Post job

Security engineer jobs in San Rafael, CA

- 730 jobs
All
Security Engineer
Security System Engineer
Hacker
Information Security Analyst
Senior Security Engineer
Systems Engineer
Information Security Manager
SAP Security Consultant
Securities Research Analyst
Senior Security Analyst
  • MEP Systems Engineer

    Samara 3.4company rating

    Security engineer job in Redwood City, CA

    Ready to play a key role in building the future of living? Join Samara in tackling California's housing shortage and enabling people to attain sustainable housing without compromising design or quality. Our flagship product, Backyard, is a fully turnkey, premium accessory dwelling unit (ADU) designed for homeowners and real estate developers. As we expand our offerings and scale our in-house development initiatives, we're at a pivotal moment, redefining homeownership through high-quality, attainable infill housing. Backed by top-tier investors, including Airbnb, Thrive Capital, and 8VC, Samara is positioned for significant growth and market impact. To support our next phase of growth, we're hiring product-focused engineers to advance and scale the technical foundation of our modular system. These roles go beyond traditional design work-they refine system standards, improve factory repeatability, and ensure our units are code-compliant, manufacturable, and built to the highest standards of quality and performance. The MEP Systems Engineer will be responsible for the detailed design and implementation of mechanical, electrical, plumbing, and PV systems tailored for modular construction building systems. This role requires a deep understanding of MEP systems combined with practical experience in modular construction. You will collaborate closely with leadership, crossfunctional design and engineering teams to integrate all technical and user experience requirements into our designs to ensure optimal functionality, sustainability, and compliance with all regulations. What You'll Do Design and develop integrated MEP systems for our new and existing designs including solar energy systems, including PV and ESS, optimized for prefabricated modular construction Ensure that solar and energy storage designs align with overall MEP system functionality and building energy requirements Lead the creation of comprehensive design documents, schematics, component material selections and system layouts, preferably using CAD and BIM software Provide technical leadership during the installation and commissioning phases to ensure systems meet design specifications and performance standards Conduct system testing and validation to ensure functionality, efficiency, and safety of both MEP and PV installations Collaborate closely with installation teams to facilitate seamless and efficient factory and onsite implementation of design Engage in research and application of the latest technologies and practices in renewable energy and modular construction Work with program managers and other engineering disciplines to ensure holistic integration of all systems within Samara modular units What We're Looking For Modular construction experience in factory builds, multi-mod, stackable and/or other hands on related experience. Licensed Electrician or Mechanical Contractor -and/or- Bachelor's degree in Mechanical, Electrical, or Energy Systems Engineering, or a related field Professional Engineering (PE) license preferred Minimum of 7 years of experience in one of the following: Mechanical, Electrical, Solar and/or Plumbing System design Comprehensive knowledge of building codes, safety regulations, and sustainability practices relevant to MEP and renewable energy systems Proficiency in design software such as Onshape, Revit, and/or other BIM methodologies preferred Excellent problem-solving skills and the ability to adapt designs to changing technological and regulatory landscapes Strong communication and leadership skills, capable of driving project decisions and managing complex stakeholder relationships Ability to travel to our factory in Mexico up to 25-40%. What We Offer Salary range of $120-160K and performance-based bonuses. Hybrid work schedule with 3 days each week in our Redwood City office. Snacks and Lunch on in-office days Early stage employee equity. Exceptional health, dental, and vision insurance. 401k eligibility after 6 months. Flexible PTO policy. How to Apply If you're excited to support Samara's mission and have the skills to match, we'd love to hear from you. Please submit your resume and a brief letter of introduction to our team. Let's build something extraordinary-together.
    $120k-160k yearly 3d ago
  • The hardware hacker

