Mid-Level Security Engineer

Cross River provides API-driven banking infrastructure enabling embedded financial services including payments, lending, card programs, and cryptocurrency solutions.

2115 Linwood Avenue, Fort Lee, NJ 07024, United States
About Cross River Bank

Cross River operates a proprietary real-time banking core platform that delivers embedded financial services to fintech and technology companies. The platform provides payment rails including ACH, wires, RTP, and FedNow, card issuing and processing capabilities, digital lending infrastructure, and cryptocurrency banking services. Cross River enables partners to access banking functionality through API integrations while maintaining federal regulatory compliance.

View jobs by Cross River Bank

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will implement and maintain security controls across AWS environments. You will conduct security assessments and audits, automate monitoring and incident-response activities, integrate security practices into engineering workflows, optimize cloud resources securely, and support threat investigation, containment, remediation, and post-incident improvements.

Requirements

  • Fluency in Hebrew and English
  • Experience with Azure cloud security
  • Knowledge of AWS security services including IAM, GuardDuty, CloudTrail, and VPC security
  • Expertise in cloud security architecture, identity and access management, encryption, network security, and application security
  • Skills in Linux, Bash, Terraform, Jenkins, Docker, Python, and JavaScript
  • Experience with security automation and cloud incident response
  • Experience with endpoint security, endpoint investigations, XDR, DLP, Microsoft Defender, Intune, Sentinel, and Purview

Responsibilities

  • Implement security measures and policies across AWS environments
  • Conduct security assessments, control testing, and audits
  • Support risk, vulnerability, and remediation efforts
  • Integrate security best practices into development and operational workflows
  • Design and implement automation for security monitoring, auditing, and incident response
  • Optimize cloud resources while maintaining security
  • Participate in threat identification, analysis, containment, remediation, and post-incident reviews
  • Maintain incident-response playbooks and share updated procedures

Benefits

  • Flexible hybrid work model with three days a week at the Jerusalem office
  • Monthly wellness reimbursement
  • Full Keren Hishtalmut
  • Private health insurance
  • Dental insurance
  • Volunteer days
  • Donation matching
  • Yoga
  • Pilates