ARG 工程经理
查看雇主原标题
ARG Engineering ManagerStripe · US - Remote
职位信息来自雇主公开的招聘页面。申请前请务必在雇主官网核实详情。
为什么值得关注?
发现指数 52/100,仅依据与该职位一起存储的证据计算。
- 新的雇主官方职位
- 远程职位
分数构成
- 时效性 (随职位发布时间变化)+18
- 雇主官方来源+15
- 远程职位+8
- 稀有职位+3
- 公司来源健康度+8
该职位未包含:已披露薪资、提及签证担保、提及搬迁、未出现在监控的职位板上。
这些理由来自雇主自己的职位描述与我们核实过的来源检查结果。除了已存储的信号之外,我们不做任何推测。
职位描述
机器翻译我们是谁
关于 Stripe
Stripe 是一个面向企业的金融基础设施平台。数百万家公司——从全球最大的企业到最有抱负的初创公司——都在使用 Stripe 来接受付款、增长收入并加速新的商业机会。我们的使命是提升互联网的 GDP,而我们面前还有大量工作要做。这意味着你拥有一个前所未有的机会,在从事你职业生涯中最重要工作的同时,让全球经济触手可及。
关于团队
滥用研究团队致力于主动搜寻新兴的滥用向量,并研究复杂的攻击者行为。该团队不只是对警报做出反应,而是绘制跨 Stripe 产品和外部系统的完整滥用路径,以验证新发现,并解释使欺诈得以发生的底层产品条件。通过使用代理式测试及相关系统构建持续滥用测试,他们将深度研究转化为可执行的威胁通告、战略性控制建议和回归场景,从而强化 Stripe 的防御。
你将做什么
你将领导滥用研究组(ARG)——一个由威胁情报分析师、欺诈研究员和检测工程师组成的团队,专注于主动识别并缓解对 Stripe 及我们商户的威胁。你将制定研究议程,指导威胁行为者追踪、实操型欺诈调查、商户生态系统防御,以及将发现转化为生产执行的检测流水线等工作。你将通过招聘、辅导和人才培养来扩展团队,同时在复杂调查中担任技术顾问。你还将负责 ARG 与关键合作伙伴的关系——包括风险、信任与安全、欺诈平台和安全工程。
• 领导、发展
岗位职责
你将领导滥用研究组(ARG)——一个由威胁情报分析师、欺诈研究员和检测工程师组成的团队,专注于主动识别并缓解对 Stripe 及我们商户的威胁。你将制定研究议程,指导威胁行为者追踪、实操型欺诈调查、商户生态系统防御,以及将发现转化为生产执行的检测流水线等工作。你将通过招聘、辅导和人才培养来扩展团队,同时在复杂调查中担任技术顾问。你还将负责 ARG 与关键合作伙伴的关系——包括风险、信任与安全、欺诈平台和安全工程。
• 领导、发展和留住一支由威胁情报分析师、欺诈研究员和检测工程师组成的团队,他们擅长在对抗性研究与工程的交叉领域工作
• 制定并执行涵盖威胁行为者追踪、欺诈调查、商户生态系统防御和自动化检测工程的研究议程
• 在复杂调查中提供技术深度和分析判断,包括 API 密钥接管、账户入侵活动和 KYC 绕过技术
• 将研究成果落地为生产级检测规则、自动化响应机制和跨职能升级流程
• 与风险、信任与安全、欺诈平台和安全工程协作,将滥用研究转化为主动的平台保护措施
• 与外部利益相关方(包括执法部门)协调,以打击并归因高影响威胁行为者
• 辅导和指导个人贡献者,支持他们的职业发展,同时保持高技术标准
任职要求
我们正在寻找符合该职位最低要求的人选。如果你符合这些要求,我们鼓励你申请。优先资格是加分项,而非要求。
最低要求
• 10 年以上领导安全工程或研究团队的经验,并有管理从事调查、情报或检测工作的技术型个人贡献者的业绩记录。
• 计算机科学或相关领域的学士或硕士学位,或同等的安全领域经验
• 有招聘、培养和领导技术团队的经验,包括绩效管理
• 出色的书面和口头沟通能力,包括能够向领导层制定并传达运营或事件相关信息
• 熟悉支付和金融科技特有的欺诈与滥用模式
• 具备威胁情报技战术的实操经验:OSINT、暗网收集、行为者归因,以及使用结构化情报框架(ATT&CK、STIX/TAXII 或同等框架)
• 对威胁行为者战术、技术和程序(TTPs)有深入理解
• 具备安全研究、威胁情报或欺诈检测工程背景——曾有领导或参与研究对手行为、构建检测系统或运营情报项目的团队经验;有支付、金融科技或金融犯罪领域经验者优先。
• 在 ARG 所涉领域具备技术流利度——威胁情报、欺诈信号开发、检测工程和 OSINT。
• 有管理或发展技术研究团队的经验,最好是在工作具有调查性、模糊性且无法清晰映射到冲刺速度的领域。
以上内容由机器翻译自动生成,可能存在错误;投递前请以雇主原文为准。
查看雇主原文
职位描述
Who we are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.
