Security Engineer
Builds secure products and tooling, integrates security practices, deploys platform mitigations, and leads incident responses. Requires engineering background with deep security knowledge; AWS, Go/Python/Typescript experience preferred.
About the job
What you’ll do
- Deeply understand the product and partner with teams to build products in an inherently secure manner.
- Integrate and build tooling to promote secure coding practices.
- Build, deploy and evangelize application primitives that increase the security posture of Moment’s product.
- Collaborate with the platform engineering team to design and deploy platform level mitigations to common security issues.
- Help lead security incident responses.
You're a good fit if you're...
- An engineer at heart.
- Looking to level up as a security practitioner in a fast-paced growing environment.
- Someone with a deep understanding of security technologies, tools, best practices and trends.
- Someone who’s worked in a platform or infrastructure role.
Even better if you have experience with...
- AWS and managing secure cloud environments.
- Leading efforts to remediate security incidents.
- Go, Python, or Typescript.
Compensation
- Base salary: $200K to $325K
- Equity: aggressive initial grant + annual performance-based bonuses
- Benefits: Health, dental, and vision coverage. $150 monthly gym stipend. Free lunch and dinner.
Skills
AWS, Secure Cloud Environments, Go, Python, TypeScript, Secure Coding Practices, Security Incident Response, Platform Security Mitigations, Application Security Primitives, Security Technologies
Similar jobs
Security Engineering jobsThe Red Team Specialist evaluates AI models for cyber capabilities, safeguard failures, and agentic-system abuse risks. The role combines hands-on security testing, automated evaluation infrastructure, risk assessment, and cross-functional communication.
Build and operate trust and safety systems that detect and mitigate abuse at internet scale. The role combines security engineering, large-scale data analysis, and applied LLM techniques, requiring 5+ years of relevant experience and strong Python and JavaScript/TypeScript skills.
Leads and develops a security incident response team while driving automation, AI-assisted workflows, operational maturity, and response strategy. The role requires 5+ years of incident response experience, people leadership, technical depth, and calm management of high-severity incidents.
Own and operate Decagon’s privacy and GRC programs, including regulatory compliance, data governance, customer security engagements, audits, and cross-functional privacy initiatives. The role requires 5+ years of GRC experience, strong communication and project management skills, and familiarity with enterprise security controls.
The analyst develops and evaluates cyber product policies, enforcement guidance, controlled-access frameworks, and launch-review inputs for AI systems. The role requires strong policy writing, cybersecurity or platform-enforcement familiarity, technical security literacy, and cross-functional communication.