Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Engineer, Vulnerability Management

$153k - $214k

1Password

1Password is growing. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing.

About 1Password

At 1Password, we’re building the foundation for a safe, productive digital future. Our mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application sign‑in is secure, and every device is trusted. We innovated the market‑leading enterprise password manager and pioneered Unified Access Management, a new cybersecurity category built for the way people and AI agents work today. As one of the most loved brands in cybersecurity, we take a human‑centric approach in everything from product strategy to user experience. Over 180,000 businesses, from Fortune 100 leaders to the world’s most innovative AI companies, trust 1Password to help their teams securely adopt the SaaS and AI tools they need to do their best work.

If you’re excited about the opportunity to contribute to the digital safety of millions, to work alongside a team of curious, driven individuals, and to solve hard problems in a fast‑paced, dynamic environment, then we want to hear from you. Come join us and help shape a safer, simpler digital future.

We are excited to welcome a Senior Security Engineer to join our Product Security team at 1Password. Product Security helps enable 1Password to build and deliver secure products with confidence. We own the end‑to‑end security lifecycle across our products, platforms, and infrastructure, including our vulnerability management program, bug bounty program, coordinated disclosure, pentesting, and supply chain security.

As part of this team, the Senior Security Engineer will lead and mature our incident response capabilities, working in close partnership with Engineering, Legal, Communications, and Customer Success to coordinate the company’s response when product security incidents occur. This is a high‑impact role for someone who thrives under pressure, cares deeply about protecting users, and wants to do meaningful work at a company trusted by millions.

How we’re using AI today

Our Engineering, Product, and Design teams are thoughtfully integrating AI across the full software and product development lifecycle to move faster without sacrificing quality or security. In practice, that looks like engineers using AI‑assisted coding tools to accelerate reviews and catch bugs earlier, product managers synthesizing user research at scale, and designers rapidly prototyping and iterating with AI‑generated mockups. We approach AI the same way we approach security: with clear principles, human accountability at every consequential decision point, and rigorous evaluation before anything ships to customers.

This is a remote opportunity within Canada and the US.

What we’re looking for:

  • 5+ years of career experience in IT or Engineering with a security focus

  • Hands‑on experience leading or participating in security incident response, ideally in a product or SaaS company context

  • Experience with coordinated vulnerability disclosure (CVD) and managing relationships with external security researchers

  • Strong judgment under pressure: you make clear, defensible decisions during time‑sensitive situations with incomplete information

  • Experience building or formalizing incident response capabilities from the ground up (playbooks, runbooks, severity frameworks, escalation processes)

  • Experience drafting or contributing to customer security advisories, CVEs, or public‑facing incident communications

  • Strong communication skills across a wide range of audiences, from engineers to executives to customers

  • Comfort reading and writing code to support forensic analysis, automation, and tooling

  • Adaptable and resilient: you thrive in fast‑paced environments where priorities can shift quickly

  • Experience leveraging AI/ML capabilities to accelerate security workflows, automate repetitive tasks, or improve detection and response

Bonus points for:

  • Familiarity with CVSS, EPSS, and vulnerability severity frameworks as they apply to incident prioritization

  • Experience in a consumer or B2B SaaS environment where customer trust and public perception are high stakes

  • Familiarity with Software Bill of Materials (SBOMs) and supply chain risk as it relates to security incidents

  • Experience with compliance standards and certifications (e.g., SOC 2, ISO 27001) and their intersection with incident reporting obligations

  • Relevant certifications such as GCIH, GCFE, GCFA, PNPT, or similar (valued but not required)

What you can expect:

As part of this program, the Senior Security Engineer will:

  • Lead end‑to‑end response to product security incidents, from discovery, triage, remediation, and disclosure.

