Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Security Engineer

$170k - $205k
Full-time

Snyk

Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how software is built. Our AI-native Developer Security Platform integrates seamlessly into development and security workflows, making it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers and cloud. Our mission is to empower every developer to innovate securely in the AI era — boosting productivity while reducing business risk. We’re not your average security company - we build Snyk on One Team, Care Deeply, Customer Centric, and Forward Thinking. It’s how we stay driven, supportive, and always one step ahead as AI reshapes our world. Why this role? We are hiring a Staff Security Engineer to own cloud and identity security for Snyk's own multi-cloud estate. This is the senior technical seat for cloud security posture across AWS and GCP, for the security of our enterprise identity platform, and for the AI-driven automation that lets a team our size defend an estate this large. The role is adversarial and threat driven rather than compliance driven. We want someone who looks at a cloud environment the way an attacker does: who can trace a path from an over-permissioned role or an exposed workload through to real business impact, and who then closes off the whole class of problem instead of the single finding. Detection matters here. Prevention matters more. The goal is that insecure configurations cannot be deployed in the first place. This position can be hired remotely, ideally within the EST/CST timezone. What you'll do: Owning cloud security posture across AWS and GCP - Driving coverage and signal quality, prioritising by exploitability rather than raw severity counts, holding remediation accountability with the teams that own the resources, and reporting posture as a trend over time. Leading cloud IAM and least privilege. Designing and enforcing permission models across accounts and projects: organization level policy and guardrails, permission boundaries, cross-account role design, workload identity federation, and the full lifecycle of non-human identities, keys, and secrets. Owning the security posture of our enterprise identity platform. Authentication and authorization policy, phishing resistant MFA, privileged access, joiner mover leaver enforcement, and the identity signals that reveal account compromise or insider risk. Hunting and eliminating cloud attack paths. Reasoning about chained privilege escalation, lateral movement between accounts and workloads, and data exposure, then removing the conditions that make those chains possible. Building preventative guardrails. Pushing controls into infrastructure as code modules, admission control, CI checks, and organization policy so that misconfigurations fail before deployment rather than getting caught afterwards. Building AI and agentic automation for security work. Using LLMs and agents to automate posture remediation, access reviews, cloud evidence gathering, and investigation enrichment. Turning repeatable expert judgment into tooling the whole team can run. Securing Snyk's AI adoption. Establishing the controls for internal AI and agent use: permissions and blast radius for autonomous agents, tool and MCP server trust, third party AI risk review, and the identity and data boundaries AI systems operate within. Securing the cloud infrastructure behind Snyk's AI capabilities. IAM, network segmentation, and data controls for the accounts, model workloads, and pipelines that power our AI features. Strengthening cloud detection and response. Making sure cloud control plane and workload telemetry produces detections that fire on real attacker behaviour, and acting as the cloud subject matter expert during incidents. Defending the edge. WAF and DDoS posture, plus cloud deception coverage that catches an intruder early. Partnering across teams. Working with Platform and Infrastructure Engineering, Product Security, and Compliance to land controls through influence rather than mandate. This includes supporting the cloud controls in our public sector environment, which is a smaller part of the role. Raising the team's cloud ceiling. Mentoring engineers, acting as an escalation point for complex cloud investigations, and taking part in the EntSec on-call rotation. What You'll Need 8+ years in security engineering, including at least 4 focused specifically on securing cloud environments at production scale. Expert level AWS security and strong working knowledge of GCP. You can reason about IAM policy evaluation, organization level guardrails, network and VPC design, key management and encryption, and logging architecture without reaching for the documentation. Deep, hands-on cloud IAM expertise. Designing least privilege models across multi-account and multi-project estates, right-sizing over-permissioned roles without breaking production, and managing non-human identities, workload identity federation, and secrets at scale. An attacker's understanding of cloud. You know how cloud environments actually get compromised (credential and token abuse, IAM privilege escalation chains, metadata and workload identity abuse, exposed storage and services, CI/CD and supply chain paths) and you design controls against those paths rather than against a checklist. Real ownership of an enterprise CSPM or CNAPP platform. Onboarding accounts, tuning signal to noise, building remediation workflows, and holding the line on posture metrics over time. Infrastructure as code and genuine coding ability. Terraform, Python or Go. Kubernetes security in the cloud. RBAC, service accounts and token handling, admission control, workload identity, network policy, and container runtime posture. Practical experience applying AI to engineering work. You have built something real with LLM APIs or agent frameworks, and you understand AI specific risk (prompt injection, over-permissioned agents and tools, untrusted tool and MCP servers, data leakage) well enough to design controls for it. Enterprise identity platform security. Hands-on with a major IdP: policy design, federation, phishing resistant authentication, privileged access, and access review. Cloud detection fundamentals. Cloud provider audit logs and native threat detection services, what good cloud detection logic looks like, and how cloud telemetry lands and gets queried in a SIEM. Strong written communication and stakeholder influence. Bachelor's degree in computer science, information security, or information technology, or equivalent practical experience. We'd be Lucky if You Have worked in the DevSecOps, cloud security, or AI industry, or have defended a security product company. Have built agentic security tooling, MCP servers, or internal AI platforms, and have well formed opinions about where they should and should not be trusted. Have done cloud incident response or cloud threat hunting on a real intrusion. Have contributed to open source cloud security tooling, or published research on cloud attack techniques. Have led a cloud migration or a multi-cloud consolidation and lived with the security consequences. Have worked in a FedRAMP, NIST 800-53, or similar regulated cloud environment. Hold relevant security certifications. None are required, but they are welcomed. Examples include: CISSP (Certified Information Systems Security Professional) CCSP (Certified Cloud Security Professional) SANS / GIAC: GPCS (Public Cloud Security), GCLD (Cloud Security Essentials), GCSA (Cloud Security Automation), GCFR (Cloud Forensics Responder), GDSA (Defensible Security Architecture), GCPN (Cloud Penetration Tester) AWS Certified Security Specialty Google Professional Cloud Security Engineer Annual Base Salary Range: $170,000 - $205,000 + bonus.

