Staff Security Engineer

Emploi pas sur LinkedIn

🕒 il y a 2 mois

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of SOCKET

SOCKET

51 - 200 employés

Fondée en 1994

📡 Télécommunications

Telecommunications

SOCKET est une entreprise de télécommunications offrant des services d'internet, de téléphonie et de télévision aux clients résidentiels et professionnels. Pour les clients résidentiels, SOCKET propose des offres groupées de services simples avec des tarifs forfaitaires et un support local, assurant simplicité et commodité avec une seule facture couvrant tous les services. Pour les entreprises, SOCKET offre un éventail de solutions allant des services internet et téléphoniques de base à des offres avancées comme le PBX hébergé et les services dédiés, conçus sur mesure pour répondre aux exigences de différentes tailles d'entreprise et de budget. Avec un accent sur une facturation transparente et sans frais cachés, SOCKET se distingue en fournissant des solutions de télécommunications fiables répondant à une clientèle variée.

Description

• Improve Socket's security posture across the board. Own application security, cloud infrastructure hardening, operational security, and IT security. Write code and build tooling that makes the secure path the default path for engineers. Roll out identity and access controls, close gaps across the stack, and continuously reduce risk. • Assess, prioritize, and drive the security roadmap. Figure out what matters most, balance quick wins with longer-term improvements, and execute across many fronts in parallel. You won't wait to be told what to work on. You'll develop a clear picture of where Socket's risks are and make steady progress against them. • Run incident response and external security operations. Build and run a 24/7 security incident response process. Own the security@ inbox, triage inbound vulnerability reports, manage pentests, and coordinate fixes. When you can fix something directly, you do. • Maintain compliance and drive new certifications. Maintain our existing SOC 2 compliance. Drive new certifications (ISO 27001, etc.) as needed for enterprise customers. • Raise security awareness and culture across the org. Train engineers to write more secure code. Run phishing simulations. Build trust with engineering teams so that security feels like an enabler, not a blocker. Make people want to do the right thing rather than resenting security as a tax.

🎯 Exigences

• You've owned security broadly at a growth-stage company, or you're a strong software engineer who's moved into security and is ready to own the function end-to-end. • You can ship production TypeScript. When the engineering org is heads-down on product work, you unblock yourself by writing code, standing up tooling, and modifying infrastructure rather than filing tickets and waiting. • You have breadth across security domains (AppSec, CloudSec, OpSec) and you're comfortable learning fast where gaps exist. • You're fluent in cloud infrastructure (we use GCP): VPCs, IAM, secret management, networking. • You're a self-directed operator who figures out what matters most and executes across many fronts without waiting to be told what to do. You move fast, find leverage, and get a lot done with a little. • You have the communication and teaching skills to make an entire engineering org care about security, not by blocking people, but by earning trust and making the secure path the easy path.

🏖️ Avantages

• Market competitive salary bands • Meaningful equity program • Comprehensive health benefits for you and your family • Flexible time-off, holidays, and winter shutdown to rest & recharge • Paid parental leave • Remote-first, with quarterly team off-sites

Postuler Maintenant

Emplois Similaires

🕒 il y a 2 mois

Gainwell Technologies

10 000+ employés

⚕️ Assurance santé

Lead Security operations and drive security remediation efforts at Gainwell Technologies. Managing compliance, audit preparation, and security policies for technological advancements.

🇺🇸 États-Unis – Télétravail

💵 $113 700 - $162 400 / an

💰 Grant en 2023-06

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

Sciens Building Solutions

1001 - 5000

🔐 Sécurité

🤝 B2B

CISO responsible for risk-based cybersecurity program for Sciens, enabling business performance and protecting company assets. Overseeing strategy, governance, risk management, and incident response initiatives.

🇺🇸 États-Unis – Télétravail

💰 Series unknown en 2018-02

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

Bio-Techne

1001 - 5000

🧬 Biotechnologie

⚕️ Assurance santé

💊 Pharmaceutique

🇺🇸 États-Unis – Télétravail

💵 $160 000 - $200 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

Akoya

51 - 200

Lead and mature cybersecurity, risk management, and IT governance functions at Akoya, a fintech innovator. Drive execution and team development across diverse operational areas.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

Assured

11 - 50

☁️ SaaS

🤖 Intelligence artificielle

Staff Security Engineer scaling security across Assured's insurance technology platform. Collaborating with teams to embed security in software development workflows and infrastructure.

🗣️🇺🇸🇬🇧 Anglais requis