Staff Security Engineer
$170k - $205kSnyk
Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how software is built. Our AI-native Developer Security Platform integrates seamlessly into development and security workflows, making it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers and cloud. Our mission is to empower every developer to innovate securely in the AI era — boosting productivity while reducing business risk. We’re not your average security company - we build Snyk on One Team, Care Deeply, Customer Centric, and Forward Thinking. It’s how we stay driven, supportive, and always one step ahead as AI reshapes our world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-cloud estate. This is the senior technical seat for cloud security posture across AWS and GCP, for the security of our enterprise identity platform, and for the AI-driven automation that lets a team our size defend an estate this large. The role is adversarial and threat driven rather than compliance driven. We want someone who looks at a cloud environment the way an attacker does: who can trace a path from an over-permissioned role or an exposed workload through to real business impact, and who then closes off the whole class of problem instead of the single finding. Detection matters here. Prevention matters more. The goal is that insecure configurations cannot be deployed in the first place. This position can be hired remotely, ideally within the EST/CST timezone. What you'll do: Owning cloud security posture across AWS and GCP - Driving coverage and signal quality, prioritising by exploitability rather than raw severity counts, holding remediation accountability with the teams that own the resources, and reporting posture as a trend over time. Leading cloud IAM and least privilege. Designing and enforcing permission models across accounts and projects: organization level policy and guardrails, permission boundaries, cross-account role design, workload identity federation, and the full lifecycle of non-human identities, keys, and secrets. Owning the security posture of our enterprise identity platform. Authentication and authorization policy, phishing resistant MFA, privileged access, joiner mover leaver enforcement, and the identity signals that reveal account compromise or insider risk. Hunting and eliminating cloud attack paths. Reasoning about chained privilege escalation, lateral movement between accounts and workloads, and data exposure, then removing the conditions that make those chains possible. Building preventative guardrails. Pushing controls into infrastructure as code modules, admission control, CI checks, and organization policy so that misconfigurations fail before deployment rather than getting caught afterwards. Building AI and agentic automation for security work. Using LLMs and agents to automate posture remediation, access reviews, cloud evidence gathering, and investigation enrichment. Turning repeatable expert judgment into tooling the whole team can run. Securing Snyk's AI adoption. Establishing the controls for internal AI and agent use: permissions and blast radius for autonomous agents, tool and MCP server trust, third party AI risk review, and the identity and data boundaries AI systems operate within. Securing the cloud infrastructure behind Snyk's AI capabilities. IAM, network segmentation, and data controls for the accounts, model workloads, and pipelines that power our AI features. Strengthening cloud detection and response. Making sure cloud control plane and workload telemetry produces detections that fire on real attacker behaviour, and acting as the cloud subject matter expert during incidents. Defending the edge. WAF and DDoS posture, plus cloud deception coverage that catches an intruder early. Partnering across teams. Working with Platform and Infrastructure Engineering, Product Security, and Compliance to land controls through influence rather than mandate. This includes supporting the cloud controls in our public sector environment, which is a smaller part of the role. Raising the team's cloud ceiling. Mentoring engineers, acting as an escalation point for complex cloud investigations, and taking part in the EntSec on-call rotation. What You'll Need 8+ years in security engineering, including at least 4 focused specifically on securing cloud environments at production scale. Expert level AWS security and strong working knowledge of GCP. You can reason about IAM policy evaluation, organization level guardrails, network and VPC design, key management and encryption, and logging architecture without reaching for the documentation. Deep, hands-on cloud IAM expertise. Designing least privilege models across multi-account and multi-project estates, right-sizing over-permissioned roles without breaking production, and managing non-human identities, workload identity federation, and secrets at scale. An attacker's understanding of cloud. You know how cloud