On this page
TechJobs.ie Job Insights
At a glance
- Employment type
- Full-time
- Location
- Dublin, Ireland
- Workplace
- On-site
- Category
- Security
Technologies & skills
Other technical skills
What you'll be doing
As a Security Engineer on Stripe's Abuse Control Engineering (ACE) team in Dublin, you'll design, prototype, and incubate technical defenses to protect Stripe's financial ecosystem from complex abuse vectors. You'll collaborate cross-functionally, run experiments, and build automated regression suites to ensure robust, scalable security controls.
- Design, prototype, and deploy technical controls to close high-impact abuse vectors
- Translate attacker evidence and threat research into technical abuse requirements and control specifications
- Collaborate with teams to co-design secure controls across payment, onboarding, identity, and Connect surfaces
- Run experiments and A/B tests to measure risk reduction and user conversion impact
- Build regression testing suites and automated attack simulations
- Define handoff criteria and documentation to transfer controls to product teams
Key requirements
Must-have
- 3+ years of experience in Security Engineering, Software Engineering, Application Security, or Anti-Abuse Engineering in a high-scale production environment
- B.S. or M.S. in Computer Science, Cybersecurity, Software Engineering, or related technical field, or equivalent practical experience
- Expert proficiency in Python, Go, Java, or similar production languages
- Expert SQL skills for analyzing system telemetry
- Hands-on experience building API-level safeguards, rate-limiting frameworks, authentication/authorization checks, or input validation controls
- Experience with automated testing frameworks, including writing unit, integration, and regression tests
- Strong cross-functional collaboration and communication skills
Nice-to-have
- Experience designing and executing A/B tests and evaluating control efficacy
- Expertise in threat modeling, secure system architecture, and modern application security design principles
- Familiarity with established threat frameworks
Experience: 3+ years
Role signals
- Technical focus
- security engineering, abuse prevention, backend safeguards
- Architecture / system design
- Indicated in the listing
- Hands-on vs management
- Hands-on
Similar jobs
Full job description
Who we are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.
About the team
Abuse Control Engineering (ACE) is Stripe’s rapid-response technical defense and control incubator. When urgent abuse vectors emerge, ACE bridges the gap using real attacker telemetry to prototype, test, and deploy software safeguards before vulnerabilities can be exploited at scale. We partner closely with Fraud, Risk and Product Engineering to run rigorous experiments, balancing aggressive risk mitigation against legitimate user conversion. Operating as both a strike team and an incubator, ACE builds automated regression suites in partnership with Abuse Research to permanently block threat recurrence and seamlessly transfers mature controls to long-term product owners across Stripe.
What you’ll do
As an Abuse Control Engineer on the Abuse Control Engineering (ACE) team, you will design, prototype, and incubate technical defenses that safeguard Stripe’s financial ecosystem against complex, cross-cutting abuse vectors.
Where emerging threat patterns identify Stripe product weaknesses, ACE steps in to rapidly build and experiment with technical safeguards. Driven by empirical evidence and Stripe’s FT3 (Fraud Taxonomy 3.0) framework, you will translate threat intelligence into hard technical control requirements (e.g., API rate-limiting, step-up challenges, parameter validation, pre-debit holds). You will carefully balance security and product velocity, running experiments to evaluate risk reduction against user conversion impact. Managing controls through a strict incubation lifecycle, you will build automated regression suites to prevent recurrence and partner with native product teams to hand off mature, long-term defenses.
Responsibilities
-
**Rapid Control Prototyping: **Design, prototype, and deploy technical controls across API, protocol, and product boundaries to immediately close high-impact abuse vectors. ** Evidence-Based Technical Requirements: **Translate empirical attacker evidence and FT3 threat research Abuse Research, Fraud and Security into precise technical abuse requirements and control specifications.
-
**Control Co-Design: **Collaborate closely with teams across Stripe to co-design resilient, secure controls across payment, onboarding, identity, and Connect surfaces.
-
**Risk Experimentation: **Run rigorous experiments and A/B tests to measure risk reduction against legitimate user conversion impact, optimizing controls to minimize friction while neutralizing threats.
-
**Regression Testing: **Build comprehensive regression testing suites and automated attack simulations with Abuse Research to ensure mitigated abuse vectors do not recur.
-
**Stakeholder Management: **Execute ACE’s incubation model by defining handoff criteria, operational documentation, and target dates to transfer successful controls to product teams.
Who you are
We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
Minimum requirements
-
3+ years of experience in Security Engineering, Software Engineering, Application Security, or Anti-Abuse Engineering in a high-scale production environment.
-
B.S. or M.S. in Computer Science, Cybersecurity, Software Engineering, or a related technical field, or equivalent practical experience.
-
Strong software development background with expert proficiency in Python, Go, Java, or similar production languages, alongside expert SQL skills for analyzing system telemetry.
