Staff Security Engineer - Bot & Traffic Defence
$231k - $318kFaire
About FaireFaire is a technology wholesale platform built on the belief that the future is local. Independent retailers around the globe collectively represent a multi-hundred-billion-dollar wholesale market that has historically been fragmented and offline. At Faire, we're using the power of tech, data, and machine learning to connect this thriving community of entrepreneurs across the globe. Picture your favorite boutique in town — we help them discover the best products from around the world to sell in their stores. With the right tools and insights, we believe that we can level the playing field so businesses can grow and local communities can thrive.We’re looking for smart, resourceful and passionate people to join us as we power the shop local movement. If you believe in community, come join ours.About this role:Our Engineering organization owns the software that makes our marketplace work. Our Bot & Traffic Defence function owns how Faire holds up against automated traffic: scraping, credential abuse, and application-layer DDoS, from the edge through to detection and scoring. We care about good engineering practice and love to write software that is secure, tested, easy to maintain, and can scale to millions of users. We build scalable, reusable frameworks; consult with product teams; listen to the data; and iterate.As a Staff Security Engineer, Bot & Traffic Defence, you will be the first dedicated owner of this domain. You will set the technical direction, build the controls and signals that back it, and establish an ownership model that holds across Security, Platform, service teams, and Anti-Abuse.As a Staff Security Engineer, Bot & Traffic Defence, you’ll collaborate with us to:Own the technical strategy and roadmap for bot, scraping, and application-layer DDoS defence end to end, from edge controls through detection and scoring, including revising the strategy where the evidence contradicts it.Author and tune edge security controls as code: WAF rules, rate limiting policies, and challenge mechanisms, against real adversaries who respond to every change you make.Build higher-confidence bot and trust signals so that Faire can enforce more aggressively without turning legitimate logged-out buyers away.Design and operate distributed layer 7 rate limiting, and make the calls on keying, counter state, and where in the stack enforcement belongs.Make incident response for bot and DDoS events a solved problem: clear paging paths, runbooks a non-specialist on-call can execute at 3am, and observability that answers whether humans are actually being affected.Lead post-incident reviews on recurring classes of bot incidents so systemic causes surface instead of repeating.Build the tooling, secure defaults, and playbooks that let service-owning teams protect their own endpoints correctly without you in the loop for every decision.Land a durable ownership model across Security, Platform, service teams, and Anti-Abuse, where every attack vector has a named owner who has accepted it and it holds without escalation.Make Faire's bot posture legible to leadership, including a defensible view of residual risk, and force the outstanding business decisions that engineering is currently making by default.We’re excited about you because you have:Hands-on operational ownership of a CDN or edge security platform (Cloudflare, Akamai, Fastly, or AWS CloudFront/WAF/Shield) in production against real adversaries, managed as code rather than clicked through a vendor dashboard.Experience defending a high-traffic consumer site against scraping and application-layer DDoS, including the part where the attacker shifts vectors a week after your control ships, and the instinct to design for raising attacker cost rather than for a permanent block.A practical understanding of bot detection signals and where each one fails: TLS and fingerprinting (JA3/JA4), behavioural signals, mobile device attestation (App Attest, Play Integrity), and challenges, with a real view on the precision and recall trade-off each one carries.Experience designing distributed rate limiting at layer 7, including the differences between per-IP, per-ASN, per-session, and per-fingerprint keying, when each gets evaded, and how to hold counter state across a fleet without the limiter becoming the bottleneck.Quantitative rigour in detection work: you can measure a detection's precision and recall, set a false-positive tolerance with the business, and defend a threshold change with data rather than intuition.A preference for solving traffic and abuse problems with code rather than manual operations, including writing and maintaining internal tooling that on-call