#LI-TF1

We care deeply about the warm, inclusive environment we’ve created and we value diversity – we welcome applications from those typically underrepresented in tech. If you like the sound of this role but are not totally sure whether you’re the right person, do apply anyway! About Snyk Snyk is committed to creating an inclusive and engaging environment where our employees can thrive as we rally behind our common mission to make the digital world a safer place. From Snyk employee resource groups, to global benefits that help our employees prioritize their health, wellness, financial security, and a work/life blend, we aim to support our employees along their entire journeys here at Snyk. Benefits & Programs Prioritize health, wellness, financial security, and life balance with programs tailored to your location and role. Flexible working hours, work-from home allowances, in-office perks, and time off for learning and self development Generous vacation and wellness time off, country-specific holidays, and 100% paid parental leave for all caregivers Health benefits, employee assistance plans, and annual wellness allowance Country-specific life insurance, disability benefits, and retirement/pension programs, plus mobile phone and education allowances

Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Staff Security Engineer in Texas vacancy
  • Austin, TXTechnology - Security /RemoteThe Staff Security Engineer will be responsible for designing, implementing, and maintaining security identity services that support our business. You will understand data and automation are important ingredients to our mission and... 
    Suggested
    Temporary work
    Remote work
    Flexible hours

    Aledade

    Austin, TX
    1 hour ago
  •  ...over activity. We don’t just ship features; we solve hard problems to help creatives do their best work.As our first Principal Security Engineer, you will own the security posture for the entire organization—from the cloud to the colo, and from the training cluster to... 
    Suggested
    Full time
    Work at office
    Relocation

    Topaz Labs

    Dallas, TX
    4 days ago
  • Job Description:The Security Research and Response team in Arm's Architecture and Technology Group is seeking a highly skilled SoC Offensive Security Staff Engineer to apply an attacker's mindset to Arm's next-generation solutions, identifying design and integration-level... 
    Suggested
    Work at office
    Local area

    ARM

    Austin, TX
    1 day ago
  • $262k - $364k

     ...next wave of AI-driven attacks.Lead the development of unified security detection platforms and operational standards, driving...  ...adoption of automated detection and response tools across all Cloud engineering teams.Pioneer and integrate advanced Artificial Intelligence (... 
    Suggested

    Google

    Sunnyvale, TX
    3 days ago
  • $168.56k - $231.77k

     ...We're looking for a Staff Security Engineer to join Procore's Security Engineering team as a foundational technical leader. In this role, you won't just be implementing security controls-you will be designing the next generation of autonomous defense. Your mission... 
    Suggested
    Contract work
    Work at office
    Local area
    Shift work