-
Hands-on engineering experience building API-level safeguards, rate-limiting frameworks, authentication/authorization checks, or input validation controls.
-
Demonstrated experience with automated testing frameworks, including writing unit, integration, and regression tests for critical backend software.
-
Strong cross-functional collaboration and communication skills, with a track record of partnering across security, product, and platform teams to drive technical outcomes.
Preferred qualifications
-
Proven track record of designing and executing A/B tests, evaluating control efficacy, and balancing security safeguards against user conversion friction.
-
Deep expertise in threat modeling, secure system architecture, and modern application security design principles.
-
Familiarity with established threat frameworks (e.g., FT3, MITRE ATT&CK) and applying adversary kill chain analysis to build resilient defenses.
-
Strong domain knowledge of financial fraud vectors, threat actor TTPs, and attacker infrastructure (e.g., Account Takeover, Card Testing, Credential Stuffing).
-
Hands-on experience with large-scale data processing platforms (e.g., Databricks, Trino, PySpark) to monitor and measure control performance across distributed systems.
-
Demonstrated capability in incubating software features, establishing clear operational handoff criteria, and seamlessly transitioning ownership to partner engineering teams.
Interview prep pack
Grounded in this listing. Use it to prepare examples before you apply.
Your interview focus
Based on this listing, the Security Engineer, ACE role at Stripe focuses on rapidly designing, prototyping, and deploying technical safeguards to mitigate emerging abuse vectors, while collaborating closely with cross-functional teams and ensuring robust automated testing and handoff processes.
- Hands-on backend security engineering·High
- Rapid prototyping and incident response·High
- Automated testing and attack simulation·Medium
- Cross-functional communication·Medium
Only have 30 minutes?
Follow a focused preparation plan based on this job.
Start 30-minute prep
Your 30-minute plan
Review API Security and Abuse Prevention Techniques
0–8 minStudy recent projects or case studies where you implemented API-level safeguards, focusing on rate-limiting, authentication, and input validation.
Prepare Examples of Rapid Prototyping and Incident Response
8–15 minIdentify and outline 1-2 situations where you quickly designed and deployed security controls in response to emerging threats.
Refresh Automated Testing and Regression Suite Knowledge
15–21 minReview your experience with automated testing frameworks, especially for backend and security-related code.
Practice Explaining Cross-Functional Collaboration
21–26 minThink through examples where you worked with product, fraud, or platform teams to co-design and implement security solutions.
Research Stripe’s Security Culture and ACE Team
26–30 minRead available Stripe engineering blog posts or public talks to understand the company’s approach to security and abuse prevention.
Talking points
, 5 itemsRapid Prototyping of Security Controls
Be ready to discuss examples where you quickly designed and implemented technical safeguards in response to emerging threats, demonstrating your ability to act decisively in high-pressure situations.
API Security and Abuse Prevention
Prepare to explain your experience building API-level protections such as rate-limiting, authentication/authorization, and input validation, as these are core to the role.
Automated Testing and Regression
Showcase your skills in developing automated unit, integration, and regression tests to ensure that mitigations are robust and prevent recurrence of abuse.
Cross-Functional Collaboration
Have examples ready of how you partnered with product, fraud, or platform teams to co-design and implement security controls, highlighting your communication and teamwork abilities.
Experimentation and A/B Testing
Demonstrate your approach to running experiments or A/B tests to balance security effectiveness with user experience, especially in high-scale environments.
What to research
, 4 itemsStripe's Abuse Control Engineering (ACE) Team Mission
Review Stripe's public materials and any available information about the ACE team's approach to rapid response and abuse mitigation.
API Security Best Practices
Refresh your knowledge of API-level safeguards, including rate-limiting, authentication, authorization, and input validation techniques.
Automated Testing Frameworks
Be prepared to discuss your experience with unit, integration, and regression testing frameworks relevant to backend security.
A/B Testing and Experimentation in Security
Understand how to design and interpret experiments to balance security controls with user experience.
Questions to ask
, 6 itemsHow does the ACE team prioritize which abuse vectors to address first?
Why ask this? To understand the decision-making process and how urgent threats are triaged.
What does a typical rapid-response project lifecycle look like on the ACE team?
Why ask this? To gain insight into the pace, structure, and expectations for prototyping and deploying controls.
How does ACE collaborate with product and platform teams during and after the incubation of new controls?
Why ask this? To clarify the handoff process and ongoing cross-team interactions.
What are the main challenges the team faces when balancing security with user experience?
Why ask this? To learn about the practical trade-offs and how success is measured.
What tools and frameworks does the team currently use for automated testing and attack simulation?
Why ask this? To assess the technical environment and identify areas where you can contribute.
How does the team stay updated on emerging abuse patterns and threat intelligence?
Why ask this? To understand the team's approach to continuous learning and adaptation.
Register now to upload your CV
Create a free account, save a PDF or Word CV, and quick apply on roles that take applications here.
