Senior/Staff Security Engineer

Wise Insight

San Francisco (CA)

On-site

USD 150,000 - 210,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Wise Insight in San Francisco is seeking an experienced security engineer to own end-to-end security for applications, cloud, network and infrastructure in a fast-moving startup.

You will lead threat modeling, run penetration tests, coordinate compliance, integrate security checks into CI/CD, and communicate risks clearly to engineers and executives while remaining hands-on.

Qualifications

  • 4+ years hands-on application and infrastructure security.
  • Strong production coding experience in Python, Go, Rust or TypeScript.
  • Practical experience with threat modeling, vulnerability identification, and secure system design.
  • Hands-on experience with network security and identity security.
  • Strong understanding of identity-based controls, policy enforcement, and workload IAM.
  • Deep cloud security experience with at least one major cloud provider.
  • Experience with identity federation and infrastructure-as-code security.
  • Strong understanding of secure application and infrastructure architecture.
  • Ability to communicate security risks and trade-offs clearly to both engineering teams and executive stakeholders.
  • High level of autonomy and comfort working in an early-stage environment with significant ambiguity.

Responsibilities

  • Own the end-to-end security posture across application, cloud, network, infrastructure, and the AI agent
  • Lead secure architecture reviews and threat modeling for agentic systems with governed identities and scoped access
  • Design and implement security primitives including customer isolation, credential protection, approval gates, capability controls, and comprehensive audit trails
  • Develop and maintain the security architecture documentation used during enterprise customer evaluations
  • Lead penetration testing, external security assessments, compliance preparation, and enterprise security reviews
  • Establish incident response processes and breach notification readiness
  • Continuously audit cloud infrastructure, IAM configurations, access policies, and security controls
  • Integrate vulnerability scanning, secret detection, security testing, and compliance checks into CI/CD pipelines
  • Define and enforce standards for customer credential handling, data egress, endpoint security, and access management
  • Willingness to work onsite in San Francisco, Monday through Friday, in a high-intensity startup environment

Skills

Python
Go
Rust
TypeScript
Security engineering
Threat modeling
Vulnerability management
Identity security
Cloud security
IAM

Job description

Key Information
  • Work Model: On-site, Monday to Friday
  • Employment Type: Full-time
  • Visa Sponsorship: H1B transfers
  • Experience: 4+ years
Key Responsibilities
  • Own the end-to-end security posture across application, cloud, network, infrastructure, and the AI agent
  • Lead secure architecture reviews and threat modeling for agentic systems with governed identities and scoped access
  • Design and implement security primitives including customer isolation, credential protection, approval gates, capability controls, and comprehensive audit trails
  • Develop and maintain the security architecture documentation used during enterprise customer evaluations
  • Lead penetration testing, external security assessments, compliance preparation, and enterprise security reviews
  • Establish incident response processes and breach notification readiness
  • Continuously audit cloud infrastructure, IAM configurations, access policies, and security controls
  • Integrate vulnerability scanning, secret detection, security testing, and compliance checks into CI/CD pipelines
  • Define and enforce standards for customer credential handling, data egress, endpoint security, and access management
  • Willingness to work onsite in San Francisco, Monday through Friday, in a high-intensity startup environment
Requirements
  • 4+ years of hands-on application and infrastructure security experience
  • Strong production coding experience in Python, Go, Rust, or TypeScript
  • Practical experience with threat modeling, vulnerability identification, and secure system design
  • Hands-on experience with network security and identity security
  • Strong understanding of identity-based controls, policy enforcement, and workload IAM
  • Deep cloud security experience with at least one major cloud provider
  • Experience with identity federation and infrastructure-as-code security
  • Strong understanding of secure application and infrastructure architecture
  • Ability to communicate security risks and trade-offs clearly to both engineering teams and executive stakeholders
  • High level of autonomy and comfort working in an early-stage environment with significant ambiguity
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer (Product Security and Architecture)
Staff Security Engineer (Product Security and Architecture)

Compass • Ventura (CA)

On-site
USD 150,000 - 230,000
Founding Security Engineer
Founding Security Engineer

Wise Insight • San Francisco (CA)

On-site
USD 150,000 - 210,000
Senior Information Security Engineer
Senior Information Security Engineer

Jobtailor • Sandy (UT)

On-site
USD 110,000 - 170,000
Staff Security Engineer, Application Security
Staff Security Engineer, Application Security

Jobtailor • California (MO)

On-site
USD 140,000 - 190,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Sr. Information Security Engineer
Sr. Information Security Engineer

State of Wisconsin Investment Board • Madison (WI)

On-site
USD 120,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Spinwheel Solutions, Inc. • United States

On-site
USD 140,000 - 190,000
Security Engineer VPC VPN peering network segmentation IAM secrets management
Security Engineer VPC VPN peering network segmentation IAM secrets management

VTekis Consulting LLP • New York (NY)

On-site
USD 150,000 - 210,000
Lead Senior Security Engineer (Enterprise AI Platform)
Lead Senior Security Engineer (Enterprise AI Platform)

Talent Space, Inc. • Palo Alto (CA)

Hybrid
USD 150,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Theory Ventures • San Francisco (CA)

On-site
USD 150,000 - 210,000
Equity & Ownership
Impact & Visibility
Collaborative Culture
+1