Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Security Engineer

$170k - $205k
Full-time

Snyk

Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how software is built. Our AI-native Developer Security Platform integrates seamlessly into development and security workflows, making it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers and cloud. Our mission is to empower every developer to innovate securely in the AI era — boosting productivity while reducing business risk. We’re not your average security company - we build Snyk on One Team, Care Deeply, Customer Centric, and Forward Thinking. It’s how we stay driven, supportive, and always one step ahead as AI reshapes our world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-cloud estate. This is the senior technical seat for cloud security posture across AWS and GCP, for the security of our enterprise identity platform, and for the AI-driven automation that lets a team our size defend an estate this large. The role is adversarial and threat driven rather than compliance driven. We want someone who looks at a cloud environment the way an attacker does: who can trace a path from an over-permissioned role or an exposed workload through to real business impact, and who then closes off the whole class of problem instead of the single finding. Detection matters here. Prevention matters more. The goal is that insecure configurations cannot be deployed in the first place. This position can be hired remotely, ideally within the EST/CST timezone. What you'll do: Owning cloud security posture across AWS and GCP - Driving coverage and signal quality, prioritising by exploitability rather than raw severity counts, holding remediation accountability with the teams that own the resources, and reporting posture as a trend over time. Leading cloud IAM and least privilege. Designing and enforcing permission models across accounts and projects: organization level policy and guardrails, permission boundaries, cross-account role design, workload identity federation, and the full lifecycle of non-human identities, keys, and secrets. Owning the security posture of our enterprise identity platform. Authentication and authorization policy, phishing resistant MFA, privileged access, joiner mover leaver enforcement, and the identity signals that reveal account compromise or insider risk. Hunting and eliminating cloud attack paths. Reasoning about chained privilege escalation, lateral movement between accounts and workloads, and data exposure, then removing the conditions that make those chains possible. Building preventative guardrails. Pushing controls into infrastructure as code modules, admission control, CI checks, and organization policy so that misconfigurations fail before deployment rather than getting caught afterwards. Building AI and agentic automation for security work. Using LLMs and agents to automate posture remediation, access reviews, cloud evidence gathering, and investigation enrichment. Turning repeatable expert judgment into tooling the whole team can run. Securing Snyk's AI adoption. Establishing the controls for internal AI and agent use: permissions and blast radius for autonomous agents, tool and MCP server trust, third party AI risk review, and the identity and data boundaries AI systems operate within. Securing the cloud infrastructure behind Snyk's AI capabilities. IAM, network segmentation, and data controls for the accounts, model workloads, and pipelines that power our AI features. Strengthening cloud detection and response. Making sure cloud control plane and workload telemetry produces detections that fire on real attacker behaviour, and acting as the cloud subject matter expert during incidents. Defending the edge. WAF and DDoS posture, plus cloud deception coverage that catches an intruder early. Partnering across teams. Working with Platform and Infrastructure Engineering, Product Security, and Compliance to land controls through influence rather than mandate. This includes supporting the cloud controls in our public sector environment, which is a smaller part of the role. Raising the team's cloud ceiling. Mentoring engineers, acting as an escalation point for complex cloud investigations, and taking part in the EntSec on-call rotation. What You'll Need 8+ years in security engineering, including at least 4 focused specifically on securing cloud environments at production scale. Expert level AWS security and strong working knowledge of GCP. You can reason about IAM policy evaluation, organization level guardrails, network and VPC design, key management and encryption, and logging architecture without reaching for the documentation. Deep, hands-on cloud IAM expertise. Designing least privilege models across multi-account and multi-project estates, right-sizing over-permissioned roles without breaking production, and managing non-human identities, workload identity federation, and secrets at scale. An attacker's understanding of cloud. You know how cloud environments actually get compromised (credential and token abuse, IAM privilege escalation chains, metadata and workload identity abuse, exposed storage and services, CI/CD and supply chain paths) and you design controls against those paths rather than against a checklist. Real ownership of an enterprise CSPM or CNAPP platform. Onboarding accounts, tuning signal to noise, building remediation workflows, and holding the line on posture metrics over time. Infrastructure as code and genuine coding ability. Terraform, Python or Go. Kubernetes security in the cloud. RBAC, service accounts and token handling, admission control, workload identity, network policy, and container runtime posture. Practical experience applying AI to engineering work. You have built something real with LLM APIs or agent frameworks, and you understand AI specific risk (prompt injection, over-permissioned agents and tools, untrusted tool and MCP servers, data leakage) well enough to design controls for it. Enterprise identity platform security. Hands-on with a major IdP: policy design, federation, phishing resistant authentication, privileged access, and access review. Cloud detection fundamentals. Cloud provider audit logs and native threat detection services, what good cloud detection logic looks like, and how cloud telemetry lands and gets queried in a SIEM. Strong written communication and stakeholder influence. Bachelor's degree in computer science, information security, or information technology, or equivalent practical experience. We'd be Lucky if You Have worked in the DevSecOps, cloud security, or AI industry, or have defended a security product company. Have built agentic security tooling, MCP servers, or internal AI platforms, and have well formed opinions about where they should and should not be trusted. Have done cloud incident response or cloud threat hunting on a real intrusion. Have contributed to open source cloud security tooling, or published research on cloud attack techniques. Have led a cloud migration or a multi-cloud consolidation and lived with the security consequences. Have worked in a FedRAMP, NIST 800-53, or similar regulated cloud environment. Hold relevant security certifications. None are required, but they are welcomed. Examples include: CISSP (Certified Information Systems Security Professional) CCSP (Certified Cloud Security Professional) SANS / GIAC: GPCS (Public Cloud Security), GCLD (Cloud Security Essentials), GCSA (Cloud Security Automation), GCFR (Cloud Forensics Responder), GDSA (Defensible Security Architecture), GCPN (Cloud Penetration Tester) AWS Certified Security Specialty Google Professional Cloud Security Engineer Annual Base Salary Range: $170,000 - $205,000 + bonus.

