ...services firm providing a wide range of investment banking, securities, investment management and wealth management services. We advise...  .... The Enterprise Z Security team in ETS is responsible for engineering and managing various mainframe authentication and authorization... 
    Work experience placement

    ALLTECH CONSULTING SVC INC

    Alpharetta, GA
    3 days ago
  •  ...Mainframe Security Engineer - TSS Location: Alpharetta, GA OR Remote Duration: 12 months (Potential to convert) Pay range: $75 - $80/hr on W2 Responsibilities Engineering support of MS Enterprise Z Mainframe Security products (CA/Broadcom-TSS, CA/Broadcom-Compliance Manager... 
    Full time
    Work experience placement
    Remote work

    Russell Tobin

    Alpharetta, GA
    1 day ago
  • $105k - $160k

     ...The Senior Professional, Platform Engineering job designs, develops and maintains digital...  ...Qualifications Proven experience with API management platforms such as Kong, Broadcom...  ...traffic management, rate limiting, and security policies. Expertise in API... 
    Work experience placement

    Cargill

    Roswell, GA
    16 hours ago
  •  ...QA Engineer – Observability & API Testing (Datadog) We are looking for a detail-oriented QA Engineer – Observability & API Testing to ensure the quality, reliability, and performance of APIs, microservices, and monitoring pipelines. The role involves validating application... 

    Ova Technologies

    Alpharetta, GA
    13 days ago
  • $163.9k - $235.55k

     ...Principal AI Security Architect At UKG, the work you do matters. The code you ship, the...  ...architects, application teams, product engineering, platform teams, and governance stakeholders...  ...and platforms such as Python, Java, APIs, cloud services, CI/CD tooling, and AI development... 
    Work experience placement

    UKG, Inc.

    Alpharetta, GA
    5 days ago
  •  ...Job Title - Application Security Architect Remote We are seeking an experienced...  ...organization's enterprise applications, APIs, and digital transformation needs. • Design...  ...-functional teams including Software engineering and software architecture teams operational... 
    Remote work

    Diverse Lynx

    Alpharetta, GA
    2 days ago
  • $120.5k - $231k

     ...#VTeamLife. What you'll be doing... At Verizon, the Global Networks & Technology Network Security team is looking for a highly motivated and experienced Senior Engineer to join the Security Defense organization. The Defense teams are responsible for safeguarding critical... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Work from home
    Shift work
    3 days per week

    Verizon

    Alpharetta, GA
    2 days ago
  •  ...over voice and messaging. We are the leading global provider of Secure Communication as a Service (SCaaS™). Our flagship solution,...  ...Singtel, and more. Learn more at Senior Information Security Engineer Protect. Innovate. Lead. At Movius security isn't just... 
    For contractors
    Remote work

    Movius Interactive Corporation

    Alpharetta, GA
    5 days ago
  • $65 - $70 per hour

     ..., Fri) Long term contract No Mid Layer / No Implementation partners are Involved Job Description The Engineering Tech Lead will operate at the intersection of security, cloud infrastructure, and data engineering, translating complex security and business challenges into... 
    Long term contract
    Full time
    Local area
    Remote work
    Weekend work

    PTR Global

    Alpharetta, GA
    3 days ago
  • $115k - $200k

     ...Purpose: Synchrony is seeking an AVP, Product Security Architect to provide enterprise-level...  ...partnering closely with product and engineering leaders to embed security into product strategy...  ...requirements. Define and standardize API security architectures (north-south and... 
    Full time
    Work experience placement
    Work from home
    Visa sponsorship
    Work visa
    Monday to Friday

    Synchrony

    Alpharetta, GA
    9 hours ago
  • $128k - $216k

     ...to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app,...  ...make a difference at Fiserv. Job Title Cyber Network Engineer About your role: You will be at the forefront of protecting... 
    Full time
    Contract work
    Temporary work
    H1b

    Fiserv

    Alpharetta, GA
    3 days ago
  • $100k - $150k

     ...their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. As we continue to grow, we’re looking for a skilled SAP Security Engineer (GRC – Technical) to join our dynamic team and contribute to our mission of transforming... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship
    Work visa

    Bright Vision Technologies

    Johns Creek, GA
    19 days ago
  • $100k - $150k

     ...operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. As we continue to grow, we’re looking for a skilled Network Automation Engineer (Python + Network APIs) to join our dynamic team and contribute to our mission of... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship
    Work visa

    Bright Vision Technologies

    Johns Creek, GA
    22 days ago
  •  ...candidates with this background We are looking for Network Automation engineer to join Automation and Tooling team within networking domain....  ...in scripting languages like Python, for creating new API based services and supporting existing scripts. • Experience of... 
    Local area

    3B Staffing LLC

    Alpharetta, GA
    3 days ago
  •  ...Sr. Cyber Security Analyst USC, GC, EAD, H4EAD Sr. Cyber Security Analyst for our reputable client in New York, New York. Reporting...  ...: ~5+ years working in a security operations/security engineering role with focus on Threat and Vulnerability management ~2+ years... 
    Permanent employment
    Work experience placement

    RIT Solutions

    Alpharetta, GA
    1 day ago
  • $100k - $150k

     ...cutting-edge technologies to create scalable, secure, and user-friendly applications. As we...  ...we’re looking for a skilled AI Security Engineer to join our dynamic team and contribute...  ...security challenges posed by LLMs, model APIs, training data pipelines, and AI-powered... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship
    Work visa

    Bright Vision Technologies

    Johns Creek, GA
    24 days ago
  • $170.6k - $390k

     ...the best place in the world to grow your career in information security! The opportunity The Senior Network Security Architect...  ...Join our dynamic team as a Senior Manager in Cybersecurity Engineering, where you will play a pivotal role in developing, managing, and... 
    Summer holiday
    Remote work
    Flexible hours

    EY

    Alpharetta, GA
    3 days ago
  •  ...Qualifications • Palo Alto Networks Certified Network Security Engineer (PCNSE) Certification is strongly preferred. • Fortinet Certified Professional (FCP) Certification is strongly preferred. • 8+ years of experience in Architecture or Sr. Network Security engineering... 

    TechDigital Group

    Alpharetta, GA
    1 day ago
  •  ...knowledge in Automation Anywhere (AA) tool. Must have working knowledge in OCR/Web Automation/Windows Automation/Email Automation/XML/REST API/Mainframe command. Must have certifications in Automation Anywhere 10x or 11x. Must have knowledge on MetaBOT, create reference... 
    2 days per week

    Samprasoft

    Alpharetta, GA
    4 days ago
  • $121.5k - $233.8k

     ...The opportunity The Global Network Engineering Lead is a strategic leadership role responsible...  ...engineering solutions while embedding security-by-design principles, including NAC....  ...network automation practices, including APIs, orchestration frameworks, and standardized... 
    Work experience placement
    Summer holiday
    Work at office
    Local area
    Remote work
    Flexible hours

    EY

    Alpharetta, GA
    7 days ago
  • $95k - $135k

     ...global financial services firm providing investment banking, securities, investment management, and wealth management services. As market...  ...lifecycle-from development and testing to release engineering, monitoring, and operational support. The Enterprise Z Security... 
    Full time
    Temporary work

    Morgan Stanley

    Alpharetta, GA
    16 hours ago
  • SiteOne Landscape Supply in Roswell, Georgia is seeking a Senior Cloud & Identity Security Engineer to take ownership of security initiatives across its hybrid cloud and on-premises environments. This pivotal role involves leading security projects, resolving complicated... 

    SiteOne Landscape Supply

    Roswell, GA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to API Security Engineer. Be the first to apply!