About Airwallex
Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 100,000 businesses worldwide – including Brex, Rippling, Navan, Qantas, SHEIN and many more – with fully integrated solutions to manage everything from business accounts, payments, spend management and treasury, to embedded finance at a global scale.
Proudly founded in Melbourne, we have a team of over 1,500 of the brightest and most innovative people in tech located across more than 20 offices across the globe. Valued at US$5.6 billion and backed by world-leading investors including Sequoia, Lone Pine, Greenoaks, DST Global, Salesforce Ventures and Mastercard, Airwallex is leading the charge in building the global payments and financial platform of the future. If you're ready to do the most ambitious work of your career, join us.
Your role
As a Senior Application Security Engineer, you will sit within our Security team and work closely with all product and engineering teams across the business.
This role will see you being a critical part of defending both Airwallex and our 150,000 customers by building our application security program and making our platform as secure as possible. Your day to day work will ensure that the Product and Engineering teams have the confidence to build and release products as quickly as possible without compromising security.
From actively identifying vulnerabilities, to partnering with engineers to help prevent vulnerabilities ever existing, your role requires you to get deep into the code base while interacting with and educating the broader business on security best practices.
What you'll be doing
Review the Airwallex platform and products' code to identify security issues and help engineers find more secure solutions.
Proactively work with our product and engineering teams to assess risk and provide policy guidance on secure code review and best practices.
Be the advocate for security architecture best practices across the Product and Engineering organisation, including secure configuration and deployment of new infrastructure and services.
Educate the engineering and product teams on what secure code and design looks like and why it is important.
Continually test our applications, both internally and externally.
Keep up to date across the latest threats and attack techniques and how they apply to our platform.
Coordinate and manage third party application security reviews and penetration tests.
Set standards for identity and access management across the platform.
Review our use of cloud providers, identify risk areas, and help mitigate them.
What you'll bring
A passion for solving the complex challenges of high-growth startups.
Experience with cloud platforms (we use GCP)
Self motivation and drive to learn new skills, or dive deeper into existing skills.
In depth understanding of common attacker tools and techniques, and how they are can be exploited by insecure development practices.
Experience with vulnerability assessment tools.
Strong communication skills with the ability to explain technical security and software concepts to a non-technical audience.
Experience with Kotlin, Typescript, NodeJS, and Kubernetes is a plus.
Any additional training, security certifications, or history of responsible disclosure is a big plus, such as GIAC certifications, OSCP or your HackerOne profile or other bug bounty programs.
Published articles, journals or blogs related to cybersecurity.
Equal opportunity
Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don’t regard color, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status when making our hiring decisions. If you have a disability or special need that requires accommodation, please let us know.
Airwallex does not accept unsolicited resumes from search firms/recruiters. Airwallex will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes to Airwallex on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary.
Other Jobs from Airwallex
Engineering Lead, Global Entity Management
Staff Backend Engineer, Data Insights Platform
Software Engineer II, Transaction Risk
Senior iOS Engineer
Site Reliability Engineer
Similar Jobs
Associate Software Engineer (Java, Kotlin, RUST)
Devops engineer_ AVP
Billing - DevOps Engineer
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say