#LI-TF1

We care deeply about the warm, inclusive environment we’ve created and we value diversity – we welcome applications from those typically underrepresented in tech. If you like the sound of this role but are not totally sure whether you’re the right person, do apply anyway! About Snyk Snyk is committed to creating an inclusive and engaging environment where our employees can thrive as we rally behind our common mission to make the digital world a safer place. From Snyk employee resource groups, to global benefits that help our employees prioritize their health, wellness, financial security, and a work/life blend, we aim to support our employees along their entire journeys here at Snyk. Benefits & Programs Prioritize health, wellness, financial security, and life balance with programs tailored to your location and role. Flexible working hours, work-from home allowances, in-office perks, and time off for learning and self development Generous vacation and wellness time off, country-specific holidays, and 100% paid parental leave for all caregivers Health benefits, employee assistance plans, and annual wellness allowance Country-specific life insurance, disability benefits, and retirement/pension programs, plus mobile phone and education allowances

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Staff Security Engineer in United States vacancy
  • $170k - $205k

    Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms...  ...AI reshapes our world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-... 
    Suggested
    Full time
    Work at office
    Remote work
    Work from home
    Flexible hours

    Snyk

    Massachusetts
    1 day ago
  • $230k - $250k

     ...makes healthcare more accurate, sustainable, and effective for everyone. Learn more at smarterdx.com/careers. Role SmarterDx Security Engineering has a broad scope: AI, cloud, and enterprise security, plus reviews of new designs and code across the company. We are a... 
    Suggested
    Full time
    Remote work

    SmarterDx

    United States
    2 days ago
  •  ...and colleagues. Those stories are part of what makes this such a special place to work.Job OverviewMacy’s is seeking a Staff Information Security Engineer to join its Cloud Security team. This position plays a pivotal role in designing, implementing, and operating secure... 
    Suggested
    Work experience placement
    Flexible hours
    Shift work

    Macy's

    Georgia
    4 days ago
  • $210k - $234.1k

     ...few technology companies ever operate at.Security at Compass International HoldingsThe...  ...estates in the industry. We are hands-on engineers who build security as a service: secure-...  ...Engineering, rather than gatekeeping. As a Staff Security Engineer, you are empowered to... 
    Suggested
    Minimum wage
    Work experience placement
    Flexible hours

    Compass

    Boston, MA
    1 day ago
  • $127.6k - $206.53k

     ...that drives great outcomes.Job SummaryThe TeamInformation Security - We’re not your ordinary Information Security team. We’...  ...front line of defense against cyberattacks.Job SummaryAs a Staff Network Security Engineer on our Enterprise Security team, you will play a critical... 
    Suggested
    Full time
    Work at office
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Boston, VA
    3 days ago
  • $204k - $240k