    ProCore CPA

    Austin, TX
    5 days ago
  • $176k - $257k

     ...functional teams to achieve significant organizational impact.Develop security framework, policies, standards and baselines for various...  ...Minimum qualifications:Bachelor's degree in Computer Science, Engineering, a related field, or equivalent practical experience.10 years... 
    Worldwide

    Google

    Austin, TX
    5 days ago
  • IMPACT Impact As a Staff Engineer on our Application Security team, you will be instrumental in leading and driving secure practices across Shipt. You’ll be responsible for development practices across our engineering organization and building software systems... 
    Full time
    Work at office
    1 day per week

    Summit Health

    Texas
    19 hours ago
  • $174.2k - $293.7k

     ...Staff Product Security Engineer Overview SailPoint's Cybersecurity organization is seeking a Staff Product Security Engineer with a passion for cybersecurity and protecting the organization. The ideal candidate combines strong application security... 
    Temporary work
    Remote work
    Flexible hours
    Shift work

    SailPoint Technologies Holdings, Inc.

    Austin, TX
    5 days ago
  • $116.03k - $140k

     ...Staff Information Security Engineer Segra is searching for a qualified and experienced Staff Information Security Engineer to join us in a full-time capacity. Location Requirement: The work arrangement for this role is a hybrid position, requiring a minimum of... 
    Full time
    Work at office
    Immediate start
    Remote work
    Flexible hours
    2 days per week

    Segra

    Waco, TX
    2 days ago
  •  ...transitioning service members with strong cyber, software, or security engineering backgrounds to join our Digital Information Security...  ...company.What You’ll Work On During SkillBridgeAs a SkillBridge Staff Security Engineer, you will contribute directly to Equinix’s... 
    Full time
    Work at office

    Equinix

    Dallas, TX
    1 day ago
  • $177k - $265.6k

     ...trusted provider of mission-enabling solutions for global security. Our Engineering and Sciences (E&S) organization pushes the boundaries of innovation...  ...engineering review boardsBasic Qualifications for a Staff Cyber Systems EngineerBachelor’s degree with 12 years, master... 
    Full time
    Relocation
    Shift work

    Northrop Grumman

    San Antonio, TX
    2 days ago
  • $144.9k - $217.3k

     ...trusted provider of mission-enabling solutions for global security. Our Engineering and Sciences (E&S) organization pushes the boundaries of innovation...  .... Work location will be on-site.In this role the Sr. Staff Cyber Systems Engineer willLead cyber systems engineering... 
    Full time
    Work at office
    Relocation
    Shift work

    Northrop Grumman

    San Antonio, TX
    1 day ago
  • $127k - $249k

    We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security controls and services within MongoDB Atlas multi-cloud infrastructure.The team sits within the Site Reliability Engineering... 
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours

    MongoDB

    Austin, TX
    4 days ago
  • $189k - $303k

     ...get crucial goods where they need to go, and make mobility more efficient and accessible for all. We're searching for a Staff Security Engineer to join our Enterprise Security Engineering team, reporting to the Technical Lead Manager of Security Engineering.... 
    Full time
    Work at office
    Local area
    3 days per week
    Early shift

    Aurora

    Texas
    1 day ago
  •  ...solutions that enhance maritime operations through autonomous and intelligent platforms.Security at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer for Application Security to empower our teams to ship fast without trading away safety... 
    Permanent employment

    Saronic Technologies

    Austin, TX
    1 day ago
  • Position: Senior Security Engineer - PKI & Detection, Aircraft SecurityLocation: Fort Worth Texas (Hybrid - onsite Tuesday through Thursday; remote Monday and Friday)Duration: ContractJob ID: 178660Job Overview:We are seeking a Senior Security Engineer to support aircraft... 
    Full time
    Remote work
    Monday to Friday

    Pinnacle Group

    Fort Worth, TX
    1 day ago
  •  ...with over 20% of the world’s crypto assets secured through our Ledger devices. With our...  ...through manually—and enriches them, so our engineers can focus on what matters most and resolve...  ...investigations. What you’ll be doing: As a Staff Security Operations Engineer , you are... 
    Remote job
    Full time