    1X Technologies As

    Security engineer job in Palo Alto, CA

    About 1X Since its founding in 2015, 1X has been at the forefront of developing advanced humanoid robots designed for household use. Our mission is to create an abundant supply of labor through safe, intelligent humanoids. We strive for excellence in all we do, solving some of the hardest problems in robotics with the world's most talented individuals. Every part of our robots is designed and produced in house, from motor coils to AI, reflecting our vertically integrated approach. At 1X, you will own real projects, be recognized for your achievements, and be rewarded based on merit. Neo is already an incredible piece of engineering - a humanoid built to be around humans like no other. But this is not where we stop. The NEXT team at 1X pushes the boundaries of core technologies - actuation, drive train, structure, and sensing - building an incredibly capable body for embodied AGI. The team is led by the former creator of Kind Humanoid. The effort is backed up by state of the art materials and prototyping facilities run by top PhD scientists and engineers. Your role - the hardware hacker - will be challenge the state of the art ideate, create concepts, invent solutions turn those into highly functional prototypes relentlessly scrutinize, test, benchmark and falsify your builds iterate fast on your prototypes then do what it takes to integrate your development into product So, your responsibilities will be research state of the art technologies and critically evaluate their application to humanoids for technologies that look promising, rapidly get to first prototype using electronics and mechanics and coding prototyping methods critically evaluate prototypes for performance and build a battery of experimental findings collaborate with engineering, materials and manufacturing teams to develop strategies on how new technologies can be integrated into product Job requirements Required Qualifications PhD or Masters in experimental physics, EE, ME or equivalent 2 years of innovative work in industry or co-founded startup a portfolio of side projects that goes way beyond slapping an arduino on a 3d printed part If I give you 4 motors, a battery, an MCU and an IMU, an aluminum block and access to soldering iron and mill, you can get it to fly within a day You are proficient at: design mid complex PCBs, CAD up parts for 3d printing, operate mill and lathe, debug electronics with scope, write driver software, solve differential equations, run rigorous test analysis against product requirements Nice-to-have Bio mechanics and cognitive science Your hacks are elegant Compensation At 1X your work and results will be rewarded with a total rewards package consisting of a base salary, stock options and benefits. Base salary range is $115,00 to $214,000 + equity. Your actual salary will be based on your knowledge, skills and experience. We believe the best work is done when collaborating and therefore require in-person presence in our office locations. On-site Palo Alto, California, United States $115,000 - $214,000 per year Hardware EngineeringAll done! Your application has been successfully submitted! Other jobs
    $115k-214k yearly 17d ago
  • AI Security Researcher

    Harmonic Security

    Security engineer job in San Francisco, CA

    Job Description Harmonic Security lets teams adopt AI tools safely by protecting sensitive data in real time with minimal effort. It gives enterprises full control and stops leaks so that their teams can innovate confidently. We are led by cybersecurity experts and backed by top investors including N47, Ten Eleven Ventures, and In-Q-Tel. As organizations accelerate their adoption of generative and agentic AI, the security landscape is shifting faster than ever before. Harmonic is building the research, insights, and technology foundations that help enterprises understand and mitigate AI risk-creating an opportunity for this role to shape the emerging field of AI security from the ground up. About the Team Harmonic's Security & TechOps team owns the systems, tooling, and research that keep Harmonic secure, trusted, and moving fast. We work across the entire lifecycle of how the company operates-from how we build software, to how we detect threats, to how we prove our security posture to customers, to how employees use the technology that powers their work. We focus on enabling speed without sacrificing safety. That means creating secure-by-default engineering practices, building automation and detections that reduce manual work, researching emerging AI security risks, running assurance programmes like SOC 2 and ISO 27001, and shaping the internal platforms that help teams work efficiently and securely. We're a hands-on, engineering-first group. We avoid box-ticking and heavy processes in favour of practical solutions, strong automation, and constant improvement. We collaborate closely across functions, operate with high ownership, and support each other through rapid growth. Our shared goal is to build the trust, systems, and capabilities that let Harmonic innovate confidently and at scale. About the Role Harmonic's Security team is breaking new ground in understanding the security risks that come with Generative and Agentic AI. Our mission is to equip security leaders and practitioners with clear, actionable insights on securing AI systems. This work should shape how the industry thinks about AI security, and our findings make their way onto the stages of the world's top security and AI conferences. As