engineers depend on mid-incident.Comfort writing and reviewing code in an OOP language such as Kotlin, Java, Python, or TypeScript, enough to read an unfamiliar service, find where a control is being bypassed, and open the pull request that fixes it.Working fluency with infrastructure as code and cloud environments (Terraform, AWS or GCP, Kubernetes) sufficient to own a security control plane, and the judgment to know when a Terraform-gated workflow is too slow for an incident and needs a break-glass path with an audit trail.Experience owning incident response for a live traffic attack, including holding the authority to block traffic under time pressure.A track record of setting technical direction in an ambiguous domain with no existing owner, and of sequencing work when everything is nominally urgent.Experience landing a cross-team ownership model without authority, including moving responsibility away from a team that currently holds it and getting other teams to accept obligations they did not ask for.Comfort delivering primarily through other teams rather than personal throughput.The ability to put security risk in business terms for executives, translating traffic and abuse metrics into revenue, cost, and reputational exposure.Clear communication with engineers outside security, describing an attack and its trade-offs without alarmism or unexplained jargon.Technologies we use and teach:Kotlin, Typescript, PythonEdge and CDN security tooling: WAF, rate limiting, bot management, challenge policiesAWS, OCI, Terraform, Kubernetes JSON, and Protocol BuffersSalary range:San Francisco: the pay range for this role is $231,000 to $318,000 per year. This role will also be eligible for equity and benefits. Actual base pay will be determined based on permissible factors such as transferable skills, work experience, market demands, and primary work location. The base pay range provided is subject to change and may be modified in the future.Hybrid Faire employees currently go into the office 3 days per week on Tuesdays, Thursdays, and a third flex day of their choosing (Monday, Wednesday, or Friday). Additionally, hybrid in-office roles will have the flexibility to work remotely up to 4 weeks per year. Specific Workplace and Information Technology positions may require onsite attendance 5 days per week as will be indicated in the job posting. Why you’ll love working at FaireMove fast: You'll own meaningful problems that serve customers around the globe with the agency to move fast and see your results clearly.Equipped to scale: We invest in what matters, including the latest enterprise AI tools, to help you work smarter and get more out of every day.Best in class: Our team is full of sharp, kind, and generous colleagues who care about their craft and about helping you grow in yours.Real rewards. Competitive pay, equity, and comprehensive benefits designed to support your life inside and outside of work.Belonging: We're intentional about building an environment where every Faire employee has equal access to opportunities, growth, and success.Faire was founded in 2017 by a team of early product and engineering leads from Square. We’re backed by some of the top investors in retail and tech including: Y Combinator, Lightspeed Venture Partners, Forerunner Ventures, Khosla Ventures, Sequoia Capital, Founders Fund, and DST Global. We have headquarters in San Francisco and Kitchener-Waterloo, and a global employee presence across offices in Toronto, London, and New York. To learn more about Faire and our customers, you can read more on our blog.Faire provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetics, sexual orientation, gender identity or gender expression.Faire is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Accommodations are available throughout the recruitment process and applicants with a disability may request to be accommodated throughout the recruitment process. We will work with all applicants to accommodate their individual accessibility needs. To request reasonable accommodation, please fill out our Accommodation Request Form (PrivacyFor information about the type of personal data Faire collects from applicants, as well as your choices regarding the data collected about you, please visit Faire’s Privacy Notice (
- ...Faire is seeking a Staff Security Engineer for Bot & Traffic Defence in San Francisco. You will own end-to-end bot, scraping, and application-layer DDoS defence, from edge controls through detection and scoring, and set the technical direction across Security, Platform...Suggested
$232k - $310k
