Principal Information Security Engineer
SentiLink · Remote
MeritLog read this listing from SentiLink's Ashby job board and last checked it on September 8, 2026.
Source: the employer's Ashby job board. Open the original listing for current details.
Job details
- Work model
- Remote
- Salary
- Not listed by source
- Location
- United States
- Company website
- www.sentilink.com
Hiring context
How this role compares at SentiLink
SentiLink has 56 live roles in MeritLog’s catalog across 9 job families, and 9 of them are in engineering. 0 of those listings publish a pay range, a disclosure rate of 0%.
SentiLink concentrates this hiring in:
Counted across the job boards MeritLog tracks, at the time this page was served. Pay comparisons use only listings that publish a complete range in the same currency and period.
What the role asks for
What you'd do
- Design and build internal security tooling from scratch, including agent-based security tooling, code analysis tooling, dynamic scanning, and security assessment tools
- Identify vulnerabilities across SentiLink's AWS-based stack, including application code, cloud service configurations, and integrations between the two
- Develop AI-assisted and agent-based tooling to scale offensive security testing beyond what a small team can do manually
- Build and maintain security automation that improves detection, response, and remediation across the organization
- Conduct hands-on penetration testing and vulnerability research against SentiLink's infrastructure and applications
- Partner with engineering teams to remediate findings and embed security into the development process without slowing them down
- Participate in the security on-call rotation, including incident response and regular response testing
- Contribute to threat modeling and security design reviews for new systems, with a focus on cloud integrations and identity flows
- Stay current on offensive security techniques, AI-assisted security tooling, and emerging attack patterns relevant to fintech and identity verification
What they're asking for
- 8+ years of experience in security engineering, software engineering with a security focus, or closely related rolesExperience
- Proficient in at least one systems language (Go, Rust, C++) and at least one higher-level language (Python, TypeScript)Skill
- Proven ability to design and ship production software end-to-endSkill
- Deep AWS infrastructure expertise, including IAM, EKS, RDS, networking, and managed servicesSkill
- Demonstrated ability to identify security misconfigurations and vulnerabilities across cloud architectures, application code, and the integrations between themSkill
- Experience conducting or building tooling for penetration testing, vulnerability assessment, or red team activitiesSkill
- Track record of building security automation and tooling from scratchSkill
- Comfortable operating independently on ambiguous problems without heavy process or oversightSkill
- Strong communication skills and the ability to partner with engineers who are not security specialistsSkill
- Experience building or deploying LLM-based agents or AI-assisted security toolingSkillPreferred
- Prior experience at a security product company (Wiz, Snyk, Datadog, etc.) or other security-forward engineering orgSkillPreferred
- Prior fintech, identity, or fraud detection experienceSkillPreferred
- Industry certifications (OSCP, OSCE, GPEN, GXPN)CredentialPreferred
- Experience with detection engineering or SIEM platformsSkillPreferred
- Published security research, CVEs, or open source security tooling contributionsSkillPreferred
- Experience supporting compliance frameworks (FedRAMP, SOC 2, PCI DSS) without it being their primary focusSkillPreferred
Parsed by MeritLog from the employer’s own posting. The full description follows below.