  • Own and evolve 1Password’s PSIRT function, including incident classification frameworks, severity models, escalation paths, and response playbooks

  • Drive coordinated vulnerability disclosure (CVD) processes, partnering with our bug bounty program and external security researchers to manage responsible disclosure timelines and communications

  • Serve as the primary coordinator across Product Security, Engineering, Legal, Communications, and Customer Success during active security incidents

  • Lead post‑incident reviews (PIRs) and translate findings into systemic improvements across our products, processes, and detection capabilities

  • Develop and maintain incident response tooling, automation, and reporting that reduce time‑to‑detect and time‑to‑respond

  • Contribute to customer‑facing security advisories, CVE disclosures, and public incident communications in partnership with Legal and Communications

  • Evaluate and integrate AI‑powered tooling and workflows that improve the speed and effectiveness of incident detection and response

  • Mentor other engineers and help shape the long‑term maturity of our product security and incident response capabilities.

  • Serve on an on‑call rotation with out‑of‑business‑hours coverage.

At 1Password, we build with AI:

At 1Password, using AI to do more with less isn’t a bonus — it’s how we operate, and it’s especially central to this role. We expect you to come in and actively build Incident Response tooling with AI, not just use off‑the‑shelf tools.

  • A proven builder: You’ve built something — an agentic evidence collection workflow, an AI‑assisted vendor questionnaire reviewer, an LLM‑powered control narrative pipeline — and you can walk through what you built, the choices you made, what you iterated on, and what the measurable impact was.

  • Systems thinking: When you describe an automation you built, you can explain how it changed downstream workflows, not just what it saved on the immediate task.

USA‑based roles only: The annual base salary for this role is between $153,000 USD and $214,000 USD, plus immediate participation in 1Password’s benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

Canada‑based roles only: The annual base salary for this role is between $144,000 CAD and $202,000 CAD, plus immediate participation in 1Password’s generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

At 1Password, we approach each individual’s compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.

This posting is for an existing vacancy.

Our culture

At 1Password, we prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with our core values: keep it simple, lead with honesty, and put people first. You’ll be part of a team that challenges the status quo, and is excited to experiment and iterate in search of the best solution. That said, 1Password is not for everyone. Our work is demanding, we strive for excellence, and the pace is fast. We need people who are keen to take on challenging problems, who seek feedback to grow, and who are driven to make an impact. If you’re looking for a place where you can settle into a comfortable routine, this might not be the right fit for you. We’re looking for individuals who are proven experts in their fields, as well as those who are highly adaptable, can thrive in ambiguity and through change, are curious, and above all deliver results.

How we work with AI

We are committed to leveraging cutting‑edge technology—including AI—to achieve our mission. We also understand that thinking critically about AI in its current forms will help us create better solutions for our customers and ourselves with its future forms, which will help us continue to close the gap between security and privacy and achieve our mission. We want team members at all levels to take the approach of actively learning AI best practices, identifying opportunities to apply AI in meaningful ways, and driving innovative solutions in their daily work. Embracing the future of AI isn’t just encouraged—it’s an essential part of how we will be successful at 1Password.

This approach extends to our hiring process—candidates are welcome to use AI tools responsibly and thoughtfully during the application process.

Our approach to remote work

We believe in the power of remote work, but recognize that in‑person connection is important to help us achieve our mission. While we are a remote‑first company, travel for in‑person engagement is a part of almost all roles, and we require our employees to be ready and willing to take part. Frequency will depend on role and responsibilities, and may include, but is not limited to: annual department‑wide offsites, team meetings, and customer/industry events.

What we offer

We believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer.

Health and wellbeing

  • Maternity and parental leave top‑up programs
  • Competitive health benefits
  • Generous PTO policy

Growth and future

  • RSU program for most employees
  • Retirement matching program
  • Free 1Password account

Community

  • Paid volunteer days
  • Peer‑to‑peer recognition through Bonusly
  • Remote‑first work environment

*Some roles in our GTM team are currently being hired for in‑person hybrid work in Toronto and Austin. These roles will specify on the posting.

You belong here.