we embark on this mission, we're looking for a founding AI Security Researcher to build and lead Harmonic's AI Security Research program from the ground up. You'll define our research agenda, uncover real-world security risks in AI tools and platforms, and help shape how enterprises can adopt AI safely. This role blends hands-on technical research with public thought leadership - from identifying vulnerabilities in emerging AI systems to creating guides, publishing insights, and representing Harmonic at major industry events. You'll also play a key role in informing our product strategy, ensuring Harmonic stays ahead of evolving AI security threats and opportunities. What You'll Do Lead AI Security Research: Design and drive a greenfield research program focused on securing the use of AI systems and tools. Thought Leadership: Develop practitioner guides and actionable content on securing AI technologies (e.g., “How to secure ChatGPT Enterprise”). Public Engagement: Represent Harmonic at industry conferences (e.g., RSA, BlackHat, DEFCON) through talks, panels, and research presentations. Threat Intelligence: Research emerging AI threats and threat actors, assessing their impact on our customers and the broader ecosystem. Internal SME: Partner with Product Security to identify and mitigate AI-related risks across Harmonic's products and infrastructure. What Success Looks Like (6-12 months) Design, build, and operate a dedicated AI security research environment, enabling safe testing of generative and agentic AI systems and reproducible research workflows. Publish and present new, original research at a major security or AI conference (e.g., Black Hat USA, DEF CON, BSides, or equivalent) that offers actionable insights for practitioners and security leaders. Establish a consistent content pipeline, producing high-quality research write-ups, blogs, demos, or practitioner guides that clearly explain risks, attack paths, and defensive strategies. Develop recognisable external presence, securing initial press coverage or analyst mentions that highlight Harmonic's leadership in AI security. Contribute research that shapes internal product direction, informing detection capabilities, product security priorities, or policy decisions based on real-world risk findings. Requirements What You Bring Deep Technical Curiosity: 3-5 years of experience in cybersecurity or applied ML/AI security research, with a strong interest in how AI systems fail and can be attacked. AI Security Expertise: Hands-on experience assessing or red-teaming LLMs, generative AI tools, or AI-integrated SaaS products; familiarity with adversarial ML, model extraction, prompt injection, or data poisoning. Security Research Skills: Proven ability to design and execute independent research- identifying vulnerabilities, publishing technical findings, and proposing mitigations. Communication & Storytelling: Excellent written and verbal skills for translating complex research into accessible content - whether blog posts, practitioner guides, or conference talks. Public Presence: A strong desire to build a profile for presenting or contributing to security or AI conferences (e.g., Black Hat, DEF CON, RSA) You Might Be a Fit If You… You're comfortable figuring things out from scratch and don't wait for detailed instructions to start making progress. You're naturally curious - you like to dig into how AI systems actually work and break, and you keep up with new developments just because you find them interesting. You like solving hard, undefined problems and can turn ideas into experiments or results quickly. You enjoy working with others, sharing what you learn, and helping teammates succeed. You take pride in clear, honest communication - whether explaining a technical finding or giving feedback. You get energy from teaching others, writing, or speaking publicly about your work. You care about impact more than titles or process - you just want to enable other to use AI securely. Benefits Why Join Us This isn't just a job; it's an opportunity to be part of a team that is redefining cybersecurity. We believe today's talent is tomorrow's success, and we're committed to creating an environment where you can do the best work of your life. Competitive pay and meaningful equity with a direct stake in Harmonic's success We are open to this role being based out of our SF or London office. Depending: SF: Comprehensive benefits including health, dental, vision, 401k matching, and flexible time off UK: Comprehensive benefits, pension plan, generous PTO, and flexible hybrid work A small, passionate team that values transparency, creativity, and learning Thoughtful leadership that cares deeply about growth, impact, and people Annual global offsites (past trips include Lisbon and Nashville) The chance to directly shape both our product and our culture as we build a category-defining company Company Values Flourish in the Unknown: We relish being thrown into new, unfamiliar situations that require initiative and rapid decision-making.We orient ourselves quickly and deliver results with minimal guidance. Never Full: We never hesitate to raise our hands and take on challenges to assist those in need. We hunger for opportunities to learn and do more. Perfect Harmony: We have a genuine willingness to assist and support one another to create cohesion and unity. We foster success through collaboration and honest sharing of feedback and ideas, enabling everyone to grow and produce their best work.
    $113k-164k yearly est. 16d ago
  • Ruby on Rails Hacker

