Skip to content
257 jobs

Job results

Vanta

Vanta

Remote

Lead Product GRC Subject Matter Expert
$230k+/yrRemote10+ YOESecurity Engineering

Leads interpretation and productization of federal compliance controls for Vanta’s public-sector platform, translating FedRAMP and related frameworks into technically testable guidance, automated detectors, mappings, and machine-readable authorization workflows. Requires 8–10+ years of hands-on federal compliance experience, especially FedRAMP program and SSP work.

Vanta

Vanta

Remote

Manager, Security Operations
$178k+/yrRemote5+ YOESecurity Engineering

Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.

MongoDB

MongoDB

Dublin, Ireland

Security Software Engineer, Infrastructure Security
No salary listedRemote5+ YOESecurity Engineering

Build scalable security controls and services for MongoDB Atlas multi-cloud infrastructure, spanning runtime protection, cloud security posture, identity, observability, and secure infrastructure automation. The role requires 5+ years of software or SRE experience, strong Linux and networking fundamentals, cloud expertise, and Kubernetes security experience.

Addepar

Addepar

United States

Staff AI Security Engineer
No salary listedRemote9+ YOESecurity Engineering

Leads AI security strategy, architecture, governance, and defensive controls across the organization while mentoring security engineers. Requires 9+ years of security engineering experience and deep knowledge of AI, AWS security services, identity protocols, and emerging AI attack frameworks.

Coinbase

Coinbase

India

Specialist, CSIRT
No salary listedRemote3+ YOESecurity Engineering

Owns frontline security alert triage, incident response, detection coverage, and automation across cloud, SaaS, container, and Web3 environments. Requires at least three years of hands-on security operations experience and proficiency with scripting, SIEM platforms, and threat intelligence tooling.

Snowflake

Snowflake

United States

Senior Security Engineer, Incident Response
$176k+/yrRemote5+ YOESecurity Engineering

Leads product security incident response for Snowflake’s AI and agentic products, developing detection, containment, remediation, and automation capabilities. Requires 5+ years in security, incident command experience, cloud expertise, and knowledge of AI/ML attack surfaces.

Mozilla

Mozilla

United States
Staff Security Engineer
No salary listedRemote7+ YOESecurity Engineering

Maintains Mozilla’s information security management system and leads ISO 27001 and SOC 2 compliance activities, including audit readiness, policy governance, remediation tracking, and stakeholder coordination. Requires at least five years in information security, GRC, or compliance and strong audit experience.

OpenRouter

OpenRouter

United States

Third-Party Risk Analyst
No salary listedRemote4+ YOESecurity Engineering

Build and operate OpenRouter’s third-party risk program, assessing model providers, subprocessors, and SaaS vendors across security, privacy, and AI regulatory requirements. The role requires 4+ years of vendor security risk experience, technical fluency, and strong independent judgment.

GitLab

GitLab

United States
Staff Infrastructure Security Engineer
No salary listedRemote7+ YOESecurity Engineering

Leads infrastructure security strategy and execution across GitLab’s cloud platforms and self-managed offerings. The role requires deep cloud, Kubernetes, Infrastructure-as-Code, security tooling, threat modeling, and technical leadership experience.

OpenLoop

OpenLoop

Remote

Sr. Staff IAM Engineer
No salary listedRemote8+ YOESecurity Engineering

Designs and governs enterprise identity architecture across workforce, customer, partner, non-human, and AI agent identities. The role requires 8+ years in IAM, deep CIAM and Auth0 experience, federation expertise, and the ability to implement secure, auditable controls in regulated environments.

Oneleet

Oneleet

United States

Framework Engineer
$100k+/yrRemoteSecurity Engineering

Develop and maintain compliance frameworks, control libraries, automations, and product improvements that help customers meet security requirements efficiently. The role requires hands-on security program experience, knowledge of major compliance standards, and strong technical fluency with JSON and scripting.

Stripe

Stripe

United States

Software Engineer, Vulnerability Management
No salary listedRemote2+ YOESecurity Engineering

Software engineer responsible for identifying, triaging, and coordinating remediation of vulnerabilities across company systems. The role requires at least two years of industry software engineering experience in security and strong collaboration and problem-solving skills.

Snowflake

Snowflake

United States

Staff Security Engineer - Enterprise Security
$211k+/yrRemote7+ YOESecurity Engineering

Leads the design, automation, and operation of enterprise endpoint security across multi-cloud and SaaS environments. The role requires 5+ years of information security experience, software development skills, and expertise across Windows, macOS, and Linux endpoint platforms.