1Password is proud to be an equal opportunity employer. We are committed to fostering an inclusive, diverse and equitable workplace that is built on trust, support and respect. We welcome all individuals and do not discriminate on the basis of gender identity and expression, race, ethnicity, disability, sexual orientation, colour, religion, creed, gender, national origin, age, marital status, pregnancy, sex, citizenship, education, languages spoken or veteran status. Be yourself, find your people and share the things you love.

Accommodation is available upon request at any point during our recruitment process. If you require an accommodation, please speak to your talent acquisition partner or email us at View email address on us.fitly.work and we’ll work to meet your needs.

Remote work is a part of our DNA. Given that our company was founded remotely in 2005, we can safely say we’re experts at building remote culture. That said, remote work at 1Password does mean working from your home country. If you’ve got questions or concerns about this, your talent partner would be happy to address them with you.

Successful applicants will be required to complete a background check that may consist of prior employment verification, reference checks, education confirmation, criminal background, publicly available social media, credit history, or other information, as permitted by local law.

1Password uses artificial intelligence (AI) and machine learning (ML) technologies, including natural language processing and predictive analytics, to assist in the initial screening of employment applications and improve our recruitment process. See here for the latest third party bias audit information. If you prefer not to have your application assessed using AI/ML features, you may opt out by completing this form. For additional information see our Candidate Privacy Notice.

#J-18808-Ljbffr
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Security Engineer, Vulnerability Management in United States vacancy
  • $216.68k - $269.17k

     ...helping to create safer, more civil shared experiences for everyone.Be a part of Roblox Corporation as a Senior Security Software Engineer in Vulnerability Management. Join our dedicated team to ensure the security of our platform. You will work on scaling vulnerability... 
    Senior
    Full time
    Work experience placement
    H1b
    Work at office
    Local area
    Visa sponsorship
    Monday to Friday

    Roblox

    San Mateo, CA
    21 hours ago
  • $153k - $214k

     ...This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Vulnerability Management based in the United States. Join a high-impact Product Security team focused on protecting... 
    Senior
    Remote work

    jobgether

    United States
    6 days ago
  • $172.5k - $260.1k

     ...making people’s working lives more secure. We are serious about protecting our...  ..., our customers’ data. Our Vulnerability Management team plays a pivotal role in identifying...  ...on ahead!What you will be doingAs a Senior Software Engineer on the Vulnerability Management team... 
    Senior
    Permanent employment
    Full time

    Salesforce

    Atlanta, GA
    2 days ago
  • $105k - $120k

     ...Contractors Apply HereOsaic CareersIT Vulnerability Opportunity in Financial Services Senior Vulnerability Management Analyst Location(s): Atlanta...  ...programs across SDLC (secure development lifecycle),...  ...while partnering closely with Engineering, Product, Cloud/SRE, and IT.... 
    Senior
    Full time
    For contractors
    Work at office
    Shift work

    Osaic

    Scottsdale, AZ
    3 days ago
  • $174k - $252k

     ...Own technical aspects of the vulnerability management life-cycle. Analyze scan...  ...prioritize risks, and partner with engineering teams to drive timely...  ...and maintain critical security tools and infrastructure. Act...  ...flaws and vulnerabilities.As a Senior Security Engineer on the U.... 
    Senior
    Local area

    Google

    Reston, VA
    21 hours ago
  • $63.91 - $108.82 per hour

    Senior Security Engineer IS - Identity & Access ManagementWe are seeking a highly motivated Senior...  ...passion for Identity and Access Management (IAM) to join our Enterprise Security...  ...intrusion prevention systems (IPS), vulnerability assessment and patch management tools... 
    Senior
    Minimum wage
    Remote work
    Shift work
    Weekend work

    Providence Health & Services

    Renton, WA
    21 hours ago
  • $145k - $170k

     ...Angeles, CAEngineering & Tech - IT/Infrastructure Management /Full Time /RemoteThe RoleThe Senior Security Engineer is a newly established senior individual...  ...conditional-access designExperience operating vulnerability management or exposure management programs, including... 
    Senior
    Full time
    Temporary work
    Work at office
    Local area
    Remote work

