Client Platform Security Engineer
Stripe · New York, New York · 8612 Security Infrastructure · listed June 5, 2026
The shape of it
Seniority
Mid level
Experience asked
4+ years
Where
Not stated
Requirements listed
8
Length
626 words
In the posting’s own words
Secure Devices is responsible for ensuring that every client endpoint at Stripe adheres to our rigorous security standards. Our services play a crucial role in detecting and preventing data loss, restricting software execution to only approved software, and providing attestation capabilities to securely manage device identities. We operate both on-device and backend services across multiple platform types. Our users-first approach ensures that we’re empowering Stripes to be as productive as possible while protecting user data.
What it asks for · 8
- 4+ years of relevant experience securing iOS and/or macOS platforms
- 4+ years of software engineering experience writing Go, Swift or Objective-C
- Deep expertise securing devices within the Apple ecosystem
- Understanding of the current threat landscape and how to defend Apple devices against modern threats
- High standards for code quality and a constructive attitude to help others raise the bar
- An ability to think creatively and holistically about reducing risk in a complex environment
- The ability to drive clear next steps when encountering ambiguous spaces without clear lines of ownership
- Empathy, strong communication skills and a deep respect for the power of collaboration
Also a plus
- Experience implementing endpoint detection and response software
- Knowledge of macOS or iOS internals and how they can be used to build security controls and software
- Exposure to data loss prevention strategies
- Ability to develop backend networked applications capable of handling a high number of requests
- General proficiency in securing client devices
- Understanding of topics such as platform hardening, malware detection, and endpoint management through configuration as code
- Understanding of networking protocols across various levels of the stack
- TCP, DNS, SSH, TLS, HTTP
What the job covers
- Contribute to the secure design and implementation of Stripe’s mobile expansion initiative
- Act as the subject matter expert on iOS security by advising partner teams on iOS security best practices and secure-by-design architectures
- Design, build and maintain Stripe’s endpoint security software. This includes developing telemetry and prevention capabilities via macOS system extensions that run on all Stripe macOS devices
- Collaborate closely with partner teams to define and measure the secure configuration of Stripe’s client platforms (macOS, iOS/Android, ChromeOS)
- Operate high RPS backend services providing critical controls and security configuration to Stripe endpoints
- Drive down usage of unapproved, untrusted software while creating a surprisingly great user experience for onboarding new, approved software
- Manage and improve device attestation flows to ensure Stripe’s device and user identities are kept secure
- Identify opportunities on Stripe client platforms to improve our security posture and resiliency against malware and advanced persistent threats
- Build and maintain a users-first data loss prevention program to protect against accidental and malicious data exfiltration
Tools and skills named
Security & compliance
- Security9×
Languages
- Go
- Objective-C
- Swift
Cloud & infra
- AWS
- Linux
Product & design
- User experience
Words the posting leans on
- devices10×
- software10×
- security9×
- platforms8×
- endpoint6×
- experience6×
- secure6×
- client5×
- macos5×
- securing5×
- services5×
- build4×
- ios4×
- requirements4×
- configuration3×
- data loss3×
Counted from the posting after the mission statement and the legal notices are set aside. The ones near the top are the ones a screener is looking for.
The posting, your resume, and the gaps between them. One click loads all three.