    Xdev

    Security engineer job in San Francisco, CA

    You Want: To be part of a small, close-knit team To work for a company that is making the world better and make a lot of money along the way An agile environment (TDD, short release cycles) Mac OS X as your development environment You Have: Worked on at least one high-performance, consumer-facing web site and / or a github account that speaks for itself Skills in all tiers of the web application stack Rewritten code to help yourself sleep better at night You Can: Navigate the command-line in a Linux environment Integrate ruby code with web service APIs Navigate and intimately and completely understand an existing, large code base Skills & Requirements: Write clean and performant code in ruby, Javascript, ERB, and interface with a NoSQL database Contribute to our bottom line through rigorous analytics and A/B testing Aggressively re-factor the codebase to improve its quality About Us: xDev is a network of talented developers and engineers in the bay area. We have a strong focus on web application and mobile development.
    $84k-130k yearly est. 60d+ ago
  • Digital Growth Hacker | Music & Community

    Splash Music 4.2company rating

    Security engineer job in Brisbane, CA

    About Splash Our mission is to bring the joy of music making to everyone, and we've been pioneering the intersection of artificial intelligence and music since 2017. We've made significant strides in connecting artists and fans, particularly through our engaging experiences on Roblox, which have captivated millions of young users. By leveraging the power of AI, we're reshaping the way people interact with and create music. With the support of renowned investors including Amazon's Alexa Fund and Khosla Ventures, Splash is poised for rapid growth. We're actively expanding our diverse team of talented musicians, engineers, and creatives who share our passion for pushing the boundaries of what's possible in music and AI. The RoleWe're looking for a contractor who lives at the intersection of growth marketing and community obsession. This isn't a “post on IG and vibe” kind of gig. It's a go-where-the-fans-are, experiment fast, and drive real results position. As our Digital Growth & Community Hacker, you'll be responsible for fueling discovery, listens, and engagement with Splash's music and creator experiences. Our community doesn't need to be taught how to be creative-they already are. Your job is to get more people discovering the music, sharing their mixes, and falling in love with the experience. From Reddit to Discord, SoundCloud to TikTok, you'll find the places where music lovers and creators hang-and give them a reason to check us out. You're smart about attention. You know how to earn it, buy it, and build it. One day, you might run a scrappy paid campaign; the next, you're DMing a micro-influencer or launching a meme-worthy remix challenge. You're not just tending to our garden-you're out planting new ones. The goal? Wild growth in play counts, driven by community connection, creativity, and cultural fire. We are open to part time contractors with the potential to consider full time contractors for the role. The initial engagement will be 3 months with the opportunity to extend or grow in our team. We're a remote-first team working across time zones, with many teammates based in Australia-so some overlap with Australian business hours is essential. What You'll Do- Drive discovery and listens for Splash mixes and music experiences across platforms- Execute creative, high-impact digital marketing experiments and campaigns- Find and engage in communities across Reddit, Discord, YouTube, TikTok, and more- Partner with creators, influencers, and tastemakers to amplify our presence- Help run or support paid media efforts (e.g. TikTok, Meta) to boost traction- Craft content and engagement loops that draw users in and keep them hooked- Revitalize existing social media platforms and build out new growth paths- Collaborate cross-functionally to plan and execute strategic growth sprints- Set goals, track performance, and apply learnings in real-time- Play an integral role in shaping our brand presence and cultural visibility About You- Deeply fluent in music culture, internet fandom, and creative communities- Proven experience growing digital communities and audiences-especially Gen Z/Gen Alpha- Creative, scrappy, and experimental-you move fast and think outside the box- Not afraid to talk to strangers on the internet; love being where the buzz is- Strong writing chops and meme fluency-you understand voice, timing, and tone- Adept with platforms like TikTok, Discord, YouTube, Reddit, and Instagram- Able to independently ideate, plan, and execute marketing and engagement initiatives- Curious and data-minded-you seek out insights to improve what you're building- Experience in managing digital campaigns, content calendars, and creator partnerships- High accountability and adaptability; thrives in a remote, fast-moving team Nice to Have- Experience in or passion working with digital experiences- Prior work with direct-to-consumer tech, games, or music products- Familiarity with paid digital marketing (Meta Ads, TikTok Ads, etc.)- Experience building or managing youth-centric gaming or music communities What to Expect- Our team is remote-first; you will be working with colleagues on Australian timezone and some degree of overlap with this team is expected.- Work alongside our senior executives, who bring a wealth of knowledge from previous roles at SoundCloud, Spotify, Twitch, and YouTube.- Work within a small, dynamic team backed by leading investors including Amazon's Alexa Fund, Khosla Ventures, BITKRAFT Ventures, and King River Capital.- Be part of a talented group of creatives, musicians, engineers that value initiative and imagination - we also love music and gaming. Diversity, Equity, and InclusionMusic has the incredible ability to bridge divides and bring people together, regardless of their background or identity. Like the industry we work within, diversity, equity, and inclusion are at the heart of everything we do. We are committed to creating an inclusive environment where everyone feels valued, respected, and empowered. We actively seek out and welcome voices from all backgrounds and believe that diverse perspectives fuel our creativity and drive success. Application ProcessPlease provide your application directly by hitting Apply. We receive large numbers of applications, to stand out please address the selection criteria in the application questions. We are not currently working with recruiters on this role. For more info, visit splashmusic.com.PDF preferred
    $50k-78k yearly est. Auto-Apply 60d+ ago
  • Security System Engineer

    Bayside 4.5company rating

    Security engineer job in San Francisco, CA

    Seeking a candidate with the ability to demonstrate expertise in both the practical implementation and the administration of noted tools. The basis of the work will be to backfill daily operations management as well as assess the current state implementation for completeness and currency. The candidate will also be responsible for the identification and execution of implementation improvement efforts that will allow for the transition of such tools to a managed service provider including the documentation of run books, incident response and remediation support, and developing continuity plans. Has demonstrated expertise in one or more of the following tools: Qualys Vulnerability Scanner LogRhythm Tripwire Essential Functions: Manage and maintain key Information Security tools to help mature and improve the overall effectiveness of solutions across the organization to safeguard information systems, intellectual property assets and customer data. Design, implement and support integration of information security solutions including security architectures, firewall analysis, and developing and coordinating security implementation plans to improve monitoring and compliance functions and drive automation and efficiencies. Manage remediation of security issues with technology and business teams to ensure remediation is completed timely and effectively. Analyze existing processes to identify improvement opportunities, recommend solutions and lead implementation. Establish and implement a repeatable process for tracking, reporting and driving remediation of security issues. Assist with the PCI DSS security compliance program including scoping, testing, and remediation activities. Help train associates, contractors, alliance or other third parties on information security policies and -procedures. Provide skill-set knowledge transfer that ensures necessary cross-training of other IT Security team members. Monitors compliance with information security policies and procedures and monitors access control systems to assure appropriate access levels are maintained. Develop, support and manage Security metrics & reporting. Develop, maintain and enforce standardized, repeatable administrative and operational policies, processes and procedures. Serves as enterprise information security consultant, conduct information security risk assessments. Lead computer forensic analysis, cyber-crime investigation, incident emergency response and investigations. Perform other responsibilities and duties as assigned. Additional expertise in the following tools is a plus; Imperva DB Monitoring Ingrian HSM LogRhythm McAfee IDS/IPS McAfee Solid Core NETIQ PGP Desktop, WDE, Netshare PGP Universal Server & KMS Qwest Password Manager RedSeal RSA Authentication Manager RSA Envision Symantec DLP Varonis Data Privilege & DWebsense websense
    $116k-158k yearly est. 60d+ ago
  • Urgent Job Opening for a SAP Security Consultant in San Francisco, CA