    Wpromote

    Los Angeles, CA
    4 days ago
  •  ...Continuous Threat Exposure Management (CTEM). The HackerOne...  ...world’s largest community of security researchers to continuously...  ...solutions like bug bounty, vulnerability disclosure, agentic...  ...respect, and accountability.Senior Security Engineer, Detection and ResponseRemote... 
    Senior
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    San Francisco, CA
    2 days ago
  • $148.5k - $260.1k

     ...of Salesforce.The ExperienceSalesforce Enterprise Security is hiring a Senior and Lead Security Engineer for our Secure AI team to help assess and...  ...Research new technologies, emerging threats, and vulnerabilities for strategic planning and process improvements.Use... 
    Senior
    Full time

    Salesforce

    Bellevue, WA
    2 days ago
  • The Vulnerability Management team is seeking a Senior Vulnerability Analyst to support enterprise vulnerability management program by identifying, assessing, and supporting remediation of security vulnerabilities across infrastructure, cloud, and application environments... 
    Senior

    PRI Global

    O Fallon, IL
    1 day ago
  • $135k - $165k

    GovCIO is currently hiring for a Senior Information Systems Security Engineer to support cybersecurity, compliance, and risk management activities supporting the U.S. Coast Guard...  ...federal security standards, manage vulnerabilities, and ensure mission-critical systems... 
    Senior
    Currently hiring

    Govcio

    Alexandria, VA
    2 days ago
  •  ...more details.Role Overview:MUFG is seeking a highly motivated Security Engineer to design, develop, and deploy autonomous agents that...  ...security use cases such as Autonomous Incident Investigation, vulnerability prioritization.Advanced Prompt Engineering with expertise in... 
    Senior
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Tampa, FL
    4 days ago
  • $170k - $190k

     ...DescriptionEverforth ECS Federal is seeking a Senior Information Systems Security Engineer to work in our Huntsville,...  ...will support cybersecurity, risk management, and security authorization...  ...architecture, control implementation, vulnerability remediation, least privilege,... 
    Senior
    Contract work

    ECS Federal

    Huntsville, AL
    2 days ago
  • $159.3k - $202.4k

    Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer II with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking an experienced and innovative Security Engineer to join our Vulnerability Management and Remediation Operations... 
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    3 days ago
  •  ...’s like to work at Roche.The OpportunityThe Global Security Monitoring and Incident Response (MIR) team at Roche...  ...from constantly evolving threats. As a Security Engineer on the Vulnerability and Exposure Management Team, you will help protect sensitive data and defend... 
    Full time

    Roche

    San Jose, CA
    4 days ago
  •  ...3PL service provider in supply chain management and e-commerce. With 20,000 team members...  ...experienced and knowledgeable System Security Engineer to join our team! As a System...  ...servers, network and security devices, Vulnerability Management system, Antivirus system,... 
    Senior
    Work at office
    Local area
    Flexible hours

    arvato Bertelsmann

    Louisville, KY
    4 days ago
  • $131k - $169k

     ...global leader in AI-powered practice management software for accounting firms. We...  ...magazine's Best Small Workplaces™ List. Senior Security Engineer Our Engineering Standards at...  ...findings Conducting risk and vulnerability assessments of web applications and... 
    Senior
    Work at office
    Work from home
    Flexible hours
    Day shift

    Karbon

    Austin, TX
    1 day ago
  • $5,000 per month

     ...eligible for this role. Imagine One Technology & Management, Ltd. is seeking two (2) Senior Security Systems Engineers. These positions are contingent upon award of...  ...US Naval warfare system against known vulnerabilities based upon security approaches and known hacker... 
    Senior
    Interim role

    Imagine One

    Arlington, VA
    2 days ago
  • $130k - $193k

    SummaryThe MIL Corporation is seeking a Cyber Security Vulnerability Researcher, Advanced (Security Engineering, Senior Associate) to support the daily operations of...  ...class solutions in cyber, engineering, financial management, and information technology - and we are... 
    Senior
    Full time
    Contract work
    Local area

