We sell trust, and security is core to that promise. We're looking for someone to lead how we think about code and operational security as we scale. You'll help design the systems, practices, and safeguards that enable us to grow without compromising on that trust.
🏢 About Better Money
We believe stablecoins are better money and will be the backbone of better payments. We see key structural problems hindering stablecoin adoption, and we’re going to fix them – starting with building a clearinghouse. We’re a small, scrappy team based in NYC, we’ve raised $10M from a16z crypto and other excellent partners, and we’re going to bring better money to the world.
🎯 The Role
You'll own our security posture across application security, infrastructure security, and operational security. You'll conduct code reviews, threat modeling, and penetration testing to identify and remediate vulnerabilities. You'll design and implement security controls, monitoring, and incident response processes appropriate for a regulated payments environment.
✅ Key Responsibilities
Own our security posture across application security, infrastructure security, and operational security.
Conduct code reviews, threat modeling, and penetration testing to identify and remediate vulnerabilities.
Design and implement security controls, monitoring, and incident response processes appropriate for a regulated payments environment.
Establish security policies, procedures, and compliance frameworks (SOC 2, PCI-DSS, etc.) as we scale.
Hire, manage, and supervise specialist contractors or future security hires as the team grows.
Ship internal security tooling and features. We need someone who can build, not just advise.
Work closely with engineering to embed security into our development lifecycle from the start.
📌 Required Qualifications
5+ years of experience in security engineering, with meaningful time at a payments company, bank, or other regulated financial institution.
Experience with cloud environments (GCP) and infrastructure as code providers (Terraform).
Breadth across both application/code security and operational security. You don't need to be the world's deepest expert in both, but you need to be knowledgeable in each and capable of hiring and managing those who are.
You can write production code, not just review it. Ideally you've shipped internal tools or security features yourself.
Experience building security programs at early-stage or high-growth companies, ideally from scratch.
Familiarity with compliance frameworks relevant to payments and banking (SOC 2, PCI-DSS, state money transmission, etc.).
You view a lack of specificity as an opportunity for ownership.
Please let Bettermoney know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.