Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Software Engineer - Security

Moderntreasury
CompanyModerntreasury
CategoryEngineering
LocationSan Francisco
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryUSD 170k–240k
Posted28 May 2026
Last verified30 Jul 2026
SourceEmployer career page (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
OVERVIEW This position can be based out of San Francisco, New York, or remote (we accept candidates from the following states: AZ, CA, CO, CT, FL, GA, HI, IL, MA, MI, MN, MT, NC, NJ, NV, NY, OH, OK, OR, PA, TN, TX, UT, WA, WI). Modern Treasury’s mission is to build the most trusted financial infrastructure for global money movement. We’re looking for a Security Engineer to design and strengthen the controls that protect our payment infrastructure. You’ll enable as well as build secure, compliant financial products while contributing directly to the reliability and automation of our security and infrastructure systems. Modern Treasury is expanding deeper into money movement. We’re building new products that will let customers move funds across both traditional rails and emerging technologies, including stablecoins. You’ll help design, deploy and operate the security controls that make this possible and set the foundation for compliant, programmable money movement at scale. This role is hands-on security engineering with heavy focus on automation. ABOUT THE ROLE This role focuses on application, product, and infrastructure security, and sits at the intersection of security, platform, payments engineering, and infrastructure. You’ll shape how Modern Treasury manages risk at scale and design the systems that make programmatic, compliant money movement possible. We are looking for someone who can influence security strategy, drive DevSecOps automation and contribute to architectural design. Your work will ensure that as we grow into new products and payment rails, we continue to move fast while keeping trust, compliance, and safety at the core of our platform. WHAT YOU’LL DO - Lead application security across our payment platform, including secure code review, threat modeling, and security architecture for new products - Own product security for new payment rails, including FBO account structures, stablecoin integration, and enhanced compliance features - Design and implement DevSecOps tooling and automation to improve security posture across CI/CD and infrastructure - Partner with engineering teams to embed security into the development lifecycle through automation, secure design patterns, and security champions - Drive security architecture decisions for customer-facing APIs, authentication systems, and data protection controls - Build monitoring and detection capabilities for application-layer threats, API abuse, and fraud patterns - Design infrastructure monitoring, automation, and remediation practices that keep our systems resilient and trustworthy - Compliance on the ownership and operation of SOC 2 controls, ensuring the systems you build map cleanly to control requirements and produce the evidence those controls depend on - Serve as the technical owner for the security controls and automated tests that evidence the systems you build in our GRC platform (Vanta), partnering with engineering teams to keep them accurate and audit-ready as part of our SOC 2, SOC 1, and PCI DSS programs - Coordinate with our independent external penetration testing provider to scope, schedule, and run the testing that satisfies our SOC 1, SOC 2, and PCI DSS requirements, and drive remediation of findings to closure - Own vulnerability management across our applications and infrastructure, triaging and prioritizing findings, partnering with engineering on remediation, and tracking closure within the timelines our policies and compliance programs require - Help design and operate encryption and key management practices across our platform, including key lifecycle and rotation, in line with our data protection controls and compliance requirements - Partner with Workplace Technology to evaluate and secure the deployment of enterprise integrations, AI capabilities (including MCP), and third-party tools - Influence technical strategy across Product, Platform, and Infrastructure teams on sec
HOUSE ADYou found the opening. Now track it.Tracker, radar and AI drafts in one place.erioun.com →
Software Engineer - Security — Moderntreasury · Job Opportunities API