    Talented It

    Security engineer job in San Francisco, CA

    Hello, Greetings for the day, We have an urgent job opening for a SAP Security Consultant in San Francisco, CA. Please find the complete below and consultant information details below to the job description. Duration: 5Months+ Job Title: SAP Security Duties: Provides the technical guidance in development of security roles and authorizations to SAP projects and production support for R3, BW, EBP, SMP, PI, AII/OER systems Ensures development and maintenance of SAP roles and authorizations are aligned with enterprise security best practices and corporate standards Delivers and manages overall SAP security standards and designs Works closely with SAP functional and technical teams in the identification and resolution of gaps in the security authentication and authorization processes Provides day-to-day support for GRC 5.3 CUP, FireFighter Works closely with security and technical teams in architecting and implementing Identity and Security best practices in SAP environment; Partners with teams in support of internal and external auditing of SAP environment Performs annual SAP licensing for all the systems onsite Skills: Minimum of 5 years of experience implementing and delivering SAP Security Solutions; Must have strong demonstrated knowledge of SAP Security and experience with GRC Analysis and Administration. Experience in implementing/upgrading/managing SAP GRC Access Controls, Access Risk Analysis and Emergency Access Management a plus; Must have excellent troubleshooting and resolution skills; Strong attention to detail. Strong technical knowledge of SAP Security architecture and role based authorization models; Strong analytical, problem solving and conceptual. Strong oral and written communication skills, with an ability to express complex technical concepts; Strong understanding of data privacy concepts. Strong Security and Risk mitigation mindset.Understanding of process re-engineering, segregation of duties, application security implementation, security auditing techniques Keywords: Education: Bachelor's degree in Computer Science or related field, OR equivalent combination of education and/or experience Skills and Experience: Required Skills: AUDITING MITIGATION PROBLEM SOLVING SAP Security GRC Additional Skills: RE-ENGINEERING RISK ANALYSIS ARCHITECTURE SAP SECURITY SECURITY ARCHITECTURE SECURITY IMPLEMENTATION SOLUTIONS AUTHENTICATION EBP MAINTENANCE R3 Thanks & Regards, Srikanth ************ 800 W, Fifth Avenue, Suite 208A Naperville, IL - 60563 " A Certified MBE & Women's Business Enterprise Alliance (WBEA)" Additional Information All your information will be kept confidential according to EEO guidelines.
    $101k-141k yearly est. 4h ago
  • Distributed Systems Engineer: Secure Sandboxes

