Solidgate

FinTech

RedTeamEngineer

$240–360k ~AI est. Warsaw, Poland FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Red Team Engineer at Solidgate. Skills: Red team operations, Adversary emulation, Cloud attack, Tool development. Plan red team operations. Execute red team operations”

What You'll Achieve.

Find attack paths before attackers; Improve detection use cases

Industry & Context.

FinTech
Problems you'll solve

Root cause analysis; Troubleshooting; Exploit development

What They're Looking For.

Must Have

4+ years offensive security, 4+ years penetration testing, 4+ years red team operations, Real engagements in production, Hands-on red team experience, Adversary emulation experience, Web exploitation, API exploitation, Cloud attack experience, AWS IAM abuse, AWS privilege escalation, AWS misconfiguration exploitation, AWS CI/CD pipeline attacks, Scripting in Python, Scripting in Go, Scripting in Bash, Scripting in PowerShell, Written reporting, High operational discipline, OPSEC, Ethics, Rules of engagement

Nice to Have

Purple teaming experience, Detection knowledge, Secure code review, Exploit development, Familiarity with payment domain, Card processing flows knowledge, PCI DSS scope knowledge, SWIFT knowledge, Open-source offensive tooling contributions, Published research, CVEs

What You'll Do.

Plan red team operations

Execute red team operations

Build external testing programs

Run external testing programs

Run purple team cycles

Assess detection coverage

Deliver risk-ranked reports

Track findings through remediation

Track findings through revalidation

Develop custom offensive tooling

Automate repeatable test scenarios

Validate security controls

How You'll Work.

Team & Collaboration

Purple team cycles with SOC; Collaboration with engineers; Collaboration with management

Communication Scope

Written reporting; Impact analysis

Process & Methodology

Scoping, Execution, Reporting, Remediation tracking, Revalidation

Full Job Description

OUR MISSION AND VISION At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve. To achieve that, we’re on a bold path: to become the #1 payments orchestration platform in the world. We believe the future of payments is shaped by people who think big, take ownership, and bring curiosity and drive to everything they do. That’s exactly the kind of teammates we want on board. We’re building the #1 payment orchestrator in the world — and the names behind us prove it. Clients include Bolt, Ajax, Nova Post, MEGOGO. Trusted by giants like J.P. Morgan. Ranked #2 in the “Employer of the Year 2026” award by Forbes Ukraine. WHY THIS ROLE IS CRITICAL The platform processes millions of payments across 120+ services - 70+ of which touch cardholder data directly - and the attack surface grows with every new integration. This role exists to run continuous adversary emulation against that surface: finding real attack paths before attackers do, and making sure the blue team can detect and stop them. It's offensive security with a clear mission, not a checkbox exercise. Explore our technology stack ➡️ here https://solidgate-tech.github.io/. WHAT YOU WILL OWN - Plan and execute full-scope red team operations across external perimeter, web/API, AWS infrastructure, corporate identity providers, and human attack vectors (phishing, social engineering) - Build and run external testing programs - structured pentests and a bug bounty program with defined scope, rules of engagement, and triage process - Run purple team cycles with the SOC: exercise specific techniques together, assess detection coverage, and hand off concrete recommendations for improving detection use cases - Deliver risk-ranked reports with realistic impact analysis - written for both engineers and management - and track findings through remediation to

Free ATS check

Applying for this Red Team Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Ashby

  • Ashby is a fast modern ATS — most applications take under 3 minutes.
  • The resume parser is strong; verify parsed experience dates and job titles.
  • Custom screening questions are often scored algorithmically — answer completely.
  • Location field affects geo-based screening; use your actual metro area.

ANONYMOUS · UNFILTERED

What do employees actually say about Solidgate?

Real rants from real employees. Read before you apply.

Read Company Rants →