environments actually get compromised (credential and token abuse, IAM privilege escalation chains, metadata and workload identity abuse, exposed storage and services, CI/CD and supply chain paths) and you design controls against those paths rather than against a checklist. Real ownership of an enterprise CSPM or CNAPP platform. Onboarding accounts, tuning signal to noise, building remediation workflows, and holding the line on posture metrics over time. Infrastructure as code and genuine coding ability. Terraform, Python or Go. Kubernetes security in the cloud. RBAC, service accounts and token handling, admission control, workload identity, network policy, and container runtime posture. Practical experience applying AI to engineering work. You have built something real with LLM APIs or agent frameworks, and you understand AI specific risk (prompt injection, over-permissioned agents and tools, untrusted tool and MCP servers, data leakage) well enough to design controls for it. Enterprise identity platform security. Hands-on with a major IdP: policy design, federation, phishing resistant authentication, privileged access, and access review. Cloud detection fundamentals. Cloud provider audit logs and native threat detection services, what good cloud detection logic looks like, and how cloud telemetry lands and gets queried in a SIEM. Strong written communication and stakeholder influence. Bachelor's degree in computer science, information security, or information technology, or equivalent practical experience. We'd be Lucky if You Have worked in the DevSecOps, cloud security, or AI industry, or have defended a security product company. Have built agentic security tooling, MCP servers, or internal AI platforms, and have well formed opinions about where they should and should not be trusted. Have done cloud incident response or cloud threat hunting on a real intrusion. Have contributed to open source cloud security tooling, or published research on cloud attack techniques. Have led a cloud migration or a multi-cloud consolidation and lived with the security consequences. Have worked in a FedRAMP, NIST 800-53, or similar regulated cloud environment. Hold relevant security certifications. None are required, but they are welcomed. Examples include: CISSP (Certified Information Systems Security Professional) CCSP (Certified Cloud Security Professional) SANS / GIAC: GPCS (Public Cloud Security), GCLD (Cloud Security Essentials), GCSA (Cloud Security Automation), GCFR (Cloud Forensics Responder), GDSA (Defensible Security Architecture), GCPN (Cloud Penetration Tester) AWS Certified Security Specialty Google Professional Cloud Security Engineer Annual Base Salary Range: $170,000 - $205,000 + bonus.
#LI-TF1
We care deeply about the warm, inclusive environment we’ve created and we value diversity – we welcome applications from those typically underrepresented in tech. If you like the sound of this role but are not totally sure whether you’re the right person, do apply anyway! About Snyk Snyk is committed to creating an inclusive and engaging environment where our employees can thrive as we rally behind our common mission to make the digital world a safer place. From Snyk employee resource groups, to global benefits that help our employees prioritize their health, wellness, financial security, and a work/life blend, we aim to support our employees along their entire journeys here at Snyk. Benefits & Programs Prioritize health, wellness, financial security, and life balance with programs tailored to your location and role. Flexible working hours, work-from home allowances, in-office perks, and time off for learning and self development Generous vacation and wellness time off, country-specific holidays, and 100% paid parental leave for all caregivers Health benefits, employee assistance plans, and annual wellness allowance Country-specific life insurance, disability benefits, and retirement/pension programs, plus mobile phone and education allowances$210k - $234.1k
...few technology companies ever operate at.Security at Compass International HoldingsThe... ...estates in the industry. We are hands-on engineers who build security as a service: secure-... ...Engineering, rather than gatekeeping. As a Staff Security Engineer, you are empowered to...SuggestedMinimum wageWork experience placementFlexible hours$127.6k - $206.53k
...that drives great outcomes.Job SummaryThe TeamInformation Security - We’re not your ordinary Information Security team. We’... ...front line of defense against cyberattacks.Job SummaryAs a Staff Network Security Engineer on our Enterprise Security team, you will play a critical...SuggestedFull timeWork at officeVisa sponsorshipWork visa$218.03k - $256.5k