    Magic Ai 3.9company rating

    Security engineer job in San Francisco, CA

    Magic's mission is to build safe AGI that accelerates humanity's progress on the world's most important problems. We believe the most promising path to safe AGI lies in automating research and code generation to improve models and solve alignment more reliably than humans can alone. Our approach combines frontier-scale pre-training, domain-specific RL, ultra-long context, and inference-time compute to achieve this goal. About the role As a Software Engineer on the Supercomputing Platforms and Infrastructure team, you will build the next generation systems that power large scale AI research and deployment. You will focus on sandboxed execution environments, distributed systems orchestration, and performance optimized compute workflows. You will work closely with ML and Research teams and infrastructure teams to deliver both high throughput, scale, and strong isolation guarantees in a cluster environment. What you might work on Build highly scalable, highly performant, software that facilitates arbitrary code execution with strong isolation guarantees. Design and build systems that allow our AI models to interface with machines in various modes, interactive terminal, GUI applications, etc. Provision and operate high density compute and storage nodes (NVMe, high IOPS SSDs, high bandwidth networks), and build software that performs efficient load balancing, and resource utilization across them. Instrument and optimize end to end performance including storage IO, network bandwidth, CPU, memory, and endurance constraints. Develop APIs, self service platforms, and automation and tools so researchers and engineers can deploy and monitor workloads at scale. Troubleshoot complex infrastructure issues across OS, drivers, hardware, storage systems (local NVMe, block storage, NFS), networking, namespace isolation, and cloud or hybrid environments. Produce clean, documented code and developer workflows, and collaborate with SRE and security teams to ensure safe, reliable, and self serviceable compute offerings. What we are looking for Strong software engineering background (C, C++, Go, Rust, or similar systems languages). Experience designing or operating sandboxed or isolated execution environments (namespaces, cgroups, container runtime internals), or strong interest in this area. Experience building or operating distributed systems or parallel processing frameworks (scatter aggregate processing, worker pools, multi thread and multi process coordination, shared memory, atomics, merging strategies). Solid understanding of storage and IO subsystems (NVMe, SSD endurance, write amplification), network performance, CPU and memory resource constraints in high performance compute clusters. Comfortable working on low level systems (OS, threading, memory management, synchronization) as well as higher level orchestration or automation. Experience with cloud infrastructure (GCP, AWS, Azure, etc.) including IaC tools such as OpenTofu, Terraform, Pulumi, or CDK is a plus. Intellectual curiosity, strong ownership, and the ability to make tradeoffs in ambiguous environments such as latency versus throughput and isolation versus performance. Nice to haves Prior experience with GPU scheduling, RDMA networking, or bare metal HPC clusters Contributions to open source container runtimes or sandboxing frameworks Experience with kernel internals, device drivers, or SSD and NVMe endurance modeling Familiarity with Rust for systems programming or Go for infrastructure orchestration Why join us You will work at the cutting edge of AI infrastructure including large compute clusters, advanced metrics engines, and next generation sandboxing systems for untrusted workloads. The problems you solve will be foundational, for example how to securely and efficiently run arbitrary research code across thousands of GPUs or high end SSDs. You will join a collaborative and hands-on team where you are building rather than only modeling. Excellent compensation and equity, generous benefits, and high impact. Our culture: Integrity. Words and actions should be aligned Hands-on. At Magic, everyone is building Teamwork. We move as one team, not N individuals Focus. Safely deploy AGI. Everything else is noise Quality. Magic should feel like magic Compensation and benefits (US) Annual salary range: 200,000 USD to 550,000 USD depending on seniority Significant equity component 401(k) with matching, comprehensive health, dental, and vision insurance, unlimited paid time off, visa sponsorship and relocation support Fast paced, mission driven environment focused on safely advancing AGI for humanity
    $114k-163k yearly est. Auto-Apply 35d ago
  • Security Engineer, Operating Systems

    Anthropic

    Security engineer job in San Francisco, CA

    Anthropic's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the Role We're looking for an Operating Systems Security Engineer to harden and secure the OS layer of our infrastructure. You'll be responsible for designing and implementing OS-level security controls, from kernel hardening to runtime protection, ensuring our systems can withstand sophisticated attacks while maintaining the performance required for AI model training. This is a hands-on role where you'll work with cutting-edge hardware and implement novel security solutions for environments that don't exist anywhere else in the world. You'll need to balance extreme security requirements with the operational needs of researchers training models at unprecedented scale. What You'll Do: * Design and implement hardened OS configurations for AI workloads across diverse hardware platforms * Minimize attack surfaces by removing as many unnecessary components as possible from kernelspace and userspace * Develop kernel security policies using SELinux, AppArmor, and custom Linux Security Modules and runtime enforcement mechanisms * Implement and maintain full-disk encryption solutions for diverse storage systems * Build security infrastructure for AI systems, research environments, and production services * Create OS-level attestation and integrity monitoring systems * Apply security patches, develop patches for custom kernel modules, and kernel hardening configurations * Design secure boot processes and trusted execution environments * Work with container teams to ensure proper workload isolation at the kernel level * Design privilege separation and mandatory access control policies * Implement secure update mechanisms for OS components * Build tooling for security configuration management and compliance verification * Serve as a subject matter expert for OS security questions and designs Who You Are: * 5+ years of experience in operating systems security or kernel development * Deep knowledge of Linux internals, including kernel subsystems and security frameworks (SELinux, AppArmor, seccomp, etc.) * Experience with kernel hardening techniques and exploit mitigation * Strong programming skills in C and systems programming languages * Experience with eBPF for security monitoring and enforcement * Understanding of virtualization and containerization security * Track record of identifying and fixing OS-level security vulnerabilities * Experience with security-focused Linux distributions Strong candidates may also have: * Kernel development experience or contributions to Linux kernel * Experience with real-time or embedded operating systems * Knowledge of hardware security features and their OS integration * Experience with secure boot technologies * Experience with confidential computing and memory encryption technologies (SEV, TDX, SGX) * Background in vulnerability research, exploit development, or fuzzing * Experience with formal methods for OS verification * Knowledge of hardware security features and their OS integration (TPM, HSM, secure enclaves) Deadline to apply: None. Applications will be reviewed on a rolling basis. The expected base compensation for this position is below. Our total compensation package for full-time employees includes equity, benefits, and may include incentive compensation. Annual Salary: $300,000-$405,000 USD Logistics Education requirements: We require at least a Bachelor's degree in a related field or equivalent experience. Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team. How we're different We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact - advancing our long-term goals of steerable, trustworthy AI - rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences. Come work with us! Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process
    $111k-161k yearly est. Auto-Apply 60d+ ago
  • Staff Enterprise Security Engineer - Third Party Security

