# Security Engineer

[Augustus](https://gurify.com/jobs?q=Augustus) · Berlin · Posted yesterday

[Security](https://gurify.com/jobs/security)

[Apply on the original posting → (opens in a new tab)](https://jobs.ashbyhq.com/Augustus/7fde47f8-af18-4c2e-97f3-b2161d89b230)

## Job description

Few people get to build a bank from scratch. Even fewer get to build one at a moment when banking itself is being reinvented.

The Dollar is the best product in the history of the world - there is infinite global demand. But International Fintechs and non-US banks are left with two unsatisfying options to access it: Either they build on legacy clearing banks that are slow and unreliable, or they interface with middleware providers that don’t move and hold the dollars directly, but themselves rely on underlying legacy banks. Augustus collapses this stack by combining two things: A real, national bank charter (in organization), and Marble, our proprietary core banking system, built around intelligence, made of code.

We are a group of operators, unicorn early employees, ex-founders and people who walked away from degrees because they believe this is an industry and career defining opportunity. We are backed with more than $200M from Peter Thiel's Valar Ventures, Tiger Global, Hummingbird, QED, Creandum, and the founders of Nubank, Ramp, Deel, Circle, Fluidstack, Fuse, and n8n.

We are regulated in Europe and live with Euro and Stablecoin clearing today. Now, we are building the US team from the ground up, while continuing to grow rapidly in Europe.

### THE ROLE

You will own security engineering end-to-end across application, infrastructure, and incident response: partnering with product and platform teams during design, writing and shipping security automation in production, and leading high-quality response when something breaks. Day to day, you will help define security in a greenfield modern bank, moving beyond threat modeling, harden cloud and CI/CD paths, build detection and response workflows, and drive remediation to closure with clear risk tradeoffs. This role reports to the CISO. What matters most is measurable risk reduction that keeps product velocity high.

### YOUR FIRST SIX MONTHS

Understand the foundations and increase your ownership rapidly.

- Months 1-2: Enforce an SSDLC that codifies existing security goals across EU-live payment/ledger services and US launch-critical services into required design, build, and release checkpoints (ownership, control evidence, and exception handling), with 100% of net-new Tier-1 changes following the workflow.

- Months 3-4: Stand up an AI-native product-security review pipeline that auto-triages code/dependency/IaC findings by service criticality, proposes fixes in pull requests, and routes owner-tagged remediation tasks and reduces non-actionable security alerts.

- Months 5-6: Expand baseline coverage to >=85% of Tier-1 services for workload identity hardening, secret management standards, runtime audit logging, and high-severity dependency monitoring; start monthly control-evidence reporting to Security & Compliance.

### WHO WILL THRIVE AT AUGUSTUS

We believe that throwing smart people with high agency at big problems produces the best outcomes. The people who succeed here share the following traits:

- Relentless: You can't leave something broken. You don't stop because it got hard or because no one is watching.

- Set The Bar: You're harder on yourself than anyone else would be. You don't need external accountability to care about quality.

- Shape The Game: You don't wait for a playbook and you don't need one. You walk into genuinely new territory and figure it out. You move before anyone asked you to.

- Systems First: You don't solve problems by adding people or effort. You build systems that make the problem smaller. Your first instinct is to automate, not to handle it manually.

### This role is for you if:

- You can point to security automation you personally built that replaced recurring manual review work.

- You have strong product security fundamentals and can improve secure-by-default patterns in fast-moving engineering teams.

- You have led end-to-end rollout of security controls in production, from design and implementation through adoption and evidence.

- You regularly influence architecture decisions before launch through fast, lightweight risk reviews and pragmatic controls.

- You are comfortable writing production-grade code or infrastructure changes, not only policy or tickets.

- You use AI tooling to accelerate security reviews and remediation planning without lowering quality or signal.

- You push ambiguous work forward without waiting for a complete playbook, and you bring stakeholders with you.

### This is not for you if:

- You prefer advisory-only security roles and do not want direct implementation ownership.

- You need tightly scoped tickets to make progress and are uncomfortable defining the plan yourself.

- You avoid ownership of production systems and control implementation work.

- You optimize for stability over change and are not excited by early-stage ambiguity.

### HARD REQUIREMENTS

- Extensive experience in hands-on security engineering, product security, cloud security, or detection/response engineering in production environments

- Demonstrated expertise securing cloud-based systems (IAM, networking, logging, key management, workload isolation) and CI/CD pipelines

- Proven experience building at least one security automation or detection capability that is actively used in production

- Experience in fintech, payments, banking, or another regulated environment with audit and control evidence requirements

- Experience with modern security tooling, especially SIEM/SOAR and cloud security platforms

- Located in (or willing to relocate to) Berlin and able to work in-office 3 days/week

### PAY TRANSPARENCY

Compensation packages at Augustus include base salary, equity, and benefits. New hire offers are made based on a candidate's experience, expertise and geographic location. The annual base salary range for this role is €100,000-€150,000 + equity.

