Back to positions

Sr Product Security Engineer / Pen Tester (Hybrid - Coppell, TX)

Remote role Full-time Open position

About the position About Blackhawk Network: Today, through BHN’s single global platform, businesses of all kinds can tap into the world’s largest network of branded payment solutions. BHN helps businesses grow revenue, increase loyalty, motivate and reward their teams, disburse funds and engage consumers. Branded payment solutions include the issuance and distribution of gift cards, egifts, corporate payouts and rewards, along with the technology to deliver these products in seamless, integrated ways. BHN’s network spans the globe with more than 400,000 consumer touchpoints. Learn more at BHN.com. Overview: We’re hiring a Sr Product Security Engineer / Pen Tester to help defend our fintech platform against large-scale payment fraud, carding attacks, and other financially motivated threats. You’ll lead offensive security assessments targeting our transaction systems, authentication flows, and APIs — with a heavy focus on automation and scalability. Your work will directly impact our fraud defenses, detection strategy, and customer trust. This is a highly technical, hands-on role for someone who thrives in a fast-paced, high-stakes fintech environment. This position will be Hybrid out of our Pleasanton, CA or Coppell, TX office.

Responsibilities

  • Lead penetration testing engagements focused on payment abuse, transaction manipulation, and business logic exploitation.
  • Design and execute automated attack simulations to test our defenses against: Carding and BIN attacks Credential stuffing and account takeovers Checkout and payment flow abuse API-level enumeration and fraud
  • Build custom tooling and frameworks to mimic the behavior of real-world fraudsters and cybercriminals.
  • Partner with fraud engineering, product security, and risk teams to identify weak points in our controls, detection systems, and architecture.
  • Conduct threat modeling and red teaming exercises related to payments, authentication, and user account abuse.
  • Document findings in technical reports with clear risk impact, exploitability, and remediation guidance.
  • Mentor junior testers and contribute to a culture of security innovation and continuous improvement.

Requirements

  • 7+ years of experience in offensive security, penetration testing, or red teaming.
  • Strong background in payment systems, financial fraud tactics, and transaction-level attack surfaces.
  • Fluency in scripting and automation (e.g., Python, JavaScript, Go, Bash) to simulate attacker workflows at scale.
  • Familiarity with tools like Burp Suite Pro, Selenium, Scapy, ffuf, SQLMap, Metasploit, and bot automation frameworks.
  • In-depth knowledge of fintech technologies (e.g., tokenized payments, card vaulting, 3DS, ACH, real-time payment APIs).
  • Solid grasp of common attacker techniques: carding, fake identity generation, bypassing rate limits, evading fraud filters, and abusing web/app logic.
  • Strong communication skills for explaining findings to both technical and non-technical audiences.
  • OSCP, OSEP, GWAPT, GPEN, GCPN, GXPN, GX-PT, CPSA/CRSA by CREST, CHECK, or TIGER.
  • We seek candidates who not only demonstrate curiosity and adaptability in emerging technologies but have also successfully implemented and utilized AI tools to enhance their work, improve processes, or deliver measurable results. Our teams embrace continuous learning and the thoughtful integration of AI to create meaningful impact – for our employees and the future of work.

Nice-to-haves

  • Prior experience in a fintech, digital banking, or payment gateway environment.
  • Familiarity with OWASP Automated Threats, PCI DSS, MITRE ATT&CK for Financial Services, or fraud detection systems.
  • Experience building or testing real-time risk scoring engines and fraud defense pipelines.

Benefits

  • 401k with employer match
  • medical
  • dental
  • vision
  • 12 paid holidays in the year 2025
  • 1 hour of sick pay accrual for every 30 hours worked
  • parental leave
  • life insurance
  • disability insurance
  • accident and illness insurance
  • health and dependent care flexible spending accounts
  • wellness benefits
  • flexible time off for all full-time employees

Apply tot his job Apply To this Job

Further positions

Sr. Financial Analyst - Remote, US OR Europe

Remote role Full-time

Senior Principal M&A Legal Counsel 2 Locations

Remote role Full-time

Senior Legal Counsel, AMER

Remote role Full-time

Senior Accountant (Remote in NY, LA, MA, ME and NC)

Remote role Full-time

Virtual Senior Accountant

Remote role Full-time

Remote - Senior Accountant – Accounts Receivable

Remote role Full-time

Senior Legal Counsel, Commercial - Remote Job at DigitalOcean in San Francisco

Remote role Full-time

Senior Financial Analyst, FPA

Remote role Full-time

Remote role of ServiceNow Technical Engineer V

Remote role Full-time

Senior Partner, Advertising Sales, Walmart Connect - Fresh and Frozen (Chicago)

Remote role Full-time

Experienced Live Chat Support Agent – Work from Home Opportunity with arenaflex

Remote role Full-time

Experienced Freight Handling and Data Entry Specialist – Career Development Opportunities in Logistics and Transportation at blithequark

Remote role Full-time

LHH Recruitment Solutions - Executive Recruiter - Remote - South East

Remote role Full-time

Experienced Data Entry Specialist for Information Technology Department - Career Growth Opportunities with VacancyGlobal

Remote role Full-time

Experienced Remote Data Entry Specialist – Join arenaflex's Pioneering Team in Sustainable Energy and Innovative Automotive Technology

Remote role Full-time

Experienced and Ambitious Fully Remote Account Executive – Entry Level Sales Professional for a Dynamic and Growth-Oriented Organization

Remote role Full-time

Underwriting Operations Support - Insurance Carrier - REMOTE

Remote role Full-time

After School Paraeducator Liaison - Expanded Learning Program Support

Remote role Full-time

New Equipment Training Instructor/Maintainer (Aviation - AH)

Remote role Full-time

Experienced Customer Service Representative – Remote Work Opportunity with arenaflex

Remote role Full-time