Enable job alerts via email!

Staff Security Engineer, Product Security

DoorDash

New York (NY)

Hybrid

USD 193,000 - 285,000

Full time

11 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

DoorDash is seeking a Staff Security Engineer to secure its platform within a cloud environment. You will work closely with engineering and security leaders to develop strategies and measure security on the application level. This role demands extensive experience and offers competitive pay and benefits, contributing to DoorDash's mission of delivering from local economies to users globally.

Benefits

401(k) plan with employer matching
16 weeks of paid parental leave
Comprehensive medical, dental, and vision benefits
Paid time off and sick leave
Mental health program

Qualifications

  • 8+ years of experience as a security or product security engineer.
  • Experience with CI/CD pipeline security management.
  • Demonstrated track record improving security posture.

Responsibilities

  • Conduct security assessments and code reviews.
  • Develop security standards, guidelines, and procedures.
  • Manage application vulnerabilities lifecycle from identification to remediation.

Skills

Experience in securing microservices
Analytical and investigative abilities
Knowledge of OWASP top 10 vulnerabilities
Scripting with Python
Understanding of authentication frameworks

Education

Relevant industry certifications (e.g., GWEB, GSSP)

Job description

Staff Security Engineer, Product Security

Join to apply for the Staff Security Engineer, Product Security role at DoorDash

Staff Security Engineer, Product Security

Join to apply for the Staff Security Engineer, Product Security role at DoorDash

Get AI-powered advice on this job and more exclusive features.

About The Team

Come help us build the world's most trusted on-demand, logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no downtime, global infrastructure system that powers DoorDash’s multi-sided marketplace of consumers, merchants, and drivers.

About The Team

Come help us build the world's most trusted on-demand, logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no downtime, global infrastructure system that powers DoorDash’s multi-sided marketplace of consumers, merchants, and drivers.

About The Role

The Information Security team is looking for a Staff Security Engineer, Product Security to work on securing DoorDash’s platform running within its cloud computing environment. You will be a part of our inclusive, collaborative team responsible for building a safe and reliable application platform. On the Security team we need to protect all of our customers' applications, systems and business logic. It’s no simple task, but it wouldn’t be interesting if it was!

This is a remote position and you will report directly into the Senior Manager of the Product Security Engineering team.

You’re Excited About This Opportunity Because You Will…

  • Work directly with engineering and security leaders to enact security strategies for DoorDash’s platform.
  • Work with the Engineering and Security teams to plan a strategic roadmap.
  • Build and deploy security measures and services to secure DoorDash platform and its applications.
  • Be hands-on and perform manual and automated code reviews to identify vulnerabilities in APIs, microservices and mobile apps (Android and iOS).
  • Conduct regular application security assessments.
  • Define, document and implement security standards, guidelines and procedures for secure operations.
  • As part of architectural and design review committees, provide actionable feedback in engineering design reviews.
  • Manage the lifecycle of application vulnerabilities, from identification to remediation and reporting and metrics.
  • Integrate and manage security tools into the CI/CD process.
  • Ensure applications running within the cloud environment honor the requirements of information security policy and standards for segmentation and configuration.
  • Develop and implement secure network and process controls for Kubernetes environments.
  • Manage the lifecycle of application vulnerabilities, from identification to remediation and reporting and metrics.
  • Develop tools and automated tests for improving our Security efficiency.

We’re Excited About You Because…

  • 8+ years of experience as a security or product security engineer.
  • Deep understanding of authorization and authentication framework and technologies.
  • Deep knowledge and hands on experience to build and deploy secured microservices.
  • Hands on experience on understanding, identifying and remediating each OWASP top 10 vulnerabilities and similar.
  • You are interested in analyzing code, architecture and design from a security perspective
  • Well versed with scripting languages (e.g., python) and other programming languages (e.g., java). Golang experience is a plus.
  • Experience in building asset inventory for security observability to identify attack paths and defense mechanisms.
  • Experience with implementing and managing CI/CD pipeline security
  • Knowledge of supply chain security (third party, artifactory, package integrity, etc.)
  • Experience in payments security or in financial technology
  • Breadth of technical experience across various application security areas running in large production environments.
  • Exceptional analytical and investigative abilities with hands-on experience leading root cause analysis.
  • Experience solving complex, systemic issues that require creative thinking and solutions.
  • Demonstrated track record of driving improvements to a company’s security posture.
  • Excellent verbal and written communication skills - you can explain security design with respect to cloud infrastructure to security and engineering personnel.
  • Internal Bug Bounty program management experience is a plus.
  • GWEB, GSSP, SSP or other industry certifications are a plus.