### WHAT WE OFFER

- Career Growth: You will be given more responsibility and pushed to grow faster than ever before.

- Network: Your peers are brilliant, highly motivated people. These people will be foundational in your future opportunities.

- Real Participation: Employees are shareholders. You will think and act like an owner.

- Perks & Benefits: Relocation support, visa support, the latest Apple gear (MacBook + AirPods), lunch benefit, gym benefit, a beautiful office in the heart of the city, 4x on-/offsites per year, and an annual development budget.

Additional to the global benefits above, we offer localized benefits such as comprehensive medical, dental, and vision insurance and a 401(k) retirement plan for our US team.

Augustus is committed to creating an inclusive environment where people from all backgrounds can thrive and where different viewpoints and experiences are valued and respected. Augustus will consider all applications for employment without regard to race, ethnicity, national origin, religious beliefs, gender identity or expression, sexual orientation, neurodiversity, disability, age, parental or veteran status.

**Live in Augustus’s hiring system.** Read from the company's own applicant tracking system, not reposted from a job board — so it's a real, open requisition rather than an ad that outlived the role.

We remove it as soon as it disappears at source.

## More jobs like this

- HE [Security Engineer (SOC) (m,f,x) - career](https://gurify.com/job/security-engineer-soc-m-f-x-career-at-hellofresh-96c732d23738) Hellofresh · Berlin, Germany · 5 weeks ago
- ST [Senior Product Security Engineer](https://gurify.com/job/senior-product-security-engineer-at-staffbase-46bf92e491d9) Staffbase · Berlin, Germany · 6 weeks ago
- LI [Product & AI Security Engineer](https://gurify.com/job/product-ai-security-engineer-at-linkedin-dde4a2718339) Linkedin · Berlin · 6 weeks ago
- FI [Cloud Security Engineer](https://gurify.com/job/cloud-security-engineer-at-firstconnectinsurance-7f5685f7b636) Firstconnectinsurance · Poland · last week
- MA [Security Engineer](https://gurify.com/job/security-engineer-at-marex-a383676e7e6e) Marex · London, United Kingdom · last week
- TM [Senior Application Security Engineer](https://gurify.com/job/senior-application-security-engineer-at-thought-machine-71ed26bf1cc8) Thought Machine · Portugal, Lisbon · 2 days ago

```json
{"@context":"https://schema.org/","@type":"JobPosting","title":"Security Engineer","description":"\u003Cp\u003EFew people get to build a bank from scratch. Even fewer get to build one at a moment when banking itself is being reinvented.\u003C/p\u003E\u003Cp\u003EThe Dollar is the best product in the history of the world - there is infinite global demand. But International Fintechs and non-US banks are left with two unsatisfying options to access it: Either they build on legacy clearing banks that are slow and unreliable, or they interface with middleware providers that don\u2019t move and hold the dollars directly, but themselves rely on underlying legacy banks. Augustus collapses this stack by combining two things: A real, national bank charter (in organization), and Marble, our proprietary core banking system, built around intelligence, made of code.\u003C/p\u003E\u003Cp\u003EWe are a group of operators, unicorn early employees, ex-founders and people who walked away from degrees because they believe this is an industry and career defining opportunity. We are backed with more than $200M from Peter Thiel\u0026#39;s Valar Ventures, Tiger Global, Hummingbird, QED, Creandum, and the founders of Nubank, Ramp, Deel, Circle, Fluidstack, Fuse, and n8n.\u003C/p\u003E\u003Cp\u003EWe are regulated in Europe and live with Euro and Stablecoin clearing today. Now, we are building the US team from the ground up, while continuing to grow rapidly in Europe.\u003C/p\u003E\u003Ch3\u003ETHE ROLE\u003C/h3\u003E\u003Cp\u003EYou will own security engineering end-to-end across application, infrastructure, and incident response: partnering with product and platform teams during design, writing and shipping security automation in production, and leading high-quality response when something breaks. Day to day, you will help define security in a greenfield modern bank, moving beyond threat modeling, harden cloud and CI/CD paths, build detection and response workflows, and drive remediation to closure with clear risk tradeoffs. This role reports to the CISO. What matters most is measurable risk reduction that keeps product velocity high.\u003C/p\u003E\u003Ch3\u003EYOUR FIRST SIX MONTHS\u003C/h3\u003E\u003Cp\u003EUnderstand the foundations and increase your ownership rapidly.\u003C/p\u003E\u003Cul\u003E\u003Cli\u003EMonths 1-2:  Enforce an SSDLC that codifies existing security goals across EU-live payment/ledger services and US launch-critical services into required design, build, and release checkpoints (ownership, control evidence, and exception handling), with 100% of net-new Tier-1 changes following the workflow.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EMonths 3-4: Stand up an AI-native product-security review pipeline that auto-triages code/dependency/IaC findings by service criticality, proposes fixes in pull requests, and routes owner-tagged remediation tasks  and reduces non-actionable security alerts.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EMonths 5-6: Expand baseline coverage to \u0026gt;=85% of Tier-1 services for workload identity hardening, secret management standards, runtime audit logging, and high-severity dependency monitoring; start monthly control-evidence reporting to Security \u0026amp; Compliance.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EWHO WILL THRIVE AT AUGUSTUS\u003C/h3\u003E\u003Cp\u003EWe believe that throwing smart people with high agency at big problems produces the best outcomes. The people who succeed here share the following traits:\u003C/p\u003E\u003Cul\u003E\u003Cli\u003ERelentless: You can\u0026#39;t leave something broken. You don\u0026#39;t stop because it got hard or because no one is watching.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESet The Bar: You\u0026#39;re harder on yourself than anyone else would be. You don\u0026#39;t need external accountability to care about quality.