Sardine

Senior Information Security Engineer

United States

$150,000 – $175,000Compensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Fraud Prevention, AML Compliance, Fintech, Financial ServicesIndustries

About Us

We are a leader in fraud prevention and AML compliance. Our platform uses device intelligence, behavior biometrics, machine learning, and AI to stop fraud before it happens. Today, over 300 banks, retailers, and fintechs worldwide use Sardine to stop identity fraud, payment fraud, account takeovers, and social engineering scams. We have raised $145M from world-class investors, including Andreessen Horowitz, Activant, Visa, Experian, FIS, and Google Ventures.

Our Culture

We have hubs in the Bay Area, NYC, Austin, and Toronto. However, we maintain a remote-first work culture. #WorkFromAnywhere We hire talented, self-motivated individuals with extreme ownership and high growth orientation. We value performance and not hours worked. We believe you shouldn't have to miss your family dinner, your kid's school play, friends get-together, or doctor's appointments for the sake of adhering to an arbitrary work schedule.

Location

Remote - US (From Home / Beach / Mountain / Cafe / Anywhere!) We are a remote-first company with a globally distributed team. So you can find your productive zone and work from there

About the Role

We are seeking a highly motivated and experienced Information Security Engineer to join our growing team. In this role, you will be a critical defender of our infrastructure, responsible for building, maintaining, and operating the security systems that protect our company. You will tackle a wide range of security challenges, from ensuring regulatory compliance to responding to sophisticated threats, making a direct impact on the trust and safety of our platform.

What You'll Do

  • Security Operations: Day-to-day management of security tools and systems; monitor security alerts, triage events, and escalate as necessary.
  • Incident Response & Forensics: Act as a key member of the incident response team, leading technical investigation, containment, and eradication of security incidents. Conduct forensic analysis as needed.
  • PCI Compliance: Drive and maintain our PCI DSS compliance program, working with auditors and internal teams to ensure all requirements are met.
  • Vulnerability Management: Manage the lifecycle of vulnerabilities from discovery to remediation, utilizing scanning tools, prioritizing risks, and tracking patching efforts.
  • Security Control Testing: Design and execute tests to validate the effectiveness of security controls and recommend improvements.
  • Penetration Testing: Coordinate and/or perform penetration tests against applications, infrastructure, and networks to identify security weaknesses.
  • Audit & Logging: Define audit logging requirements across our technology stack and conduct regular reviews of logs to detect anomalous or malicious activity.
  • Threat Modeling: Proactively identify and assess threats to our applications and infrastructure by building and maintaining threat models.
  • Secure Configuration: Develop and enforce security configuration standards and baselines for servers, cloud services, and endpoints.
  • Architectural Review: Partner with engineering teams to review system architecture and new features, providing security guidance and ensuring secure-by-design principles are followed.

What You'll Bring

  • 7+ years of hands-on experience in an information security or cybersecurity role.
  • Demonstrated experience with PCI DSS standards, controls, and audit processes.
  • Strong knowledge of vulnerability management principles and experience with tools like Nessus, Qualys, or OpenVAS.
  • Proven experience in security operations, including hands-on experience with SIEM, EDR, and other security monitoring tools.
  • Solid understanding of network security principles (e.g., firewalls, VPNs, IDS/IPS) and TCP/IP networking.
  • Experience securing cloud environments such as AWS and GCP.
  • Familiarity with incident response frameworks and experience handling security incidents.
  • Proficiency in at least one scripting language (e.g., Python, Bash, PowerShell) for automation.

Compensation

  • Salary: $150K - $175K
  • Employment Type: FullTime

Skills

Information Security
Security Operations
Incident Response
Forensics
Security Systems
Threat Detection
Risk Management
Vulnerability Management
Compliance
Fraud Prevention
AML Compliance
Machine Learning
AI

Sardine

Fraud prevention and compliance platform

About Sardine

Sardine.ai focuses on fraud prevention and compliance for banks, retailers, and fintech companies. Its platform offers tools for risk scoring, transaction monitoring, and customer due diligence, helping clients detect fraud and prevent money laundering. What sets Sardine.ai apart is its ability to monitor customer interactions for fraud signals, using data from over 35 providers to generate accurate risk scores. The company's goal is to enhance security and compliance for financial institutions and retailers.

San Francisco, CaliforniaHeadquarters
2020Year Founded
$73.5MTotal Funding
SERIES_BCompany Stage
Fintech, Financial ServicesIndustries
51-200Employees

Benefits

Generous compensation in cash and equity
7-year for post-termination option exercise (vs. standard 90 days)
Early exercise for all options, including pre-vested
Work from anywhere: Remote-first Culture
Unlimited paid time off and minimum 2 weeks/year of mandatory vacation
100% of health insurance, dental, and vision coverage for employees and 60% for dependents
4% matching in 401k
Company-wide offsites, the last one was at Miami
MacBook Pro delivered to your door
One-time stipend to set up a home office — desk, monitors, etc.
Monthly meal stipend
Monthly health and wellness stipend
Monthly meet-up stipend
Unlimited access to an expert financial advisory

Risks

Sophisticated synthetic identity fraud challenges traditional detection methods.
Real-time payment systems increase fraud risk, straining current detection capabilities.
Dollar-to-crypto conversion partnership may attract regulatory scrutiny.

Differentiation

Sardine offers instant settlement for NFT and cryptocurrency transactions, enhancing transaction speed.
The platform uses behavioral biometrics to monitor interactions, providing precise risk scores.
Sardine integrates data from over 35 providers for comprehensive fraud detection.

Upsides

Partnership with Experian enhances product offerings with behavioral biometrics and device intelligence.
Collaboration with Airbase expands market reach in integrated risk management solutions.
Launch of GenAI assistant, Finley, leverages AI for competitive fraud detection.

Land your dream remote job 3x faster with AI