Skip to content

Senior Security Engineer

145k – 200kSeattle, WASan Francisco, CAHybrid5+ YOE
Summary

Senior Security Engineer designing and operating security controls across cloud infrastructure, applications, and CI/CD pipelines. Requires 5+ years in security engineering, cloud experience, and strong automation skills.

About the role

What you’ll do

  • Design and implement security controls and tooling across Sift’s infrastructure and applications (e.g., IAM policies, network controls, secrets management, endpoint protections, container and workload security).
  • Embed with product and platform teams to perform security design reviews, threat modeling, and code or configuration reviews for new features and services.
  • Improve the secure SDLC by integrating AI-powered scanning tools, security scanning (SAST/DAST, dependency and container scanning) into CI/CD, and by developing guardrails, templates, and best practices for engineers.
  • Own or co-own vulnerability management workflows, from discovery and triage through remediation, including defining SLAs, coordinating with service owners, and tracking closure.
  • Develop automation (scripts, services, integrations) to detect misconfigurations, anomalous activity, or policy violations, and to reduce manual operational work for the security team.
  • Participate in security incident response (on-call rotation or escalation), including investigation, containment, root cause analysis, and long-term fixes.
  • Contribute to security documentation and standards, ensuring we have clear, actionable guidance for engineers on topics like authentication, authorization, data encryption, and key management.
  • Support audits and assessments (e.g., SOC 2, customer security questionnaires) by providing technical details and evidence of control design and effectiveness.
  • Mentor other engineers on secure design and implementation practices through pairing, reviews, training sessions, and written guidance.

What will make you a strong fit

  • 5+ years of experience in security engineering, infrastructure engineering, or application security, ideally in a B2B SaaS or cloud-native environment.
  • Hands-on experience with at least one major public cloud platform (e.g., GCP, AWS), including IAM, networking, logging/monitoring, and security services.
  • Strong proficiency in at least one programming or scripting language (e.g., Python, Go, Java, or similar) and experience using code to automate security controls or detection.
  • Direct experience with AI/LLM-specific security risks (prompt injection, model supply chain, etc.).
  • Demonstrated knowledge of secure application and system design, including topics like authentication/authorization, encryption in transit and at rest, least-privilege access, and secrets management.
  • Experience with security tooling such as vulnerability scanners, SAST/DAST tools, SIEM/centralized logging, endpoint protection, or cloud security posture management.
  • Solid understanding of common vulnerabilities and attack patterns (e.g., OWASP Top 10, misconfigurations, supply-chain risks) and how to mitigate them in practice.
  • Ability to work cross-functionally with engineering, IT, and compliance/legal teams, and to translate security requirements into practical implementation details.
  • Clear written and verbal communication skills, including the ability to document designs and decisions and to educate others on security best practices.
  • A collaborative, pragmatic approach: you’re comfortable making risk-based decisions, proposing options, and supporting teams in implementing secure, scalable solutions.
Skills
AWSGCPPythonGoJavaIAMSASTDASTSIEMvulnerability scanningcontainer securitysecrets managementthreat modelingincident response
Similar roles at this salary range
All Security Engineering jobs →
Shield AI

Senior Staff Cybersecurity Engineer, Platform Security

Senior technical owner building secure-by-default infrastructure, IaC modules, policy-as-code guardrails, and CI/CD security tooling for cloud and platform engineering teams.

160k – 240kSan Diego, CASecurity EngineeringOn-site7+ YOEGoOPA
Coinbase

Insider Threat Analyst

Insider Threat Analyst responsible for triaging alerts, conducting investigations, and mitigating insider risks using SIEM, UBA, and DLP tools. Requires 3+ years in security operations or investigations with strong cross-functional collaboration skills.

135k – 159kUnited StatesSecurity EngineeringRemote3+ YOEUBADLP
Chainguard

Senior Security Engineer

Own AI platform posture end-to-end: administer Claude/ChatGPT enterprise controls, build MCP servers and agentic tooling, harden security against prompt injection and data leakage, and create spend dashboards. Requires 5+ years security/IT/DevOps experience plus hands-on AI platform administration.

130k – 160kUnited StatesSecurity EngineeringRemote5+ YOEGCPGit
Chainguard

Senior Security Engineer

Senior Security Engineer on the Cyber Resiliency team designing detection controls, engineering SOAR/AI playbooks, leading incident response, and conducting threat hunts to strengthen Chainguard's security posture.

130k – 150kUnited StatesSecurity EngineeringRemote5+ YOEGoSOAR
Metropolis

Senior Security Engineer, Infrastructure & Network Security

Lead AWS and network security infrastructure, zero-trust initiatives, and cloud automation for enterprise environments. Requires strong AWS, networking, IAM, and scripting experience.

160k – 215kLos Angeles, CASecurity EngineeringOn-site5+ YOEAWSVPN