Job description
SentiLink https://www.sentilink.com/ provides innovative identity and risk solutions, empowering institutions and individuals to transact with confidence. We’re building the future of identity verification in the United States replacing a clunky, ineffective, and expensive status quo with solutions that are 10x faster, smarter, and more accurate. We’ve seen tremendous traction and are growing extremely quickly. Our real-time APIs have helped verify hundreds of millions of identities, starting with financial services and rapidly expanding into new markets. SentiLink is backed by world-class investors including Craft Ventures, Andreessen Horowitz, NYCA, and Max Levchin. We’ve earned recognition from TechCrunch, CNBC, Bloomberg, Forbes, Business Insider, PYMNTS, American Banker, LendIt, and have been named to the Forbes Fintech 50 https://www.forbes.com/companies/sentilink/?list=fintech50. We have also been named a 2026 FICO Industry Vanguard Decision Award Winner https://www.businesswire.com/news/home/20260330439998/en/SentiLink-Named-a-2026-FICO-Industry-Vanguard-Decision-Award-Winner-for-Leadership-in-Identity-Theft-Detection. Last but not least, we’ve even made history - we were the first company to go live with the eCBSV https://resources.sentilink.com/blog/sentilink-makes-history-as-first-ecbsv-provider and testified before the United States House of Representatives https://resources.sentilink.com/media/sentilinks-statement-before-the-house-financial-services-committee on the future of identity. SentiLink supports a variety of ways to work, ranging from fully remote to in-office. We operate as a digital-first company with strong collaboration across the U.S. and India. We maintain physical offices in Austin, San Francisco, New York City, Seattle (Bellevue), Los Angeles, and Chicago in the U.S., and in Gurugram (Delhi) and Bengaluru in India. If you’re located near one of these offices, we would love for you to spend time in the office regularly. Some roles are hybrid or in-office by design. For example, our engineering team in India works primarily from our Gurugram office. ROLE: We’re looking for a Principal Information Security Engineer to lead and elevate security across SentiLink’s infrastructure, applications, and internal systems. This is a highly technical, hands-on role focused on building scalable security foundations while enabling the business to move quickly and safely. You will partner closely with Engineering, Infrastructure, Product, Legal, and Compliance teams to design secure systems, improve detection and response capabilities, strengthen cloud security posture, and reduce organizational risk. You’ll help shape long-term security strategy while remaining deeply involved in technical implementation and operational execution. This role is best suited for someone who combines strong technical depth with practical judgment and thrives in fast-moving, high-ownership environments. RESPONSIBILITIES: - Design and build internal security tooling from scratch, including agent-based security tooling, code analysis tooling, dynamic scanning, and security assessment tools - Identify vulnerabilities across SentiLink's AWS-based stack, including application code, cloud service configurations, and integrations between the two - Develop AI-assisted and agent-based tooling to scale offensive security testing beyond what a small team can do manually - Build and maintain security automation that improves detection, response, and remediation across the organization - Conduct hands-on penetration testing and vulnerability research against SentiLink's infrastructure and applications - Partner with engineering teams to remediate findings and embed security into the development process without slowing them down - Participate in the security on-call rotation, including incident response and regular response testing - Contribute to threat modeling and security design reviews for new systems, with a focus on cloud integrations and identity flows - Stay current on offensive security techniques, AI-assisted security tooling, and emerging attack patterns relevant to fintech and identity verification REQUIREMENTS: - 8+ years of experience in security engineering, software engineering with a security focus, or closely related roles - Proficient in at least one systems language (Go, Rust, C++) and at least one higher-level language (Python, TypeScript) - Proven ability to design and ship production software end-to-end - Deep AWS infrastructure expertise, including IAM, EKS, RDS, networking, and managed services - Demonstrated ability to identify security misconfigurations and vulnerabilities across cloud architectures, application code, and the integrations between them - Experience conducting or building tooling for penetration testing, vulnerability assessment, or red team activities - Track record of building security automation and tooling from scratch - Comfortable operating independently on ambiguous problems without heavy process or oversight - Strong communication skills and the ability to partner with engineers who are not security specialists NICE TO HAVE: - Experience building or deploying LLM-based agents or AI-assisted security tooling - Prior experience at a security product company (Wiz, Snyk, Datadog, etc.) or other security-forward engineering org - Prior fintech, identity, or fraud detection experience - Industry certifications (OSCP, OSCE, GPEN, GXPN) - Experience with detection engineering or SIEM platforms - Published security research, CVEs, or open source security tooling contributions - Experience supporting compliance frameworks (FedRAMP, SOC 2, PCI DSS) without it being their primary focus COMPENSATION: $220k-280k/year + equity + benefits PERKS: - Employer paid group health insurance for you and your dependents - 401(k) plan with employer match (or equivalent for non US-based roles) - Flexible paid time off - Regular company-wide in-person events - Home office stipend, and more! CORPORATE VALUES: - Follow Through - Deep Understanding - Whatever It Takes - Do Something Smart
Keep exploring
More Engineering roles
- Staff+ Software Engineer, Enterprise Knowledge WorkAnthropic · Hybrid
- Staff Software Engineer, AndroidAnthropic · Hybrid
- Director, Finance Systems - Revenue Systems EngineeringAnthropic · Not provided by source
- Staff Software Engineer, Infrastructure (Distributed Systems)Anthropic · On-site
- Performance Engineer, Inference SystemsAnthropic · On-site
- Applied AI, Research EngineerAnthropic · Not provided by source