     ...making a rewarding impact and Keeping Commerce Human.Salary Range:$204,000.00 - $240,000.00What's the role?Etsy is seeking a Staff Security Engineer to join our Security Operations team. As part of the larger Security org, this team plays a pivotal role in protecting and... 
    Full time
    Work at office
    Local area
    Visa sponsorship
    Flexible hours

    Etsy

    Brooklyn, NY
    1 day ago
  • $189k - $303k

     ...safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all. We’re searching for a Staff Security Engineer, Enterprise Security Architecture.This position is open to the following office locations: Mountain View, San Francisco,... 
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    Mountain View, CA
    1 day ago
  • $210k - $260k

     ...journey toward becoming the world's top retail-focused trading platform in the world. What you'll do:We're looking for aStaff Security Engineer, Application Security to help scale and mature our security program. You'll own key security domains and initiatives end-to-end... 
    Work at office
    Remote work
    Worldwide
    Monday to Friday
    Flexible hours

    NinjaTrader Group

    Chicago, IL
    1 day ago
  • P-1528As a Staff Security Assurance Engineer within the Security Assurance Team, you will help lead high-visibility security compliance implementation initiatives. Reporting directly to the Senior Director, you will serve as a strategic catalyst for these programs, ensuring... 
    Worldwide
    Relocation

    DataBricks

    Washington DC
    1 day ago
  • $210k - $255k

     ...with us at Crusoe.About This RoleCrusoe is building the world’s favorite AI-first cloud infrastructure. We are seeking a Staff Corporate Security Engineer to act as the principal architect for our corporate security posture.In this role, you will move beyond tactical tool... 
    Temporary work

    Crusoe

    San Francisco, CA
    3 days ago
  • $262k - $364k

     ...next wave of AI-driven attacks.Lead the development of unified security detection platforms and operational standards, driving...  ...adoption of automated detection and response tools across all Cloud engineering teams.Pioneer and integrate advanced Artificial Intelligence (... 

    Google

    Sunnyvale, TX
    3 days ago
  • DDN is seeking a highly experienced Sr. Staff Security Architect to lead the design and implementation of end-to-end security architecture...  ...is an architecture role focused on working closely with engineering teams across the data path, control plane, and ecosystem/protocol... 

    DataDirect Networks

    Santa Clara, CA
    16 hours ago
  • $175k - $270k

     ...build what’s next.About the teamAirwallex’s Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems,...  ...how we operate, not treated as a blocker.Your roleAs a Staff Corporate Security Engineer, you will be a critical part... 
    Temporary work
    Local area
    Worldwide

    Airwallex

    San Francisco, CA
    4 days ago
  • $232k - $290k

     ...see your impact and unlock incredible career growth opportunities, join us, and build real world value.THE WORK:As a Senior Staff Security Engineer focused on AI Security, you will be Ripple's deepest technical expert at the intersection of artificial intelligence and... 
    Full time
    Work at office
    Local area

    Ripple

    San Francisco, CA
    1 day ago
  • $188k - $275k

     ...7, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .What You’ll Do:We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave’s Vulnerability Management program. You will design and implement scalable... 
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    New York, NY
    4 days ago
  • Austin, TXTechnology - Security /RemoteThe Staff Security Engineer will be responsible for designing, implementing, and maintaining security identity services that support our business. You will understand data and automation are important ingredients to our mission and... 
    Temporary work
    Remote work
    Flexible hours

    Aledade

    Austin, TX
    16 hours ago
  • $152k - $248k

     ...their information every day and we take their security seriously. Our core value of putting our members...  ...in automation and focus on high impact engineering projects that detect security risks. About the role:As a Staff Security Engineer on the Platform & Product Security... 
    For contractors
    Work experience placement
    Work at office
    Flexible hours

    Linkedin

    Sunnyvale, CA
    4 days ago
  • $169k - $199k

     ...standards, clear accountability, and a strong focus on security and ethics in everything we build!The Red Team’s mission...  ...simulating adversary behavior and testing defenses. As a Staff Offensive Security Engineer, you will plan and execute security assessments across applications... 
    Work at office
    Shift work
    3 days per week

