Prosper

Prosper

Prosper is an online marketplace lending platform that connects borrowers with lenders, offering personal loans, credit cards, and home equity options. With a focus on financial education, Prosper helps individuals manage their finances and achieve pea...

Banks
251-1K
Founded 2005
$490M raised

Description

  • Take ownership of cloud security across GCP and Azure from design through day-to-day execution, partnering with infrastructure, platform, data, and application teams.
  • Run data security and vulnerability management programs, including DLP, sensitive data discovery, prioritization, remediation tracking, and reporting.
  • Build and maintain security automation using Infrastructure as Code (Terraform) and CI/CD pipelines to enforce consistent, auditable security controls.
  • Own and tune cloud security posture tooling (Wiz or similar), reduce noise, investigate real risks, and drive remediation efforts.
  • Regularly review cloud configurations, identify and remediate gaps before they become incidents, and maintain infrastructure security controls tied to PCI and SOC 1/2 compliance.
  • Write and maintain clear cloud security standards, runbooks, and playbooks that are practical and actionable for engineering teams.
  • Develop detections and response playbooks in Chronicle SIEM and act as a senior escalation point during cloud security incidents, helping teams triage, contain, and resolve issues.
  • Mentor and raise the skill level of other engineers, and lead or independently drive end-to-end security projects without creating silos.

Requirements

  • Minimum 8 years related experience with a Bachelor’s degree, or 6 years with a Master’s degree.
  • Hands-on production cloud/infrastructure security experience in both Google Cloud Platform (GCP) and Microsoft Azure.
  • Experience with security assessments, security design reviews, or threat modeling.
  • Strong understanding of cloud fundamentals including IAM, networking, logging, monitoring, and encryption and how failures occur in cloud environments.
  • Proven experience building security automation with Python for integrations and automation tasks.
  • Practical experience with Terraform and security-as-code, including integrating security checks into CI/CD pipelines.
  • Hands-on experience with Wiz or similar CNAPP tools and the ability to distinguish real risk from noise and drive remediation.
  • Experience writing or tuning detections in Chronicle SIEM and understanding how cloud threats appear in logs.
  • Background in vulnerability management and remediation tracking, plus familiarity with penetration testing and using findings to improve systems.

Benefits

  • Salary range $138,000–$190,000 annually plus bonus and generous benefits.
  • Flexible time off and paid parental leave.
  • Comprehensive health coverage and other wellness benefits.
  • Ability to work remotely within the United States (remote-friendly).
  • Professional development perks including Udemy access.
  • Additional employee perks such as childcare assistance, pet insurance discounts, legal assistance, and discounts through PerkSpot.
  • Inclusive workplace and opportunity to work with experienced industry leaders on impactful fintech products.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Head of Corporate Engineering

Databricks 1K-5K IT Services

Databricks is hiring a Head of Corporate Engineering to lead global enterprise engineering and operations, building and scaling secure cloud infrastructure, identity and access, endpoints, collaboration and engineering tools to enable developer velocity and enterprise compliance.

Agile AWS Azure Confluence GCP GitHub JIRA macOS
1 month ago

Incident Response Security Engineer

ClickHouse 51-250 IT Services

Security practitioner role at ClickHouse focused on scaling incident detection and response capabilities, driving adoption of security processes and tooling, and protecting the company’s cloud and product infrastructure for customer-facing services.

AWS Azure ClickHouse GCP Penetration Testing Python SIEM
1 month ago

Senior Security Engineer - Vulnerability Management

Samsara 1K-5K IT Services

Senior Security Engineer at Samsara responsible for deploying, operating, and improving the company’s Vulnerability Management program to reduce software vulnerabilities and protect customer-facing infrastructure.

AWS CI/CD DevSecOps Go Python Serverless Terraform
1 month ago

Junior DevSecOps Engineer - Contingent

ARETUM Construction & Engineering

Junior DevSecOps Engineer at Aretum supporting a federal client to operate, automate, and secure cloud-based systems and CI/CD pipelines to enable reliable, compliant deployments.

Agile Ansible AWS AWS CDK Azure Chef CI/CD Docker Encryption Git GitLab CI Grafana JIRA Kubernetes Linux LXC Prometheus Puppet SaltStack Scrum Serverless Terraform
1 month ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers