Staff Security Engineer
$170k - $205kSnyk
Staff Security Engineer Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how software is built. Our AI-native Developer Security Platform integrates seamlessly into development and security workflows, making it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers and cloud. Our mission is to empower every developer to innovate securely in the AI era — boosting productivity while reducing business risk. We're not your average security company - we build Snyk on One Team, Care Deeply, Customer Centric, and Forward Thinking. It's how we stay driven, supportive, and always one step ahead as AI reshapes our world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-cloud estate. This is the senior technical seat for cloud security posture across AWS and GCP, for the security of our enterprise identity platform, and for the AI-driven automation that lets a team our size defend an estate this large. The role is adversarial and threat driven rather than compliance driven. We want someone who looks at a cloud environment the way an attacker does: who can trace a path from an over-permissioned role or an exposed workload through to real business impact, and who then closes off the whole class of problem instead of the single finding. Detection matters here. Prevention matters more. The goal is that insecure configurations cannot be deployed in the first place. This position can be hired remotely, ideally within the EST/CST timezone. What You'll Do Owning cloud security posture across AWS and GCP - Driving coverage and signal quality, prioritising by exploitability rather than raw severity counts, holding remediation accountability with the teams that own the resources, and reporting posture as a trend over time. Leading cloud IAM and least privilege. Designing and enforcing permission models across accounts and projects: organization level policy and guardrails, permission boundaries, cross-account role design, workload identity federation, and the full lifecycle of non-human identities, keys, and secrets. Owning the security posture of our enterprise identity platform. Authentication and authorization policy, phishing resistant MFA, privileged access, joiner mover leaver enforcement, and the identity signals that reveal account compromise or insider risk. Hunting and eliminating cloud attack paths. Reasoning about chained privilege escalation, lateral movement between accounts and workloads, and data exposure, then removing the conditions that make those chains possible. Building preventative guardrails. Pushing controls into infrastructure as code modules, admission control, CI checks, and organization policy so that misconfigurations fail before deployment rather than getting caught afterwards. Building AI and agentic automation for security work. Using LLMs and agents to automate posture remediation, access reviews, cloud evidence gathering, and investigation enrichment. Turning repeatable expert judgment into tooling the whole team can run. Securing Snyk's AI adoption. Establishing the controls for internal AI and agent use: permissions and blast radius for autonomous agents, tool and MCP server trust, third party AI risk review, and the identity and data boundaries AI systems operate within. Securing the cloud infrastructure behind Snyk's AI capabilities. IAM, network segmentation, and data controls for the accounts, model workloads, and pipelines that power our AI features. Strengthening cloud detection and response. Making sure cloud control plane and workload telemetry produces detections that fire on real attacker behaviour, and acting as the cloud subject matter expert during incidents. Defending the edge. WAF and DDoS posture, plus cloud deception coverage that catches an intruder early. Partnering across teams. Working with Platform and Infrastructure Engineering, Product Security, and Compliance to land controls through influence rather than mandate. This includes supporting the cloud controls in our public sector environment, which is a smaller part of the role. Raising the team's cloud ceiling. Mentoring engineers, acting as an escalation point for complex cloud investigations, and taking part in the EntSec on-call rotation. What You'll Need 8+ years in security engineering, including at least 4 focused specifically on securing cloud environments at production scale. Expert level AWS security and strong working knowledge of GCP. You can reason about IAM policy evaluation, organization level guardrails, network and VPC design, key management and encryption, and logging architecture without reaching for the documentation. Deep, hands-on cloud IAM expertise. Designing least privilege models across multi-account and multi-project estates, right-sizing over-permissioned roles without breaking production, and managing non-human identities, workload identity federation, and secrets at scale. An attacker's understanding of cloud. You know how cloud environments actually get compromised (credential and token abuse, IAM privilege escalation chains, metadata and workload identity abuse, exposed storage and services, CI/CD and supply chain paths) and you design controls against those paths rather than against a checklist. Real ownership of an enterprise CSPM or CNAPP platform. Onboarding accounts, tuning signal to noise, building remediation workflows, and holding the line on posture metrics over time. Infrastructure as code and genuine coding ability. Terraform, Python or Go. Kubernetes security in the cloud. RBAC, service accounts and token handling, admission control, workload identity, network policy, and container runtime posture. Practical experience applying AI to engineering work. You have built something real with LLM APIs or agent frameworks, and you understand AI specific risk (prompt injection, over-permissioned agents and tools, untrusted tool and MCP servers, data leakage) well enough to design controls for it. Enterprise identity platform security. Hands-on with a major IdP: policy design, federation, phishing resistant authentication, privileged access, and access review. Cloud detection fundamentals. Cloud provider audit logs and native threat detection services, what good cloud detection logic looks like, and how cloud telemetry lands and gets queried in a SIEM. Strong written communication and stakeholder influence. Bachelor's degree in computer science, information security, or information technology, or equivalent practical experience. We'd Be Lucky If You Have worked in the DevSecOps, cloud security, or AI industry, or have defended a security product company. Have built agentic security tooling, MCP servers, or internal AI platforms, and have well formed opinions about where they should and should not be trusted. Have done cloud incident response or cloud threat hunting on a real intrusion. Have contributed to open source cloud security tooling, or published research on cloud attack techniques. Have led a cloud migration or a multi-cloud consolidation and lived with the security consequences. Have worked in a FedRAMP, NIST 800-53, or similar regulated cloud environment. Hold relevant security certifications. None are required, but they are welcomed. Examples include: CISSP (Certified Information Systems Security Professional) CCSP (Certified Cloud Security Professional) SANS / GIAC: GPCS (Public Cloud Security), GCLD (Cloud Security Essentials), GCSA (Cloud Security Automation), GCFR (Cloud Forensics Responder), GDSA (Defensible Security Architecture), GCPN (Cloud Penetration Tester) AWS Certified Security Specialty Google Professional Cloud Security Engineer Annual Base Salary Range: $170,000 - $205,000 + bonus. We care deeply about the warm, inclusive environment we've created and we value diversity – we welcome applications from those typically underrepresented in tech. If you like the sound of this role but are not totally sure whether you're the right person, do apply anyway! Benefits & Programs Prioritize health, wellness, financial security, and life balance with programs tailored to your location and role. Flexible working hours, work-from home allowances, in-office perks, and time off for learning and self development Generous vacation and wellness time off, country-specific holidays, and 100% paid parental leave for all caregivers Health benefits, employee assistance plans, and annual wellness allowance Country-specific life insurance, disability benefits, and retirement/pension programs, plus mobile phone and education allowances Snyk
$166k - $253k
...ABOUT THE JOB We're seeking a Security Software Engineer to develop novel security tooling for securing embedded Linux systems and Android devices. The ideal candidate can develop, test, and debug an endpoint detection and response agent with mission critical security...SuggestedFull timeWork experience placementImmediate start- ...Purple Drive Network Security Engineer Share Contractual Boston, MA Overview: Key Responsibilities: Design, implement, and manage secure network infrastructures to support business operations. Configure, deploy, and maintain Palo Alto, Cisco ASA, and...Suggested
- ...Network Security Engineer Anywhere Type: Consulting Category: Development Industry: Other Workplace Type: Remote Standard Hours: Open Reference ID: JN -092026-108525 Date Posted: 09/08/2026 Shortcut: Description Recommended Jobs...SuggestedHourly payLocal areaRemote workWeekend workAfternoon shift
$216k - $324k
...Senior Staff Engineer – Customer AgentAre you looking for one of the most impactful AI-native leadership roles in Boston? Join us at Klaviyo... ...Klaviyo includes responsible use of AI (including privacy, security, bias awareness, and human-in-the-loop). We provide...SuggestedWork at office- ...Staff Engineer, Coherent PIC DesignHyperLight is at the forefront of the commercialization of thin-film lithium niobate (TFLN) integrated photonics - a material and process technology that is enabling high-performance, scalable optical components across AI/datacom infrastructure...Suggested
- ...Staff Engineer – Full StackLocation: Greater Boston (Hybrid)Synquery is redefining how expert insights are accessed and applied. Backed by... ...Systems: Design, implement, and maintain robust, scalable, and secure software solutions.Contribute to the Architecture: Contribute...Flexible hours
- ...Sr Staff Engineer, SoC RTL DesignToronto, Ontario, CanadaTenstorrent is leading the industry on cutting-edge AI technology, revolutionizing performance expectations, ease of use, and cost efficiency. With AI redefining the computing paradigm, solutions must evolve to...
$227.5k - $324.99k
...building on the momentum of Discovery Mode to help artists and their teams find new listeners when it matters most. As a Staff Machine Learning Engineer, you’ll help shape the Machine Learning technical strategy for this high-impact area, partnering across engineering,...Remote jobFull timeFlexible hours$174.3k - $235.7k
Overview As the Associate Director (Staff Engineer) for Cyber Defense Platforms, you will own the defense technology stack end-to-end: SIEM, SOAR, EDR, DLP, email security, and anti-phishing platforms, along with the detection content, automation, and tooling that make...Full timeTemporary workLocal areaFlexible hours- ...techniques and effectively communicate these with the broader team. Requirements Required Qualification • MS or PhD in relevant engineering or scientific discipline, such as Physics, Optics, Electrical Engineering, Biomedical Engineering, etc. • Hands-on experience...Work at officeRemote workFlexible hours
- ...Responsibilities Define cloud security standards, guardrails, and reference architectures for Infrastructure, SRE, and Product Engineering. Set the roadmap for high-impact cloud security work and lead cross-functional initiatives from scoping through delivery....Full timeWork at officeFlexible hours
- Kforce's is partnering with a highly respected global investment organization in Boston, MA that is seeking a hands-on Senior Security Engineer to join a small, high-impact engineering team focused on building and deploying enterprise security solutions across cloud, identity...Full time
$121k - $226k
...operational excellence and automation with a human touch, we'd love to meet you. As we continue to grow, we're looking for a Sr. AI Security Engineer. Hi Marley is building an AI-native operating model: personal agents, team agents, MCP connectors, and AI deeply integrated...Work at officeFlexible hours3 days per week$99k - $120k
...actors do? If you’re a natural tinkerer who loves attacking systems to make them unshakeable, this role is built for you. As a Security Engineer II on our Active Operational Offensive track , you’ll sit at the heart of Flywire’s security defenses under the guidance of...Full timeLocal areaImmediate start- Liquid AI in Boston, MA is seeking a Member Of Technical Staff, Infrastructure to drive the inference stack from research to production. You will design benchmark suites, port models across runtimes, and verify correctness end-to-end with external partners. The role emphasizes...
