Job Description

Summary

Circle is looking for a passionate Lead Product Security Engineer to help drive and implement technical strategies, innovative tooling, research, and processes. You will have extensive knowledge of web 2.0 ecosystems, including the inner workings of cloud environments and api infrastructure. You’ll be part of the overall Security Engineering team and closely partner with the Engineering, Infrastructure, and IT teams responsible for supporting our cloud operations, software development, fleet of devices and endpoints.

The Circle Security Team works to protect Circle; our customers, clients, and partners; and the financial markets upon which we rely. The security team leads the company’s programs for information security and cybersecurity, business continuity, and vendor risk management.

As a member of this team, you’ll lead projects and be responsible for key deliverables of the security program while collaborating across Circle teams. You will continue to learn and stay current in a fun and rapidly changing environment.

 

What you'll work on:

  1. Work with the product management and software engineering teams during all phases of the SDLC to ensure that applications are designed and implemented securely
  2. Test web applications and underlying systems for vulnerabilities using both tools and manual techniques; manage the remediation of findings through resolution
  3. Recommend code changes to eliminate vulnerabilities
  4. Automate security tests within the CI/CD pipeline
  5. Help develop secure coding standards and training materials based on findings seen in Circle’s environment to empower engineers to write more secure code
  6. Research vulnerabilities specific to blockchain technologies and incorporate this knowledge in Circle’s security practices
  7. Serve as an escalation point to investigate security alerts and identify incidents
  8. Investigate vulnerability reports related to Circle products and systems
  9. Manage vendors to conduct penetration tests and other security-related projects
  10. Influence the continuous improvement of the application security program
  11. Support other security team projects such as threat modeling, vulnerability scanning, and audits.

You will aspire to our four core values:

  1. Multistakeholder - you have dedication and commitment to our customers, shareholders, employees and families and local communities.
  2. Mindful - you seek to be respectful, an active listener and to pay attention to detail.  
  3. Driven by Excellence - you are driven by our mission and our passion for customer success which means you relentlessly pursue excellence, that you do not tolerate mediocrity and you work intensely to achieve your goals. 
  4. High Integrity - you seek open and honest communication, and you hold yourself to very high moral and ethical standards. You reject manipulation, dishonesty and intolerance.

What you’ll bring to Circle:

  1. 5+ years of experience as a security engineer that has been leading projects and developing resolutions in cybersecurity
  2. Enthusiasm for securing and breaking software 
  3. Experience with common attack techniques and conducting penetration tests
  4. Experience designing software security features including, but not limited to, access control features, logging and monitoring features, input validation and session management.
  5. Experience automating security tests in CI/CD pipelines
  6. Experience working with SAST and DAST testing processes and tools
  7. Experience with building Detections.
  8. Experience with Cloud Security tools are preferred.
  9. Experience working on applications deployed within AWS and GCP.
  10. Experience/familiarity with Slack, Apple MacOS and GSuite
  11. Working knowledge of public and private key cryptography
  12. Familiarity with techniques for making software robust against common attacks
  13. Self-motivated and creative problem-solver able to work independently with minimal guidance
  14. Strong ability to work collaboratively across teams
  15. Ability to manage multiple competing priorities and use good judgment to establish order of priorities on the fly
  16. Experience working in financial services or financial technology desired
  17. Bachelor's degree in computer science, computer engineering, cybersecurity or related field Equivalent experience also accepted 
  18. Certifications such as CISSP, CEH, or similar will receive favorable consideration but are not required
  19. Experience with at least several of the following is highly desirable: Java, Angular JS, REST APIs, JSON, Go, and Python 
  20. Prior experience with threat and vulnerability management is preferred
  21. An appetite for work travel when needed

Skills
  • AWS
  • Cybersecurity Solutions
  • Development
  • Problem Solving
  • Software Engineering
  • Team Collaboration
© 2025 cryptojobs.com. All right reserved.