Security Engineer / Analyst

Writing.io

United States

On-site

USD 122,000 - 144,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Excellent medical, dental, and vision
Flexible paid time off
Stock options
401k match
Ladder Fit Program
Paid parental leave
Work-from-home flexibility
Fun company-wide events

Job summary

Ladder is seeking a Security Engineer / Analyst to own application security vulnerability management within a fast-growing environment. You will partner with development teams, assess risks, and help drive secure coding and governance practices.

You will monitor cloud infrastructure, respond to incidents, and support audits while collaborating with management and auditors. This role emphasizes hands-on code review and a shift-left security approach.

Qualifications

  • 4+ years of software engineering and/or cybersecurity experience.
  • Hands-on experience coding in Clojure and working within the JVM environment.
  • Experience securing modern cloud infrastructures and incident response.
  • Hold baseline certifications such as CompTIA Security+; CISSP is highly preferred.

Responsibilities

  • Secure the Code (Primary): triage vulnerabilities and assist with remediation code fixes.
  • Security Ops: monitor cloud posture using SIEM, SOAR, CSP, CNAPP for real-time threats.
  • Governance & Risk: conduct security reviews and risk assessments of architecture, vendors, and APIs.
  • Protect the Workspace: manage IAM, device compliance, and secure productivity tools.
  • Drive Technical Excellence: mentor engineers on secure coding and secure defaults.

Skills

Security engineering
Vulnerability management
Problem solving
Written communication

Education

Computer Science / Cyber Security foundation

Tools

Clojure
JVM
Google Security Command Center
Chronicle
Datomic
BigQuery
Kafka

Job description

Security Engineer / Analyst at Ladder

AI summary:Security Engineer who manages vulnerability lifecycle, conducts code reviews, monitors cloud infrastructure, and supports compliance audits across development teams.

Description
Security Engineer / Analyst

Please note, this is a remote role based in one of the 23 States Ladder is currently hiring in - AZ, CA, CO, CT, FL, GA, IA, KS, MA, MD, MN, NC, NH, NJ, NV, NY, OH, OR, PA, TX, VA, WA, WI with the exception of the following cities: SF Bay Area, New York City, and Seattle.

About Ladder

We saw a problem within the life insurance industry: getting covered took too long, involved too much paperwork, and required too many in-person meetings with sales agents. Having lost his father at a young age, our CEO, Jamie, was determined to make it easier for people to get the coverage they needed to provide for their families. So, we got to work. We developed a method of real-time underwriting leveraging AI and, in doing so, reduced the months-long process of applying for life insurance to minutes. Our digital experience is quick (instant decisions!), loved by users (check out our Trustpilot or Google reviews) and prolific ($74 billion+ in coverage provided).

About the Role

We are looking for a cybersecurity unicorn. A Security Engineer / Analyst who brings a rare blend of application security engineering and risk management maturity. In this role, you will be the driving force behind our vulnerability management lifecycle, balancing day-to-day security operations with development-facing vulnerability management and compliance.

Your primary mission will be embedded within our development lifecycles, taking ownership of application security vulnerability management for our engineering teams. Because our backend infrastructure runs heavily on Clojure, you won’t just be running automated scanners, you will actively look at code and leverage your functional programming experience to strengthen our shift-left security philosophy. Beyond AppSec, you will wear multiple hats: monitoring our cloud infrastructure and responding to alerts, conducting security risk reviews, supporting compliance audits, and ensuring our day-to-day workspace remains locked down.

The ideal candidate is well-rounded and has the ability to interact with all levels of management and external auditors, and operate effectively in a rapidly scaling, dynamic environment.We are looking for someone who is organized, self-motivated, has excellent problem-solving and writing skills, and enjoys working with people in a challenging and fast-paced environment. In this role, you will have the opportunity to drive innovation within the reporting function and help build out the accounting function.

Please note, Ladder is not currently sponsoring or transferring OPT or H1-B visa’s.