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EShape The Game: You don\u0026#39;t wait for a playbook and you don\u0026#39;t need one. You walk into genuinely new territory and figure it out. You move before anyone asked you to.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESystems First: You don\u0026#39;t solve problems by adding people or effort. You build systems that make the problem smaller. Your first instinct is to automate, not to handle it manually.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EThis role is for you if:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EYou can point to security automation you personally built that replaced recurring manual review work.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou have strong product security fundamentals and can improve secure-by-default patterns in fast-moving engineering teams.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou have led end-to-end rollout of security controls in production, from design and implementation through adoption and evidence.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou regularly influence architecture decisions before launch through fast, lightweight risk reviews and pragmatic controls.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou are comfortable writing production-grade code or infrastructure changes, not only policy or tickets.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou use AI tooling to accelerate security reviews and remediation planning without lowering quality or signal.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou push ambiguous work forward without waiting for a complete playbook, and you bring stakeholders with you.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EThis is not for you if:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EYou prefer advisory-only security roles and do not want direct implementation ownership.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou need tightly scoped tickets to make progress and are uncomfortable defining the plan yourself.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou avoid ownership of production systems and control implementation work.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EYou optimize for stability over change and are not excited by early-stage ambiguity.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EHARD REQUIREMENTS\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EExtensive experience in hands-on security engineering, product security, cloud security, or detection/response engineering in production environments\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EDemonstrated expertise securing cloud-based systems (IAM, networking, logging, key management, workload isolation) and CI/CD pipelines\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EProven experience building at least one security automation or detection capability that is actively used in production\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExperience in fintech, payments, banking, or another regulated environment with audit and control evidence requirements\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExperience with modern security tooling, especially SIEM/SOAR and cloud security platforms\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ELocated in (or willing to relocate to) Berlin and able to work in-office 3 days/week\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EPAY TRANSPARENCY\u003C/h3\u003E\u003Cp\u003ECompensation packages at Augustus include base salary, equity, and benefits. New hire offers are made based on a candidate\u0026#39;s experience, expertise and geographic location. The annual base salary range for this role is \u20AC100,000-\u20AC150,000 \u002B equity.\u003C/p\u003E\u003Ch3\u003EWHAT WE OFFER\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003ECareer Growth: You will be given more responsibility and pushed to grow faster than ever before.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ENetwork: Your peers are brilliant, highly motivated people. These people will be foundational in your future opportunities.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EReal Participation: Employees are shareholders. You will think and act like an owner.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EPerks \u0026amp; Benefits: Relocation support, visa support, the latest Apple gear (MacBook \u002B AirPods), lunch benefit, gym benefit, a beautiful office in the heart of the city, 4x on-/offsites per year, and an annual development budget.\u003C/li\u003E\u003C/ul\u003E\u003Cp\u003EAdditional to the global benefits above, we offer localized benefits such as comprehensive medical, dental, and vision insurance and a 401(k) retirement plan for our US team.\u003C/p\u003E\u003Cp\u003EAugustus is committed to creating an inclusive environment where people from all backgrounds can thrive and where different viewpoints and experiences are valued and respected. Augustus will consider all applications for employment without regard to race, ethnicity, national origin, religious beliefs, gender identity or expression, sexual orientation, neurodiversity, disability, age, parental or veteran status.\u003C/p\u003E","identifier":{"@type":"PropertyValue","name":"Gurify","value":"security-engineer-at-augustus-17ac9c49e8c2"},"url":"https://gurify.com/job/security-engineer-at-augustus-17ac9c49e8c2","datePosted":"2026-10-01","validThrough":"2026-11-16T23:59:59Z","hiringOrganization":{"@type":"Organization","name":"Augustus","sameAs":"https://jobs.ashbyhq.com/Augustus"},"directApply":false,"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressCountry":"DE","addressLocality":"Berlin"}}}
```

```json
{"@context":"https://schema.org/","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Jobs","item":"https://gurify.com/jobs"},{"@type":"ListItem","position":2,"name":"Germany","item":"https://gurify.com/jobs/germany"},{"@type":"ListItem","position":3,"name":"Security Engineer","item":"https://gurify.com/job/security-engineer-at-augustus-17ac9c49e8c2"}]}
```
