GoDaddy's Product Security team is seeking a Senior Security Engineer to join our organization. Are you interested in becoming an information security leader at GoDaddy? We tackle large-scale and cross-company security challenges while maintaining strong partnerships with development and operational teams.
At GoDaddy, Security Engineers leverage their hands-on technical skills to develop scalable solutions for complex problems. Candidates must be able to communicate effectively with engineering teams, perform security assessments, prioritize risks, and design security solutions. Our team focuses on implementing high-quality security engineering practices. Expertise in application security, architecture reviews, threat modeling, code reviews, and scripting in JS/Python is essential.
What you'll do...
- Identify security threats in applications and infrastructure, providing remediation guidance to system owners through security certifications and reviews.
- Lead security certification activities including architecture reviews, threat modeling, source code reviews, penetration testing, and cloud security audits.
- Develop tools to automate security processes and frameworks.
- Promote secure-by-design and secure-by-default development practices.
- Own and drive resolution of security events, policy questions, and technical security risks.
- Support security risk acceptance and exception processes as needed.
Your experience should include...
- At least 7 years of security engineering experience, with expertise in Secure Development Lifecycle.
- Strong problem-solving skills, excellent interpersonal skills, and deep technical understanding of security engineering.
- Proficiency in scripting with JS and Python.
- Experience conducting manual code reviews to ensure compliance with secure coding standards and security requirements.
- Experience using tools for static code analysis to identify vulnerabilities.
Bonus points if you have...
- Experience developing security automation tools or software applications.
- DevSecOps experience, especially integrating SAST tools into CI/CD pipelines.
We support you... We offer a comprehensive benefits package that may include paid time off, retirement plans (such as 401k or pension schemes), bonuses, equity grants, participation in our employee stock purchase plan, competitive health benefits, and family-friendly benefits like parental leave. Benefits vary based on role and location and will be detailed during the interview process.