Enable job alerts via email!

Staff Security Engineer

Promote Project

United States

Remote

USD 200,000 - 270,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative company is on the lookout for a Staff Security Engineer to join their dynamic team. This role offers the unique opportunity to secure a cutting-edge AI-powered mobile marketing platform, ensuring the safety and integrity of customer-facing products built on Java microservices. As a key player in the Security Engineering team, you'll lead initiatives in vulnerability management, automation, and security guidance, all while collaborating with talented professionals. With a focus on enhancing product security and enabling swift business operations, this position promises to be both challenging and rewarding. If you're passionate about security and eager to make a significant impact, this is the role for you.

Benefits

Health & Wellness Benefits
Equity
Flexible Work Environment

Qualifications

  • 7+ years of experience in application/product security with web technologies.
  • Proven ability to automate security processes and enhance code shipping practices.

Responsibilities

  • Conduct secure design and code reviews for new systems and features.
  • Develop and implement security tools for code scanning and CI/CD integration.
  • Lead the creation of comprehensive threat models for products and infrastructure.

Skills

Application Security
Vulnerability Identification
Cloud Security
Java Programming
Python Programming
Golang Programming
Threat Modeling
Automation
Security Documentation

Tools

AWS
Kubernetes
CI/CD Tools

Job description

Staff Security Engineer
Location

United States

Salary

$40,000 - $67,500 a year (US Dollars)

Description

Attentive is the AI-powered mobile marketing platform transforming the way brands personalize consumer engagement. Attentive enables marketers to craft tailored journeys for every subscriber, driving higher recurring revenue and maximizing campaign performance. Activating real-time data from multiple channels and advanced AI, the platform personalizes content, tone, and timing to deliver 1:1 messages that truly resonate.

With a top-rated customer success team recognized on G2, Attentive partners with marketers to provide strategic guidance and optimize SMS and email campaigns. Trusted by leading global brands like Neiman Marcus, Samsung, Wayfair, and Dyson, Attentive ensures enterprise-grade compliance and deliverability, supporting trillions of interactions across more than 70 industries.

We are seeking an experienced and adaptable security engineer with strong technical skills and a developer mindset. The ideal candidate is motivated to reduce risk while enabling the business to operate swiftly and safely. As a key member of the Security Engineering team, you will be responsible for securing Attentive’s platform (operating in AWS) and customer-facing products (primarily built with Java microservices). Your role will encompass building and operating tools to secure our code, detect abnormal behaviors, and provide security testing and guidance for new systems and features.

You will lead our product and application security program, serving as a central resource for enhancing product security for our clients. Collaborating with a talented team of security professionals, you will help shape the future of Attentive’s security program and create a positive impact for the company and its customers.

At Attentive, we strive to make interactions with our security team seamless and enjoyable. Therefore, the ideal candidate should possess:

  • A creative and solution-oriented mindset to develop effective solutions for all stakeholders
  • Patience to understand developer teams' processes and goals for implementing thoughtful security measures
  • The ability to automate security processes to minimize the security burden on partner teams and support rapid company growth
What You'll Accomplish
  • Architecture Design & Code Reviews: Conduct secure design and code reviews for new systems and features, identifying common vulnerabilities such as injection attacks and cross-site scripting (XSS)
  • Automation & Tooling: Develop and implement security tools for code scanning, dependency management, and CI/CD pipeline integration to protect systems throughout the development lifecycle
  • Engineering Support: Provide hands-on support to engineers in deploying security solutions, hardening services, and remediating vulnerabilities, including encryption and input validation
  • Threat Modeling: Lead the creation of comprehensive threat models for products and infrastructure to identify, assess, and mitigate security risks
  • Vulnerability Management: Establish and oversee a vulnerability management lifecycle, ensuring timely detection, reporting, and remediation of security vulnerabilities
  • Security Guidance & Documentation: Promote secure coding practices and maintain security documentation, including reports from penetration testing and product security tools
Your Expertise
  • 7+ years of experience in application/product security, with expertise in web technologies, vulnerability identification and remediation, and cloud security fundamentals
  • Proven ability to build and automate processes, such as static code analysis, enhancing code shipping practices beyond mere compliance
  • Extensive knowledge of application and network protocols, cryptography, authentication and authorization protocols, as well as common security threats and attack techniques
  • Strong coding and code review experience in Java, Python, and Golang, with a focus on Java vulnerabilities and Kubernetes/container security
  • Experience with AWS and deploying infrastructure as code
  • Skilled at communicating complex technical concepts and risks to non-technical audiences

You'll get competitive perks and benefits, from health & wellness to equity, to help you bring your best self to work.

For US based applicants:

- The US base salary range for this full-time position is $200,000 - $270,000 annually + equity + benefits

- Our salary ranges are determined by role, level and location

#LI-SK1

Job type:
Remote job
Tags
  • security
  • design
  • swift
  • technical
  • recruiter
  • support
  • developer
  • testing
  • growth
  • code
  • web
  • java
  • cloud
  • mobile
  • management
  • lead
  • marketing
  • health
  • engineer
  • engineering
  • full-time
  • digital nomad
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Staff Security Engineer

Cadence

Remote

USD 180,000 - 220,000

7 days ago
Be an early applicant

Staff Security Engineer, Red Team

DoorDash

New York

Remote

USD 193,000 - 285,000

7 days ago
Be an early applicant

Staff Security Engineer, Red Team

Ellis Lacroix

Washington

Remote

USD 193,000 - 285,000

10 days ago

Staff Security Engineer Pasadena, California, United States; Remote; San Francisco, California,[...]

Primer

San Francisco

Remote

USD 175,000 - 235,000

30+ days ago

Staff Security Engineer

Mozilla

Remote

USD 138,000 - 217,000

6 days ago
Be an early applicant

Staff Security Engineer, Red Team

DoorDash

Washington

On-site

USD 193,000 - 285,000

-1 days ago
Be an early applicant

Staff Security Engineer Remote US

Mozilla Corporation

Remote

USD 138,000 - 217,000

7 days ago
Be an early applicant

Staff Security Engineer

Multi Media LLC

Remote

USD 175,000 - 240,000

8 days ago

Staff Security Engineer

Multi Media, LLC

Remote

USD 175,000 - 240,000

12 days ago