
Staff Software Engineer - Security
Maven Clinic10 days ago
Base Salary
$221k - $260k/yr
Responsibilities
- Design and implement scalable infrastructure supporting HIPAA, SOC 2, and ISO 27001 compliance.
- Build and maintain systems for identity, authentication, and access management.
- Implement observability and anomaly detection across microservices and data stores.
- Establish Zero Trust principles and enforce least-privilege access company-wide.
- Develop compliance observability dashboards and automated evidence collection.
- Create self-service security tools that integrate with developer workflows.
- Automate onboarding/offboarding, access reviews, and approvals.
- Integrate software-supply-chain security.
- Lead threat modeling and security architecture reviews for new products.
- Partner with product and data teams to embed secure-by-default design patterns.
- Contribute to incident response and continual improvement of security posture.
- Act as Maven’s technical authority for security engineering.
- Mentor peers and promote secure coding practices.
- Champion an engineering culture of transparency and accountability.
Requirements
- 8+ years of software engineering experience, including 3+ in security infrastructure or application security.
- Proven ability to design and implement large-scale, distributed, cloud-native systems.
- Strong coding proficiency in Python, TypeScript, Go, and/or Rust.
- Deep understanding of cloud security, preferably GCP.
- Experience with Kubernetes, containers, and infrastructure-as-code.
- Familiarity with security testing frameworks and secure SDLC principles.
- Excellent communication and documentation skills.
Benefits
- Access to the full platform and specialists for mental health and family planning.
- Whole-self care through wellness partnerships.
- Hybrid work model with in-office meals and work together days.
- 16 weeks 100% paid parental leave and new parent stipend.
- Annual professional development stipend and access to a personal career coach.
- 401K matching for US-based employees, with immediate vesting.