As a Senior Security Engineer on the Defensive Platform Builder track you will act as a technical authority for secure software design and cloud native infrastructure defence across Flywire's global footprint. You will bring an automation first mindset to a high velocity fintech workplace, partnering with software engineering and SRE squads to embed security controls directly into our public cloud and GitLab CI/CD pipelines using AI workflows, so that our global payment systems stay secure by design and resilient in production.
Responsibilities and Tasks:
Secure SDLC & CI/CD Automation Ownership
Own, design and drive the end to end integration of automated security requirements and validation tooling into high velocity engineering pipelines.
Build custom internal tooling, wrappers and automated controls to replace manual security checkpoints, protecting development velocity while removing friction.
Cloud & Infrastructure Hardening
Partner directly with SRE and DevOps teams to establish secure public cloud architecture blueprints, manage Infrastructure as Code security scanning (for example Terraform) and enforce strict network isolation.
Architect and maintain cloud Identity and Access Management controls and enforce Zero Trust boundaries within containerised settings such as Docker and Kubernetes.
AI Driven Security & Application Reviews
Design, prompt engineer and deploy automated security review workflows using LLM APIs to run real time code analysis and give context aware feedback on pull requests.
Establish and enforce technical controls that protect internal and external generative AI features against LLM specific risks, including prompt injection, insecure output handling, model inversion and data poisoning.
Run deep dive source code audits and API security reviews that go beyond automated scanning, surfacing complex logic flaws before they reach production.
Cross Functional Collaboration & Technical Mentorship
Embed within software development and infrastructure sprint planning from the inception phase so that security is built in from day one rather than bolted on.
Provide expert level, actionable code and configuration guidance directly to software and SRE engineers.
Mentor junior security, software and SRE engineers to raise technical resilience across the wider organisation.