Software Engineer - Product Security
Listed on 2026-05-26
-
IT/Tech
Cybersecurity
We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use.
Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.
The mission of Plaid's Product Security Team is “Improve our customer’s trust by assuring secure development and delivery of products and services, minimizing risk to the ecosystem, and preventing security incidents.
The Product Security team is responsible for managing the security processes, policies and controls to secure Plaid’s developer and consumer facing products. The product security team is focused on areas like Application Security, Vulnerability Management, Secure Development Lifecycle, Penetration Testing and Cloud Security. We build the services and components that protect Plaid’s products. We move security "left" by engineering common libraries, modules, and workflows that make the secure path the easiest path for all Plaid engineers.
Plaid is looking for a Product Security Engineer who is a builder to join our Product Security team.
Unlike traditional Product security roles, this position is for a software engineer who wants to solve security challenges at scale by building production-grade services, libraries, and frameworks. Our goal is to make the "secure path" the only path for Plaid developers.
- You will develop security capabilities to manage vulnerabilities lifecycle and automate workflows to reduce KTLO toil.
- You will own, maintain, and build Plaid’s VM Orchestration service and build solutions to eliminate the entire vulnerability classes.
- You will consult with product engineers to ensure Plaid services meet security standards.
- You will help educate and support other engineering teams to improve security in their own products and services.
- You will assist with Plaid’s incident response and security awareness programs.
- You will collaborate with other security platform members and build necessary engineering solutions to meet their needs.
- Build the secure engineering foundations that secure the future of digital finance.
- Develop maintainable and secure software to enhance Plaid's security posture and create paved roads for developers for easy and default integration of security controls.
- Design, develop, and maintain security-critical services and components.
- Develop internal tooling to automate vulnerability detection, dependency management, and remediation workflows within the CI/CD pipeline.
- Replace manual security gates with engineered solutions that allow product teams to ship faster and more securely.
- Communicate effectively with managers and team members regarding project deliverables and progress.
- Design and implement technical solutions that align with the evolving needs of the business.
- Proactively identify and address security vulnerabilities in products and services.
- Actively participate in incident response and security awareness initiatives.
- 2 + years of professional experience building and scaling production services
- Ability to architect software systems to meet security, privacy, usability, scalability and cost requirements.
- Experience building systems or services related to vulnerability management, data encryption, key management, secret management, user authentication, service authentication, authorization systems, and security policy enforcement.
- Experience designing distributed systems and microservices with a focus on performance and reliability.
- Familiarity with modern cloud infrastructure (AWS, Kubernetes, Terraform) and how to integrate security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).