bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesStripePrincipal Security Engineer, Privy

Principal Security Engineer, Privy

Stripe · NYC-Privy · Active · Greenhouse

Job facts

FieldValue
CompanyStripe
TitlePrincipal Security Engineer, Privy
Normalized title-
Department / team9001 Privy - R&D
LocationUnited States
Work model-
Employment type-
Salary-
Statusactive
ATS providerGreenhouse
Posted / first seen2026-05-20 / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-04

Related slices

PageWhat it containsOpen
Company jobsActive postings from Stripe.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Greenhouse.Open
Provider filtered searchThe same provider as a filtered job collection.Open
Department jobsActive postings in 9001 Privy - R&D.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyStripe
Sourcef6595d85-f0f8-440c-8dc1-b0386dc838fa
ATS providerGreenhouse

Description

Who we are About Privy Our mission is to make privacy and user ownership the default online. We build simple, flexible developer tooling that make it easy to build products that put users first. By leveraging modern cryptography, we shift the status quo around digital ownership and protect the accounts and assets of millions of users. Learn more about Privy: Privy and Stripe: Bringing crypto to everyone What you’ll do The Principal Security Engineer is a senior individual contributor responsible for defining, building, and operating security programs for high-risk financial technology and crypto infrastructure products, including embedded wallets, authentication systems, transaction flows, key management systems, developer platforms, and production cloud services. This role leads security architecture and hands-on technical security work across application security, product security, infrastructure security, incident response, vulnerability management, threat modeling, secure software development, and security automation. The Principal Security Engineer partners directly with engineering, product, infrastructure, compliance, legal, and executive stakeholders to identify and reduce systemic security risk across the company’s most sensitive products and services. The role requires deep expertise in modern software security, cloud-native systems, cryptographic protocols, wallet and blockchain threat models, secure authentication, web application security, vulnerability research, secure SDLC design, and practical incident response. The Principal Security Engineer is expected to operate independently on ambiguous, high-impact security problems; design scalable security controls; review complex architectures; identify exploitable vulnerabilities; build security tooling; guide engineering teams; and represent security judgment in critical product and platform decisions. Responsibilities Lead security architecture reviews for embedded wallet systems, authentication flows, key management infrastructure, transaction signing systems, crypto custody-adjacent services, and developer-facing APIs. Conduct advanced threat modeling for web, mobile, cloud, wallet, blockchain, and cryptographic systems. Identify, validate, prioritize, and drive remediation of vulnerabilities across applications, infrastructure, APIs, CI/CD pipelines, third-party integrations, and production services. Design and implement scalable security controls, automation, detection, alerting, and monitoring to reduce risk across engineering teams. Lead or support incident response, security investigations, root-cause analysis, containment, remediation, and post-incident hardening. Evaluate security implications of new product launches, infrastructure changes, vendor integrations, cryptographic designs, and authentication mechanisms. Develop security standards, secure engineering guidance, review processes, and technical documentation for engineering teams. Partner with engineering leadership to embed security into design, development, deployment, and operational workflows. Manage and triage external vulnerability reports, responsible disclosure submissions, penetration test findings, bug bounty reports, and third-party security assessments. Perform hands-on vulnerability research and proof-of-concept validation for complex application, protocol, authentication, authorization, cloud, and blockchain-related security issues. Mentor engineers and security team members on secure design, exploitability analysis, vulnerability remediation, and risk-based prioritization. Stay current on emerging threats affecting crypto infrastructure, fintech, cloud platforms, web application frameworks, supply- Who you are We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement. Minimum requirements 10 years of professional experience in software security, application security, product security, infrastructure security, security engineering, vulnerability research, incident response, or closely related technical security roles. Experience must include substantial hands-on work securing production software systems, cloud infrastructure, web applications, APIs, authentication systems, or financial technology platforms. Bachelor’s degree in Computer Science, Computer Engineering, Information Systems, Information Security, Cybersecurity, Software Engineering, Electrical Engineering, Mathematics, or a closely related technical field. Foreign equivalent degrees are acceptable. Security architecture and threat modeling for complex software systems. Application security, including web application vulnerabilities, API security, authentication, authorization, session management, input validation, injection flaws, insecure deserialization, SSRF, XSS, CSRF, access control failures, and business logic vulnerabilities. Cloud and infrastructure security, including AWS or comparable cloud platforms, IAM, network security, secrets management, containerized workloads, CI/CD security, logging, monitoring, and production hardening. Secure software development practices and the ability to read, review, and reason about production code in modern programming languages such as JavaScript, TypeScript, Python, Go, Java, Ruby, Rust, or similar. Incident response, security investigations, vulnerability triage, exploitability assessment, remediation planning, and post-incident review. Cryptographic and authentication concepts, including public-key cryptography, digital signatures, key management, secure enclave or hardware-backed security models, OAuth/OIDC, passkeys/WebAuthn, wallet signing flows, and secure transaction approval patterns. Security tooling and automation, including SAST, DAST, dependency analysis, vulnerability scanners, custom detection tooling, logging pipelines, or security workflow automation. Risk-based prioritization of vulnerabilities and security findings in a production engineering environment. Communication with engineering, product, infrastructure, legal, compliance, and executive stakeholders on security risks and remediation tradeoffs. Ability to independently lead ambiguous, high-impact security initiatives across multiple teams. Ability to mentor engineers and influence secure design decisions without direct management authority. Preferred qualifications Experience securing cryptocurrency, blockchain, wallet, custody, payment, financial technology, or high-value transaction systems. Experience with bug bounty programs, responsible disclosure, penetration testing, red-team findings, or vulnerability research. Experience reviewing cryptographic protocols, transaction signing systems, embedded wallets, smart-contract-adjacent systems, or developer SDKs. Experience building internal security platforms, security automation, detection systems, or developer-facing security tools. Public contributions to the security community, such as conference presentations, publications, open-source tools, vulnerability disclosures, CVEs, security research, or peer review of security work.

