Posted at: 31 October
Software Engineer - Security
Company
Modern Treasury
Modern Treasury is a San Francisco-based fintech B2B company specializing in payment operations tools, offering APIs and dashboards for automating money movement for enterprises.
Remote Hiring Policy:
Modern Treasury supports remote work for certain roles and primarily hires from the United States, with team members located in cities such as San Francisco and New York.
Job Type
Full-time
Allowed Applicant Locations
United States
Salary
$120,000 to $160,000 per year
Job Description
OVERVIEW
This position can be based out of San Francisco, New York, or remote (we accept candidates from many states).
Modern Treasury’s mission is to build the most trusted financial infrastructure for global money movement. We’re looking for a Security Engineer to design and strengthen the controls that protect our payment infrastructure. You’ll enable teams to build secure, compliant financial products without slowing development.
Modern Treasury is expanding deeper into money movement. We’re building new products that will let customers move funds across both traditional rails and emerging technologies, including stablecoins. You’ll help design and operate the security controls that make this possible and set the foundation for compliant, programmable money movement at scale.
ABOUT THE ROLE
This role focuses on application and product security, and sits at the intersection of security, platform, payments engineering, and infrastructure. You’ll shape how Modern Treasury manages risk at scale and design the systems that make programmatic, compliant money movement possible. We are looking for someone who can influence security strategy and architectural design.
Your work will ensure that as we grow into new products and payment rails, we continue to move fast while keeping trust, compliance, and safety at the core of our platform.
WHAT YOU’LL DO
Lead application security across our payment platform, including secure code review, threat modeling, and security architecture for new products
Own product security for new payment rails, including FBO account structures, stablecoin integration, and enhanced compliance features
Design and implement fraud detection and prevention systems as we expand money movement capabilities
Partner with engineering teams to embed security into the development lifecycle through automation, secure design patterns, and security champions
Drive security architecture decisions for customer-facing APIs, authentication systems, and data protection controls
Build monitoring and detection capabilities for application-layer threats, API abuse, and fraud patterns
Design automation, monitoring, and remediation practices that keep our systems resilient and trustworthy
Collaborate with Compliance and Legal to ensure product features meet regulatory requirements (BSA/AML, KYC/KYB, state money transmission)
Influence technical strategy across Product, Platform, and Infrastructure teams on security and risk management
WHAT YOU SHOULD HAVE
Required Experience
7+ years in security engineering, with 3+ years focused on application and product security
2+ years in payments or fintech, with a deep understanding of money movement security challenges
Strong experience with:
Full-stack application security (frontend, backend, APIs)
Authentication and authorization systems and identity management
Fraud detection, prevention, and abuse mitigation in payment or financial products
Secure SDLC practices and developer security tooling
Experience with incident response and security monitoring
Payments engineering experience, ideally including fraud prevention and risk controls in money movement systems
Familiarity with compliance and regulatory standards for money movement, such as PCI DSS, BSA/AML, and KYC/KYB
What Sets You Apart
Deep understanding of payment processing security across ACH, wires, card networks, and emerging rails
Experience building controls for fraud detection, chargeback prevention, and abuse mitigation in payment systems
Knowledge of application security for Ruby on Rails, GraphQL, JavaScript, React, and containerized environments
Experience with stablecoin security, blockchain integrations, or crypto payment rails
Data-driven approach to prioritizing security investments and mitigating risk
Track record of balancing pragmatic risk management with business velocity
Demonstrated ability to lead security initiatives across multiple teams without direct authority
Experience setting security standards, influencing engineering culture at a company-wide level, and mentoring engineers to raise the security bar across the organization
TECHNOLOGIES WE USE
Ruby on Rails for our backend framework
React, GraphQL, and Tailwind CSS on the front end
Postgres for our database
AWS for infrastructure and hosting
Docker for containerization
GitHub for source code management
Buildkite for continuous integration
RegTech and anti-fraud platforms
ABOUT MODERN TREASURY
Modern Treasury is the operating system for money movement. Our payments platform combines a suite of APIs and dashboards to help companies unlock new payments revenue, strengthen customer experiences, and drive efficiency through their business. Our end-to-end platform moves enterprises forward with faster payments, efficient workflows, full data visibility.
Modern Treasury is committed to equal employment opportunity and does not discriminate in any employment opportunities or practices based on an individual's race, color, creed, gender (including gender identity and gender expression), religion (all aspects of religious beliefs, observance or practice, including religious dress or grooming practices), marital status, registered domestic partner status, age, national origin or ancestry (including language use restrictions and possession of a driver’s license issued under California Vehicle Code section 12801.9), natural hair, physical or mental disability, political affiliation, medical condition (including cancer or a record or history of cancer, and genetic characteristics), sex (including pregnancy, childbirth, breastfeeding or related medical condition), genetic information, sexual orientation, military and veteran status or any other consideration made unlawful by federal, state, or local laws. It also prohibits unlawful discrimination based on the perception that anyone has any of those characteristics, or is associated with a person who has or is perceived as having any of those characteristics.
Modern Treasury participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.