..., join us, and build real world value.THE WORK:As a Senior Staff Security Engineer, you will be one of Ripple's most senior technical security... ...segmentation, encryption, zero trust controls, Kubernetes traffic policies, and DDoS and WAF strategy, ensuring full alignment...SuggestedFull timeWork at officeLocal area$232k - $290k
...see your impact and unlock incredible career growth opportunities, join us, and build real world value.THE WORK:As a Senior Staff Security Engineer focused on AI Security, you will be Ripple's deepest technical expert at the intersection of artificial intelligence and...SuggestedFull timeWork at officeLocal area$204k - $240k
...to join us on our journey to create a better future of work with AI. About the roleThis is where security meets innovation at enterprise scale. As a staff security engineer, applications at WRITER, you'll be building the security foundations that protect the AI systems...SuggestedFull timeWork at officeLocal area- ...breaking speeds.About You and The Role Product security at Zipline protects systems that... ...embedded, and field-ops teams. Expect hands-on engineering work, prioritized ownership of specific... ...with AI tools and agentic security bots (not only write policies).Deep practical...SuggestedLocal area
$175k - $270k
...build what’s next.About the teamAirwallex’s Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems,... ...how we operate, not treated as a blocker.Your roleAs a Staff Corporate Security Engineer, you will be a critical part...Temporary workLocal areaWorldwide$210k - $255k
...with us at Crusoe.About This RoleCrusoe is building the world’s favorite AI-first cloud infrastructure. We are seeking a Staff Corporate Security Engineer to act as the principal architect for our corporate security posture.In this role, you will move beyond tactical tool...Temporary work$193.8k - $285k
...technologies in a service used by millions of people, then we want to talk to you!About the RoleOur team is looking for a Staff Security Engineer who will act as the primary security partner to DoorDash Labs - Air, our drone delivery program. This role owns the security...Hourly payWork at officeLocal areaRemote workRelocationFlexible hours1 day per week$251k - $325k
...accelerate people in the age of AI. As bots and autonomous agents reshape the internet... ..., software, AI, cryptography, mobile engineering, and global operations. Our teams come from... ...]( event. About the Team The Security team at Tools for Humanity operates at a...Casual workWorldwideFlexible hours$226k - $283k
...workflows inside some of the country’s most security-sensitive health systems. Security can't be bolted on - it must be engineered into the product. This is a senior technical... ...and secure paved paths. Who You Are: Staff-level product security judgment. You have...Work at office3 days per week$232k
...team: As a member of Uber's Offensive Security team, you will work across multiple... ...We are looking for a technically curious engineer who thrives in ambiguity, takes extreme ownership... ...in a cybersecurity leadership or staff-level role. Deep knowledge of Cybersecurity...Full timeWork at officeRemote work- ...financed iconic companies like YouTube, Substack, Twitch, Box, Hims, Instacart, and Lyft. About the role: We're hiring a Staff Security Engineer to own the security of Collective's member platform end to end — from how code is written and tested to how data is...Self employmentWork at officeRemote workFlexible hours
$200k - $280k
...build what’s next.About the teamAirwallex’s Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems,... ...operate, not treated as a blocker.What you'll doAs a Staff Product Security Engineer at Airwallex, you will be a...Temporary workLocal areaWorldwide$220k - $330k
...the future of professional services is being written today — and we’re just getting started.Role OverviewAs a Staff Software Engineer on the Product Security team at Harvey, you will have the opportunity to build security directly into the product. Harvey stores and processes...Flexible hours- ...deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on... ...today and in the future. DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform...Full timeLocal areaRemote workWorldwideFlexible hours
- ...that all official communication will only be sent from @Rippling.com addresses.About The RoleWe're looking for a hands-on staff security engineer to play a key role in building Rippling's Product Security program. Rippling's product’s scope provides a unique set of security...Work at officeRelocation3 days per week1 day per week
$250k - $285k
...part of a high-performing team that believes in each other, come build with us at Crusoe.About This RoleWe’re seeking a Staff Product Security Engineer with deep AI/ML security expertise to strengthen Crusoe’s security posture across applications, infrastructure, and...Temporary work$215k - $260k