Full job record

Job IDba7be6fac9ec86161c7dfdf023967b3db40b5a85
Org ID513d0053-fcfc-4400-8e5b-bd4bd13e8763
Source IDf6595d85-f0f8-440c-8dc1-b0386dc838fa
Board IDf6595d85-f0f8-440c-8dc1-b0386dc838fa
Providergreenhouse
Provider Job Key7947546
TitlePrincipal Security Engineer, Privy
Normalized Title
Statusactive
Activeyes
Location TextNYC-Privy
Department9001 Privy - R&D
Team
Employment Type
Workplace Type
Remote Policy
CountryUnited States
Region
City
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://stripe.com/jobs/search?gh_jid=7947546
Apply URLhttps://stripe.com/jobs/search?gh_jid=7947546
First Seen At2026-05-29 22:43:12Z
Last Seen At2026-06-04 11:18:09Z
Last Checked At2026-06-04 11:18:09Z
Last Changed At2026-05-29 22:43:12Z
Inactive At
Source Posted At2026-05-20 22:31:58Z
Source Updated At2026-05-20 22:31:58Z
Raw Payload Uris3://bluework-jobs-prod-raw-590183727216/raw/provider=greenhouse/board=stripe/date=2026-06-04/2026-06-04T11-18-07-964Z-364020c849a45ed8cb9be8966fd47ec3fd03b852aa6b74c390c1e79b460f6941.json
Event Fields
{
  "content_hash": "16cd485285fa84fa2992ee7673c715455def770bb917108925d280890754f5ab",
  "source_hash": "280cd1fefbb7101b055bd1360e809132f748406a2d52d199dbe25dd0e56a639d",
  "last_changed_at": "2026-05-29T22:43:12.354Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "US",
    "city": null,
    "region": null,
    "country": "United States",
    "is_remote": false,
    "confidence": 0.95
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-04T11:18:09.087Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "US",
      "city": null,
      "region": null,
      "country": "United States",
      "is_remote": false,
      "confidence": 0.95
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": null,
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "title": "Principal Security Engineer, Privy",
  "offices": [
    {
      "id": 65234,
      "name": "US",
      "location": null,
      "child_ids": [
        89623,
        249942,
        249943,
        230657,
        61413,
        80440,
        344486,
        83778,
        61414,
        83767,
        83768,
        83776,
        83769,
        83770,
        83771,
        83772,
        83773,
        83774,
        89624,
        83789,
        83775,
        83777,
        83779,
        83780,
        83820,
        83781,
        83782,
        83783,
        83784,
        83785,
        83786,
        83787,
        83821,
        83788,
        83790,
        83791,
        83792,
        83793,
        83794,
        83854,
        83861,
        83795,
        83796,
        83797,
        83831,
        83798,
        83799,
        83856,
        83800,
        83801,
        83819,
        83802,
        83850,
        83803,
        83804,
        83805,
        83806,
        83807,
        83808,
        83809,
        83810,
        83811,
        83812,
        83813,
        83815,
        83817,
        83822,
        83824,
        83846,
        83825,
        83829,
        83830,
        65238,
        83834,
        83849,
        83859,
        83835,
        83836,
        83837,
        83839,
        83840,
        83841,
        83842,
        83843,
        83844,
        83847,
        83848,
        83851,
        83852,
        83853,
        83855,
        83857,
        83858,
        83860,
        83862,
        83814,
        83818,
        83823,
        83826,
        83827,
        83828,
        83832,
        83833,
        83816,
        85342,
        83838,
        83845,
        223073,
        265365,
        16654
      ],
      "parent_id": 673
    }
  ],
  "language": "en",
  "location": {
    "name": "NYC-Privy"
  },
  "metadata": [],
  "updated_at": "2026-05-20T18:31:58-04:00",
  "departments": [
    {
      "id": 290782,
      "name": "9001 Privy - R&D",
      "child_ids": [],
      "parent_id": 290781
    }
  ],
  "company_name": "Stripe",
  "requisition_id": 3451800,
  "first_published": "2026-05-20T18:31:58-04:00",
  "application_deadline": null
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/ba7be6fac9ec86161c7dfdf023967b3db40b5a85?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/513d0053-fcfc-4400-8e5b-bd4bd13e8763JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/f6595d85-f0f8-440c-8dc1-b0386dc838faJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/ba7be6fac9ec86161c7dfdf023967b3db40b5a85/eventsJSON