Junior Security Engineer

Pavebank
Singapore
RemoteCareer-pivot friendly

Who this role is best for

Geared toward junior-level candidates comfortable with code review and penetration testing, working in a startup environment focused on programmable banking in Singapore.

Best fit for

  • Candidates with a junior-level background in security and a strong interest in financial infrastructure innovation
    — “We’re redefining global business banking by combining programmable financial infrastructure with world-class client experiences.
  • Those with a curiosity for adversarial thinking and a desire to shape security practices in a high-growth startup
    — “We’re looking for a Junior Security Engineer who is independent, curious, and has an adversary first mindset.

Things to consider

  • The role demands quick adaptability and ownership of work that rapidly reaches production
    — “We ship fast, think deeply, and expect high ownership — your work will hit production quickly across several parts of the business
  • Candidates must be prepared to work with a geographically diverse team of engineers
    — “You'll work alongside engineers from Monzo, Atom Bank, Blockdaemon, GXS, and Grab

How to stand out

  • Highlight experience with code review and vulnerability testing in your resume and interview answers
    — “Review platform and product code to identify security issues and guide engineers toward secure solutions
  • Demonstrate your understanding of OWASP Top 10 and how insecure practices can be exploited
    — “Familiarity with common attacker tools and techniques, and how insecure development practices get exploited (e.g. OWASP Top 10)
  • Showcase your ability to build internal security tools or contribute to open-source security projects
    — “Build internal tools, libraries, and automation to improve security testing and enforcement
  • Emphasize any prior experience in startup environments or with security tooling and CTFs
    — “Experience with security tooling, CTFs, bug bounties, or open-source security contributions
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · TeamLevel · Junior

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • Identifying and closing security vulnerabilities
  • Building internal security tools and automation
  • Educating engineering teams on security best practices
Typical background
Experience in security engineeringBackground in software development

Skills & requirements

Required

Security EngineeringCode ReviewPenetration TestingSecure Coding PracticesProgramming (go, Python, Typescript)

Preferred

Blockchain SecuritySecurity ToolingCTF ExperienceOpen-source Security Contributions

Stack & domain

GoPythonTypeScriptCommunicationSecurity

About the role

Original posting from Pavebank via Ashby

ABOUT PAVE BANK

Pave Bank is the world’s first programmable business bank. Built by the founders behind Monzo and BigPay, we’re redefining global business banking by combining programmable financial infrastructure with world-class client experiences.

ABOUT THE ROLE

We’re looking for a Junior Security Engineer who is independent, curious, and has an adversary first mindset - someone who thinks like an attacker to keep our platform secure.

You'll be a critical guardian of Pave Bank: identifying weaknesses, closing loopholes, and empowering our Product and Engineering teams to ship quickly without compromising security.

You'll get hands-on exposure across the full security lifecycle - from code review to penetration testing - with mentorship from experienced engineers.

WHAT YOU'LL DO

  • Review platform and product code to identify security issues and guide engineers toward secure solutions
  • Build internal tools, libraries, and automation to improve security testing and enforcement
  • Continuously test internal and external applications for vulnerabilities
  • Support third-party application security reviews and penetration tests
  • Help educate engineering and product teams on secure coding and design practices
  • Stay current on emerging threats and attack techniques, and assess how they apply to our systems

WHAT WE'RE LOOKING FOR

MUST HAVE

  • An adversary-first mindset - you instinctively ask "how would I break this?"
  • Familiarity with common attacker tools and techniques, and how insecure development practices get exploited (e.g. OWASP Top 10)
  • Programming experience in at least one modern language (Go, Python, or TypeScript).
  • Clear communication skills - you can explain security concepts to technical and non-technical audiences alike.
  • Self-motivation and a genuine drive to keep learning

NICE TO HAVE:

  • Exposure to blockchain technologies and cryptocurrency systems, and their security implications
  • Experience with security tooling, CTFs, bug bounties, or open-source security contributions
  • Prior internship or work experience in a fast-moving startup environment

WHY JOIN US

  • We recently raised a $39M Series A led by Accel, positioning us for major growth — a rare chance to join while things are still moving fast
  • We're building a fully-licensed programmable bank, rearchitecting how money moves between businesses, across borders, and between traditional and digital finance
  • We ship fast, think deeply, and expect high ownership — your work will hit production quickly across several parts of the business
  • You'll work alongside engineers from Monzo, Atom Bank, Blockdaemon, GXS, and Grab

Source: Pavebank careers (Ashby)

Similar roles