Function Health

Function Health

United States

Senior Product Security Engineer
No salary listedRemote5+ YOESecurity Engineering

Build and operate product security systems across applications, APIs, infrastructure, and CI/CD, including AI-assisted code review and automated security controls. The role requires 5+ years in product or application security or software engineering, strong Python skills, and hands-on vulnerability assessment experience.

Virta Health

Virta Health

United States

Director, Security Engineering
$162k+/yrRemote10+ YOESecurity Engineering

Leads enterprise security engineering and SecOps, directing a security team, outsourced MDR/SOC operations, incident response, and a Zero Trust transformation. Requires 10+ years in cybersecurity or cloud infrastructure security, leadership experience, and deep GCP, micro-segmentation, workload identity, and CI/CD expertise.

Snowflake

Snowflake

United States

Security Engineer - Threat Detection
$211k+/yrRemote8+ YOESecurity Engineering

Builds and evolves AI-assisted threat detection, automation, and analytics at cloud scale. Requires 8+ years of security engineering experience, strong Python or Go skills, production software practices, cloud security expertise, and experience with large-scale telemetry and agentic workflows.

Domino

Domino

India

Vulnerability Engineer
No salary listedRemoteSecurity Engineering

The Vulnerability Engineer will assess, reproduce, prioritize, and validate vulnerabilities across a SaaS environment, while maintaining scanning automation and partnering with Engineering on remediation. The role requires vulnerability-management experience, scripting skills, exploit validation, and knowledge of cloud, containers, and application security.

Fetch

Fetch

United States

Director, Trust & Safety Detection and Intelligence
$176k+/yrRemote10+ YOESecurity Engineering

Leads Fetch’s fraud detection and threat intelligence function, overseeing investigations, detection systems, risk prioritization, and anti-abuse strategy. Requires 10+ years in fraud, trust and safety, cybersecurity, or related risk work, plus 5+ years managing senior teams.

Tremendous

Tremendous

United States

Head of Security
$250k+/yrRemote8+ YOESecurity Engineering

The first security leader will own Tremendous' end-to-end security posture, including product security, incident response, identity, vendor risk, and AI security. This player-coach role requires hands-on experience scaling security programs, strong engineering judgment, and the ability to build a future team.

1Password

1Password

United States
Senior Security Engineer, Vulnerability Management
$153k+/yrRemote5+ YOESecurity Engineering

Leads product security incident response, coordinated vulnerability disclosure, PSIRT maturity, and customer-facing communications. The role requires 5+ years of security-focused IT or engineering experience, strong cross-functional judgment, coding ability, and experience building incident response tooling, including AI-powered workflows.

Mercury

Mercury

San Francisco, CA
Senior Cloud Security Engineer - InfoSec
$167k+/yrRemote5+ YOESecurity Engineering

The Senior Cloud Security Engineer will design secure, resilient AWS infrastructure, automate security controls, and partner with engineering teams on cloud risk, compliance, and remote-access challenges. Candidates should have at least five years of relevant experience and familiarity with IaC, security frameworks, and privacy regulations.

Wiz

Wiz

United States

Threat Intelligence Researcher (Cloud)
$160k+/yrRemote5+ YOESecurity Engineering

Researches and tracks sophisticated state-backed and financially motivated threats targeting cloud environments, using telemetry, infrastructure analysis, malware analysis, and threat intelligence techniques. Requires at least five years of security or threat research experience.

MongoDB

MongoDB

New York, NY
Product Security Engineer, Server
$106k+/yrRemote5+ YOESecurity Engineering

Strengthen MongoDB’s server products through product security assessments, threat modeling, vulnerability research, and security controls. The role requires application or product security experience, C++ expertise with low-level codebases, scripting ability, and strong cross-team communication.

Clickhouse

Clickhouse

Netherlands

Offensive Security Engineer
No salary listedRemote7+ YOESecurity Engineering

Conducts penetration testing, red-team assessments, vulnerability research, and AI/LLM security testing across ClickHouse products, infrastructure, and cloud environments. Requires 7+ years of offensive and product-security experience plus hands-on expertise with cloud platforms, Kubernetes, Cilium, and security automation.

NMI

NMI

United States
Senior Staff Information Security Engineer
$145k+/yrRemote7+ YOESecurity Engineering

Senior individual contributor leading security architecture and automated controls across AWS, on-premises, and hybrid infrastructure. The role requires deep AWS security expertise, infrastructure-as-code and CI/CD experience, scripting ability, and cross-functional technical leadership.

Censys

Censys

San Francisco, CA
Staff Application Security Engineer
$172k+/yrRemote10+ YOESecurity Engineering

Staff Application Security Engineer owning the AppSec/DevSecOps program at Censys. Design and implement secure SDLC practices, DevSecOps tooling in Kubernetes/GCP (incl. AI/ML pipelines), CI/CD security integrations, compliance controls, and provide technical leadership/mentorship to engineering teams. Requires 10+ years security engineering experience.

