The threat surface is the global financial and retail infrastructure itself. Diebold Nixdorf builds and services the hardware and software that moves money and completes transactions - ATMs, point-of-sale terminals, self-checkout systems, self-ordering kiosks. The company operates at massive scale: a global leader in installed ATMs, over 1.3 million EPOS systems running worldwide, and a presence in more than 100 countries. It serves the majority of the top 100 financial institutions. Every one of those endpoints is an attack vector.
Security work here sits at the intersection of embedded systems, payment processing, and physical-digital threat modeling. The technical stack spans iris recognition biometrics, stateless client architectures (like the FIT Client ATM), and AI-powered retail solutions - domains where firmware exploitation, transaction tampering, and credential theft are live concerns. Security isn't a bolt-on; it's embedded in the product lifecycle from silicon to software to deployed fleet management.
The company's technical domains - ATM technology, self-service banking, retail POS, and self-checkout - demand expertise in securing payment card environments, hardening kiosk and terminal operating systems, and defending networks that stretch across retail floors and bank branches in over 100 countries. The operational scope means incident response and vulnerability management happen at a scale most security teams never encounter: millions of deployed endpoints, each one a potential foothold.
Founded in 1859 and now employing approximately 21,000 people, Diebold Nixdorf is a legacy infrastructure company operating in a world where legacy is both a liability and a constraint. Security professionals working here deal with long device lifecycles, heterogeneous firmware versions, and the reality that patching a million terminals isn't like pushing a cloud update.





