Latest Security Engineering jobs
Job results
Conducts complex organized-theft investigations, develops law enforcement partnerships, and supports threat assessment and executive protection initiatives. The role requires extensive law enforcement and organized retail crime experience, strong cross-functional collaboration, and willingness to travel up to 50%.
Build and operate product security systems across applications, APIs, infrastructure, and CI/CD, including AI-assisted code review and automated security controls. The role requires 5+ years in product or application security or software engineering, strong Python skills, and hands-on vulnerability assessment experience.
Leads Reddit’s regional physical security program across EMEA and APAC, overseeing multi-site operations, risk assessments, security systems, incident response, executive protection, vendors, and compliance. Requires at least five years of corporate physical security experience and a bachelor’s degree.
The Staff Cybersecurity Platform Engineer designs and optimizes secure network, cloud, and infrastructure architectures, implements compliance and threat-mitigation controls, and resolves complex platform issues. The role requires 5+ years of relevant experience, a related bachelor's or master's degree, and eligibility for a DoD Secret clearance.
Leads enterprise security engineering and SecOps, directing a security team, outsourced MDR/SOC operations, incident response, and a Zero Trust transformation. Requires 10+ years in cybersecurity or cloud infrastructure security, leadership experience, and deep GCP, micro-segmentation, workload identity, and CI/CD expertise.
Build and operate security detection and incident response capabilities, including SIEM engineering, cloud and SaaS monitoring, alert investigations, and automation. The role requires hands-on experience with Google SecOps, Google Cloud security, scripting, threat intelligence, and security frameworks.
Conducts quantitative security risk assessments, threat modeling, and cybersecurity requirements development for autonomous vehicles and cloud services. Requires a master’s degree, 5+ years of experience, strong systems engineering and cybersecurity expertise, and familiarity with automotive security standards and interfaces.
Conduct quantitative risk assessments, threat modeling, and cybersecurity standards analysis across autonomous vehicles and cloud services. The role requires a master’s degree, 7+ years of experience, strong systems and embedded-security expertise, and the ability to produce high-quality technical and regulatory deliverables.
Builds and evolves AI-assisted threat detection, automation, and analytics at cloud scale. Requires 8+ years of security engineering experience, strong Python or Go skills, production software practices, cloud security expertise, and experience with large-scale telemetry and agentic workflows.
The Vulnerability Engineer will assess, reproduce, prioritize, and validate vulnerabilities across a SaaS environment, while maintaining scanning automation and partnering with Engineering on remediation. The role requires vulnerability-management experience, scripting skills, exploit validation, and knowledge of cloud, containers, and application security.
This internship involves building secure, cloud-scale software and security tooling while contributing to vulnerability remediation, threat detection, cloud security, and compliance automation. Candidates should be enrolled in a relevant degree program and have strong Python or Java, algorithms, and problem-solving skills.
Senior Information Security Engineer who builds SIEM detections, SOAR automation, and LLM-powered alert-triage workflows. The role requires 8+ years in information security or DevSecOps, strong Python and AWS expertise, and hands-on incident response experience.
Leads operational trust and safety for human-AI collaboration products by reviewing abuse cases, enforcing policy, and building automation and detection systems. Requires 7+ years of recurring case-queue experience plus expertise in AI abuse risks, policy operations, and production safety incidents.
Build and operate secure identity infrastructure, governance, authorization, and token-issuance systems across corporate and customer-facing cloud environments. Requires 3+ years in SRE, DevOps, or software engineering, production service experience, cloud and container expertise, infrastructure-as-code proficiency, and security focus.
Leads Fetch’s fraud detection and threat intelligence function, overseeing investigations, detection systems, risk prioritization, and anti-abuse strategy. Requires 10+ years in fraud, trust and safety, cybersecurity, or related risk work, plus 5+ years managing senior teams.
Leads Forterra’s end-to-end product security program for autonomous vehicle platforms, including DoD authorization, compliance, threat modeling, vulnerability management, and incident response. Requires 7+ years of cybersecurity experience, ATO ownership, embedded or autonomous systems expertise, and strong technical and executive leadership.
