SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Airwallex is a unified payments and financial platform serving over 250,000 global businesses including Brex, Navan, Qantas, and SHEIN. The company operates across 27 offices worldwide with 2,300+ employees and is valued at $11 billion, backed by leading investors including Sequoia, Visa, and Mastercard.
As a Staff Product Security Engineer, you will be a critical member of Airwallex's Information Security team, reporting to the Product Security Engineering Manager. This is a hands-on, high-impact role focused on designing, developing, and managing infrastructure projects, processes, and standards related to network, system, and application security.
Key responsibilities include:
- Creating and building security controls that enable Airwallex to scale securely
- Designing and delivering security improvements across applications, software, and services
- Developing and operationalizing detection strategies and incident response workflows
- Leveraging endpoint, network, and cloud telemetry to identify, investigate, and mitigate threats
- Designing and maintaining cybersecurity infrastructure that improves resilience
- Investigating, containing, and responding to cybersecurity incidents
- Assessing and improving system and network security through vulnerability identification and remediation
- Conducting threat hunting and tactical forensics
- Partnering with engineering and product teams to embed security into applications and drive continuous improvement
You will need 8+ years in security engineering or incident response at a tech company, in-depth expertise with at least one major cloud platform, strong knowledge of CI/CD tooling and infrastructure, and comprehensive understanding of attacker tools and techniques. You should be an excellent communicator who can explain technical concepts to non-technical audiences and have a passion for solving complex challenges in high-growth environments.
Preferred qualifications include a degree in Cybersecurity or Computer Science, recognized certifications (OSCP, GIAC, CEH), experience with Splunk and security monitoring tools, DevOps/SRE experience with Kubernetes, GCP or Alibaba Cloud expertise, experience with Okta and cloud-based identity services, and programming skills in Python or Java/Kotlin.