About the team
The Abuse Research team is dedicated to proactively hunting for emerging abuse vectors and studying complex attacker behaviors. Rather than just reacting to alerts, the team maps complete abuse paths across Stripe products and external systems to validate novel findings and explain the underlying product conditions that enable fraud. By building continuous abuse tests with agentic testing and related systems, they translate their deep research into actionable threat advisories, strategic control recommendations, and regression scenarios that fortify Stripe’s defenses.
What you’ll do
You will lead the Abuse Research Group (ARG)—a team of threat intelligence analysts, fraud researchers, and detection engineers focused on proactively identifying and mitigating threats to Stripe and our merchants. You will set the research agenda, guiding work across threat actor tracking, hands-on fraud investigations, merchant ecosystem defense, and the detection pipelines that turn findings into production enforcement. You will scale the team through hiring, coaching, and talent development, while serving as a technical advisor on complex investigations. You will also own ARG's relationships with key partners—including Risk, Trust & Safety, Fraud Platform, and Security Engineering.
• Lead, develop
岗位职责
You will lead the Abuse Research Group (ARG)—a team of threat intelligence analysts, fraud researchers, and detection engineers focused on proactively identifying and mitigating threats to Stripe and our merchants. You will set the research agenda, guiding work across threat actor tracking, hands-on fraud investigations, merchant ecosystem defense, and the detection pipelines that turn findings into production enforcement. You will scale the team through hiring, coaching, and talent development, while serving as a technical advisor on complex investigations. You will also own ARG's relationships with key partners—including Risk, Trust & Safety, Fraud Platform, and Security Engineering.
• Lead, develop, and retain a team of threat intelligence analysts, fraud researchers, and detection engineers who thrive at the intersection of adversarial research and engineering
• Set and execute the research agenda across threat actor tracking, fraud investigation, merchant ecosystem defense, and automated detection engineering
• Provide technical depth and analytical judgment on complex investigations, including API key takeovers, account compromise campaigns, and KYC bypass techniques
• Operationalize research findings into production-level detection rules, automated response mechanisms, and cross-functional escalations
• Collaborate with Risk, Trust & Safety, Fraud Platform, and Security Engineering to translate abuse research into proactive platform protections
• Coordinate with external stakeholders, including law enforcement, to disrupt and attribute high-impact threat actors
• Coach and mentor individual contributors to support their career development while maintaining high technical standards
任职要求
We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
Minimum requirements
• 10+ years of experience leading security engineering or research teams, with a track record of managing technical ICs doing investigative, intelligence, or detection work.
• B.S. or M.S. Computer Science or related field, or equivalent experience in Security
• Experience recruiting, growing, and leading technical teams, including performance management
• Excellent written and verbal communication skills, including the ability to develop and deliver operational or incident-related information to leadership
• Familiarity with fraud and abuse patterns specific to payments and fintech
• Hands-on experience with threat intelligence tradecraft: OSINT, dark web collection, actor attribution, and working with structured intelligence frameworks (ATT&CK, STIX/TAXII, or equivalent)
• Strong understanding of threat actor tactics, techniques, and procedures (TTPs)
• Background in security research, threat intelligence, or fraud detection engineering — prior experience leading or working in teams that study adversary behavior, build detection systems, or operate intelligence programs; experience in payments, fintech, or financial crime is a strong plus.
• Technical fluency across the domains ARG works in — threat intelligence, fraud signal development, detection engineering, and OSINT.
• Experience managing or growing technical research teams, ideally in a domain where the work is investigative, ambiguous, and doesn't map cleanly to sprint velocity.