The first security leader will own Tremendous' end-to-end security posture, including product security, incident response, identity, vendor risk, and AI security. This player-coach role requires hands-on experience scaling security programs, strong engineering judgment, and the ability to build a future team.
Owns application security across code, APIs, services, identity systems, and AI-specific surfaces. The role requires 6+ years of hands-on security engineering experience, AppSec program-building expertise, modern application-stack knowledge, and AWS proficiency.
Owns detection engineering and incident response across cloud infrastructure, building telemetry, high-signal detections, response playbooks, and on-call practices. The role requires 6+ years of detection and response experience, strong AWS expertise, and interest in emerging AI/ML threats.
Leads hands-on security architecture and engineering across product and cloud environments, with responsibility for application security, cloud controls, incident response, and team development. Requires 10+ years of security engineering experience and deep expertise across multiple security domains.
Leads product security incident response, coordinated vulnerability disclosure, PSIRT maturity, and customer-facing communications. The role requires 5+ years of security-focused IT or engineering experience, strong cross-functional judgment, coding ability, and experience building incident response tooling, including AI-powered workflows.
Entry-level cybersecurity analyst supporting clients, compliance, IT, and business operations while learning frameworks, tools, and industry certifications. The role requires strong communication, follow-through, curiosity, resilience, and willingness to work a demanding on-site schedule.
The Senior Cloud Security Engineer will design secure, resilient AWS infrastructure, automate security controls, and partner with engineering teams on cloud risk, compliance, and remote-access challenges. Candidates should have at least five years of relevant experience and familiarity with IaC, security frameworks, and privacy regulations.
Researches and tracks sophisticated state-backed and financially motivated threats targeting cloud environments, using telemetry, infrastructure analysis, malware analysis, and threat intelligence techniques. Requires at least five years of security or threat research experience.
The Product Security Engineer builds AI-driven security automation, conducts threat modeling and security reviews, manages vulnerability remediation, and triages bug bounty findings. The role requires 5+ years of product or application security experience in cloud or SaaS environments plus hands-on AI/LLM engineering experience.
Leads Scale’s international security strategy across enterprise and public-sector markets, translating regional regulations into engineering controls and securing cloud infrastructure, products, data, and AI systems. Requires 8+ years of cybersecurity experience, technical cloud-security depth, and experience leading security programs and customer engagements.
Leads EMEA cybersecurity assurance programs for public-sector and commercial operations, owning regional controls, certifications, audits, and customer assurance outcomes. Requires 7+ years in cybersecurity compliance, GRC, IT audit, cloud security, or related work, with experience across UK, EU, or GCC frameworks.
Owns corporate security architecture and automation across identity, compliance, endpoint protection, SaaS, and internal IT systems. The role requires 5+ years of security engineering experience, deep IdP design expertise, audit control ownership, and a track record of impactful automation.
Strengthen MongoDB’s server products through product security assessments, threat modeling, vulnerability research, and security controls. The role requires application or product security experience, C++ expertise with low-level codebases, scripting ability, and strong cross-team communication.
Owns GRC operations, audit coordination, evidence automation, customer security questionnaires, and risk reviews for SOC 2 and ISO 27001 compliance. The role requires 1–3 years of GRC, IT audit, or security compliance experience and familiarity with technical security controls and GRC platforms.
Own vulnerability and threat management, cloud security hardening, and incident response for an AWS environment supporting public-safety software. The role also provides on-site IT support in Manchester and requires at least five years of cybersecurity experience plus eligibility for NPPV3 and SC clearance.
Build and own security architecture, guardrails, and roadmap for a multi-cloud AI workflow platform and customer-hosted deployments. The role requires 7+ years of experience, strong production coding ability, cloud and authorization expertise, and experience with security testing, audits, and threat modeling.
Builds adaptive anti-fraud, anti-abuse, and bot-defense systems protecting payments, credits, and platform activity. The role requires 5+ years of consumer-scale risk experience, strong backend engineering, real-time detection expertise, and adversarial thinking.
Build and scale LangChain's privacy compliance program across SOC 2, ISO 27001, GDPR, CCPA, and HIPAA. Partner with engineering and legal to embed controls, manage audits, and support enterprise sales.
