Skip to content
UpstartUpstart

Senior Security Engineer

Senior Security Engineer builds software solutions and tools to mitigate risks, conducts security reviews and threat modeling, and leads incident response while mentoring teams to elevate organizational security maturity.

About the job

How you’ll make an impact

  • Architect and build software solutions (Workflows, Services, and internal tools) that accelerate security
  • Elevate security maturity across the organization by mentoring engineers, influencing leadership through clear risk metrics, and fostering a culture where security enables innovation
  • Continuously improve systems by learning from real-world signals such as false positives, operational feedback, and evolving threats
  • Serve as a senior technical authority during high-severity incidents, driving root cause analysis and durable architectural improvements

What we’re looking for

Minimum requirements

  • Proven track record of owning security initiatives end-to-end, including post-launch validation, monitoring, and iterative improvement
  • Experience performing security reviews (e.g., design reviews, threat modeling, architecture assessments) and driving actionable outcomes
  • Demonstrated ability to identify, investigate, and remediate complex security issues across one or more domains
  • Experience developing code and building services to enhance unique security needs
  • Demonstrated ability to leverage AI-assisted tools (e.g., code generation, analysis, or investigation tools) to improve productivity while maintaining security and quality standards

Preferred qualifications

  • Experience working with diverse data domains (e.g., analytics, reporting, business operations, or people data)
  • Experience assessing security risks in AI/ML systems (e.g., prompt injection, model misuse, data poisoning, access control around models)
  • Experience building applications hosted in a Kubernetes environment
  • Experience with security orchestration tools for automating processes that are adopted beyond a single team
  • Experience partnering with Legal, Risk, Compliance, and Audit teams to operationalize security controls in regulated environments

Skills

Threat Modeling, Kubernetes, Ai/Ml Security, Security Automation, Code Development, Security Reviews, Root Cause Analysis, Security Orchestration, Prompt Injection Mitigation, Architecture Assessments

Upstart

Upstart

United States

Senior Application Security Engineer
$167k+/yrRemote5+ YOESecurity Engineering

Leads application security initiatives across products, APIs, distributed systems, and AI-enabled applications. The role requires at least five years of security or software engineering experience, strong threat-modeling and architecture skills, and the ability to build security automation and drive remediation.

GitLab

GitLab

United States
Senior Manager, Product Security Engineering
$168k+/yrRemote5+ YOESecurity Engineering

Leads the Product Security team responsible for security posture management, governed security rollouts, and software supply chain security across GitLab’s software factory. The role combines technical security leadership, organizational adoption, audit readiness, team building, and external thought leadership.

Censys

Censys

United States

Research Systems Analyst
$170k+/yrRemote6+ YOESecurity Engineering

Build and operate scalable malware-analysis, threat-enrichment, and graph-intelligence systems that power security research and detection. The role requires 6+ years of security pipeline or threat-intelligence experience, strong Python or Go skills, and expertise in cloud and distributed systems.

Flex

Flex

United States

Senior Software Engineer, Security
$170k+/yrRemote5+ YOESecurity Engineering

Build and lead product and infrastructure security for systems that move money, creating secure defaults, automation, access controls, and vulnerability management processes. The role requires strong software engineering, cloud infrastructure expertise, risk-based judgment, and the ability to operate independently as the senior security engineer.

Wiz

Wiz

United States

Compliance Engineer - Public Sector
$174k+/yrRemote6+ YOESecurity Engineering

Leads engineering for Wiz’s FedRAMP CR26 initiative, translating federal compliance requirements into scalable compliance-as-code, automation, and evidence-generation solutions. Requires 6+ years in security, DevOps, or systems engineering and deep experience with NIST, FedRAMP, and government cloud environments.