Stop applying to remote jobs that are already dead.
Every listing shows the evidence: when we last checked it, how, and when it was posted and closed.

All listings

Prelim via Ashby

Lead Security Engineer

New YorkChicagoSan FranciscoLos AngelesSeattleAtlantaAustinBoston lead
still open verified 2d ago posted 24d ago seen just now
Apply at jobs.ashbyhq.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 2d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 24d ago

The date the source published, not the day we noticed it (2026-09-16). Last seen at its source just now.

We have tracked this listing since 5 Oct 2026 (5 days). The employer's own board has carried it every time we have read it, most recently just now.

Is it remote?

Marked remote on the employer's board

Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.

Who may apply?

New York, Chicago, San Francisco, Los Angeles, Seattle, Atlanta, Austin, Boston

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay $148.6k–235.2k/yr

Middle 50% of 208 listings that do state pay — Engineering · Lead · United States · USD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

DevOpsISO 27001Incident ManagementRisk ManagementSIEMSOC 2

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

About Prelim

Prelim builds digital account-opening infrastructure for community banks and credit unions. We've sustained over 100% ARR growth for four consecutive years on seed funding, and our platform sits in the critical path of how banks onboard their customers. When our system is down, a bank can't open accounts for its customers.

We're a small team. You'd be our first dedicated security hire and help define the security program for the next generation of banking.

What you'll own

  • Secure SDLC: dependency scanning, static analysis, security review of high-risk changes, and coordinating annual penetration tests. Teach engineers to catch issues before you have to.

  • Partner with DevOps on IAM, secrets management, network architecture, logging, and detection.

  • Policies, risk assessment, and roadmap. Decide what a company our size and risk profile actually needs, and defend that reasoning to auditors, bankers, and internally.

  • Own security questionnaires, vendor risk assessments, and customer security reviews. Banks conduct rigorous third-party risk management (often against FFIEC guidance).

  • Endpoint management, access reviews, phishing resistance, offboarding hygiene. The unglamorous stuff that questionnaires ask about first.

  • Own SOC 2 Type II end to end: control design, evidence collection, auditor management.

  • Owning incident response, from writing the plan, to running the tabletops, and leading if it's ever real. Banks have breach-notification expectations in their contracts. You'll know them cold.

What we're looking for

  • 5+ years in security engineering, with breadth across appsec, cloud security, and compliance.

  • Hands-on: you can read code, write scripts, and configure cloud controls yourself

  • You've owned or heavily contributed to a SOC 2 audit (or ISO 27001 / equivalent)

  • Experience answering enterprise or financial-institution security reviews.

  • Strong written communication.

  • Judgment about proportionality: you know which risks matter at our scale and which controls are theater

Nice to have

  • Fintech or banking-vendor experience; familiarity with FFIEC, GLBA, or bank third-party risk management

  • Experience as a first or early security hire

  • Detection engineering / SIEM experience

  • Familiarity with core banking integrations or handling of PII/KYC data flows

About Prelim

Prelim is a San Francisco and New York City-based startup that operates with fully remote positions across the US, helping banks onboard their customers. Our platform is designed to streamline the account opening process for both consumers and businesses, accelerating speed-to-market and enhancing the customer experience for financial institutions. If you’re excited to help shape the future of the banking industry, we encourage you to apply and join our team at Prelim. We are seeking individuals who are driven, ambitious, and eager to make a real impact in a traditional industry ready for technological innovation.

We offer equity, a sponsored 401K, parental leave, and fully paid health, vision, and dental insurance. Additional benefits include unlimited PTO, a remote work stipend, a life-style stipend, and twice-yearly company retreats.

Prelim values diversity and inclusion; people of all backgrounds are welcome to join our mission to transform banking.

Apply at jobs.ashbyhq.com