...About the Role: The Crusoe Cloud Software Development team is seeking a passionate and experienced Staff Software Engineer specializing in Linux Kernel Security. This critical role is essential in strengthening the security posture of our core Linux kernel and operating...Full timeTemporary work$200k - $300k
...Job Description Job Description Senior/Staff Security Engineer Company: Init Intelligence Location: San Francisco, CA - in person, Monday to Friday Compensation: $200,000 - $300,000 base + 1-2% equity Employment Type: Full-time Visa Sponsorship: Available...Full timeH1bWork at officeVisa sponsorshipMonday to Friday$221k - $299k
...Maven Clinic is looking for a Staff Security Engineer to lead Incident Detection and Response across the organization. In this hybrid role based in San Francisco, you will guide investigations, strengthen SDLC controls, and develop detection engineering that scales as...Work at officeImmediate startRemote workFlexible hours3 days per week$159.2k - $301.6k
About the roleAdobe’s Security Data Platform team builds and operates a petabyte-scale security data lakehouse that turns enterprise... ..., investigations, compliance, and security analytics.As a Staff Security Data Engineer, you will own full-system designs and lead critical...Full timeTemporary workLocal areaWorldwide$50 per hour
...artificial intelligence, graphics rendering and computational biology. About This Role Crusoe Security & Compliance is hiring a Senior/Staff Application Security Engineer to play a critical role in ensuring the security and integrity of our applications and digital...Temporary work$235k - $275k
...Code Red is partnered with a unicorn FinTech in SF to bring on a Staff Product Security Engineer . This will be a foundational hire within a small, high‑impact security org that supports a global organization in hypergrowth mode. Base Pay Range $235,000.00/yr - $275,00...Full time$165.2k - $295k
...thousands of connected devices. The Samsara Application Security team protects this vast footprint end-to-end, spanning cloud... ...and firmware running on IoT hardware in the field.As a Staff Application Security Engineer, you’ll drive the overarching technical direction for...Full timeRemote workFlexible hoursShift work$243k - $284k
...the forefront of new technology, helping founders and their companies impact and change the world.The RoleWe're hiring a Staff Engineer, Security Automation to anchor automation across a16z's security org. Your mandate is leverage — connect the tools the security team...Work at office2 days per week- ...the AI transformation of this space is still largely uncharted. Engineers here are building agentic solutions to problems that haven't... ...company events._ Ironclad is seeking an experienced Application Security Engineer with a passion for securing modern software...Full timeContract workWork at office
$132k - $165k
...for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.Overall PurposeThe Staff Platform Security Engineer is a highly technical individual contributor responsible for defining and advancing secure target states, architecture...Hourly payFull timeImmediate startVisa sponsorshipWork visaFlexible hours$220k - $405k
...Member of Technical Staff (Offensive Security Engineer) Perplexity · San Francisco; Remote (United States); London; Serbia; New York City Remote · Full-time · $220K - $405K Run red team operations, penetration tests, and attack simulations across infrastructure,...Full timeRemote work$179k
...within the organization. About the team and role Our Security Engineering team protects Scribd's applications and cloud infrastructure... ...controls, and enable engineering teams to move securely. As a Staff Cloud Security Engineer , you'll help shape the technical...For contractorsLocal areaHome officeFlexible hoursShift work$268k - $321k
...Kikoff: The Fintech Powering Financial Security at Scale Kikoff is a profitable, pre-IPO... ...sequence the work, and drive it to done. Engineers ship fast here, and increasingly with AI... ...in production Fraud and abuse defense: bot detection, credential stuffing mitigation...Local area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer - Bot & Traffic Defence. Be the first to apply!
- assistant engineer San Francisco, CA
- senior staff systems engineer San Francisco, CA
- technology administrator San Francisco, CA
- engineering aide San Francisco, CA
- senior staff engineer San Francisco, CA
- staff design engineer San Francisco, CA
- software engineer staff San Francisco, CA
- staff engineer San Francisco, CA
- staff security engineer San Francisco, CA
- application security engineer San Francisco, CA