    Linkedin 4.8company rating

    Security engineer job in Sunnyvale, CA

    LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. Our products help people make powerful connections, discover exciting opportunities, build necessary skills, and gain valuable insights every day. We're also committed to providing transformational opportunities for our own employees by investing in their growth. We aspire to create a culture that's built on trust, care, inclusion, and fun - where everyone can succeed. Join us to transform the way the world works. Job Description At LinkedIn, our approach to flexible work is centered on trust and optimized for culture, connection, clarity, and the evolving needs of our business. The work location of this role is hybrid, meaning it will be performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team. This role will be hybrid in LinkedIn's Sunnyvale campus. Qualifications About the team LinkedIn's members entrust us with their information every day and we take their security seriously. Our core value of putting our members first powers all the decisions we make, including how we manage and protect the data of our members and customers. We never stop working to ensure LinkedIn is secure. We follow industry standards and have developed our own best practices to stay ahead of the increasing number of threats facing all Internet services and infrastructure. LinkedIn is looking for a Staff Security Engineer to be an integral part of our Information Security organization. LinkedIn's Third-Party Security team provides security architecture and design services across the organization as we scale our platform to support 700M+ members worldwide. Our vision is to appropriately secure all third-party solutions and services that power the LinkedIn experience and the tooling that enables our engineers. We partner closely with stakeholders across the business to make it easy and efficient for LinkedIn teams to onboard third parties securely, while maintaining the high standards of trust our members expect. We are looking for an engineer who can help LinkedIn continue its journey of innovation and keep us at the forefront as an organization worthy of the trust people place in us. As a third party security engineer, you will own the security risk posture of partner engineering organizations, supplier integrations, and enterprise third-party solutions. You will focus on shifting security engagement to the left, ensuring that third-party technologies, integrations, and enterprise platforms are secure, compliant, and resilient. You will build and maintain strong relationships with partner teams while driving a frictionless engagement model with the Security organization. Responsibilities * Partner with architects, engineers, and site reliability engineers; you will build threat models, design secure systems, and perform security design assessments that highlight risks and actionable mitigations. * Lead third-party and supplier security reviews; you will evaluate high-risk integrations (APIs, SaaS, AI/ML platforms, enterprise third-party solutions, and cloud services) for architecture, data handling, and compliance alignment. * Develop proof-of-concepts (POCs); you will validate security recommendations in the company's tech stack and ensure practicality of adoption. * Assess new and existing SaaS applications and deployments for vulnerabilities and design flaws, and prioritize remediation efforts based on risk. * Communicate risk decisions effectively; you will influence both technical architecture and business decisions. * Drive security initiatives; you will ensure risks within partner organizations and enterprise third-party platforms are tracked, managed, and remediated. * Build security champions; you will identify and coach Security "Champions" within partner teams to scale security knowledge and accountability. * Mentor and develop team members; you will help strengthen both technical expertise and interpersonal influence skills. Additional Information Basic Qualifications * BA/BS Degree in Computer Science, cybersecurity, Information Technology, or related technical discipline, or related practical experience. * 4+ years experience in information security principles such as threat modeling, third party security, security architecture, secure system design, system and network security, big data security, authentication and security protocols, or cryptography * 4+ years experience and in-depth knowledge of enterprise security tools * Experience with security in cloud environments Preferred Qualifications * MS in Computer Science or equivalent * 7+ years of experience in threat modeling, third party security, security architecture, secure system design, system and network security, big data security, authentication and security protocols, and cryptography * 7+ years of experience in data security, network security, CI/CD security, and control plane security * 4+ years of experience in linux deployments * 4+ years of experience with scripting languages such as python * Experience working in organizations securing massively scaled networks and systems * Ability to work across teams and communicate concisely and clearly to partners * You thrive in taking initiative and helping set direction when needed and adapt well to an ever evolving environment Suggest Skills * Security Architecture * Thread Modeling * Third Party Security * Technical Leadership You will Benefit from our Culture We strongly believe in the well-being of our employees and their families. That is why we offer generous health and wellness programs and time away for employees of all levels. LinkedIn is committed to fair and equitable compensation practices. The pay range for this role is $152,000 - $248,000. Actual compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years & depth of experience, certifications and specific office location. This may differ in other locations due to cost of labor considerations. The total compensation package for this position may also include annual performance bonus, stock, benefits and/or other applicable incentive compensation plans. For additional information, visit: ************************************** Equal Opportunity Statement We seek candidates with a wide range of perspectives and backgrounds and we are proud to be an equal opportunity employer. LinkedIn considers qualified applicants without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other legally protected class. LinkedIn is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful. If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at accommodations@linkedin.com and describe the specific accommodation requested for a disability-related limitation. Reasonable accommodations are modifications or adjustments to the application or hiring process that would enable you to fully participate in that process. Examples of reasonable accommodations include but are not limited to: * Documents in alternate formats or read aloud to you * Having interviews in an accessible location * Being accompanied by a service dog * Having a sign language interpreter present for the interview A request for an accommodation will be responded to within three business days. However, non-disability related requests, such as following up on an application, will not receive a response. LinkedIn will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by LinkedIn, or (c) consistent with LinkedIn's legal duty to furnish information. San Francisco Fair Chance Ordinance Pursuant to the San Francisco Fair Chance Ordinance, LinkedIn will consider for employment qualified applicants with arrest and conviction records. Pay Transparency Policy Statement As a federal contractor, LinkedIn follows the Pay Transparency and non-discrimination provisions described at this link: ******************************** Global Data Privacy Notice for Job Candidates Please follow this link to access the document that provides transparency around the way in which LinkedIn handles personal data of employees and job applicants: ********************************************
    $152k-248k yearly 8d ago
  • Senior Security GRC Analyst