...Management (IAM) program, housed within Security, is a cross-functional team that designs... ...within the IAM program, partnering with Engineering, IT, Platform, and business teams to architect... ..., or systems architecture, with a deep, Staff-level focus on Identity and Access...SuggestedFor contractorsLocal area- ...deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on... ...today and in the future. DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform...SuggestedFull timeLocal areaWorldwideFlexible hours
- OverviewHow you’ll Make an ImpactThe Security Engineer plays a critical role in strengthening the security of Epsilon’s software applications by embedding security into the development lifecycle and advancing AI-enabled engineering practices. You will provide strategic...SuggestedTemporary workFreelanceWork at officeLocal areaFlexible hours
$244k - $305k
As a Staff Application Security Engineer at Datadog, you'll set technical direction for how we approach application security at scale. You'll define the frameworks, methodologies, and architectural patterns that engineering teams across Datadog adopt and apply independently...$100k - $140k
...innovation, its integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance, and data... ...are looking for a skilled and passionate Cybersecurity Engineer to strengthen and scale our security capabilities in response to...Full timeRemote workFlexible hours$178.4k - $226.7k
The Senior Security Engineer is a senior individual contributor responsible for independently driving security initiatives across multiple services and teams. This role requires deep technical expertise in application security, threat modeling, and secure system design,...InternshipFlexible hours$104k - $156k
Posting Type Remote/Hybrid Job Overview The Advanced Security Engineer is a technically deep, hands-on practitioner who forms the operational backbone of the enterprise security function. Operating within a layered defense-in-depth program, this engineer owns the design...Remote work- ...our offices and employee hubs in Burlington, Vermont, Cambridge, Massachusetts, and Zurich, Switzerland. We are seeking a Staff Electrical Engineer to join our team to advance our products and processes as we grow, working from one of our three hubs. Note, we are open...Relocation
- ...Job Description Job Description JOB SUMMARY Under the supervision of the Engineering Manager, the Staff Electrical Engineer develops creative and technically superior engineering solutions appropriate to each project assigned. PRINCIPAL DUTIES & RESPONSIBILITIES...Full timeWork at officeImmediate start
- ...Required qualifications: Bachelor’s degree in electrical engineering; or equivalent work experience You have 8+ years of industry... ...and aircraft reliability Ability to obtain a S//SAR level security clearance desired. #LI-DM2 #LE Full-time regular employee...Full timeTemporary workPart timeWork experience placementWorldwide
- ...Description: Shield AI is seeking an exceptional Electrical Engineer to join the team in building our next-generation autonomous aircraft... ...with Altium or equivalent Ability to obtain a S//SAR level security clearance desired. #LI-JM2 #LD Full-time regular employee...Full timeTemporary workPart timeWorldwide
$134.4k - $184.8k
We're looking for a Staff Perception Engineer specializing in tactile sensing to help advance the next generation of robotic manipulation. In this role, you will design and develop sensing data systems that allow robots to physically interact with the world, transforming...Full timeWork at office$175k - $250k
...Learn more at later.com.About this position: We’re looking for a Staff Engineer to play a critical role in shaping the future of Later’s... ...of our product. If you’re passionate about building scalable, secure, and high-quality applications that serve millions of users—and...Permanent employmentLocal areaRemote work$205k - $272k
On our Behaviors team (Prediction and ML Planner), you will have the opportunity to work with world-class ML engineers, whose mission is to make self-driving vehicles a reality and to create a positive social impact. The Behaviors team develops ML models that learn how...$116.2k - $151k
...and make an impact. Come join our TJX family—a Fortune 100 company and the world’s leading off-price retailer. Job Description:Staff Engineer ServiceNow, Risk & Compliance GTE Who We Are We are the Governance Technology Enablement (GTE) team, driving technology solutions...Contract workTemporary workWork experience placementLocal areaHome office$86.8k
...efficient energy, clean and safe mobility, as well as smart and secure IoT. Together, we drive innovation and customer success, while... ...productivity and processesWork with design and concept development engineers to incorporate design-for- test (DFT) features into new...Permanent employmentLocal area- ...pushing the boundaries of what’s possible.What You Will Do:As a staff engineer, you will lead the most complex and high impact technical... ...experience to lead. Ability to travel.Ability to obtain a U.S. security clearance is required.Flexibility to adjust to changing...
