About the Job
The Abuse Research team is dedicated to proactively hunting for emerging abuse vectors and studying complex attacker behaviors. Rather than just reacting to alerts, the team maps complete abuse paths across Stripe products and external systems to validate novel findings and explain the underlying product conditions ...
You will lead the Abuse Research Group (ARG)—a team of threat intelligence analysts, fraud researchers, and detection engineers focused on proactively identifying and mitigating threats to Stripe and our merchants. You will set the research agenda, guiding work across threat actor tracking, hands-on fraud investigat...
Lead, develop, and retain a team of threat intelligence analysts, fraud researchers, and detection engineers who thrive at the intersection of adversarial research and engineering
Key Responsibilities
Set and execute the research agenda across threat actor tracking, fraud investigation, merchant ecosystem defense, and automated detection engineering
Provide technical depth and analytical judgment on complex investigations, including API key takeovers, account compromise campaigns, and KYC bypass techniques
Operationalize research findings into production-level detection rules, automated response mechanisms, and cross-functional escalations
Collaborate with Risk, Trust & Safety, Fraud Platform, and Security Engineering to translate abuse research into proactive platform protections
Coordinate with external stakeholders, including law enforcement, to disrupt and attribute high-impact threat actors
Coach and mentor individual contributors to support their career development while maintaining high technical standards
Required Skills & Abilities
We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
10+ years of experience leading security engineering or research teams, with a track record of managing technical ICs doing investigative, intelligence, or detection work.
B.S. or M.S. Computer Science or related field, or equivalent experience in Security
Experience recruiting, growing, and leading technical teams, including performance management
Excellent written and verbal communication skills, including the ability to develop and deliver operational or incident-related information to leadership
Familiarity with fraud and abuse patterns specific to payments and fintech
Hands-on experience with threat intelligence tradecraft: OSINT, dark web collection, actor attribution, and working with structured intelligence frameworks (ATT&CK, STIX/TAXII, or equivalent)
Strong understanding of threat actor tactics, techniques, and procedures (TTPs)
Background in security research, threat intelligence, or fraud detection engineering — prior experience leading or working in teams that study adversary behavior, build detection systems, or operate intelligence programs; experience in payments, fintech, or financial crime is a strong plus.
Technical fluency across the domains ARG works in — threat intelligence, fraud signal development, detection engineering, and OSINT.
Experience managing or growing technical research teams, ideally in a domain where the work is investigative, ambiguous, and doesn't map cleanly to sprint velocity.
Qualifications
Experience:
10 years experience