Security Software Engineer

JobCubby

Northern (KY)

Hybrid

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Performance bonus
Learning budget USD 2,000/year
Travel opportunities (international)
Twice-yearly in-person team sprints

Job summary

JobCubby partners with a software-focused team seeking a Security Software Engineer in the United States. You will embed security in software development, shaping design, testing, and maintenance with threat modeling, static analysis, fuzzing, and vulnerability response.

You will work with Linux and open source technologies, contribute to upstream projects, and collaborate with engineers, customers, partners, and communities to elevate security across complex ecosystems.

Qualifications

  • Solid understanding of software security vulnerabilities and remediation techniques.
  • Experience driving security initiatives across engineering teams.
  • Proficiency in multiple programming languages listed above.

Responsibilities

  • Define, implement, test, and document security features across products.
  • Lead security initiatives within product engineering teams and promote secure SDLC.
  • Analyze and remediate vulnerabilities in open source software and Linux systems.
  • Conduct code audits and security analyses to identify and fix weaknesses.
  • Collaborate with external partners and upstream communities on security standards.

Skills

C/C++
Python
Go
Rust
JavaScript/TypeScript
Linux
Open Source
Threat Modeling
Security Engineering
Communication

Education

Bachelor's degree in CS or STEM

Tools

Git
Static Analysis
Fuzzing
Security Certifications

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Software Engineer based in United States.

This role offers the opportunity to embed security expertise directly within software engineering teams and influence how products are designed, developed, tested, and maintained. You will combine software engineering with proactive security practices such as threat modeling, architecture reviews, static analysis, fuzzing, and vulnerability response. The position covers the full product security lifecycle, from developing secure features and hardening systems to investigating vulnerabilities and supporting security certifications. You will work extensively with Linux and open source technologies while contributing to upstream projects and strengthening security across complex software ecosystems. The role involves close collaboration with engineers, customers, partners, and open source communities to establish robust security practices and solutions. You will have opportunities to work with technologies spanning Linux cryptography, security automation, vulnerability assessment, and low-level system components. This position is ideal for a highly motivated security-focused engineer who combines strong technical skills with curiosity, accountability, and a passion for open source.