$117.84k
...yet... are you ready to rethink the impossible? As a Senior Staff Engineer Pre-Silicon Verification AMS in our Research & Development team... ...efficient energy, clean and safe mobility, as well as smart and secure IoT. Together, we drive innovation and customer success, while...Work at officeLocal area$135.9k - $181.2k
About SimpliSafeWe’re a high-tech home security company passionate about protecting the life you’ve built and our mission to keep... ...connected, and confident in their technology.We’re looking for a Staff IAM Engineer to join our IT team in Boston, Massachusetts. In this role,...Work at officeRemote work2 days per week$151k - $223.44k
...thrive, learn, and lead. Your Team, Your ImpactThe Data Center Engineering organization designs, builds, and integrates the processor,... ...and networking equipment including servers, switches, routers, secure gateways, firewall, network monitoring, and smartNICs.What You...Permanent employmentFull timeInternshipWork from home$115k - $160k
We are looking for a Senior Staff Gear Train Engineer to develop the gearboxes and drivetrains inside our next-generation humanoid robots. This role spans the full gear lifecycle — concept design, analysis, and manufacturing/quality — shaping how high-performance gear trains...Full timeWork at officeVisa sponsorshipShift work$131.29k - $190.11k
...What's Possible. Learn more at and on LinkedIn and Twitter (X).Staff Engineer, Post Silicon ValidationAbout the RoleWe are seeking a Staff... ...the U.S. Department of Commerce - Bureau of Industry and Security and/or the U.S. Department of State - Directorate of Defense...Permanent employmentFull timeWork at officeDay shift$113.6k
...isn’t an act - it’s in the DNA of everything we do. As a Senior Staff Engineer in our Quality & Excellence team uncover the root causes... ...efficient energy, clean and safe mobility, as well as smart and secure IoT. Together, we drive innovation and customer success, while...Permanent employmentLocal area$148.53k - $204.25k
...world while protecting our planet’s natural resources, we’d love to hear from you!About the role...Inari is seeking a Staff Machine Learning Engineer to join our AI Team in support of our mission of transforming agriculture through predictive design and advanced gene editing...Full timeTemporary workPart timeWork at officeRemote workFlexible hours$109.25k - $149.5k
...s possible and making headway to innovate new treatment pathways to advance patient outcomes and set new standards of care.The Staff Engineer, Lean Six Sigma Black Belt is a key practitioner within Integra’s Global Supply Chain & Operations organization, responsible for...Full timeTemporary workWork at office$116.2k - $151k
...and the world’s leading off-price retailer. Job Description:Staff Engineer - MerchandisingWhat you’ll discover We offer an inclusive culture... .../technical designs documents including performance, security and availability considerations Proven experience of developing...Temporary workLocal areaHome office$175k - $215k
...healthspan. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.As a Staff RF Engineer on the WHOOP Hardware team, you will lead the architecture, integration, and delivery of the wireless systems that power WHOOP...Full timeWork at officeRelocation$134.64k - $201.97k
...Possible. Learn more at and on LinkedIn and X.Staff PDK Development EngineerAbout the RoleAs... ...of the PDK Development Group within the Engineering Enablement organization at ADI, you will... ...of Commerce - Bureau of Industry and Security and/or the U.S. Department of State -...Permanent employmentFull timeWork at officeDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer. Be the first to apply!
- engineering aide Massachusetts
- technology administrator Massachusetts
- staff engineer Massachusetts
- assistant engineer Massachusetts
- network security engineer Massachusetts
- senior application security engineer Massachusetts
- security infrastructure engineer Massachusetts
- cloud security engineer Massachusetts
- physical security engineer Massachusetts
- information technology security engineer Massachusetts