    MIL Corporation

    Lexington Park, MD
    1 day ago
  • $188k - $275k

     ...at .What You’ll Do:We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave’s Vulnerability Management program. You will design and implement...  ...firmware/BlueField, and BMC surfaces)Act as senior technical responder for embargoed... 
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Livingston, NJ
    3 days ago
  •  ...00kJob DescriptionA respected global investment management firm is seeking a Senior Cloud Security Engineer to join its technology risk and cybersecurity organization...  ...engineering teams to identify and remediate vulnerabilities independently. The ideal candidate enjoys... 
    Senior
    Full time
    Worldwide

    Motion Recruitment

    Boston, MA
    3 days ago
  • As a Senior Software Security Engineer C/C++, you will support our development teams to develop our software...  ...to security and Digital Rights Management. In this role, you will be part of...  ...software security analysis (TARA, vulnerabilities analysis, etc.) Proven... 
    Senior
    Full time

    Cinemo Gmbh

    Remote
    21 hours ago
  • $120k - $165k

     ...and flexibility. What we need We are looking for a Senior Security Automation Engineer to join our Security Automation team within our Information...  ..., endpoint compliance, shadow-IT discovery, vulnerability management, and broader operational efficiency across the business... 
    Senior
    Full time

    Symbotic

    Wilmington, MA
    1 day ago
  •  ...- $210kJob DescriptionA Boston-based investment management firm is seeking a Senior Cloud Security Engineer to help strengthen the reliability, security, and...  ...monitoring, and observability platformsFamiliarity with vulnerability remediation and cloud configuration... 
    Senior
    Full time

    Motion Recruitment

    Boston, MA
    3 days ago
  •  ...Seneca Resources Company, LLC is seeking a Cyber Security Architect – Senior Vulnerability Engineer to support enterprise vulnerability management, compliance auditing, and scanning. This remote position requires 10+ years of cybersecurity experience and expertise with... 
    Senior
    Remote work

    Seneca Resources Company, LLC

    Virginia, MN
    1 day ago
  • $121.55k - $157.3k

     ...for it” and equip our managers with the training to...  ...iconic areas.The Global Vulnerability Management team is...  ...application teams.Serving as a senior technical escalation...  ...‑related security tickets, providing authoritative...  ...a strong emphasis on engineering and operational... 
    Senior
    Full time
    Work at office
    Immediate start
    Flexible hours

    Cboe Exchange

    Chicago, IL
    21 hours ago
  •  ...networks with innovative solutions, and a managed XDR service, to strengthen cyber...  ...Envision yourself at BarracudaAs a Senior Application Security Engineer, you’ll help shape the future of...  ...code reviewsDrive risk rating and vulnerability management processesPartner with product... 
    Senior
    Worldwide
    Flexible hours

    Barracuda

    Alpharetta, GA
    1 day ago
  • $174k - $253k

    Identify security issues and implement and design security controls, tools, and services...  ...to analyze, deploy, and manage vulnerability management across Google.Build a data...  ...use of GCP.Partner with other security engineers and teams to prioritize and execute on... 
    Senior

    Google

    San Jose, CA
    1 day ago
  •  ...globally recognized financial advisory and asset management organization is seeking a Senior Cloud Security Engineer to help advance the security, compliance, and...  ...NIST, CIS, SOC 2, or ISO 27001Experience with vulnerability management and cloud security assessmentsStrong... 
    Senior
    Full time

    Motion Recruitment

    Boston, MA
    3 days ago
  • $102.6k - $179.25k

    The Cloud Security Engineer - FAB supports the security, resilience, and compliance of FAB (Foundation and Beyond), Wolters Kluwer...  ...emphasizes secure cloud configuration, identity and access management, vulnerability management, and security monitoring, working closely... 
    Senior
    Full time
    Work at office

    Wolters Kluwer

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Engineer, Vulnerability Management. Be the first to apply!