Virta Health

Virta Health

Remote

Senior Manager, Governance, Risk, and Compliance
$162k+/yrRemote7+ YOESecurity Engineering

Lead Virta Health's Governance, Risk, and Compliance (GRC) function in an AI-first healthcare environment. Manage compliance automation with Vanta, support commercial RFPs/questionnaires, maintain HITRUST/HIPAA/SOC 2 certifications, conduct risk assessments, and drive security awareness while optimizing employee compliance workflows.

Cape

Cape

United States

Security Engineer, Corporate Security
No salary listedRemote5+ YOESecurity Engineering

Security Engineer responsible for designing and managing corporate security controls across identity, endpoint, network, and vendor risk. Requires 5+ years in information security, deep IAM/EDR/MDM expertise, and experience with compliance frameworks to reduce risk and build security culture.

Chamber Cardio

Chamber Cardio

New York, NY
Cloud Security and Infrastructure Engineer
No salary listedRemote5+ YOESecurity Engineering

Build and mature AWS cloud security program and infrastructure for a cardiology platform company. Own security architecture, detection/response, HIPAA compliance, and infrastructure decisions balancing security, cost, and reliability.

Kodex

Kodex

Sydney, Australia

Threat Intelligence Specialist – APAC
No salary listedRemote3+ YOESecurity Engineering

The Threat Intelligence Specialist investigates identity fraud and threat-actor activity, conducts pivot-based OSINT, and supports urgent law enforcement operations across APAC hours. The role requires at least three years of relevant analytical experience, strong communication skills, and the ability to work autonomously across time zones.

Clickhouse

Clickhouse

United States

Senior Product Security Engineer
No salary listedRemote5+ YOESecurity Engineering

Senior Product Security Engineer partnering with engineering and product teams to secure distributed cloud services through threat modeling, vulnerability management, security tooling, incident response, and automation. Requires substantial security engineering, cloud, Kubernetes, and development experience.

Onebrief

Onebrief

United States

Program Architect
$160k+/yrRemote5+ YOESecurity Engineering

Own the architecture and implementation of Onebrief's GRC framework for defense/government compliance (FedRAMP, CMMC, RMF, SOC 2). Translate regulatory requirements into technical security controls in close partnership with engineering teams.

Confluent

Confluent

United States

Senior Manager, Detection & Response
$242k+/yrRemote12+ YOESecurity Engineering

Lead Confluent's Detection & Response organization in Infrastructure Security. Define vision and roadmap for threat detection, investigation, and response across multi-cloud environments while building and mentoring a global distributed engineering team.

Chainguard

Chainguard

United States

Senior Security Engineer
$137k+/yrRemote7+ YOESecurity Engineering

Senior Security Engineer responsible for architecting and securing Chainguard's multi-cloud infrastructure (primarily GCP), embedding security into developer platforms, and hardening environments for AI/agentic workflows using IaC and Kubernetes. Requires strong GCP expertise, DevOps background, and staff-level cloud security experience.

Chainguard

Chainguard

United States

Security Engineer
$105k+/yrRemoteSecurity Engineering

Support engineers in Identity and Access Management, AI, and Cloud security at Chainguard. Ideal for those with strong IT admin or software development foundations seeking to grow into security roles, with hands-on experience in at least one focus area.

Semgrep

Semgrep

United States

Senior/Staff Security Researcher
No salary listedRemote5+ YOESecurity Engineering

Senior/Staff Security Researcher building scalable detection systems that combine program analysis, taint tracking, and LLMs to find and validate real vulnerabilities with minimal false positives. Requires strong appsec expertise, coding fluency in multiple languages, and experience with applied AI for security-critical automation.

OnePay

OnePay

United States

Corporate Security Engineer, IAC & Automation
$140k+/yrRemote5+ YOESecurity Engineering

Corporate Security Automation Engineer leading design, implementation, and optimization of security infrastructure using IaC (Terraform), automation, endpoint protection, DLP, and ZTNA in a fast-scaling fintech. Requires 5+ years IT experience with 3+ in enterprise cloud security, scripting, and security frameworks.

Censys

Censys

United States

Senior Security Researcher
$202k+/yrRemote5+ YOESecurity Engineering

Senior Security Researcher driving offensive security insights at Censys using large-scale Internet scan data. Conduct original research on attack techniques and agentic AI, publish at top conferences, translate findings into product scanning/fingerprinting capabilities, and collaborate cross-functionally. Requires 5+ years hands-on pentesting/red teaming experience plus agentic AI tooling expertise.

