Senior App Security Engineer

Zepz


Date: 3 weeks ago
City: Remote
Contract type: Full time
Remote
About Zepz

Zepz is the group powering two leading global remittance brands: WorldRemit and Sendwave. Since 2010, we have been disrupting an industry previously dominated by offline legacy players with our relentless focus on reducing the cost of remittances and increasing safety and convenience for our users.

Every day, our people work to unlock the prosperity of cross-border communities through finance and technology - driven by our vision of a world that celebrates migrants' impact on prosperity, at home and abroad.

In 2023, our brands helped cross-border communities send over $15bn from 50 countries to recipients in 130 countries. We operate over 2800 money transfer corridors worldwide and employ over 1,000 people globally. Zepz is a remote-first employer, with team members located across six continents

Come join us!

Zepz.io

Our Commitments:

  • We act like owners - We are relentlessly delivering for our users and spending money thoughtfully.
  • We embrace embarrassing honesty - We function best when we're open and honest with one another — especially about our challenges and doubts.
  • We have a bias to action - We get to first outcomes quickly, iterate and learn.
  • We strive to be better - We may make mistakes, but always learn from them.
  • We are inclusive - to better reflect and serve our users.

How you'll help us achieve it:

We believe strongly in building teams that can orient around a well-defined mission and are equipped to execute autonomously against that mission. We count on you to collaborate with your team to build and support our platform and products used by customers sending money transfers from 50+ countries into 150+ markets worldwide. We are looking for engineers who have experience in one or more technologies/programming languages and the desire to learn new ones on the job.

Our tech stack:

Our tech stack is varied at the moment. Embarrassing honesty - We are in the process of migrating some of our products off legacy stacks. Note: This role is for someone who is proficient with creating scalable Python backend services. You don't need to know the whole of the tech stack below. But it is here for you to be aware of.

  • Backend services: Java(SpringBoot and SpringCloud), Kotlin, Python.
  • Web Front Ends: React (Typescript)
  • Mobile apps: We have both React Native and Native mobile apps for our different brands (native apps: iOS-SwiftUI, Android-Kotlin)
  • Public Cloud: AWS and GCP
  • CI/CD tooling: GithubActions, ArgoCD, Jenkins, AzDO
  • Container orchestration: Kubernetes
  • IaC: Terraform
  • API Gateway and Service Mesh Architecture
  • Databases: SQL, PostgreSQL, NoSQL

What you will own:

  • Write great code: We understand code is read more than it's written, better off tested and maintainability is a must. Great but secure code.
  • Help shape what we build: You'll be working closely with product owners, designers and other engineers to design and refine our work. We work as a team and your input is key.
  • Influence technology evolution: We are designing new platforms with long-term goals in mind and are also happy to improve with new technology capabilities
  • Own delivery: We're obsessed with shipping value; you'll own work beyond a pull request. You'll care about bugs, scalability, uptime and other non-functional requirements.
  • Grow together: You'll review others' work and happily seek feedback on yours to ensure we build a better codebase and sharpen each other's skills.
  • Share your knowledge and points of view: We promote knowledge sharing across our teams and count on you to become an active member of one. Experiment with new tools, present your findings, shape our future standards.

Scope and Impact: You invent and try to simplify what we do. You insist on the highest standards from your team and yourself. You have charisma. You lead or influence a team. You tackle open-ended somewhat ambiguous problems

What You Bring to the Table:

  • A deep understanding of application security, allowing you to safeguard the development process from potential vulnerabilities.
  • Expertise in conducting thorough code reviews, ensuring that security best practices are integrated from the start.
  • Proficiency in scripting with Python or Java, leveraging these languages to enhance security protocols.
  • A strong background in security engineering, built through extensive experience in the field.
  • The ability to perform comprehensive manual penetration tests on innovative services, ensuring they are secure before their release.
  • A track record of overseeing and managing the outputs of security tools within the pipeline, ensuring they integrate smoothly into the development workflow.
  • A collaborative approach to working with the engineering team, helping to eliminate false positives from security tools such as GitHub Advanced Security, and Cloudflare.
  • The ability to provide actionable advice and guidance to address vulnerabilities, including offering metrics to track the success of remediation efforts.
  • Involvement in the planning and execution of cutting-edge fintech services, positioning yourself at the forefront of industry innovations.
  • A balanced perspective on security, working to achieve the optimal blend of strong protection and a seamless user experience in fintech service development.

