Coinflow

fintech

SecurityEngineer

$145–195k Chicago, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“Security Engineer at Coinflow. Skills: Security Engineering, DevSecOps, Offensive Security, SIEM, Vulnerability Management, AI-native security tooling. own the day-to-day defensive and offensive security posture. build the SecOps backbone”

What You'll Achieve.

own the day-to-day defensive and offensive security posture; build the SecOps backbone; hunt for weaknesses in our own stack before anyone else does; keep our SDLC fast and secure; gives engineering, compliance, and leadership a real-time picture of our security posture; scale your coverage; keeps packages patched without breaking production; make the secure path the fast path for engineers; produce the evidence, controls, and monitoring artifacts that PCI DSS, SOC 2, ISO 27001, and DORA auditors need

Industry & Context.

fintech
Problems you'll solve

hunt for weaknesses; find bugs in our code; write the tooling to find more bugs

What They're Looking For.

Must Have

4+ years in a security engineering, product security, or DevSecOps role, hands-on offensive skills, Comfortable with web app, API, cloud, and infrastructure pentesting, Production experience operating a SIEM (Datadog, Splunk, Elastic, Panther, or similar), building dashboards that engineers actually use, Fluency in TypeScript/Node, passing comfort with Rust, Go, or Python, Experience with vulnerability management at scale, Comfort working with AI-native tooling (Claude Code, Claude Security, or similar) as a daily driver, genuine excitement to start working with AI-native tooling

Nice to Have

ideally at a fintech, payments company, or other regulated environment, Kubernetes a plus

What You'll Do.

own the day-to-day defensive and offensive security posture

build the SecOps backbone

hunt for weaknesses in our own stack

partner with engineering to keep our SDLC fast and secure

Stand up and operate our SIEM

Build out the SecOps dashboard

Run continuous internal pentests against Coinflow services

Automate reconnaissance

and exploit development

and measure mean-time-to-fix

Own the vulnerability lifecycle end-to-end

Triage CVEs across our npm

Build the automation that keeps packages patched without breaking production

Monitor and improve how we ship code

Define secure-by-default patterns for new services

review threat models for high-risk changes

integrate SAST/DAST/secret scanning into CI

make the secure path the fast path for engineers

Work alongside our compliance function to produce the evidence

and monitoring artifacts

How You'll Work.

Team & Collaboration

partner with engineering to keep our SDLC fast and secure; direct line into every part of the engineering org; building dashboards that engineers actually use; Compliance Partnership

Process & Methodology

drive remediation, measure mean-time-to-fix

Full Job Description

About Coinflow Coinflow is the next-generation payment service provider revolutionizing global financial infrastructure with stablecoins, AI-driven fraud prevention, and instant settlement. Coinflow enables businesses to grow faster with instant settlement, fraud & chargeback indemnity, global pay-ins, multi-currency FX, and unified payouts. Founded in 2023, the company serves marketplaces, fintechs, remittance providers, gaming platforms, and ecommerce merchants worldwide. Since our seed round in 2024, we’ve achieved 23x revenue growth and scaled to multi-billion-dollar annual transaction volume. In response to this growth, Coinflow announced a $25M Series A https://coinflow.cash/blog/coinflows-series-a in October 2025—led by Pantera Capital, CMT Digital, Coinbase Ventures, Jump Crypto, and Reciprocal Ventures—accelerating our mission to power the world’s fastest-moving businesses with innovative, reliable global payments. Coinflow is proudly headquartered in Chicago, IL. Learn more at coinflow.cash http://coinflow.cash. About The Role We're hiring for a Security Engineer to own the day-to-day defensive and offensive security posture of Coinflow. You'll build the SecOps backbone, hunt for weaknesses in our own stack before anyone else does, and partner with engineering to keep our SDLC fast and secure. This role reports to the CTO and has a direct line into every part of the engineering org. You'll be hands-on with modern AI-native security tooling — we use Claude Security and Claude Code as force multipliers for internal pentesting, code review, and remediation. If you're excited about being one of the first security engineers building this way, you'll fit in well here. What You'll Own - SIEM & SecOps Dashboard: Stand up and operate our SIEM. Build out the SecOps dashboard that gives engineering, compliance, and leadership a real-time picture of our security posture — alerts, anomalies, auth events, infrastructure changes, and audit-ready evidence in one place. -

Free ATS check

Applying for this Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Ashby

  • Ashby is a fast modern ATS — most applications take under 3 minutes.
  • The resume parser is strong; verify parsed experience dates and job titles.
  • Custom screening questions are often scored algorithmically — answer completely.
  • Location field affects geo-based screening; use your actual metro area.

ANONYMOUS · UNFILTERED

What do employees actually say about Coinflow?

Real rants from real employees. Read before you apply.

Read Company Rants →