Senior individual contributor responsible for improving multi-cloud security posture, leading vulnerability management, hardening infrastructure, and embedding DevSecOps controls. Requires 6–9 years of security experience, deep AWS expertise, and experience with cloud-native environments and vulnerability programs.
Conducts penetration testing, red-team assessments, vulnerability research, and AI/LLM security testing across ClickHouse products, infrastructure, and cloud environments. Requires 7+ years of offensive and product-security experience plus hands-on expertise with cloud platforms, Kubernetes, Cilium, and security automation.
Senior individual contributor leading security architecture and automated controls across AWS, on-premises, and hybrid infrastructure. The role requires deep AWS security expertise, infrastructure-as-code and CI/CD experience, scripting ability, and cross-functional technical leadership.
Staff Corporate Security Engineer building and governing security for enterprise SaaS integrations, API data flows, and eDiscovery/legal hold programs at a rapidly scaling AI company. Requires strong security engineering and software development skills (Python/Go, IaC) plus experience with corporate IT systems and litigation readiness.
Lead complex investigations into violent extremist and threat actor networks on Discord. Develop detection and disruption strategies, collaborate with policy, engineering, and ML teams, and serve as a subject matter expert on evolving threats. Requires 5+ years in threat intelligence or investigations.
Build and automate security services, identity infrastructure, and code-security controls while conducting reviews, penetration testing, and breach-readiness work. The role requires at least five years of software engineering experience, security expertise, and familiarity with IAM platforms and identity protocols.
Senior Software Engineer on Discord's Application Security team building full-stack user-facing authentication and account security features to protect hundreds of millions of users. Requires 5+ years securing production applications, hands-on auth experience (WebAuthn, MFA, passkeys), and leading cross-functional security projects.
Staff Application Security Engineer owning the AppSec/DevSecOps program at Censys. Design and implement secure SDLC practices, DevSecOps tooling in Kubernetes/GCP (incl. AI/ML pipelines), CI/CD security integrations, compliance controls, and provide technical leadership/mentorship to engineering teams. Requires 10+ years security engineering experience.
Senior Security Engineer designing and operating secure architectures, protecting mission-critical aviation AI systems for commercial and DoD customers. Requires 5+ years hands-on security engineering, threat modeling, compliance frameworks, and collaboration with software teams.
Leads Okta’s product security incident response and disclosure programs, including bug bounty operations, vulnerability triage, remediation coordination, and stakeholder communication. Requires 6+ years in information security with experience in product or application security, code review, incident response, and risk management.
Leads cloud and product security maturity through automated controls, container security, vulnerability management, threat modeling, and DevSecOps practices across AWS and Google Cloud. Requires 6+ years of cloud or product security experience and hands-on expertise with infrastructure as code, Kubernetes, and security automation.
Lead Virta Health's Governance, Risk, and Compliance (GRC) function in an AI-first healthcare environment. Manage compliance automation with Vanta, support commercial RFPs/questionnaires, maintain HITRUST/HIPAA/SOC 2 certifications, conduct risk assessments, and drive security awareness while optimizing employee compliance workflows.
Build and scale the security, privacy, and compliance program at an AI-biomedical startup. Lead SOC 2, ISO 27001, HIPAA and FedRAMP readiness, partner with engineering on technical controls, run risk assessments, and handle customer security reviews in a hands-on early-stage environment.
Founding leader to build Plaid's Detection and Response team from scratch. Manage analysts and engineers on detection infrastructure, AI triage, incident response, Red Teaming, and Fraud Operations while partnering with the CISO to strengthen security posture.
Security Engineer responsible for designing and managing corporate security controls across identity, endpoint, network, and vendor risk. Requires 5+ years in information security, deep IAM/EDR/MDM expertise, and experience with compliance frameworks to reduce risk and build security culture.
Security Engineer responsible for hands-on investigation, incident response, building security tooling and automation, and driving remediation across application, infrastructure, and cloud security at Privy. Requires strong software engineering skills (Python/Go/Ruby), experience investigating security incidents, and familiarity with security operations workflows.