What You’ll Do
  • Secure the Code (Primary): Partner directly with development teams to champion application security vulnerability management. You will triage vulnerabilities within a high-scale Clojure ecosystem and assist with remediation code fixes.
  • Security Ops: Configure, fine-tune, and monitor our cloud security posture leveraging Security Operations tools (SIEM, SOAR, CSP, CNAPP) to detect and respond to threats in real time.
  • Champion Governance & Risk: Conduct thorough Security Reviews and risk assessments on internal architecture, third-party vendors, and APIs to ensure alignment with our corporate risk tolerance and compliance standards.
  • Protect the Workspace: Maintain and optimize our day-to-day corporate workspace security, ensuring identity access management, device compliance, and productivity tools are highly secure yet frictionless for the team.
  • Drive Technical Excellence: Act as a security advocate across teams. Mentor engineers on secure coding practices, establish secure defaults, and make practical risk decisions that scale with our growth
Experience Required
  • An Experienced Security Professional:4+ years of software engineering and/or cybersecurity experience, backed by a strong foundation in Computer Science, Cyber Security, or a related field.
  • Clojure-Capable: Hands-on experience coding in Clojure and working within the JVM environment. You are comfortable reading functional code, understanding immutable data structures, and collaborating directly with backend engineers on code-level fixes.
  • A Cloud SecOps Practitioner: Hands-on experience securing modern cloud infrastructures, as well as experience working incident response.
  • An Autonomous Systems Thinker: Thrive in dynamic environments. You don’t just clear alerts; you look for the root cause of issues to design security frameworks that prevent entire classes of vulnerabilities from happening in the first place.
  • Certified Professional: Hold baseline certifications such as CompTIA Security+ or equivalents. Having an advanced credential like the CISSP is highly preferred and considered a major plus.
Technologies Used
  • Security & Data Operations: Google Security Command Center, Chronicle, Datomic, BigQuery, Kafka
What we Offer

Ladder is highly collaborative and fun. To support you in your role, we offer fantastic perks and benefits that reflect our mission of care and support, including:

  • Excellent medical, dental, and vision coverage | We offer competitive healthcare, dental and vision plans for you and your family.
  • Flexible paid time off | Take the time that you need to rest and recharge, including our week-long winter holiday closure.
  • Stock options | We offer competitive stock option packages to participate in the success of building Ladder.
  • A rewarding 401k match program | We’ll match up to 4% of your contributions as you save for your retirement goals.
  • Ladder Fit Program | Your health matters. That’s why Ladder provides a monthly stipend for wellness-related expenses.
  • Paid parental leave |We think it’s crucial that new parents have time to adjust to their new lives without worrying about work, so we provide all parents inclusive of birthing, adoption, or fostering ten weeks of paid baby bonding.
  • Work-from-home flexibility and support | We recognize that everyone’s homelife is different and support remote work. Upon joining, we provide a one-time remote office stipend for all team members and then a monthly stipend to cover WFH costs such as the internet.
  • Fun company-wide events | We genuinely enjoy spending time together. That’s why we plan fun virtual events to let loose and laugh.

Base pay for this role is determined by the location where the work will be performed and is aligned with the two compensation tiers, as indicated below. Base pay may vary depending on job-related knowledge, skills, experience, and business needs. In addition to the base pay range listed below, this role is also eligible for equity and benefits as shared above.

$122,000 - $144,000

Tier 2 & Tier 3 (All other locations that Ladder hires)

$109,000 - $130,000

Ladder is building a diverse team of talented and enthusiastic people. We are an equal opportunity workplace. At Ladder, differences are celebrated and supported to benefit our people, product, and community. Let us know why you’re interested in this position and what unique contributions you can make to the Ladder team. We look forward to hearing from you.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Customer Experience Associate
Customer Experience Associate

Canaan Partners • United States

Remote
USD 32,000 - 39,000
Excellent medical, dental, and vision
Flexible paid time off
Stock options
+5
Senior Security Engineer
Senior Security Engineer

Luxer One • McClellan Place (CA), Northern (KY)

Hybrid
USD 145,000 - 180,000
401k matching
Tuition reimbursement
Medical insurance
+5
Senior Security Engineer
Senior Security Engineer

Luxer One • McClellan (WV)

Hybrid
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision insurance
+3
Senior Security Engineer
Senior Security Engineer

Luxer One • North Highlands (CA)

On-site
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision
+2
Senior Security Engineer, Detection & Response
Senior Security Engineer, Detection & Response

United States Digital Space LLC • Bellevue (CA)

On-site
USD 187,000 - 220,000
100% health insurance for employees
401(k) matching
Equity ownership
+2
Senior Staff Software Security Engineer
Senior Staff Software Security Engineer

United States Digital Space LLC • Bellevue (CA)

On-site
USD 247,000 - 290,000
Health insurance
Equity
401(k) matching
+2
Senior Security Engineer, Product Security
Senior Security Engineer, Product Security

GoodLeap, LLC • Northern (KY)

Hybrid
USD 146,000 - 170,000
Senior Security Engineer, DevSecOps
Senior Security Engineer, DevSecOps

Lila Sciences • Cambridge (MA)

On-site
USD 144,000 - 210,000
Staff Security Engineer
Staff Security Engineer

Robots and Pencils • United States

Remote
USD 160,463,000 - 220,636,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

United States Digital Space LLC • Bellevue (NY)

On-site
USD 187,000 - 220,000
Challenging, high-impact work to grow
Bonus programs, equity ownership, and
100% paid health insurance for all
+4