Security Engineer

Rain
New York
Workplace: HybridFull timeUSD 50,000 - 999,000 annuallyFunction: CybersecurityExperience: 4-8 yearsSkills: ["Collaboration","Problem-solving","Risk management"]

Embed security into Rain’s engineering lifecycle as an Application Security-focused Security Engineer. Lead vulnerability scanning, code reviews, and threat modeling, and partner with product and development squads to remediate findings efficiently. Scale automated security tooling across CI/CD (SAST, DAST, SCA, IaC) “shift-left,” build application security standards and guardrails, and support incident response with root-cause analysis and mitigation improvements.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Rain
Rain
7 months ago

Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 17 hours agoStatus: Live

Job Summary

Embed security into Rain’s engineering lifecycle as an Application Security-focused Security Engineer. Lead vulnerability scanning, code reviews, and threat modeling, and partner with product and development squads to remediate findings efficiently. Scale automated security tooling across CI/CD (SAST, DAST, SCA, IaC) “shift-left,” build application security standards and guardrails, and support incident response with root-cause analysis and mitigation improvements.
Location: New York
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Lead application security assessments, including vulnerability scanning, code reviews, and threat modeling with engineering teams.
  • •Partner with product and development squads to drive remediation and resolve security findings efficiently.
  • •Integrate and scale automated security tooling across CI/CD pipelines using SAST, DAST, SCA, and IaC to shift security left.
  • •Develop and maintain application security standards, patterns, and guardrails to reduce risk while enabling rapid delivery.
  • •Support incident response for application-level security events and contribute to root-cause analysis and future mitigation strategies.

Pay and Benefits

Salary: USD 50,000 - 999,000 annually
Equity and Bonus:Equity
Perks:Paid LeaveHealth InsuranceDentalVisionLife Insurance401k

Key Requirements

  • •4–8+ years of experience in security engineering or application security with a strong track record securing modern applications.
  • •Hands-on experience with security tools such as Semgrep, Burp Suite, Snyk, and Trivy for static, dynamic, and dependency security analysis.
  • •Strong understanding of web, API, and mobile security vulnerabilities (e.g., OWASP Top 10, API Top 10).
  • •Experience driving or participating in threat modeling and secure design reviews.
  • •Familiarity with cloud concepts and integrating security into SDLC and development workflows.
Experience:4-8 yearsFintechPaymentsCryptoSaaSApplication securitySecure software development
Skills:CollaborationProblem-solvingRisk management
Certifications:CISSPCSSLPOSCPGWAPT
Tech Stack:SemgrepBurp SuiteSnykTrivySASTDASTSCAIaCCI/CDOWASP Top 10API Top 10SDLCThreat modelingSecure design reviewsEBPFSecurity HubDLPRASPSOC 2ISO 27001

Company Brief

Rain
Rain builds stablecoin-powered card issuance and payments infrastructure for fintechs, platforms, and institutions. Its API and modular platform support on-ramps, wallets, cards, and off-ramps with compliance features like KYC and AML.
Industry: Fintech Infrastructure
Company Size: Medium (51 to 250 employees)
Growth: Growth Stage Startup
Headquarters: New York City, United States
Founded: 2021
WebsiteLinkedIn