Senior Software Engineer
Senior Software Engineer on Plaid's Product Security team building production-grade services, libraries, and frameworks (VM orchestration, vuln management automation, secure controls) to make secure development the default path for all engineers. Requires 5+ years building/scaling production services plus strong architecture skills.
About the job
Responsibilities
- Lead, design and develop security capabilities to manage vulnerabilities lifecycle and automate workflows to reduce KTLO toil.
- Own, maintain, and build Plaid’s VM Orchestration service and build solutions to eliminate entire vulnerability classes.
- Partner with product and engineering teams to architect and build security controls to make our products even more secure.
- Consult with product engineers to ensure Plaid services meet security standards.
- Educate and support other engineering teams to improve security in their own products and services.
- Assist with Plaid’s incident response and security awareness programs.
- Collaborate with other security platform members and build necessary engineering solutions to meet their needs.
- Build the secure engineering foundations that secure the future of digital finance.
- Develop maintainable and secure software to enhance Plaid's security posture and create paved roads for developers for easy and default integration of security controls.
- Design, develop, and maintain security-critical services and components.
- Develop internal tooling to automate vulnerability detection, dependency management, and remediation workflows within the CI/CD pipeline.
- Replace manual security gates with engineered solutions that allow product teams to ship faster and more securely.
- Communicate effectively with managers and team members regarding project deliverables and progress.
- Design and implement technical solutions that align with the evolving needs of the business.
- Proactively identify and address security vulnerabilities in products and services.
- Actively participate in incident response and security awareness initiatives.
Qualifications
- 5+ years of professional experience building and scaling production services.
- Ability to architect and build software systems to meet security, privacy, usability, scalability and cost requirements.
Nice-to-Haves
- Experience building systems or services related to vulnerability management, data encryption, key management, secret management, user authentication, service authentication, authorization systems, and security policy enforcement.
- Experience designing distributed systems and microservices with a focus on performance and reliability.
- Familiarity with modern cloud infrastructure (AWS, Kubernetes, Terraform) and how to integrate security controls into them.
- A passion for creating tools and libraries that other engineers love to use.
- Passionate about educating others on security and privacy.
Skills
Vulnerability Management, AWS, Kubernetes, Terraform, Distributed Systems, Microservices, CI/CD, Data Encryption, Key Management, Secret Management, Authentication, Authorization
Similar jobs
Security Engineering jobsBuild secure, large-scale platforms, controls, monitoring, and AI-augmented pipelines that improve Snowflake’s cloud security posture across hundreds of millions of assets and multiple cloud providers. Requires 5+ years of software engineering experience and expertise in secure distributed systems.
Leads enterprise network architecture, cloud connectivity, security, operations, and incident response across corporate and manufacturing environments. Requires 10+ years of network engineering experience, people leadership, AWS networking expertise, and strong network security knowledge.
Own detection engineering and lead incident response across corporate and production environments, building cloud, endpoint, runtime, and Kubernetes coverage. The role requires 6+ years in security, hands-on detection development, and end-to-end incident leadership.
Own and advance the security of Anyscale’s production and multi-cloud infrastructure, including hardening, segmentation, Kubernetes runtime protection, and access controls. Requires 8+ years of security engineering experience and hands-on expertise with AWS, Azure, Kubernetes, and cloud security tooling.
Owns production-edge security for enterprise financial-institution connectivity, including PKI, mTLS, AWS networking, webhook security, and vulnerability remediation. Requires 6+ years of hands-on platform, infrastructure, or network security engineering experience.