Abuse Research Engineer
at Stripe
Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the mos
Job Overview
Published
Sep 11, 2026
Expires
Dec 10, 2026
Source
Stripe
Region
AT
Type
Remote / Work From Home
Category
WFH
Experience
5+ years
Job Description
Who we are About Stripe Stripe is a financial infrastructure platform for businesses.
Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities.
Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead.
That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.
About the team Abuse Research Group (ARG) handles proactive threat hunting and adversary behavior analysis across Stripe products.
Rather than reacting to alerts, the team maps end-to-end fraud and abuse paths, validates novel attack vectors, and identifies product conditions that enable fraud.
Using agentic automated testing and simulation tools, ARG translates research into actionable threat advisories, strategic control recommendations, and regression scenarios to systematically eliminate vulnerabilities.
What you’ll do As an Abuse Research Engineer in the Abuse Research Group, you will play a critical role in safeguarding Stripe’s financial ecosystem by proactively hunting for advanced threats, dissecting complex fraud vectors, and extracting actionable adversary intelligence.
Rather than relying solely on reactive alerts, you will develop and execute hypothesis-driven threat hunting operations across internal telemetry and external sources to uncover fraudulent tools, tactics, and techniques (TTPs) before they impact Stripe’s platform.
Central to this work is FT3 (Fraud Taxonomy 3.0), Stripe’s multi-layered taxonomy that decomposes monolithic fraud into structured kill chains.
Collaborating cross-functionally with Fraud Ops, Strategy, Risk, Onboarding, and Security, you will integrate threat intelligence, build agentic simulation workflows, and systematically eliminate product vulnerabilities.
Responsibilities Proactive Threat Hunting & Kill Chain Analysis
Formulate hypotheses and conduct iterative threat hunting operations across Stripe systems and external data.
FT3 Taxonomy
Apply and enrich the FT3 framework across empirical datasets and incidents, standardizing threat intelligence across kill chain phases and targeted API endpoints.
Threat Intelligence & Signal Expansion
Partner with teams like Fraud Intelligence to integrate, curate, and automate threat feeds into engineering workflows.
Cross-Functional Advisories & Strategic Controls
Translate raw research and retrospective findings into actionable threat advisories and control recommendations (policy, technical systems, support workflows, and detection mechanisms) for stakeholders across Fraud, Risk, Onboarding, and Security.
Agentic Testing & Adversary Simulation
Utilize agentic automated testing frameworks to simulate adversary TTPs, validate whether deployed controls interrupt empirical kill chains, and generate regression scenarios to exercise controls.
Who you are We’re looking for someone who meets the minimum requirements to be considered for the role.
The preferred qualifications are a bonus, not a requirement.
Minimum requirements 5+ years of experience conducting threat intelligence, threat hunting, or technical incident response within cyber security, product abuse, or trust domains. 5+ years of experience analyzing large, complex datasets using data analytics tools to identify anomalies, map behavioral trends, and solve complex fraud problems.
B.S. or M.S. in Computer Science, Cybersecurity, or a related technical field, or equivalent practical experience.
Expert proficiency in Python and SQL, with demonstrated experience using code and scripting to automate workflows, build investigative tools, or query big data pipelines.
Hands-on experience in log analysis (e.g., application logs, API route telemetry, network security events), digital forensics, and cyber investigation methodologies.
Strong communication skills with a proven ability to translate complex technical research into clear, actionable recommendations and advisories for cross-functional partners.
Preferred qualifications Deep technical understanding of threat actor motivations, infrastructure, and TTPs specific to financial fraud (e.g., ATO, Card Testing, Credential Stuffing).
Familiarity with standardized taxonomies such as FT3 or MITRE ATT&CK.
Proficiency with engineering, data processing, and analysis platforms such as Databricks, Trino, PySpark, Pandas, or Scikit-Learn.
Proven background utilizing Threat Intelligence Platforms (TIPs), tactical threat feeds, OSINT, and breach intelligence.
Demonstrated capability building or leveraging agentic LLM tools, automated testing systems, or control validation frameworks to model adversary behavior at scale.
Remote Work Guidelines & Career Insights
Practical advice for succeeding as a remote professional in this role.
Asynchronous Productivity
High-performing remote teams prioritize asynchronous communication. Document your progress clearly in tickets, maintain organized project repositories, and communicate status updates proactively without waiting for real-time meetings.
Home Office & Security
Ensure a private, quiet workstation with a reliable high-speed broadband connection (min 50 Mbps). Maintain compliance with employer cybersecurity policies by utilizing secure password managers, 2FA authentication, and authorized VPN services.
Resume & Application Tips
Tailor your CV specifically to the requirements of Abuse Research Engineer. Highlight quantifiable achievements from past roles (e.g. revenue growth, efficiency improvements, or software shipped) and showcase proven experience collaborating with remote teams.
Virtual Interview Prep
Test your video and audio hardware before virtual calls. Prepare concise STAR-format stories demonstrating how you manage time independently, handle conflicting priorities across different time zones, and solve complex problems autonomously.
Frequently Asked Questions
Key answers about the application process, remote setup, and compensation for Abuse Research Engineer.
Is the Abuse Research Engineer role 100% remote?+
Yes, this is a fully remote work-from-home position with Stripe. You can collaborate asynchronously, manage project deliverables, and participate in virtual team meetings from your home office without daily commuting.
What qualifications and experience are needed for Abuse Research Engineer?+
Applicants are typically evaluated on 5+ years. Key requirements include strong English communication skills, independent problem-solving abilities, and familiarity with modern remote collaboration platforms like Slack, Zoom, and project management tools.
Who is eligible to apply for this job?+
This remote opening welcomes applications from AT and eligible remote regions. Candidates must ensure they meet the work authorization, residency, or independent contractor criteria required by Stripe.
What is the salary and benefits package for Abuse Research Engineer?+
The expected compensation for this role is competitive compensation aligned with global remote market standards. In addition to base compensation, remote positions often provide flexible working hours, home office equipment stipends, and professional growth opportunities.
How do I apply and what should I prepare for the interview?+
Click the "Apply Now" button on this page to visit Stripe's official application portal. Tailor your resume to highlight relevant achievements, and prepare to discuss your experience working productively in an asynchronous remote environment.
Related Skills & Keywords
Similar Remote Jobs
⚡ Application Support / SQL - (12 Month Maternity-leave Contract) at Varicent — 100% Remote | Apply Direct
Varicent
⚡ Analyst II, Credit at Affirm — 100% Remote UK | Apply Now
Affirm
⚡ Associate Software Engineer, Marketplace at Fleetio — 100% Remote | Apply Direct
Fleetio
⚡ Binance AI Efficiency Engineer – 100% Remote | Apply Direct
Binance
Save this remote job alert.
Store your email with the current page context so you can keep track of similar remote opportunities and reuse this search later.
Search alerts are stored with your current page context so you can track similar jobs over time.
Ready to Apply?
Click the button below to apply on the employer's official website. Always verify job details before submitting personal information.