    Robinhood Financial

    New York, NY
    4 days ago
  • $169k - $199k

     ...Expectations are high, and so are the rewards. About the TeamThe Security Operations (SecOps) team at Robinhood proactively...  ...standard across the cybersecurity industry!About the RoleAs a Staff Security Engineer (IC6) on the Detection & Response team, you will drive our... 
    Work at office
    Flexible hours
    Shift work
    3 days per week

    Robinhood Financial

    Menlo Park, CA
    2 days ago
  • $212k - $265k

     ...ready to see your impact and unlock incredible career growth opportunities, join us, and build real world value.THE WORK:As a Staff Security Engineer within the Secure Digital Asset Operations (SDAO) function, you will collaborate with leadership and cross-functional... 
    Full time
    Work at office
    Local area

    Ripple

    San Francisco, CA
    3 days ago
  • $212k - $265k

     ...our promise to customers sending money globally, providing secure, simple, and reliable ways to manage their money, ensuring...  ...program backbone connecting the pillars.We're looking for a Staff Security Engineer to join Detection & Response as a senior individual contributor... 
    Full time
    Work at office
    Worldwide
    Flexible hours
    3 days per week

    Remitly

    Seattle, WA
    2 days ago
  • This is a hybrid role (3 days in office / 2 days remote).About your team:We seek a motivated Incident Responder to join our Security Operations team. You will assist in monitoring, detecting, analyzing, and responding to security events and incidents. This role is ideal... 
    Work at office
    Remote work

    Interactive Brokers

    Chicago, IL
    3 days ago
  • $160k - $190k

     .... About the Role, Mission or Department OverviewThe newsroom security engineer within Cybersecurity is a hands-on contributor who researches...  ...security solutions that strengthen protections for newsroom staff while supporting efficient journalistic workflows.Lead technical... 
    Work at office
    Local area
    Flexible hours

    The New York Times

    New York, NY
    4 days ago
  • $134k - $184.8k

    Secure Every Identity, from AI to HumanIdentity is the key to unlocking the potential of...  ...and Intelligence (TDI) organization is the engine that powers Okta's global workforce,...  ...our employees to do their best work.The Staff Security Engineer OpportunityWe are seeking... 
    Local area
    Worldwide
    Flexible hours
    Shift work

    Okta

    San Francisco, CA
    3 days ago
  •  ...every step of the way. Join us to invest in yourself, your career, and the financial world.The role: We’re seeking a Staff Security Detection Engineer to build and mature SoFi’s machine learning-driven detection and anomaly detection program. You will own the detection... 
    Remote work

    SoFi

    Seattle, WA
    2 days ago
  • $199k - $249k

     ...City, Salt Lake City, London, Edinburgh, Pune, Dubai, Geneva, Singapore and São Paulo. The RoleWe are seeking a well rounded Staff Security Engineer to join our growing Information Security & Risk team. In this role, you will be a member of our newly formed Security... 
    H1b
    Remote work
    Worldwide
    Visa sponsorship
    Work visa

    Addepar

    New York, NY
    2 days ago
  • $204k - $280.5k

     ...in community, come join ours.About this roleThe Enterprise Security team at Faire owns the tools and policies that keep our people...  ...detection, compliance training, and AI governance. As our Staff Security Engineer focusing on Enterprise AI, you will own the AI governance... 
    Work experience placement
    Work at office
    Local area
    Remote work
    Monday to Friday
    Flexible hours
    3 days per week

    Faire

    San Francisco, CA
    3 days ago
  •  ...from. Our success will be built on amazing colleagues, working together.Job OverviewThe Staff, Vulnerability Engineer is a specialist in Penetration Testing and Information Security Vulnerability Management. This hands-on role involves conducting penetration tests and vulnerability... 
    Work at office

    Macy's

    Georgia
    4 days ago
  • Job Description:The Security Research and Response team in Arm's Architecture and Technology Group is seeking a highly skilled SoC Offensive Security Staff Engineer to apply an attacker's mindset to Arm's next-generation solutions, identifying design and integration-level... 
    Work at office
    Local area

    ARM

    Austin, TX
    1 day ago
  • $178.8k - $257.2k

     ...brighter, more sustainable future while tackling the most pressing challenges of the 21st century.We are looking for a Senior Staff Security Engineer to join our team in one of today’s most exciting technologies. This role will report to our Chief Security Officer and... 
    Full time
    Work at office
    Worldwide
    Shift work

    Bloom Energy

    San Jose, CA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Security Engineer. Be the first to apply!