Information Security Engineer @Tangible
Information Technology
Salary unspecified
Employment Type full-time
Posted Today

[Hiring] Information Security Engineer @Tangible

Today - Tangible is hiring a remote Information Security Engineer. πŸ’Έ Salary: unspecified πŸ“Location: CET (UTC+1), CET +/- 3 HOURS

Role Description

You'll be our first dedicated information security hire. Right now security is a part-time job for engineering leadership and external vendor; we want it to be your full-time one. The work is hands-on: AWS, infrastructure as code, detection and response, auditors. As the company grows, the role grows into CISO.

What you'll do

  • Own security in our AWS environment: IAM and least privilege, network segmentation, encryption, logging and detection (GuardDuty, Security Hub, CloudTrail), fixing what you find.
  • Build security into the development pipeline: secrets management, dependency and container scanning, code review for risky changes, threat modeling with the engineers.
  • Automate: Detection rules, alerting, compliance evidence, IaC guardrails. If a control can be code instead of a meeting, make it code.
  • Run vulnerability management and incident response: Write the runbooks, run the drills.
  • Set the rules for our AI and LLM use: which data goes to which vendors, which models are approved, how prompts and outputs are handled and logged. Assess risks like prompt injection and data leakage, design controls that let people keep working.
  • Own SOC 2: control design, automated evidence collection, the auditor relationship.
  • Handle regulatory side for our financial-institution customers: GDPR and CCPA for privacy, DORA and EBA outsourcing guidelines in the EU, GLBA and SEC/FINRA expectations in the US.
  • Lead customer security reviews: due diligence questionnaires, RFPs, contract security terms, calls with bank security teams.
  • Run vendor reviews and third-party risk.
  • Secure the human half by building awareness training, phishing resilience, and device and identity hygiene that work for deals and sales people, not only engineers.
  • Over time: set the security strategy, report risk to leadership in business terms, choose tooling, build a budget, hire.

Qualifications

  • 5+ years in security engineering or security-heavy infrastructure work, with depth in AWS security (IAM, SCPs, logging, detection, encryption).
  • Python and Terraform, or close equivalents.
  • SOC 2 experience, ideally owning a Type II audit.
  • Working knowledge of privacy legislation.
  • Exposure to financial-services customer scrutiny, or the appetite to make it your specialty.
  • A working view on LLM security risks, or strong fundamentals and the curiosity to build one.
  • Judgment about which risks matter.
  • Clear writing.
  • The ambition to grow into an executive role and the people skills to survive it.

Requirements

  • Nice to have: Fintech or another regulated B2B environment with large financial-institution customers.
  • DORA, EBA/ESMA outsourcing guidelines, or NYDFS 500.
  • Experience securing enterprise integrations: SSO/SCIM, SFTP feeds, APIs.
  • You've been the first security hire somewhere before.

Benefits

  • A blank slate with real ownership.
  • A committed path to CISO.
  • Fully remote, flexible hours.
  • Direct access to leadership and to customer security teams at major financial institutions.
  • Competitive pay, equity, learning budget.

How we hire

  • Intro call (30 min).
  • Technical deep dive (60–90 min): AWS security scenarios, plus a walk-through of a program you built.
  • Practical exercise: review a sanitized architecture or a due diligence questionnaire and tell us what you'd fix first.
  • Leadership conversation: the CISO path, and working with the non-technical half of the company.
  • References and offer.

Company Description

Tangible is transforming the way secondary markets work for LPs, GPs and wealth managers. We combine technology and deep private markets expertise to bring transparency, efficiency and simplicity to secondary transactions. Our products enable more LPs to sell on the secondary market and empower GPs and wealth managers to create scalable liquidity solutions for their investors.

Before You Apply
️
remote Be aware of the location restriction for this remote position: CET (UTC+1), CET +/- 3 HOURS
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Information Security Engineer @Tangible
Information Technology
Salary unspecified
Employment Type full-time
Posted Today
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
️
remote Be aware of the location restriction for this remote position: CET (UTC+1), CET +/- 3 HOURS
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 125,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 128,930+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later