We expect this position to be filled by 7/6/2025.

Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only

We use Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023, and resumed using Covey Scout for Inbound again on June 29, 2024.

The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: Covey

Compensation

The successful candidate’s starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee’s work location. Ranges are market-dependent and may be modified in the future.

In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.

DoorDash cares about you and your overall well-being. That’s why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.

To learn more about our benefits, visit our careers page here.

See Below For Paid Time Off Details

  • For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
  • For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).

The base pay for this position ranges from our lowest geographical market up to our highest geographical market within the United States.

$193,800—$285,000 USD

About DoorDash

At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods.

DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.

Our Commitment to Diversity and Inclusion

We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.

Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.

Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.

If you need any accommodations, please inform your recruiting contact upon initial connection.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Software Development

Referrals increase your chances of interviewing at DoorDash by 2x

Get notified about new Product Security Engineer jobs in United States.

Austin, TX $134,100.00-$225,000.00 4 months ago

Product Security Engineer (REMOTE) – 4478

United States $155,000.00-$165,000.00 6 days ago

Product Security Engineer (web/UI threat modeling)

United States $170,000.00-$200,000.00 2 months ago

Product Security Engineer - Technical Lead

United States $177,000.00-$251,000.00 4 days ago

Application Security Engineer [Remote-US]
Senior Security Engineer - Enterprise Security
Staff Product Security Software Engineer (Remote)
Senior Security Engineer - Enterprise Security
Senior Security Engineer - Enterprise Security
Senior Security Engineer - Enterprise Security
Senior Security Engineer - Enterprise Security
Senior Product Security Engineer, Security Platform

Austin, TX $135,000.00-$185,000.00 2 weeks ago

Experienced Product Security Engineer - (Remote - US)
Senior Product Security Engineer, Security Platform

San Francisco, CA $161,000.00-$220,000.00 2 weeks ago

Senior Product Security Engineer, Security Platform

Seattle, WA $145,000.00-$200,000.00 2 weeks ago

Senior Product Security Engineer, Security Platform

Denver, CO $135,000.00-$185,000.00 2 weeks ago

Senior Product Security Engineer, Security Platform

United States $110,635.01-$184,391.69 2 weeks ago

Chicago, IL $113,600.00-$150,520.00 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Product Engineer

ZipRecruiter

New York

Remote

USD 180,000 - 220,000

14 days ago

Senior Software Engineer, Product Security

Reddit

Remote

USD 190,000 - 268,000

6 days ago
Be an early applicant

Staff Product Engineer

ZipRecruiter

New York

Remote

USD 230,000 - 250,000

23 days ago

Senior Product Engineer

Garner Health

New York

Remote

USD 180,000 - 220,000

19 days ago

Senior Product Security Engineer

Instacart

Remote

USD 165,000 - 214,000

Yesterday
Be an early applicant

Senior Software Engineer, Product Security Remote - United States

Reddit, Inc.

Remote

USD 190,000 - 268,000

11 days ago

Senior Software Engineer, Product

Camber

New York

Hybrid

USD 160,000 - 200,000

6 days ago
Be an early applicant

Product Security Engineer New New York, New York, United States

Secure Identity, LLC.

New York

On-site

USD 170,000 - 215,000

Yesterday
Be an early applicant

Principal Product Security Engineer (REMOTE)

Stryker

San Jose

Remote

USD 129,000 - 287,000

5 days ago
Be an early applicant