What you'll get from us

Please note that the benefits below will apply to permanent roles.

We have five core benefits for our talent in the US, UK, Philippines, Poland, and South Africa. specifically:

  • Unlimited Annual Leave: Feel free to make the most of your time off and maintain a healthy work-life balance!
  • Private Medical Cover: You can opt-in to a Private Medical Insurance scheme. This provides you with access to thorough medical coverage, so you can feel confident in your health and well-being.
  • Retirement: We offer pension schemes to help you plan for and secure your future.
  • Life Assurance: Life assurance is available to give you peace of mind and protect your loved ones in case of the unexpected.
  • Parental Leave: We offer competitive parental leave schemes to ensure you are spending as much quality time with your new bundle of joy as possible.

We are also remote-first as an organisation, offering flexibility for you to work where you need to be most productive. In addition to the above, you will discover that we have a range of secondary perks (such as the cycle-to-work scheme and employee discounts) depending on your location, to help you thrive at Zepz!

Why choose Zepz?

  • Our team of over 1,000 employees is fully distributed across the world. We are working from coffee shops, homes, and co-working spaces — making us one of the larger fully distributed growth-stage startups in the world but we also offer workspace in our talent cluster locations - spaces we can meet, collaborate and connect.
  • We are proud parents, community organizers, farmers, band members, yoga teachers, YouTube influencers, former Olympians, and serial entrepreneurs.
  • We collectively speak over twenty languages, including Akuapem, Amharic, Bengali, Ewe, Fante, Ga, Igbo, Kalenjin, Luganda, Oromo, Somali, Swahili, Wolof, Bulgarian, Croatian, Czech, Danish, Dutch, English, Estonian, Finnish, French, German, Greek, Hungarian, Irish, Italian, Latvian, Lithuanian, Maltese, Polish, Portuguese, Romanian, Slovak, Slovenian, Spanish and Swedish.
  • At Zepz, embodying our commitments binds us together. We are collectively passionate about striving to achieve our vision and purpose - to continue to provide the best service to our users.

Ready to Apply?

Applications will be reviewed on a rolling basis. If interested, please submit your resume along with a cover letter (optional), highlighting why your experience demonstrates you meet the requirements of the role. Please also indicate the countries in which you have work authorization.

Confidence can sometimes hold us back from applying for a job. But we'll let you in on a secret: there's no such thing as a 'perfect' candidate. Zepz is a place where everyone can thrive.

So however you identify and whatever background you bring with you, and if at all you might need any form of support to make the process as comfortable as possible, please let us know and give us a shot by applying. We want you to be excited to wake up to make an impact every day.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Technical Project Engineer, Professional Services Organization

Zoom, Remote
1 day ago
What You Can ExpectZoom is seeking a Technical Project Engineer for the Professional Services Organization (PSO). The Technical Project Engineer will be designing, implementing and supporting Zoom Phone and Customer Experience Products (CX).About The TeamThe Professional Services Organisation are responsible for managing the designing and deployment of Zoom Phone and Contact Center solutions. The team are part of the international...

Area Vice President, EMEA

Torq, Remote
1 day ago
Torq is your security product's favorite security product. Our enterprise-grade security hyperautomation platform unifies and automates the entire security infrastructure to deliver unparalleled protection and productivity. Torq drives maximum value and efficiency from existing security investments. It supercharges security teams across the Fortune 500 with powerful, easy-to-use no-code, low-code, and full-code workflows that reduce manual tasks, freeing security professionals to...

Child Safety Researcher

ActiveFence, Remote
1 day ago
ActiveFence is seeking a highly motivated and detail-oriented individual to join our team as a Child Safety Researcher. Here, you will play a crucial role in conducting in-depth research on violations such as the distribution of child sexual abuse material (CSAM), child grooming, minor sextortion and child sex trafficking, contributing to our mission of creating a safer online environment for...