Skip to content

Staff Engineer, Security

Lead security engineering as the most senior hands-on engineer, shaping multi-year roadmap and building secure-by-default infrastructure including auth, data security, and vulnerability management.

About the job

What You'll Be Doing

  • Define and drive the Security Engineering North Star. Lead the development of a consolidated, multi-year Security Engineering vision — conducting gap analyses, aligning with key stakeholders, and translating strategy into an executable roadmap.
  • Lead the charge on AI-native Security: influence safe and thoughtful adoption of AI tooling at the enterprise level.
  • Build secure-by-default infrastructure. Design, build, and roll out foundational security services — including unified authentication, authorization, audit logging, and egress control.
  • Own data security at scale. Drive systematic data tagging across production data models, aligning with Data Classification Policy.
  • Champion security visibility and accountability. Build company-wide security scorecards for real-time security posture visibility.
  • Enable and empower the engineering organization. Partner with engineering, platform, and product teams to deliver high-leverage, secure-by-default services. Drive automated Least Privilege and systematic Vulnerability Management.

You'll Be a Good Fit If

  • Deep, multi-domain security expertise across Product Security, Cloud Security, Data Security, Access Governance, and/or Detection & Response.
  • Recent, hands-on engineering experience writing code, contributing to security infrastructure, and conducting system design reviews.
  • Built security programs at scale including Security Review, Secure Design, Security Champions, and Security Metrics Reporting.
  • Clear, compelling communicator able to present security strategy and risk to non-technical audiences.
  • Energized by ownership and ambiguity with ability to prioritize ruthlessly.

Skills

Security Engineering, Product Security, Cloud Security, Data Security, Access Governance, Detection And Response, Authentication, Authorization, Audit Logging, Vulnerability Management

Reddit

Reddit

United States

Staff Software Engineer - Site Defense
$217k+/yrRemote7+ YOESecurity Engineering

Design and operate distributed, low-latency infrastructure that protects Reddit from DDoS attacks, bots, scraping, and other network threats. The role requires 7+ years of distributed-systems experience plus expertise in security, networking, and production operations.

Upside

Upside

Washington, DC
Staff Application Security Engineer
$210k+/yrRemote6+ YOESecurity Engineering

Staff-level AppSec engineer building secure coding practices and vulnerability management for a commerce platform. Requires 6+ years in application security with deep AWS and Python experience.

Harvey

Harvey

San Francisco, CA

Staff Security Software Engineer, IAM
$231k+/yrHybrid10+ YOESecurity Engineering

Staff Security Software Engineer leading identity and access strategy, architecture, and hands-on platform development across customer, employee, contractor, and agentic identities. Requires 10+ years of production software experience and deep expertise in identity and authorization systems.

Lob

Lob

United States

Staff Security Engineer, Cloud and Product Security
$198k+/yrRemote8+ YOESecurity Engineering

Own the technical security function across cloud infrastructure, detection and response, application security, incident response, and automation. The role requires 8+ years of security engineering experience, deep AWS expertise, and the ability to lead security improvements across engineering teams.

Gusto

Gusto

San Francisco, CA

Senior Staff IT Controls, Enterprise Applications
$245k+/yrHybrid10+ YOESecurity Engineering

Own and scale IT general controls, access governance, segregation of duties, and audit readiness across enterprise applications. The role combines SOX expertise with AI-enabled continuous controls monitoring and requires 10+ years of controls, audit, or enterprise governance experience.