This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re looking for an experienced security-focused engineer to help shape and scale Parafin’s security posture across our cloud and platform environments. Our Security and Infrastructure team owns the foundational systems that power all of Parafin — from compute and networking to identity and compliance — and you’ll play a central role in ensuring those systems are secure, reliable, and compliant.
Job Responsibility:
Lead efforts to improve Parafin’s overall security posture across infrastructure, applications, and data systems
Develop and maintain frameworks for identity, access management, and least-privilege enforcement
Establish and operate best-in-class security monitoring, alerting, and incident response processes
Partner with product and infrastructure engineers to embed secure-by-default patterns in our systems and applications
Define and enforce standards for vulnerability management, secrets handling, and dependency integrity
Collaborate with compliance and risk teams to build and maintain controls aligned with frameworks such as SOC 2, PCI DSS, and other fintech regulations
Support audits and security assessments by ensuring controls are properly implemented and evidenced
Contribute to security awareness and training efforts across engineering teams
Influence long-term strategy on secure architecture, detection, and response automation
Requirements:
8+ years of experience in security operations or application security, preferably in a cloud-native and regulated environment
Strong understanding of AWS security, including IAM, VPC, and network segmentation best practices
Experience with threat detection and response, vulnerability management, and incident response workflows
Familiarity with Kubernetes and container security principles, including RBAC, admission controls, and runtime monitoring
Knowledge of compliance frameworks (SOC 2, PCI DSS, ISO 27001) and how to operationalize them in engineering environments
Strong communication and collaboration skills — comfortable working across engineering, product, and compliance teams
Nice to have:
Experience building or maturing a security operations or application security program at scale
Background in security automation, threat modeling, or secure architecture reviews
Familiarity with developer-focused security enablement — e.g., SAST/DAST integration, dependency scanning, or security education
Experience in regulated or fintech environments where security and speed must coexist