About the job
At NerdWallet, our mission is to empower individuals to make informed financial decisions. We foster an inclusive, flexible, and transparent culture where you are encouraged to grow, take calculated risks, and be your authentic self (cape optional). Whether you prefer working remotely or in-office, we are committed to supporting your optimal work style. We prioritize your well-being, professional growth, and your ability to create a meaningful impact because when one Nerd succeeds, we all succeed.
We are on the lookout for a talented Security Engineer II to become a part of our Application Security team. This team plays a critical role in our mission by ensuring that the products and services we develop protect our users' data and trust.
In this position, you will closely collaborate with engineering teams across the organization to mitigate security risks throughout the software development lifecycle. You will participate in initiatives aimed at enhancing NerdWallet's security posture by refining tools, workflows, and standards that enable engineers to create secure software while ensuring a positive developer experience.
This role is perfect for someone who thrives on solving security challenges collaboratively, building scalable solutions, and assisting engineers in embedding security practices into their daily work. You will have the chance to deepen your application security knowledge while making significant contributions to our evolving security program.
You will report to a Business Information Security Officer.
If you were here 6 months ago, here are some things you might have worked on:
Developed and launched a dashboard for on-call activities for the team.
Assisted in triaging and responding to security findings and alerts generated by application security tools.
Conducted a penetration test of an external system and participated in red team exercises.
Worked alongside engineers to remediate vulnerabilities and enhance secure coding practices.
Contributed to automation or tooling that enhances visibility into application security risks.
Where you can make an impact:
Help expand NerdWallet’s application security program through automation, tooling, and enabling developers.
Collaborate with engineering and product teams to identify and address security gaps across various systems while balancing business priorities.
Create tools, processes, and automation that facilitate secure software development.