OpenAI

OpenAI

New York, NY
Offensive Security Agent Engineer
$347k+/yrRemote7+ YOESecurity Engineering

Build and own a portfolio of specialized AI agents that autonomously discover, validate, and drive remediation of vulnerabilities across OpenAI's infrastructure, cloud, Kubernetes, web apps, and attack surface. Requires deep offensive security expertise, agent/systems building experience, and strong production engineering skills at Staff-Principal level.

Stripe

Stripe

United States

Program Manager, Security GRC
No salary listedRemote6+ YOESecurity Engineering

Security GRC Program Manager serving as primary interface between Stripe's Security team and external auditors/regulators. Manage audits, maintain evidence repository, perform risk/control assessments across global frameworks, and support compliance initiatives.

RSA

RSA

United States

Consultant, Cybersecurity consultant
$140k+/yrRemote6+ YOESecurity Engineering

Senior Advisor on the Security & Risk team responsible for incident response, operating and tuning detection tooling, applying Zero Trust and identity controls, and enabling secure product development in cloud and on-prem environments. Requires 6+ years cybersecurity operations experience, strong IAM/Zero Trust knowledge, and cloud security hands-on expertise.

BioRender

BioRender

Canada

Senior Application Security Engineer
No salary listedRemote5+ YOESecurity Engineering

The Senior Application Security Engineer builds security tooling and production code, embeds secure-by-design practices, leads threat modeling, and protects AI-integrated features. The role requires strong web application security, software engineering, CI/CD security, AWS, and infrastructure-as-code experience.

GitLab

GitLab

United States

Senior Software Security Engineer
$139k+/yrRemote5+ YOESecurity Engineering

Senior engineer on Trust and Safety team building and maintaining abuse prevention systems, anomaly detection, and agentic AI tools for the GitLab SaaS platform. Requires strong Ruby/Rails software engineering background; security experience preferred but not required.

Pomelo Care

Pomelo Care

San Francisco, CA
Staff Security Engineer
$220k+/yrRemote7+ YOESecurity Engineering

Staff Security Engineer who owns security problems end-to-end by identifying real risks, building direct controls, secure-by-default libraries, guardrails, and tooling. Requires 7+ years software engineering experience plus deep security expertise in threat modeling, auth, OWASP, cloud, and supply chain security. Healthcare/HIPAA/HITRUST and GCP experience preferred.

Mozilla

Mozilla

United States
Senior Security Engineer, Bug Bounty
No salary listedRemote3+ YOESecurity Engineering

Own and scale Mozilla's web bug bounty program as the primary interface with external researchers. Lead triage, validation, remediation of reports, collaborate with SIRT on incidents, perform code reviews, and drive secure development improvements. Requires 3+ years security engineering experience and bug bounty or bug hunting background.

Huntress

Huntress

United States

Principal Product Researcher
$200k+/yrRemote7+ YOESecurity Engineering

Lead Windows threat detection research and EDR sensor development for SMB customers. Requires deep Windows kernel expertise, reverse engineering, EDR bypass testing, and AI-augmented research to build innovative, automated defenses.

Brex

Brex

United States
Senior Application Security Engineer
$192k+/yrRemote5+ YOESecurity Engineering

Senior Application Security Engineer identifies vulnerabilities via code/design reviews, penetration testing, and builds automation tools for SAST/DAST. Requires 5+ years AppSec experience, Python proficiency, and strong collaboration skills; bonus for Kotlin, Kubernetes, AWS.

Teleport

Teleport

United States
Senior Software Engineer, Security
£122k+/yrRemote5+ YOESecurity Engineering

Builds and maintains security platforms for detection, incident response, threat hunting, and red-team exercises. The role requires strong AWS security experience, Go proficiency, and a strong interest in security, with Kubernetes and SIEM/SOAR experience preferred.

Reltio

Reltio

United States

Staff Application Security Engineer
$114k+/yrRemote8+ YOESecurity Engineering

Staff Application Security Engineer defining and driving secure architecture, SDLC, threat modeling, and AI/agentic security guardrails for a cloud-native SaaS platform. Requires 8+ years in appsec or software engineering with technical leadership experience.

Zocdoc

Zocdoc

United States

Senior Staff Security Engineer, Vulnerability Management
$200k+/yrRemote8+ YOESecurity Engineering

Senior Staff Security Engineer owning the roadmap for an AI-driven vulnerability scanning, triage, and automated remediation platform. Requires 8+ years in security engineering with deep cloud/container expertise, offensive security experience, and proficiency in Python/Go/Rust.