Staff Enterprise Security Engineer
# Staff Enterprise Security Engineer **SoFi** · WA - Seattle; CA - San Francisco; UT - Cottonwood Heights; NY - New York City; TX - Frisco · `On-site` 🕒 **Статус:** *Опубликовано: сегодня* · *Источник: SoFi* --- ### Top Skills & Match 🎯 **Ключевой стек роли:** `[Information Security]` --- ### About the Role Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world. The role As a Staff Enterprise Security Engineer at SoFi, you will serve as the subject matter expert for Data Loss Prevention (DLP) while driving engineering across broader enterprise security domains—including email security, endpoint protection, network defense, and phishing simulation. Sitting within the Enterprise Security team, this role balances technical focus on data protection with hands-on architecture, operation, and automation of foundational IT and corporate security controls. We seek security leaders who combine technical mastery in tool administration (e.g., Zscaler, Proofpoint, Sentra, CrowdStrike) with systems thinking to mitigate risk across diverse threat vectors. In this role, you will define risk mitigation strategies and build clear technical roadmaps—accelerating security delivery while maintaining safety, correctness, and data protection. What you’ll do - Lead end-to-end delivery and architecture for enterprise security capabilities: enterprise zero-trust networks, endpoint security, and SaaS posture management. - Frame complex security challenges: clarify security requirements, threat models, failure modes, and success metrics while proposing clear architectural options and tradeoffs. - Design for scale and resilience: establish secure baseline configurations, automate security guardrails, and reduce systemic attack surfaces with minimal enterprise friction. - Collaborate with internal security teams to establish and maintain threat signaling to ensure that proper visibility and alerting is achieved across tooling. - Raise cybersecurity standards through design reviews, active mentorship of team members, and establishing enterprise security patterns and best practices. - Collaborate cross-functionally with IT, Infrastructure, Risk/Compliance, and Engineering teams to deliver secure member outcomes. What you’ll need - Education & Minimum Experience Requirements: Bachelor’s Degree + 3–4 Years of Experience OR Master’s Degree + 2–3 Years of Experience in Cybersecurity, Computer Science, Information Technology, or a related field. - 3+ years of experience in cybersecurity with a focus on Data Loss Prevention (DLP). - Hands-on experience with cloud-based DLP solutions (e.g., Zscaler, Proofpoint, Sentra). - Experience administering and operating core enterprise security tools (EDR, email security gateways, and web proxies). - Experience with Infrastructure as Code (IaC) solutions such as Terraform, along with scripting languages (Python, Go, or PowerShell) for tooling and automation. - Experience with incident response, log analysis, threat detection, and digital forensics. - Experience collaborating with multiple lines of defense for issue analysis, evidence gathering and remediation. - Proven problem-solving skills with the ability to work independently and collaboratively in a fast-paced environment. - Solid written and verbal communication skills for technical documentation, cross-functional collaboration, and threat modeling. Nice to have - Professional security certifications (e.g., CISSP, CCSP, CISM, or AWS Certified Security Specialty). - Experience with CI/CD security pipeline automation, SIEM detections, and SOAR playbooks. - Knowledge of financial compliance frameworks and regulatory environments (PCI-DSS, SOC1/SOC2, SOX, GLBA, NIST CSF, ISO 27001). Compensation and Benefits The base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate’s experience, skills, and location. To view all of our comprehensive and competitive benefits, visit our Benefits at SoFi page! The Company hires the best qualified candidate for the job, without regard to protected characteristics. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. New York applicants: Notice of Employee Rights SoFi is committed to an inclusive culture. As part of this commitment, SoFi offers reasonable accommodations to candidates with physical or mental disabilities. If you need accommodations to participate in the job application or interview process, please let your recruiter know or email accommodations@sofi.com. We are unable to accommodate remote work from Hawaii, Alaska or Puerto Rico at this time. Internal Employees If you are a current employee, do not apply here - please navigate to our Internal Job Board in Greenhouse to apply to our open roles.
- Information Security
Наблюдалась 2026-10-08, впервые 2026-10-08, источник — SoFi.