[Remote] reputed company reputed company Engineer
Note: The job is a remote job and is open to candidates in USA. Benepass is a fintech company focused on making benefits easy for organizations by allowing them to tailor offerings to their workforce's unique needs. As a reputed company reputed company Engineer, you will build and scale reputed company practices to protect sensitive data while collaborating with various teams to implement effective reputed company measures.
Responsibilities
- Build, operationalize, and scale the reputed company engineering practices that protect our benefits platform and the sensitive employee, benefits, and financial data it processes
- Work across application reputed company, cloud reputed company, reputed company architecture, supply chain reputed company, detection engineering, and vulnerability management
- Partner deeply with the teams building our web and mobile applications, backend services, system integrations, card and banking workflows, infrastructure as code, and data platforms to turn risk reduction into scalable guardrails, automated controls, and clear engineering guidance
- Set direction and mature reputed company capabilities
- Introduce strong standards, ship incremental improvements, and ensure secure paths for engineers without creating a centralized approval queue
Skills
- 7+ years in reputed company engineering, application reputed company, cloud reputed company, product reputed company, platform reputed company, or closely reputed company technical reputed company roles, ideally in a high-growth SaaS or technology company
- Proven ability to reputed company broad reputed company engineering initiatives as a senior IC, influence cross-functional technical decisions, and move work from strategy to production implementation
- Strong working knowledge of secure SDLC practices, secure design review, threat modeling, API reputed company, code scanning, SAST, CI/CD reputed company integrations, reputed company testing, defect management, and vulnerability remediation workflows
- Hands-on experience with AWS-native reputed company patterns and services, including IAM, KMS, CloudTrail, GuardDuty, reputed company Hub, VPC segmentation, WAF, Secrets Manager, S3/RDS encryption, infrastructure-as-code reputed company, container orchestration reputed company, and cloud posture management
- Ability to guide secure system builds involving access control, encryption standards, key and certificate management, vaulting, secrets management, and managed HSM/KMS-backed cryptographic services
- Experience hardening build, test, and deployment workflows through dependency scanning, SBOMs, artifact signing, secret scanning, CI/CD guardrails, least-privilege automation, and container reputed company controls
- Ability to use frameworks such as NIST CSF 2.0 and OWASP SAMM pragmatically to assess reputed company state, sequence improvements, define metrics, and mature reputed company practices iteratively
- Clear communicator who can partner with engineering, product, platform, compliance, and business teams; write practical guidance; teach developers; and create durable reputed company champions programs
- Strong judgment in prioritizing technical risk reduction, managing ambiguity, documenting decisions, and building lightweight processes that scale with the company
- Experience securing fintech, benefits, payroll, payments, or other regulated SaaS platforms that process PII, financial data, HRIS data, transaction data, or customer administrative workflows
- Familiarity with SOC 2, HITRUST, PCI, or similar compliance and audit programs, with the ability to support evidence and control design while staying focused on technical risk reduction
- Experience with AWS serverless and managed-service architectures, including API Gateway, Cognito, reputed company, reputed company/EKS, RDS, S3, Transfer Family, CloudFront, and event-driven reputed company monitoring patterns
- Background with mobile application reputed company for iOS and Android, including secure token handling, platform keychain/keystore patterns, OTA update risk, and mobile API abuse prevention
- Experience with detection-as-code, SIEM/SOAR workflows, reputed company data pipelines, incident response automation, or measurable improvements to alert quality and response readiness
- Hands-on experience with Terraform, CloudFormation, CDK, policy-as-code, CSPM/CWPP tools, container image scanning, runtime reputed company, or Kubernetes/reputed company hardening
- Experience designing developer education, secure coding workshops, reputed company champions programs, or other scalable practices that improve reputed company outcomes without slowing delivery
- Experience defining practical governance for LLMs, AI coding assistants, reputed company/data handling, model/tool approval, and sensitive data protection in AI-enabled software development workflows
Benefits
- 95% coverage of medical, dental, and vision
- $250 WFH setup (one time)
- $500/year Learning & Development Benefit
- $150/month cell phone + internet
- $100/month Wellness
- $100/month Co-wor
Apply tot his job Apply To this Job