Security Engineer
Payhawk
Sofia
Company Mission
Payhawk is one AI-powered spend management platform for scaling businesses — corporate cards, expense management, procurement, and accounts payable, unified in one place. We serve finance teams across 32+ countries, cutting month-end close time and reconciling 99.7% of transactions with zero manual touch. AI runs through the platform as core infrastructure, not a bolted-on feature — and we hire the top 1% of talent in every function to keep building it that way.
Why Payhawk Payhawk, where the bold builders make an impact.
We're not a family, we're a high-performance team — and that's deliberate. We debate, ideate, and push each other to be better, because the best ideas come from direct feedback. We've already made history as Bulgaria's first unicorn, but the ambition doesn't stop there: if you want to grow fast - own it; do not wait for it.
Give: Honest opinions, real ownership, a focus on outcomes. Get: A front-row seat to a market leader in one of the fastest-moving industries.
The role, in one line
You will help maintain and improve Payhawk's security posture through proactive monitoring, vulnerability management, and incident response, as a key member of the IT & Security team.
What you will own
- Lead the evaluation, implementation, and continuous improvement of cybersecurity controls across the organization, in line with internal security standards and regulatory requirements.
- Run vulnerability assessments and coordinate remediation with engineering and infrastructure teams, including risk prioritization, tracking, and reporting.
- Manage and maintain endpoint security controls, including system monitoring, patch management, and security configuration, so enterprise environments perform well and stay protected.
- Configure, manage, and optimize our mobile device management (MDM) and endpoint protection platforms, with effective coverage and policy enforcement.
- Oversee software deployment, operating system imaging, and patch compliance across enterprise endpoints, so updates land on time and meet security baselines.
- Monitor, investigate, and respond to security alerts and incidents using SIEM, EDR, and related security tools, through containment, remediation, and post-incident analysis.
- Document monitoring activities, incident investigations, and response actions in ticketing and case management systems, for traceability and continuous improvement.
- Work with engineering, IT, and product teams to define, implement, and maintain security baselines and secure configurations across systems and endpoints.
- Take part in the security assessment and due diligence of third-party vendors and service providers, including reviewing security documentation and identifying potential risks.
- Help respond to customer security inquiries and complete security questionnaires, giving sales and customer assurance accurate, timely information.
- Contribute to security awareness initiatives, and promote security best practices across the organization.
- Guide and mentor junior team members on security operations, endpoint security, and incident response.
What you will need
Must-have
- A degree in Computer Science, Information Security, Information Technology, or a related field.
- 4+ years of experience in cybersecurity, information security, or a related technical role.
- An understanding of networking concepts and protocols, including TCP/IP, DNS, firewalls, VPNs, and network segmentation.
- Hands-on experience in security operations within enterprise environments, including endpoint security, vulnerability management, threat detection, and incident response.
- Practical experience with SIEM, EDR, and centralized logging platforms (e.g., Splunk, Microsoft Sentinel, CrowdStrike, or similar), including alert investigation, detection tuning, and incident analysis.
- Experience with vulnerability management tools (e.g., Nessus, Qualys, OpenVAS), and the ability to interpret scan results, prioritize remediation, and coordinate fixes with engineering or infrastructure teams.
- The ability to build or maintain automation scripts in PowerShell, Python, or Bash that improve security monitoring, reporting, or operational workflows.
- Familiarity with endpoint management and security technologies, including MDM platforms and endpoint protection solutions.
- An understanding of security best practices, system hardening, and security baselines across operating systems and enterprise environments.
- Ongoing professional development through security certifications, training, industry events, or involvement in the cybersecurity community.
- Strong analytical and problem-solving skills.
- High attention to detail and the ability to prioritize tasks in a fast-paced environment.
- Clear communication and good teamwork.
- Eagerness to learn and grow in a cybersecurity team.
- The ability to adapt.
Nice-to-have
- Professional security certifications, such as CompTIA Security+, Cisco CyberOps Associate/Professional, Azure Security Engineer, Google Professional Cloud Security Engineer, CEH, or similar.
What you will get
- Recharge properly — 30 days of paid holiday
- Change the view — a week-long exchange to London, Amsterdam, Paris, Munich, Vilnius, Berlin, Sofia, or Barcelona
- Win together, celebrate together — regular team-wide events that are actually worth showing up to
- Covered, properly — additional medical care
- Stay in the game — a sports card, fully funded, for the gym, classes, or your sport of choice
- Commute easily — a monthly travel allowance that covers getting to and from the office
- Use what you build — hands-on access to the actual product you're hiring people to help build
Payhawk is an Equal Employment Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status.
Similar jobs
Front-End Software Engineer
About Us:Betty is an innovative entertainment company pioneering at the intersection of real-money online casinos and casual mobile gamin...
Junior Security Engineer
Company MissionPayhawk is one AI-powered spend management platform for scaling businesses — corporate cards, expense management, procurem...
General Manager(06038) - 200 Market Dr.
AdditionalinformationAdditional InformationCompanydescriptionCompany DescriptionJobdescriptionJob Description Responsible for all results...
General Manager(08826) - 139 W. Main Street
AdditionalinformationAdditional InformationCompanydescriptionCompany DescriptionJobdescriptionJob Description Responsible for all results...
It Manager, Corporate Infrastructure & Security
Company OverviewEcho Neurotechnologies is an exciting new startup in the Brain-Computer Interface (BCI) space, driving innovation through...
Certified Industrial Hygienist (Cih) [P1Dha009]
AdditionalinformationAdditional InformationOur Corporate Benefits Policy and PhilosophyProSidian’s Corporate Benefits Policy offers eligi...