Source Job

5w PTO 26w maternity 2w paternity

  • Conduct threat models and train engineers on threat modeling techniques to identify and prioritize risks of potential vulnerabilities and define possible mitigations.
  • Develop, document and maintain the security standards and design patterns used by engineers to deliver consistent, secure code and features.
  • Research the threat landscape, regulatory considerations, and customer requirements relevant to Outreach’s business, and recommend solutions to address known and potential threats by defining and applying appropriate security requirements.

Security DevOps SaaS Cloud Security Microservices

20 jobs similar to Staff Security Engineer

Jobs ranked by similarity.

$160,000–$188,000/yr
US Unlimited PTO

  • Own and drive the company’s security strategy, roadmap, and overall posture
  • Lead threat modeling, secure code reviews, and architecture reviews
  • Build and maintain security tooling, automation, and infrastructure as code

Seesaw's mission is to provide every elementary student with joyful and connected learning experiences that lay the foundation for success in life. Trusted and loved by 25 million educators, students, and families worldwide, Seesaw is the only elementary learning experience platform.

$140,000–$160,000/yr
US

  • Design and maintain secure architectures across AWS, Azure, and GCP environments.
  • Collaborate with DevOps and Engineering to integrate security into CI/CD pipelines.
  • Monitor alerts, investigate incidents, and coordinate responses with the SOC.

Reveleer provides a cloud-based healthcare SaaS platform. They are an equal opportunity employer that values diversity and does not discriminate based on race, religion, or other protected characteristics.

US

  • Identify and remediate security risks across cloud configurations to strengthen overall security posture.
  • Design and implement scalable security controls aligned with cloud, network, and identity management best practices.
  • Partner with cross-functional teams to integrate security into system design, development, and deployment processes.

Clario transforms lives by unlocking better evidence for the clinical trials industry. They are a leading provider of endpoint data solutions, with a global team of science, technology, and operational experts supporting over 70% of all FDA drug approvals since 2015.

US

  • Design, implement, and operate security controls across Corporate IT environments and the Kinaxis Maestro SaaS platform, aligned with approved standards and architectures.
  • Lead security engineering efforts for complex initiatives such as cloud migrations, SaaS integrations, container and Kubernetes adoption, and platform modernization.
  • Contribute to detection engineering and monitoring capabilities that enable early identification of threats and control failures.

Kinaxis is a global leader in modern supply chain orchestration, powering complex global supply chains, and supporting the people who manage them. They have grown to become a global organization with over 2000 employees around the world and are winners of several Top Employer awards globally.

$200,000–$260,000/yr
US

  • Lead the ongoing maintenance and operation of secure cloud infrastructures, focusing on AWS and cloud-native technologies.
  • Secure applications built for cloud environments by automating security assessments, monitoring runtime environments, and integrating security practices into the development lifecycle.
  • Implement robust security controls for cloud workloads and data, including containers, virtual machines, and serverless architectures.

Ro is a direct-to-patient healthcare company with a mission of helping patients achieve their health goals by delivering the easiest, most effective care possible. Ro is the only company to offer nationwide telehealth, labs, and pharmacy services and is recognized as a top workplace, earning more than 20 honors since 2021.

India

  • Own and evolve vulnerability management end-to-end.
  • Embed secure design principles across mobile applications, APIs, and microservices.
  • Partner closely with engineering teams to remediate security issues.

Smart Working connects skilled professionals with global teams for full-time, long-term roles. They help you discover meaningful work with teams that invest in your success, where you’re empowered to grow personally and professionally.

$180,000–$190,000/yr
US

  • Embed security into the SDLC by partnering with Engineering to implement secure design patterns, conduct threat modeling, and deliver developer-focused AppSec training.
  • Lead and perform application security assessments including SAST, DAST, SCA, and manual code review across web, mobile, and API surfaces.
  • Own and mature the vulnerability management program, including prioritization frameworks, SLA tracking, and cross-functional remediation coordination.

Branch is on a mission to empower workers with financial freedom by helping companies accelerate payments and providing working Americans with accessible, free financial services. They are committed to building inclusive and transparent financial products while valuing diversity of opinions and working styles, fostering innovation, and promoting teamwork.

Europe

  • Participate in threat modeling exercises with engineering team members
  • Triage SCA/SAST/DAST/CSPM findings by eliminating false positives and providing well-vetted vulnerabilities to engineering teams
  • Support vulnerability management efforts for networks and infrastructure

They offer a SaaS-based Global Employment Platform that enables clients to expand into over 180 countries. Their diverse, remote-first teams are essential to their success, fostering innovation and valuing every contribution.

Global

  • Build AI agents that handle vulnerability triage, automated security reviews of PRs, and initial incident forensics at scale.
  • Build systems that automatically detect and remediate security gaps across AWS, GCP, and Azure -- configuration drift, IAM misconfigurations, vulnerable dependencies, exposed secrets.
  • Lead threat modeling, security reviews, and risk assessments across web applications, APIs, and services.

Atlan is building the missing context layer for data and AI, helping enterprises close the AI value chasm. They connect to every part of the modern data and AI stack to unify this context into a single, shared layer that both humans and AI agents can rely on.

$153,400–$186,000/yr
US

  • Own the architecture, implementation, and continuous improvement of Ro’s SSPM and DLP platforms.
  • Define and evolve SaaS security standards, access models, and configuration baselines.
  • Engineer the SaaS lifecycle: Build scalable SaaS lifecycle automations.

Ro is a direct-to-patient healthcare company with a mission of helping patients achieve their health goals by delivering the easiest, most effective care possible. Ro is the only company to offer nationwide telehealth, labs, and pharmacy services and is consistently recognized as a top workplace.

Africa Europe

  • Help to discover and triage vulnerabilities from various sources.
  • Design, configure, deploy, and maintain secure configurations across JUMO’s cloud and endpoint estate.
  • Work with engineering teams to complete threat modeling exercises.

JUMO is dedicated to financial inclusion and operates with a remote-first approach. They foster innovation and enable collaboration, valuing online facetime for collaboration at JUMO.

$120,000–$145,000/yr
US

  • Lead the deployment and optimization of cloud security tools.
  • Design and implement reusable, secure-by-default cloud patterns.
  • Build and run the cloud vulnerability management program.

WorkWave provides best-in-class solutions that directly contribute to the success of its customers. They foster a casual, collaborative, and innovative environment.

US Unlimited PTO 16w maternity

  • Lead and grow a team of the best security engineers.
  • Define the strategy for Vanta’s application security program.
  • Work with Engineering and Product Development to assess and mitigate risk.

Vanta helps businesses earn and prove trust by providing continuous security monitoring and verification. They aim to empower companies to practice better security with their automation and orchestration tools. Vanta has a kind and talented team, embracing individuals with and without prior security experience.

Global

  • Act as the Subject Matter Expert (SME) for Endpoint Detection and Response (EDR) tools/process including optimizing configurations/policies, developing custom threat detection rules, and proactively improving Deel’s overall security posture for remote endpoints.
  • Configure, manage, and tune the full suite of security policies within SWG, CASB and ZTNA. Assist our remote colleague with seamless experience through troubleshooting end user issues as needed.
  • Continuously improve SaaS security posture with SSPM tools and processes around it. Collaborate with diverse application owners, understand security control and resolve configuration drifts for our wide range of SaaS applications from baseline.

Deel is an all-in-one payroll and HR platform for global teams. As one of the largest globally distributed companies, its team of 7,000 spans more than 100 countries with a connected and dynamic culture that drives continuous learning and innovation.

Europe

  • Bridge Security and Development, empowering engineering teams to deliver secure code.
  • Integrate security into the Software Development Life Cycle (SDLC) for AI-driven applications.
  • Conduct penetration tests and monitor application resilience.

EcoVadis is the leading provider of business sustainability ratings. Their solutions are backed by an international team of experts and powerful technology that analyzes data and builds sustainability scorecards, giving companies actionable insights into their environmental, social, and ethical risks.

US

  • Design, deploy, and manage security solutions within Cloud environments( Azure experience preferred).
  • Assist other security engineering and consulting needs as they arise.
  • Implement cloud security controls and monitor compliance frameworks (Azure Security Center, Azure Policy, etc.).

UChicago Medicine is a world-class academic healthcare system. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual.

Global

  • Integrate security activities across all SDLC phases.
  • Partner closely with engineering teams to ensure secure development practices.
  • Review security controls for new features, services, and architectural changes.

Infiterra simplifies subscription service delivery, enabling IT distributors, Managed Service Providers (MSPs), and telcos to succeed in the subscription economy. They are recognized as a global leader in subscription commerce, combining innovation, performance excellence, and trusted expertise to help partners transform and grow.

US Unlimited PTO

  • Supports security aspects of DevSecOps implementations, ensuring systems meet security and compliance standards.
  • Works with DevSecOps engineers and developers to integrate and validate security controls.
  • Implements security tools, conducts vulnerability assessments, and supports compliance activities.

Edgesource Corporation provides innovative technology services for the Department of Defense (DOD), Department of Homeland Security (DHS), and other federal, state, and commercial clients. As an ISO 9001:2015 certified and CMMI Level 3 appraised small business, they offer various technical solutions.

US

  • Understand the abuse risks faced by customers.
  • Design and deploy the anti-abuse controls for features.
  • Research, plan, and build anti-abuse architectures for products and features

Redapt Inc. is a pioneering world-class data center infrastructure integrator, technology engineering firm, and cloud services provider. They focus on delivering innovative solutions and services that power their customers' most demanding applications and enable them to extract powerful insights from data that drive true business value.

$130,000–$170,000/yr
US

  • Drive security vulnerability remediations with Engineering for CSPM, OS Runtime, SAST, SCA, DAST
  • Coordinate and track services provided by the security team and assist with enforcement security requirements throughout the organization
  • Assist with prioritizing work resulting from security findings, stakeholder requests, and strategic vision

Outreach provides a sales engagement platform to streamline communication and workflows for sales teams. They partner with Product, Engineering, Privacy, GRC, IT, and Legal teams to ensure security best practices are applied to protect the company and Outreach customers.