- Location
- United States
- Workplace
- Remote
- Employment
- Full time
- Level
- Principal
- Posted
- 3 months ago
About this role
SentiLink provides innovative identity and risk solutions, empowering institutions and individuals to transact with confidence. We’re building the future of identity verification in the United States replacing a clunky, ineffective, and expensive status quo with solutions that are 10x faster, smarter, and more accurate.
We’ve seen tremendous traction and are growing extremely quickly. Our real-time APIs have helped verify hundreds of millions of identities, starting with financial services and rapidly expanding into new markets. SentiLink is backed by world-class investors including Craft Ventures, Andreessen Horowitz, NYCA, and Max Levchin.
We’ve earned recognition from TechCrunch, CNBC, Bloomberg, Forbes, Business Insider, PYMNTS, American Banker, LendIt, and have been named to the Forbes Fintech 50. We have also been named a 2026 FICO Industry Vanguard Decision Award Winner. Last but not least, we’ve even made history - we were the first company to go live with the eCBSV and testified before the United States House of Representatives on the future of identity.
SentiLink supports a variety of ways to work, ranging from fully remote to in-office. We operate as a digital-first company with strong collaboration across the U.S. and India. We maintain physical offices in Austin, San Francisco, New York City, Seattle, Los Angeles, and Chicago in the U.S., and in Gurugram (Delhi) and Bengaluru in India. If you’re located near one of these offices, we would love for you to spend time in the office regularly. Some roles are hybrid or in-office by design. For example, our engineering team in India works primarily from our Gurugram office.
Role:
We’re looking for a Principal Information Security Engineer to lead and elevate security across SentiLink’s infrastructure, applications, and internal systems. This is a highly technical, hands-on role focused on building scalable security foundations while enabling the business to move quickly and safely.
You will partner closely with Engineering, Infrastructure, Product, Legal, and Compliance teams to design secure systems, improve detection and response capabilities, strengthen cloud security posture, and reduce organizational risk. You’ll help shape long-term security strategy while remaining deeply involved in technical implementation and operational execution.
This role is best suited for someone who combines strong technical depth with practical judgment and thrives in fast-moving, high-ownership environments.
Responsibilities:
Design and build internal security tooling from scratch, including agent-based security tooling, code analysis tooling, dynamic scanning, and security assessment tools
Identify vulnerabilities across SentiLink's AWS-based stack, including application code, cloud service configurations, and integrations between the two
Develop AI-assisted and agent-based tooling to scale offensive security testing beyond what a small team can do manually
Build and maintain security automation that improves detection, response, and remediation across the organization
Conduct hands-on penetration testing and vulnerability research against SentiLink's infrastructure and applications
Partner with engineering teams to remediate findings and embed security into the development process without slowing them down
Participate in the security on-call rotation, including incident response and regular response testing
Contribute to threat modeling and security design reviews for new systems, with a focus on cloud integrations and identity flows
Stay current on offensive security techniques, AI-assisted security tooling, and emerging attack patterns relevant to fintech and identity verification
Requirements:
8+ years of experience in security engineering, software engineering with a security focus, or closely related roles
Proficient in at least one systems language (Go, Rust, C++) and at least one higher-level language (Python, TypeScript)
Proven ability to design and ship production software end-to-end
Deep AWS infrastructure expertise, including IAM, EKS, RDS, networking, and managed services
Demonstrated ability to identify security misconfigurations and vulnerabilities across cloud architectures, application code, and the integrations between them
Experience conducting or building tooling for penetration testing, vulnerability assessment, or red team activities
Track record of building security automation and tooling from scratch
Comfortable operating independently on ambiguous problems without heavy process or oversight
Strong communication skills and the ability to partner with engineers who are not security specialists
Nice to have:
Experience building or deploying LLM-based agents or AI-assisted security tooling
Prior experience at a security product company (Wiz, Snyk, Datadog, etc.) or other security-forward engineering org
Prior fintech, identity, or fraud detection experience
Industry certifications (OSCP, OSCE, GPEN, GXPN)
Experience with detection engineering or SIEM platforms
Published security research, CVEs, or open source security tooling contributions
Experience supporting compliance frameworks (FedRAMP, SOC 2, PCI DSS) without it being their primary focus
Compensation:
$220k-280k/year + equity + benefits
Perks:
Employer paid group health insurance for you and your dependents
401(k) plan with employer match (or equivalent for non US-based roles)
Flexible paid time off
Regular company-wide in-person events
Home office stipend, and more!
Corporate Values:
Follow Through
Deep Understanding
Whatever It Takes
Do Something Smart
As published by SentiLink. Applications are handled on their site.
Skills this posting mentions
About SentiLink
SentiLink, the leading provider of innovative identity and risk solutions, empowers institutions and individuals to transact confidently with one another by preventing synthetic fraud, identity theft, and emerging forms of first party fraud at the point of account application. Its solutions enable these secure transactions by leveraging a deep understanding of identity and risk, and are informed by machine learning models and insights from a team of top risk analysts. SentiLink proudly serves a broad array of financial institutions, from the largest U.S. banks to leading credit unions and fintech unicorns to help stop fraud at account opening and beyond. Headquartered in San Francisco, the company was founded in 2017 by Naftali Harris and Max Blumenfeld and it has raised $85M to date from investors including Andreessen Horowitz, Craft Ventures, and NYCA Partners, among others.
All 51 openings at SentiLinkOne click, then it is written
Apply to SentiLink with a resume written for this role.
Queue Principal Information Security Engineer and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in SentiLink’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at SentiLink
See all- 5 weeks ago
- 5 weeks ago
- 5 weeks ago
- 5 weeks ago
Quantitative Researcher, PhD New Grad
United StatesRemote
$120k - $220k/yrEntry levelScience and research - 5 weeks ago
- 5 weeks ago
Quantitative Scientist, PhD New Grad
United StatesRemote
$120k - $220k/yrEntry levelScience and research
Similar roles elsewhere
See more- Today
Senior Frontend Software Engineer, Consumer Engineering
RedditRemote - United StatesRemote
$191k - $267k/yrSeniorEngineering - Today
Staff Backend Engineer - Mimir Query, Databases | USA | Remote
Grafana LabsUnited States (Remote)Remote
StaffEngineering - Today
Front End Software Engineer, Consumer Engineering
RedditRemote - United StatesRemote
$164k - $230k/yrEngineering - Today
Senior Software Engineer, Enterprise Commerce (SFCC)
AlgoliaRemote - United StatesRemote
$163k - $214k/yrSeniorEngineering - Today
Corporate Counsel, Cybersecurity & Enforcement
DoorDashUnited States - RemoteRemote
$184k - $270k/yrEngineering
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board SentiLink publishes. Refolk is not the employer and does not handle their hiring. Applications go to SentiLink directly.