Information Security Engineer
Richmond, VA, or Arlington, VA
At Koalafi, we believe in a world where no one has to put an important purchase on hold. That’s why we’re making it easier for more people to pay for big purchases over time.
Over 20,000 retailers rely on us to match their customers to a payment plan clearly and quickly, all while reflecting well on their brand. Their 2M+ customers love us because we provide a flexible way for them to make payments, and give them an opportunity to improve their credit. Our 200+ Koalafi teammates enjoy inspiring and challenging work that accelerates their careers.
Interested in learning more about how we’re transforming the financing experience and joining our team?
What You’ll Do:
Koalafi is looking for a talented, driven Information Security Engineer to join our growing Information Security team. You’ll work closely with our Director of Information of Security to safeguard Koalafi’s data, infrastructure, associates, merchants and customers. This role will focus on implementing secure solutions, supporting compliance initiatives, enhancing our detection and response capabilities, and partnering with teams across the company to build a security-first culture.
This is a hands-on, deeply technical position with a wide scope of responsibilities. It is an opportunity to gain experience with many technologies, work with extremely talented technologists, and make a lasting impact on fast-growing company. In this role you will:
- Assist with building, maintaining, and rolling out organization-wide security tooling, configurations policies, hardening standards, and patch management.
- Perform blue team operations by supporting alert triage, incident response, and forensic investigations. Including the monitoring, querying, and tuning of SIEM-based alerts.
- Support secure software development by partnering with our Development and DevOps teams on the DevSecOps lifecycle, code/container scanning, and vulnerability classification & remediation.
- Help implement and manage enforce security policy compliance.
- Contribute to compliance readiness efforts (e.g., SOC 2, PCI-DSS).
- Maintain identity and access controls and compliance across cloud-based IAM systems, including user & policy management.
- Assist in the administration and auditing of various SaaS tools, including anti-malware, anti-spam, SASE, VPN.
- Assist in business continuity and disaster recovery planning, supporting documentation and testing efforts.
- Be a security champion by helping internal associates with security guidance, best practices, and training.
- Stay ahead of emerging threats by staying up to date on threat intelligence that may affect our organization.
About You:
- Bachelor’s degree in Cybersecurity, Information Technology, Information Assurance, or equivalent years of work experience in the Cybersecurity and/or Information Technology field.
- 4+ years of professional cybersecurity experience.
- Strong problem-solving and analytical ability.
Preferred Qualifications:
- 3+ years of experience securing cloud environments (AWS, Azure).
- Azure tooling: Entra, Sentinel, Purview, Defender for Cloud
- AWS tooling: GuardDuty, CloudTrail, Security Hub, Macie, IAM
- Experience using vulnerability management tooling (SaaS and local machine).
- Tooling: Tenable, Rapid7, or similar
- Experience working with Development & DevOps teams.
- Experience performing security audits and remediation efforts.
- Experience with scripting for automation (PowerShell, Bash, Python).
- Experience with security & compliance frameworks (OWASP, MITRE, NIST, SOC).
- Basic red teaming knowledge (ZAP, Burp, etc.).
- Previous Information Technology working experience (Support, SysAdmin, etc.).
Why choose Koalafi: A career at Koalafi means opportunities to tackle exciting challenges every single day. We take pride in a culture of innovation, trust, and ownership. You'll get outside your comfort zone, build meaningful relationships, and most of all, take charge of projects that ultimately help people get the things they need most.
Who we are & what we value:
- We focus on what’s most important
- We set clear expectations and deliver
- We embrace challenges to reach our full potential
- We ask, “How can this be better?”
- We move fast together
Benefits:
At Koalafi, you will have a direct impact on our products and help shape the company’s success. We offer competitive compensation & benefits packages to keep you at your best:
- Comprehensive medical, dental, and vision coverage
- 20 PTO days + 11 paid holidays
- 401(k) retirement with company matching
- Student Loan & Tuition Reimbursement
- Commuter assistance
- Parental leave (maternal + paternal)
- Inclusion and Associate Engagement Programs
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation AWS Azure Bash Blue team Cloud Compliance DevOps DevSecOps IAM Incident response Malware Monitoring NIST OWASP PowerShell Python Red team SaaS SASE Scripting Sentinel SIEM SOC SOC 2 Threat intelligence VPN Vulnerability management
Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flex vacation Health care Medical leave Parental leave Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.