Coinflow
fintech
SecurityEngineer
Neural analysis suggests this role is
optimal for Mid candidates.
“Security Engineer at Coinflow. Skills: Security Engineering, DevSecOps, Offensive Security, SIEM, Vulnerability Management, AI-native security tooling. own the day-to-day defensive and offensive security posture. build the SecOps backbone”
What You'll Achieve.
own the day-to-day defensive and offensive security posture; build the SecOps backbone; hunt for weaknesses in our own stack before anyone else does; keep our SDLC fast and secure; gives engineering, compliance, and leadership a real-time picture of our security posture; scale your coverage; keeps packages patched without breaking production; make the secure path the fast path for engineers; produce the evidence, controls, and monitoring artifacts that PCI DSS, SOC 2, ISO 27001, and DORA auditors need
Industry & Context.
hunt for weaknesses; find bugs in our code; write the tooling to find more bugs
What They're Looking For.
Must Have
4+ years in a security engineering, product security, or DevSecOps role, hands-on offensive skills, Comfortable with web app, API, cloud, and infrastructure pentesting, Production experience operating a SIEM (Datadog, Splunk, Elastic, Panther, or similar), building dashboards that engineers actually use, Fluency in TypeScript/Node, passing comfort with Rust, Go, or Python, Experience with vulnerability management at scale, Comfort working with AI-native tooling (Claude Code, Claude Security, or similar) as a daily driver, genuine excitement to start working with AI-native tooling
Nice to Have
ideally at a fintech, payments company, or other regulated environment, Kubernetes a plus
What You'll Do.
own the day-to-day defensive and offensive security posture
build the SecOps backbone
hunt for weaknesses in our own stack
partner with engineering to keep our SDLC fast and secure
Stand up and operate our SIEM
Build out the SecOps dashboard
Run continuous internal pentests against Coinflow services
Automate reconnaissance
and exploit development
and measure mean-time-to-fix
Own the vulnerability lifecycle end-to-end
Triage CVEs across our npm
Build the automation that keeps packages patched without breaking production
Monitor and improve how we ship code
Define secure-by-default patterns for new services
review threat models for high-risk changes
integrate SAST/DAST/secret scanning into CI
make the secure path the fast path for engineers
Work alongside our compliance function to produce the evidence
and monitoring artifacts
How You'll Work.
Team & Collaboration
partner with engineering to keep our SDLC fast and secure; direct line into every part of the engineering org; building dashboards that engineers actually use; Compliance Partnership
Process & Methodology
drive remediation, measure mean-time-to-fix
Full Job Description
About Coinflow Coinflow is the next-generation payment service provider revolutionizing global financial infrastructure with stablecoins, AI-driven fraud prevention, and instant settlement. Coinflow enables businesses to grow faster with instant settlement, fraud & chargeback indemnity, global pay-ins, multi-currency FX, and unified payouts. Founded in 2023, the company serves marketplaces, fintechs, remittance providers, gaming platforms, and ecommerce merchants worldwide. Since our seed round in 2024, we’ve achieved 23x revenue growth and scaled to multi-billion-dollar annual transaction volume. In response to this growth, Coinflow announced a $25M Series A https://coinflow.cash/blog/coinflows-series-a in October 2025—led by Pantera Capital, CMT Digital, Coinbase Ventures, Jump Crypto, and Reciprocal Ventures—accelerating our mission to power the world’s fastest-moving businesses with innovative, reliable global payments. Coinflow is proudly headquartered in Chicago, IL. Learn more at coinflow.cash http://coinflow.cash. About The Role We're hiring for a Security Engineer to own the day-to-day defensive and offensive security posture of Coinflow. You'll build the SecOps backbone, hunt for weaknesses in our own stack before anyone else does, and partner with engineering to keep our SDLC fast and secure. This role reports to the CTO and has a direct line into every part of the engineering org. You'll be hands-on with modern AI-native security tooling — we use Claude Security and Claude Code as force multipliers for internal pentesting, code review, and remediation. If you're excited about being one of the first security engineers building this way, you'll fit in well here. What You'll Own - SIEM & SecOps Dashboard: Stand up and operate our SIEM. Build out the SecOps dashboard that gives engineering, compliance, and leadership a real-time picture of our security posture — alerts, anomalies, auth events, infrastructure changes, and audit-ready evidence in one place. -
Applying for this Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Coinflow?
Real rants from real employees. Read before you apply.