Skip to content

Open nowPosted 9 days ago

API Security Architect

Fiserv51 open roles

Pay
$128,000 – $216,000 a year
Where
Berkeley Heights New Jersey
Work mode
On site
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowAPI Security ArchitectFiserv · Berkeley Heights New Jersey
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Fiserv's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Fiserv postings stay open a median of 1 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 9 days ago

Fiserv median: 1 days open

The posting

Calling all innovators - find your future at Fiserv.

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

Job Title

API Security Architect

Calling all innovators – find your future at Fiserv.

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day – quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

About your role:

Our API security function is about 18 months in and growing fast, and we're looking for an API Security Architect / SME to step into a role with real impact — not maintaining someone else's playbook, but shaping the strategy and technical direction for a program that's scaling quickly. You'll step into the gap left by the architect who built most of the program, owning API design review, risk profiling, identity, and incident/exploitation analysis, while helping mature our runtime protection strategy (Traceable) and setting the technical direction going forward.

What you'll do:

  • Own end-to-end API security architecture — design review, risk profiling, identity, and incident/exploitation analysis — for a fast-growing, high-scale financial-services API ecosystem.
  • Set the technical direction for the API security program and mature it from where the previous architect left off, rather than simply operating an existing playbook.
  • Guide the strategy behind our runtime protection platform (Traceable), partnering with the engineers who handle day-to-day tuning, false positives, and blocking-mode operations.
  • Design identity and access patterns for APIs (OAuth2/OIDC, JWT, scopes/claims, token handling), closing gaps such as overly broad token authorization.
  • Lead technical investigation of API security incidents and exploitation attempts, translating findings into durable architectural fixes.
  • Partner closely with a strong, hands-on engineering team (including automation/infrastructure-as-code talent) to turn architectural direction into secure API designs.
  • Bring architectural judgment to the table — explain the why, not just the what — across design reviews and cross-team security decisions.
  • Responsibilities listed are not intended to be all-inclusive and may be modified as necessary.

Experience you'll need to have:

  • Significant experience owning API security architecture (or a comparable security architecture discipline), ideally having built or matured a program from the ground up.
  • Hands-on, personal experience with runtime API protection platforms such as Traceable, Salt Security, or NoName — including configuring, tuning, and investigating alerts (not just research-based familiarity).
  • Demonstrated experience designing identity and access patterns for APIs (OAuth2/OIDC, JWT, scopes/claims, token handling).
  • A proven track record investigating and resolving API security incidents or exploitation attempts, with real analytical depth.
  • Strong architectural judgment — the ability to explain the reasoning behind a design decision, not just implement it.
  • Excellent written and verbal communication skills, comfortable working shoulder-to-shoulder with engineering, product, and security teams.
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience.

Experience that would be great to have:

  • Experience building automation or CI/CD integration for API security (policy-as-code, OpenAPI-based checks, pipelines).
  • Experience in financial services or another highly regulated industry.
  • Relevant certifications (e.g., CISSP, CCSP, or API/security-specific credentials).
  • Experience mentoring engineers or leading cross-functional architecture reviews.
  • A background transitioning from hands-on security engineering into an architecture-level SME role.

How you'll work:

  • This role is on-site Monday through Friday, based at our Alpharetta, GA cybersecurity tech hub where much of the API security team and engineering support is located. Fiserv considers in-person collaboration essential to onboarding, mentorship, and stronger productivity. We're open to other Fiserv cybersecurity locations (e.g., Berkeley Heights, NJ; Columbus, OH; Coral Springs, FL) for exceptional candidates.

Travel:

  • Approximately 10% travel off-site or to other office locations is expected.

Sponsorship:

  • You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact [email protected]. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.

Note to agencies: Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.

Salary Range

$128,000.00 - $216,000.00

These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company’s sole discretion.

Thank you for considering employment with Fiserv. Please:

  • Apply using your legal name
  • Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact [email protected]. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Fiserv's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Fiserv's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Fiserv's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.