NMI

NMI

NMI provides an embedded online payments platform that integrates secure and customizable payment solutions, enabling businesses to streamline transactions and enhance customer experiences across various payment methods.

Diversified Financial Services
251-1K
Founded 1999
$1M raised

Description

  • Define and evolve security architecture across AWS and colocation infrastructure.
  • Establish secure reference architectures, engineering standards, and reusable control patterns.
  • Provide technical leadership for infrastructure, platform, and product initiatives.
  • Design and improve security controls for identities, networks, workloads, encryption, logging, monitoring, and secrets management.
  • Develop preventative guardrails using infrastructure-as-code, policy-as-code, automation, and cloud-native security services.
  • Partner early with Engineering and Product on threat modelling, security reviews, and technical risk assessments.
  • Build and integrate security tooling into infrastructure provisioning, engineering workflows, and CI/CD pipelines.
  • Use AI-assisted tooling to improve scripting, detection development, alert analysis, vulnerability triage, and documentation.
  • Lead vulnerability and exposure management efforts and respond as a senior escalation point during major security incidents.
  • Mentor security engineers and help raise the standard of security architecture, automation, and decision-making.

Requirements

  • Significant experience in security engineering, infrastructure security, cloud security, security architecture, or platform engineering.
  • Deep hands-on experience securing AWS environments.
  • Strong knowledge of AWS IAM, network architecture, account governance, encryption, logging, monitoring, secrets management, and workload protection.
  • Experience designing or securing on-premises, data-centre, or colocation-hosted infrastructure.
  • Strong knowledge of enterprise networking, segmentation, firewalls, secure remote access, privileged administration, and hybrid connectivity.
  • Experience with infrastructure-as-code, CI/CD security, containerised environments, and cloud-native platforms.
  • Demonstrated experience designing and implementing automated security controls and engineering solutions.
  • Proficiency with scripting or software development in Python, Go, or a comparable language.
  • Practical experience using AI-assisted tooling in security engineering or operations.
  • Experience leading complex initiatives across multiple engineering, infrastructure, or product teams.
  • Strong knowledge of security architecture, threat modelling, vulnerability management, detection, and incident response.
  • Ability to operate independently, navigate ambiguity, and influence technical and leadership audiences.
  • Advanced AWS certification in security, architecture, networking, or cloud engineering (desirable).
  • Experience in fintech, payments, SaaS, or another regulated technology environment (desirable).
  • Experience securing large or complex AWS multi-account estates (desirable).
  • Experience with Kubernetes, container security, software supply-chain security, and policy-as-code (desirable).
  • Experience with CNAPP, CSPM, SIEM, EDR, DLP, WAF, vulnerability-management, network-security, or secrets-management platforms (desirable).
  • Familiarity with PCI DSS, SOC 2, GDPR, NIST, or ISO 27001 (desirable).
  • Experience supporting significant security incidents, penetration tests, audits, or customer security assessments (desirable).

Benefits

  • Competitive salary of $175,000 to $195,000 CAD, depending on experience, plus bonus.
  • Remote-first culture.
  • Flexible PTO.
  • Health, dental, and vision insurance.
  • 13 paid holidays.
  • Company volunteer days.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer I, Customer Trust EMEA (Remote Eligible in the UK)

Smartsheet 1K-5K Internet Software & Services

Smartsheet is hiring a Sr. Security Engineer I to lead EMEA customer trust operations from the UK, managing security assessments and building credibility with enterprise customers across the region.

Encryption
1 hour ago

Senior Security Research Engineer

Picus Security 51-250 Professional Services

Picus Security is seeking a Technical Marketing Team member to create research-driven security content that explains exposure validation and supports the company’s global growth.

Cybersecurity Penetration Testing Python SEO SIEM
1 hour, 15 minutes ago

Senior Security Engineer

KPA 251-1K Professional Services

KPA is hiring a Senior Security Engineer to own enterprise security platforms and lead cloud, identity, automation, and technical security initiatives across a hybrid environment.

AWS AWS SES Azure CI/CD CrowdStrike DevSecOps Kubernetes Linux Network Security Penetration Testing PowerShell Python REST API SendGrid
1 hour, 15 minutes ago

Associate Security Research Engineer

Picus Security 51-250 Professional Services

Picus Security is hiring an early-career Technical Marketing team member to research cybersecurity threats and turn technical findings into public-facing content that explains the value of its security validation platform.

Cybersecurity GitHub Penetration Testing Python SEO SIEM
1 hour, 15 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers