Security Engineer

Methodic

San Francisco (CA)

On-site

USD 120,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Methodic is seeking a Security Engineer to lead the protection of its platform and sensitive data. This includes conducting security audits, implementing safeguards, and ensuring compliance with relevant standards. The ideal candidate will have over 5 years of experience in cybersecurity and a strong focus on securing cloud-based applications.

You will work closely with developers and DevOps, fostering a security-first mindset throughout the team while addressing vulnerabilities and managing security incidents. Join us in maintaining our client's trust with financial data.

Qualifications

  • 5+ years of experience in cybersecurity or application security roles.
  • In-depth knowledge of common web and API vulnerabilities.
  • Familiarity with cryptographic principles and secure protocols.
  • Strong analytical mindset and attention to detail.

Responsibilities

  • Conduct regular security audits of applications to identify vulnerabilities.
  • Implement and manage security measures like encryption and access control.
  • Set up tools for vulnerability scanning and penetration testing.
  • Monitor security logs for signs of breaches and respond swiftly.
  • Ensure compliance with security-related regulations and standards.
  • Educate and train the engineering team on secure practices.
  • Stay updated on latest threats and proactively implement changes.

Skills

Experience in cybersecurity or application security
Knowledge of web and API vulnerabilities (OWASP Top 10)
Familiarity with cryptographic principles
Hands-on experience with security tools
Understanding of network security fundamentals
Experience with compliance frameworks
Analytical mindset and problem-solving skills
Collaborative approach

Job description

Full‑time role

Security Engineer

San Francisco, CA (On‑site)

As a Security Engineer, you will take charge of protecting Methodic’s platform and data. This includes performing security reviews, implementing safeguards, and ensuring compliance with relevant security standards. Our clients trust us with sensitive financial data and transactions, so security is a non‑negotiable priority. You’ll work across the stack to identify vulnerabilities, recommend improvements, and foster a security‑first mindset throughout the team.

Responsibilities
  • Conduct regular security audits of our application (code and infrastructure) to identify vulnerabilities such as injection flaws, data exposure, or access control issues.
  • Implement and manage security measures like encryption (for data at rest and in transit), secure authentication/authorization (OAuth, JWT, multi‑factor auth), and robust access control policies.
  • Set up and maintain tools for vulnerability scanning and penetration testing; coordinate periodic third‑party security assessments and ensure any findings are remediated promptly.
  • Monitor security logs and alerts for any signs of breaches or suspicious activity; respond to security incidents with thorough investigation and patching of the root cause.
  • Ensure compliance with security‑related regulations and standards (e.g., GDPR for data privacy, PCI DSS if handling payments, SOC 2 for service processes) by implementing necessary controls and documenting practices.
  • Educate and train the engineering team on secure coding and operational practices (run security workshops, share updates on new vulnerabilities or attack vectors relevant to our tech stack).
  • Stay up‑to‑date with the latest threats, vulnerabilities, and mitigation techniques; proactively implement updates or changes to keep our platform secure against emerging risks.
Requirements
  • 5+ years of experience in cybersecurity or application security roles, preferably with exposure to securing cloud‑based web applications.
  • In‑depth knowledge of common web and API vulnerabilities (OWASP Top 10, etc.) and experience applying remediations.
  • Familiarity with cryptographic principles and experience implementing encryption, key management, and secure protocols.
  • Hands‑on experience with security tools (static analysis, dynamic analysis, intrusion detection systems, etc.).
  • Understanding of network security fundamentals and cloud security best practices.
  • Experience ensuring compliance with frameworks or standards like ISO 27001, SOC 2, PCI, or others relevant to a SaaS business.
  • Strong analytical mindset and attention to detail, with excellent problem‑solving skills in high‑pressure situations (like responding to an incident).
  • A collaborative approach – able to work with developers, DevOps, and compliance to integrate security into every aspect of our operations.

Submit your application by providing your details, and our hiring team will reach out with next steps.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer: Safeguard FinTech Data — On‑Site, SF
Security Engineer: Safeguard FinTech Data — On‑Site, SF

Methodic • San Francisco (CA)

On-site
USD 120,000 - 150,000
Security Engineer
Security Engineer

factory • San Francisco (CA)

On-site
USD 120,000 - 150,000
Software Engineer, Security
Software Engineer, Security

XOXO AI Inc. • San Francisco (CA)

On-site
USD 250,000 - 500,000
Health, dental, vision benefits
Equity between 1% and 5%
Security Engineer
Security Engineer

Method Security • Washington, New York (NY)

On-site
USD 140,000 - 190,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • San Francisco (CA)

On-site
USD 237,000 - 297,000
Health, dental, and vision coverage
Retirement benefits
Learning and development stipend
+2
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • Washington

On-site
USD 228,000 - 286,000
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • Seattle (WA)

On-site
USD 237,000 - 297,000
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • New York (NY)

On-site
USD 237,000 - 297,000
Learning and development stipend
Commuter stipend
Generous PTO
Senior/Staff Security Engineer
Senior/Staff Security Engineer

Wise Insight • San Francisco (CA)

On-site
USD 150,000 - 210,000