Principal Fraud Strategist, Authentication and Device Trust at Sofi

<div class="content-intro"><p><a href="https://www.sofi.com/sofi-employee-applicant-privacy-notice/" target="_blank"><strong>Employee Applicant Privacy Notice</strong></a></p> <p><strong>Who we are:</strong></p> <div> <p>Shape a brighter financial future with us.</p> <p>Together with our members, we’re changing the way people think about and interact with personal finance.</p> <p>We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. <strong>Join us to invest in yourself, your career, and the financial world.</strong></p> </div></div><p></p> <p>The role</p> <p>We are searching for a Principal Fraud Strategist to own SoFi’s authentication and device trust discipline end to end. This is a sophisticated, platform-level role at the intersection of adversarial threat intelligence, device intelligence, and risk decisioning architecture. You will design the layered defense that protects every member session at SoFi: login, password reset, MFA, step-up, account recovery, and high-risk transaction moments across web and mobile. You will own device trust outright: identification, recognition, intelligence, entity resolution, and the signal development work that keeps SoFi ahead of ATO, scam, and perimeter attack patterns as they evolve. The role spans strategy, orchestration, and vendor stack design (Transmit Security Mosaic and beyond), and scales across Money, Invest, Crypto, Card, and Lending. You will work cross-functionally with EPD, IAM, Fraud Ops, InfoSec, Product, and Data Science, and influence vendor roadmaps where SoFi’s needs run ahead of what the market ships.</p> <p>By joining SoFi, you'll become part of a forward-thinking company that is transforming financial services for the better. We offer the excitement of a rapidly growing startup with the stability of an industry leading leadership team.</p> <p>What you’ll do:</p> <p>The Principal Fraud Strategist, Authentication and Device Trust will help SoFi build and continuously evolve a layered authentication and device trust defense by:</p> <ul> <li> <p>Owning end-to-end strategy for authentication and device trust across web and mobile: signal architecture, decisioning topology, rule construction, threshold tuning, champion/challenger lifecycle, and rule-level loss and false-positive attribution.</p> </li> <li> <p>Architecting the layered perimeter defense against ATO, scam interception (authorized push payment, remote access, impostor, investment, business email compromise), credential stuffing, MFA bombing, OTP interception, SIM swap, adversary-in-the-middle phishing, and emulator-driven bot traffic. Convert live campaign telemetry into policy changes at the speed of the attack.</p> </li> <li> <p>Owning the device trust discipline: device identification, recognition, and intelligence across web and mobile; behavioral biometrics; network reputation; device-graph and entity resolution; emulator and VM detection; jailbreak and root signals; residential-proxy detection; and signal development for gaps the current vendor stack does not cover.</p> </li> <li> <p>Orchestrating the vendor stack that underpins authentication and device trust (Transmit Security Mosaic and adjacent providers): capability assessment, integration design, data flow architecture, decision timing, and continuous performance tuning. Influence vendor roadmaps where SoFi has needs the market has not yet met.</p> </li> <li> <p>Designing step-up authentication, account recovery, and high-risk transaction decisioning that synthesizes device, behavioral, network, and credential-risk signals into a single decision with explicit FPR budgets per surface. Keep controls invisible to legitimate members wherever possible.</p> </li> <li> <p>Leading 3DS, CNP, and tokenization decisioning for card-not-present transactions, coordinating with issuer processing and network rules to optimize approval rate without ceding losses.</p> </li> <li> <p>Partnering with InfoSec threat intelligence on credential-capture campaigns, phishing kits, SEO poisoning, and ATO-as-a-service marketplaces. Translate intelligence into rule changes inside the live policy stack and into new signal development priorities.</p> </li> <li> <p>Setting the technical bar for

Apply for this Principal Fraud Strategist, Authentication and Device Trust role

More jobs at Sofi

More jobs in TX - Frisco