$149k - $235k
...spanning AWS, GCP, and self-managed Kubernetes, backed by self-managed data stores such as MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior individual contributor and technical leader for cloud security....Full timeWork at officeFlexible hours- Senior Security Engineer Location: Boston, MA Type: Hybrid 3 days onsite required Contract: 6+ months with extensions Roles and Responsibilities: 5+ years of experience across security engineering, software engineering, or data engineering Strong programming skills in languages...Contract work
- ...deployment experience, strong troubleshooting skills, CLI proficiency, security mindset, ability to solve complex problems, willingness to... .... Years of experience are less important than demonstrated engineering capability. Candidates transitioning from analyst to engineer...
- ...aligned customer programs but with the intent that successful efforts will grow into larger, multi-year programs. As a Staff Engineer, you will lead the technical delivery of complex autonomy capabilities and demonstrate the ability to operate in significantly...Full timeTemporary workPart timeWork experience placementWork at officeWorldwide
$150k - $190k
...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Our prevention-first approach safeguards... ...What you bring to the table ~5+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...Temporary workWorldwide$192k - $230k
...Job Summary Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as... ...Snyk's Product Security team works consultatively with the engineering teams that build and run our cloud platform: we identify the security...Work at officeWork from homeFlexible hoursEarly shift- ...invasive surgery, intended to visualize the invisible to facilitate better surgical decisions and outcomes. As a Senior or Staff System Engineer, you will own system-level requirements, architecture, and integration across the hardware and software that make up the platform...Flexible hours
- ...worldwide. For more information, visit Follow Shield AI on LinkedIn, X, Instagram, and YouTube. Job Description: This staff engineer for mission systems will serve as a senior technical leader responsible for the end-to-end engineering of mission systems on advanced...Full timeTemporary workPart timeWorldwide
$126k - $204.5k
...OFFICE 3 DAYS PER WEEK REQUIREMENT We are seeking a Senior Staff Software Engineer to advance the architectural evolution and technical... ...scale, optimizing cycle times, and establishing resilient security and operational patterns. What You'll Do Drive End-to...Full timeWork at office3 days per week$168.75k - $270k
...Principal Security Operations EngineerJoin Axon and be a force for good. At Axon, we're on a mission to protect life. We're explorers,... ...where you matter.Your impact: As a Principal Security Operations Engineer, you will play a key role in building secure, reliable, and...Work experience placementWork at office$168k - $225k
...downstream Participate in code reviews and mentoring sessions with senior team members Develop a culture of product focused engineering, research, and development What we're looking for: ~ Bachelor's required, Masters or PhD degree preferred in Robotics,...$180k - $215k
...members to perform at a higher level through a deeper understanding of their bodies and daily lives. WHOOP is hiring a Staff Hardware Test Engineer (Manufacturing) to lead manufacturing test strategy and deliver scalable test solutions that ensure every WHOOP device...Full timeWork at officeRelocation- ...classifying, tracking, and understanding various attributes of surrounding objects—all in real-time and with exceptional accuracy. As an engineer in the Scene Understanding team, you will develop advanced Vision-Language-Action (VLA) models that perceive our vehicle's...Temporary workRelocation package
- ...classification, and high-level scene understanding, and you could work on any (or all!) of these components. As a Senior Staff ML Engineer, you will lead the development of machine learning algorithms that can range in influence from onboard autonomy to offboard...Temporary workImmediate startRelocation package
- ...infrastructure solutions for product needs. Document security processes and identify opportunities for... ...4+ years of cloud infrastructure and/or security engineering experience for the senior level, 6+ years for staff, or 8+ years for principal. ~ Deep hands-on expertise...Permanent employmentFull timeWork at officeHome officeRelocation packageFlexible hours2 days per week1 day per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer. Be the first to apply!
- engineering aide Boston, MA
- technology administrator Boston, MA
- senior staff systems engineer Boston, MA
- senior staff engineer Boston, MA
- staff engineer Boston, MA
- assistant engineer Boston, MA
- software engineer staff Boston, MA
- security engineering manager Boston, MA
- physical security engineer Boston, MA
- senior security operations engineer Boston, MA





