Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 3
AWS @ 2
Azure @ 2
Communication @ 6
Compliance @ 3
Due Diligence
LLM @ 3
Payments
RAG @ 3
Security @ 3
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
Who We Are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Stripe's mission is to increase the GDP of the internet.
About the Team
Security Business Enablement (SBE) is Stripe's commercial security function and the interface between Stripe's internal security program and its Go-to-Market organization. The team ensures that security and compliance requirements do not block, delay, or devalue Stripe's deals.
SBE owns security due diligence end to end, including questionnaire responses, compliance evidence, live security reviews, gap and exception management, contractual security exhibits, rapid response during industry-wide events, and executive briefings. The team engages directly with customers, including at the CISO level, and equips sales teams to handle security conversations independently.
The team works at the intersection of security, AI, and Go-to-Market. Its platform uses authoritative grounding: answers are retrieved from a maintained and validated knowledge base rather than generated from first principles, ensuring that responses are consistent and source-traceable. The proof of concept has outgrown what agent builders alone can provide, and the role focuses on bringing the platform to production quality.
Responsibilities
- Design, build, and scale an AI-powered platform that delivers validated answers to security questions for sales teams and customers, replacing inconsistent ad hoc responses with consistent, source-traceable answers.
- Build retrieval, content pipeline orchestration, and integration layers that support multiple cloud environments and Stripe's growing product portfolio.
- Build automations that keep security content current as Stripe adopts new technologies and controls, including automated refresh and review cycles that route content to subject-matter experts and Legal for validation.
- Build capabilities to manage industry-standard certifications and assessment frameworks, including the Shared Assessments SIG and Cloud Security Alliance CAIQ.
- Build analytics and evaluation capabilities to measure and continuously improve the performance and coverage of the security content library.
- Extend the platform and knowledge base to power a public and authenticated Trust Center, providing customers with self-service access to Stripe's security, privacy, resilience, and compliance posture.
- Partner with security analysts and Security, Privacy, Legal, and Compliance stakeholders to expand coverage across Stripe's security surface area.
- Own the reliability and operational health of the systems built.
Requirements
Minimum Requirements
- 2+ years of software engineering experience building production systems.
- Strong coding skills in any programming language; the interview process is language agnostic.
- Comfort working with retrieval-augmented architectures, content pipelines, and AI/LLM integrations, or demonstrated ability to learn quickly in these areas.
- Experience building workflow automation, including scheduled jobs, approval routing, and multi-stakeholder review processes.
- Ability to instrument systems and work with data to measure quality, coverage, and performance, then use those measurements to drive improvement.
- Experience creating projects from scratch, taking ownership, and driving work to completion with minimal supervision.
- Strong communication skills and the ability to collaborate effectively with non-engineering stakeholders, including security analysts, sales teams, and legal teams.
- Ability to identify opportunities for impact and execute in a complex, cross-functional environment.
Preferred Qualifications
- Experience building AI-driven products or workflows, particularly retrieval-augmented generation (RAG) systems or knowledge management platforms.
- Experience building evaluation frameworks for AI systems, such as measuring retrieval quality, answer accuracy, or coverage gaps.
- Familiarity with cloud security concepts across AWS and/or Azure.
- Previous experience with security software engineering, compliance tooling, or GRC platforms.
- Familiarity with security assessment frameworks and standards such as Shared Assessments SIG, Cloud Security Alliance CAIQ, SOC 2, PCI DSS, or ISO 27001.
- Experience with content management systems, structured content modeling, or documentation-as-code approaches.
- Experience building customer-facing or internal self-service tools at scale.
- Comfort working in a small team where individual contributions have outsized, visible impact.