About the job
About Pave Bank
Pave Bank is pioneering the future of programmable business banking. Founded by the innovative minds behind Monzo and BigPay, we are on a mission to transform global business banking by merging cutting-edge financial infrastructure with exceptional client experiences.
About the Role
As we develop the next generation of programmable banking infrastructure, we are in search of a Senior Security Engineer who is both independent and inquisitive, equipped with a hacker mindset. This role demands a strategic thinker who can anticipate threats and fortify our platform’s security.
In this pivotal position, you will act as a key protector of Pave Bank, identifying vulnerabilities, closing security gaps, and enabling our Product and Engineering teams to deploy solutions rapidly without sacrificing security.
What You'll Do
- Conduct thorough reviews of Pave Bank’s platform and product code to uncover security vulnerabilities and mentor engineers towards secure coding practices.
- Educate engineering and product teams on secure coding and design methodologies, highlighting their importance.
- Develop and enhance internal tools, libraries, and automation processes to bolster security testing and enforcement.
- Perform continuous testing on internal and external applications to identify vulnerabilities.
- Stay up-to-date with the latest threats and attack strategies, applying this knowledge to our systems.
- Support third-party application security assessments and penetration tests.
What You’ll Bring
- A strong adversary-first mindset in software development.
- A passion for tackling intricate security challenges in a dynamic startup environment.
- A self-driven attitude and a commitment to continuous learning and growth.
- A solid understanding of attacker tools and techniques and how insecure development practices can be exploited.
- Proficiency in at least one modern programming language, such as Go, Python, or TypeScript.
- Excellent communication skills, with the ability to convey security concepts to both technical and non-technical audiences.
- A general understanding of blockchain technologies and cryptocurrency systems, along with their unique security challenges.

