Staff Engineer, Application Security
Building security into the way we build software
Staff Application Security Engineers leverage their technical knowledge and leadership skills to enable development teams to move quickly without compromising on security. We influence security through partnerships and our ability to leverage expert guidance across Stripe’s product teams.
Stripe powers businesses all over the world. We process payments, run marketplaces, detect fraud, help entrepreneurs start a business from anywhere in the world, build world-class developer-friendly APIs, and more. Nearly every system we operate interacts with sensitive financial or personal data — making security a top priority for Stripe.
Our Design & Partnership team works on secure-by-design initiatives and deep product partnership. We build strong relationships with other teams and enable them to build secure software. This includes reviewing early-stage designs, developing threat models, scaling impact by curating security patterns, guidance, training; and championing security initiatives.
With the Design & Partnership team you will:
- Work with engineering teams to design solutions that are inherently secure
- Be a security subject matter expert and answer security questions
- Lead threat modeling discussions and enable teams to balance competing interests
- Lead security initiatives
- Scale security effort by empowering engineering teams with guidance, patterns and training
- Develop a deep understanding of Stripe’s code base and set standards for future development
You may be additive to our team if:
- You have low ego and a high degree of empathy
- You have strong communication skills, including developing and evangelizing written and technical or architectural documentation on an organizational level
- You have a breadth of applied knowledge within Application Security, specifically in the areas of Threat Modeling. and Security Review
- You have an ability to understand risk within a highly regulated, dynamic, and rapidly growing environment. Moreover, you’re able to up-level the ability for your engineering partners to do the same
- You have built training or champion programs for web scale technology companies from inception through execution, and know how to drive ROI from such initiatives
- You think about web security as an architect, and know how to position a growing AppSec practice within a faster growing company
- You have a desire to scale security through simple design, abstraction and education
At Stripe, we're looking for people with passion, grit, and integrity. You're encouraged to apply even if your experience doesn't precisely match the job description. Your skills and passion will stand out—and set you apart—especially if your career has taken some extraordinary twists and turns. At Stripe, we welcome diverse perspectives and people who think rigorously and aren't afraid to challenge assumptions. Join us.