Accountabilities
  • Define, implement, test, and document security features and capabilities across software products.
  • Lead security-focused initiatives within product engineering teams and promote secure development practices throughout the software development lifecycle.
  • Analyze, reproduce, remediate, and test vulnerabilities affecting open source software and Linux-based systems.
  • Conduct source code audits and security analysis to identify vulnerabilities and recommend effective remediation strategies.
  • Apply security engineering techniques including threat modeling, architecture and design reviews, tabletop exercises, static analysis, fuzzing, and proactive security assessments.
  • Contribute to Ubuntu and upstream open source projects to improve security and support the broader open source community.
  • Integrate security tools into engineering infrastructure, development pipelines, and operational processes.
  • Develop and maintain hardening automation and security capabilities for Linux environments.
  • Enhance Linux cryptographic components to support country-specific compliance and certification requirements, including FIPS and Common Criteria.
  • Collaborate with external partners on security standards and Center for Internet Security benchmarks.
  • Support the achievement and maintenance of relevant security certifications.
  • Provide technical guidance and security best-practice support to other engineering teams.
  • Monitor emerging security threats, technologies, vulnerabilities, and industry trends and incorporate relevant developments into engineering practices.
  • Participate in international team events and other required travel at least twice per year.
Requirements
  • Undergraduate degree in Computer Science, STEM, or a related field, or a compelling alternative professional and technical background.
  • Strong academic performance and a demonstrated history of exceeding expectations.
  • Thorough understanding of common software security vulnerabilities, attack categories, and appropriate remediation techniques.
  • Solid knowledge of modern software engineering practices and secure software development lifecycle principles.
  • Experience acting as a security champion or driving security initiatives across engineering teams.
  • Proficiency in at least one programming language such as C, C++, Python, Go, Rust, Java, Ruby, PHP, or JavaScript/TypeScript.
  • Practical experience with Linux, preferably Debian or Ubuntu-based environments.
  • Familiarity with open source development tools, workflows, methodologies, and community practices.
  • Strong understanding of security engineering principles and the ability to apply them throughout product development.
  • Excellent written and spoken English communication skills.
  • Strong interpersonal, presentation, and collaboration skills, with the ability to influence technical teams effectively.
  • High levels of curiosity, flexibility, accountability, self-motivation, and personal initiative.
  • Results-oriented mindset with a strong commitment to delivering against agreed objectives.
  • Willingness and ability to work effectively in a globally distributed environment and travel internationally at least twice per year.
  • Experience with Linux kernel development is an advantage.
  • Knowledge of FIPS, Common Criteria, security certifications, OVAL, OpenSSL, Libgcrypt, or low-level Linux cryptographic APIs is a plus.
  • Experience with performance engineering, security tooling, or vulnerability assessment is beneficial.
  • Demonstrated ability to learn quickly and adapt to new technologies is highly valued.
Benefits
  • Compensation based on geographical location, experience, and performance.
  • Annual compensation review, with additional reviews where appropriate for graduates and associates.
  • Performance-driven annual bonus.
  • Distributed work environment with twice-yearly in-person team sprints.
  • USD 2,000 annual personal learning and development budget.
  • Recognition and performance rewards.
  • Annual holiday leave.
  • Maternity and paternity leave.
  • Employee Assistance Programme.
  • Opportunities to travel internationally and meet colleagues across global teams.
  • Priority Pass and travel upgrades for eligible long-haul company events.
  • Hands-on exposure to Linux security, open source software, cryptography, vulnerability response, security automation, and secure software engineering.
  • Opportunities to contribute to upstream open source projects and collaborate with engineers, customers, partners, and security communities worldwide.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Ubuntu Security Engineer
Ubuntu Security Engineer

JobCubby • Northern (KY)

Hybrid
USD 110,000 - 160,000
Fully distributed remote work
Learning budget USD 2,000/year
Annual leave and travel opportunities
Security Software Engineer
Security Software Engineer

Canonical Group Ltd • United States

Remote
USD 140,000 - 190,000
Distributed work environment
Learning budget USD 2,000 per year
Annual compensation review
+5
Product Security Engineer
Product Security Engineer

GoMining • United States

Hybrid
USD 120,000 - 190,000
Courses & conferences support (up to )
Remote or hybrid format with flexible,
Paid time off and holidays
Associate Linux Support Engineer
Associate Linux Support Engineer

JobCubby • Northern (KY)

Hybrid
USD 64,000 - 75,000
Learning and development budget
International travel opportunities
Remote work from home
+2
Product Security Engineer
Product Security Engineer

GoMining • Georgia

Hybrid
USD 120,000 - 180,000
Professional growth
Remote or hybrid format
Vacation and holidays
+3
Product Security Engineer
Product Security Engineer

GoMining • Town of Poland (NY)

Hybrid
USD 120,000 - 190,000
Professional growth support
Flexible hours
Vacation and holidays
Specialist, Cyber Security Software Developer
Specialist, Cyber Security Software Developer

Mazda Toyota Manufacturing, U.S.A • Huntsville (AL)

On-site
USD 120,000 - 150,000
Healthcare plans
401K with company match
Paid holidays and PTO
+3
Application Security Engineer
Application Security Engineer

Softswiss • Town of Poland (NY)

On-site
USD 120,000 - 150,000
Private health insurance
Sports benefits
Free English lessons (online)
+3
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Software Engineer, Automotive and Industrial Architecture
Software Engineer, Automotive and Industrial Architecture

Canonical Ltd • United States

Remote
USD 80,000 - 120,000
Personal learning and development budget of USD 2,000
Annual compensation review
Maternity and paternity leave
+1