3 months ago
Base Salary
$200k - $300k/yr
Responsibilities
- Own application and product security end to end through threat modeling, secure design, code review, and secure-by-default engineering practices.
- Build the security function from the ground up by setting the roadmap, establishing best practices, selecting tooling, and defining engineering standards.
- Identify, prioritize, and drive remediation of vulnerabilities across the product and infrastructure, while building preventive guardrails.
- Harden cloud and infrastructure systems, including IAM, secrets, networks, and Kubernetes, and support logging, detection, incident response, and SOC 2 compliance foundations.
- Contribute production code, communicate technical risk to engineers, leadership, and customers, and strengthen the organization’s security culture.
Requirements
- 5+ years of security engineering experience with deep application and product security expertise and breadth across cloud, infrastructure, and detection.
- Track record of building or substantially shaping a security program and independently prioritizing security initiatives.
- Ability to read and write production code and partner effectively with software engineers.
- Strong problem-solving and technical risk communication skills.
- Passion for internet technologies and understanding of how modern systems are attacked and defended.
- Experience working in an early-stage engineering team or fast-growing company on ambiguous problems.