    Ledger

    Paris, TX
    15 hours ago
  • $183k - $247.6k

     ...achieved through the work of our dedicated security teams. Our attack surface spans over...  ...appropriate technologies while following security engineering best practices. You are also expected to...  ...with other employees, supervisors, and staff; adhere to standards of excellence... 
    Internship
    Local area
    Flexible hours

    Amazon

    Austin, TX
    3 days ago
  • $128.9k - $180k

     ...passionate team at your back. If Braze sounds like a place where you can thrive, we can’t wait to meet you.WHAT YOU'LL DOAs a Senior Security Engineer on the Enterprise Security team, you'll protect Braze employees, their assets, and work locations using various tools and... 
    Work at office
    Local area

    Braze

    Austin, TX
    2 days ago
  • $178.4k - $226.7k

    The Senior Security Engineer is a senior individual contributor responsible for independently driving security initiatives across multiple services and teams. This role requires deep technical expertise in application security, threat modeling, and secure system design,... 
    Internship
    Flexible hours

    Amazon

    Austin, TX
    1 hour ago
  • $136k - $184k

    The AWS Hardware Supply Chain Security (HSCS) Team is looking for a Security Engineer to help guide our global hardware supplier and manufacturing security program. You will work with a team of professionals around the world to help assess and mitigate risks in partner... 
    Internship
    Flexible hours
    Shift work

    Amazon

    Austin, TX
    5 days ago
  • $159.3k - $202.4k

     ...maintaining their trust. To earn that trust in an environment as vast and varied as Amazon's requires the applied skills of smart security engineers and experienced, innovative security leaders willing to tackle challenges at dizzying scales.We are seeking Security... 
    Flexible hours

    Amazon

    Austin, TX
    5 days ago
  • $81k - $155k

     ...show up, everywhere & always. Want in? Join the #VTeamLife.What you’ll be doing...The GN&T Network Security team is looking for a highly motivated and experienced Engineer to join the Network Security Defense team. The Defense teams are responsible for owning the... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Work from home
    Flexible hours
    Shift work
    3 days per week

    Verizon

    Irving, TX
    3 days ago
  • $159.3k - $202.4k

    Amazon Healthcare Security's (HealthSec) Security Operations team is hiring a Security Engineer to be the first line of defense to our most critical customer data. You will be a guardian of healthcare information and work with Amazon Healthcare products to secure customer... 
    Flexible hours

    Amazon

    Austin, TX
    4 days ago
  • $100k - $120k

     ...manufacturing, turning abstract ideas into realities that transform the world for good. Your impact The Endpoint Security & Exposure Management Engineer is responsible for the design, implementation, administration, and continuous improvement of endpoint security controls... 
    Full time

    Jacobs

    Dallas, TX
    2 days ago
  • $159.3k - $202.4k

    Cloud security is our highest priority at AWS. As an AWS customer, you benefit from an environment built to meet the requirements of the...  ...at massive scale.We are looking for an experienced security engineer with networking and hardware experience to join the AWS team.The... 
    Remote work
    Flexible hours

    Amazon

    Austin, TX
    3 days ago
  • Title:Associate Security Engineer, Identity SecurityKBR is seeking an Associate Security Engineer to join our Identity Security Services team within a global cybersecurity organization supporting complex, highly regulated enterprise environments. This hands-on role provides... 
    Permanent employment
    Full time
    Local area
    Remote work

    KBR

    Houston, TX
    6 days ago
  •  ...building confidence through expert guidance. We are seeking a Staff DevOps Engineer to join our CI/CD Platform team within our growing...  ...operations, and improving the developer experience through secure, resilient, self-service platform tooling. You will help... 
    Work at office
    Local area
    Immediate start
    Flexible hours

    Realtor.com

    Austin, TX
    13 days ago
  •  ...Description: Shield AI is seeking an exceptional Electrical Engineer to join the team in building our next-generation autonomous aircraft...  ...with Altium or equivalent Ability to obtain a S//SAR level security clearance desired. #LI-JM2 #LD Full-time regular employee... 
    Full time
    Temporary work
    Part time
    Worldwide

    Shield AI

    Dallas, TX
    22 days ago
  •  ...Required qualifications: Bachelor’s degree in electrical engineering; or equivalent work experience  You have 8+ years of industry...  ...and aircraft reliability Ability to obtain a S//SAR level security clearance desired. #LI-DM2 #LE Full-time regular employee... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Worldwide

    Shield AI

    Dallas, TX
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Security Engineer. Be the first to apply!