SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Engineer, Security

Taptap Send - New York, NY, United States - In-office - posted 2026-09-29

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Taptap Send is seeking a Senior Engineer, Security to join the Platform Engineering team. This is a hands-on security engineering role focused on finding vulnerabilities and remediating them directly—writing Terraform and application changes to close security gaps. You will report to Platform Engineering and work closely with the CISO, who sets the security agenda and supports escalation when remediation stalls elsewhere. Key responsibilities include: - Remediate security findings across infrastructure by writing Terraform and application changes. Run vulnerability management from Snyk, Prowler, and AWS Security Findings through to verified fixes. Drive fixes to completion even when they belong to other teams. - Own AWS security posture, including IAM and least-privilege access, network boundaries, secrets management, and logging coverage. Define and enforce technical security baselines for new services, covering host hardening, WAF configuration, and deployment patterns. - Conduct regular penetration testing against the company's own environment ahead of formal annual assessments. Perform threat modeling and security reviews for new services early enough to influence design, including integrations with payment and custody providers. - Serve as technical lead for security incidents, including forensic investigation. Own and improve detection coverage in Datadog, tuning alerts for signal quality. Taptap Send is a cross-border fintech for emerging markets, founded in 2019 by Harvard grads and serial entrepreneurs. The company operates across 6 of 7 continents, serving remittance corridors and bringing digital finance to underserved regions. Backed by top-tier investors including Spark Capital, Canaan, and Reid Hoffman, the company is scaling rapidly with 250+ employees across 50+ nationalities. REQUIREMENTS: - Five or more years of hands-on security engineering with responsibility for production systems - Proficiency writing and shipping code in Terraform and Python, with application fluency to fix findings rather than hand off - Deep AWS security experience, including IAM and least-privilege at organization scale, and container workloads in ECS or EKS - Application security expertise, including threat modeling and hands-on offensive testing against cloud and application targets - Security incident response experience, including forensic investigation - Demonstrated ability to run vulnerability management and drive fixes through teams you do not manage; self-directed work on finding queues - Experience in regulated environments, translating ISO 27001, PCI DSS, or SOC 2 requirements into engineering work - Detection engineering in Datadog or comparable SIEM - CI/CD pipeline security, particularly GitHub Actions - Practical cryptography and secrets management, including key rotation and certificate lifecycle - Experience using AI coding tools to remediate at scale and reviewing AI-generated code with security perspective - Experience with payments, cards, or digital assets (preferred)

Similar roles