    Lambda 4.2company rating

    Security engineer job in San Francisco, CA

    Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers. Lambda's mission is to make compute as ubiquitous as electricity and give everyone the power of superintelligence. One person, one GPU. If you'd like to build the world's best AI cloud, join us. *Note: This position requires presence in our San Francisco or San Jose office location 4 days per week; Lambda's designated work from home day is currently Tuesday. What You'll Do Validate and verify the organization's security controls and practices meet the requirements of ISO 27001, 27701, PCI, SOC 2 and other relevant regulatory requirements to ensure alignment to business objectives Manage IT Risk Register including risk identification, tracking, and prioritization. Assist with and drive remediation of control deficiencies and gaps Provide guidance to Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.) Communicate with technical and non-technical stakeholders and leaders on cybersecurity risk and controls management topics and program-specific reporting Assist with the Customer Trust program which may include managing customer assessments, and security questionnaires Assist control owners with root cause analysis and track risk management action plan progress. Create risk metrics for management regarding information security control maturity, compliance status, risks, performance and findings Assist with the third-party risk management assessment process, ensuring consistent enforcement of information security requirements You Have a minimum of 8 years of experience supporting cybersecurity risk or controls management programs with in-depth knowledge and experience of cybersecurity frameworks including ISO 27001 and 27701, PCI-DSS, SOC, NIST CSF and other regulatory requirements Have experience managing and running audits, certification programs and control assessments. This includes but is not limited to scope planning, defining control procedures based on requirements, policies and standards, control testing, and mapping issues to risks Have experience collaborating closely with engineers, business teams, and security partners, including incident response, red teams, and architects to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations Possess a strong ability to define, drive and execute a program vision, strategy, approach and milestones in alignment with organization priorities and initiatives Nice to Have Experience in the machine learning or computer hardware industry Experience with Security by Design and/or Privacy by Design principles Experience with standard cyber controls frameworks, including CIS Top18, NIST Cyber Security Framework (CSF), NIST 800.53, NIST 800.171, CMMC, Cybersecurity Maturity Model Certification (CMMC), ISO 27001 and 27701, and SOX ITGC control frameworks. Broad knowledge of IT infrastructure and architecture of computer systems as well as exposure to a variety of platforms such as operating systems, networks, databases, and ERP systems Familiarity with using third-party tools such as Audit Board, Whistic, RSA Archer, ServiceNow for third-party risk management Certified Information Systems Auditor (CISA) Certified Information Security Manager (CISM) Certified Information Systems Security Professional (CISSP) Certified in Risk and Information Systems Control (CRISC) Experience in the AI infrastructure, machine learning and/or computer hardware industry Salary Range Information The annual salary range for this position has been set based on market data and other factors. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description. About Lambda Founded in 2012, with 500+ employees, and growing fast Our investors notably include TWG Global, US Innovative Technology Fund (USIT), Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, Gradient Ventures, Mercato Partners, SVB, 1517, and Crescent Cove We have research papers accepted at top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG Our values are publicly available: ************************* We offer generous cash & equity compensation Health, dental, and vision coverage for you and your dependents Wellness and commuter stipends for select roles 401k Plan with 2% company match (USA employees) Flexible paid time off plan that we all actually use A Final Note: You do not need to match all of the listed expectations to apply for this position. We are committed to building a team with a variety of backgrounds, experiences, and skills. Equal Opportunity Employer Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.
    $127k-172k yearly est. Auto-Apply 60d+ ago
  • Information Security Analyst

    Bickham Services Unlimited, LLC

    Security engineer job in Sunnyvale, CA

    Analyzes information security practices to ensure alignment with industry standards and guidelines. Identifies, investigates, and resolves security breaches detected by security solutions. Contributes to the creation and maintenance of security policies, standards, guidelines, and procedures. Leads and delivers staff training on information security and breach prevention. What You Will Do: Staying current on information security trends, news and security standards, especially those related to the healthcare industry Participating in the development of security standards and best practices for the organization Participating in the evaluation, design and implementation of new information security solutions to protect the organization's computer networks from cyber attacks Assessing the efficacy of existing security measures and processes to ensure that these measures and processes meet Health Insurance Portability and Accountability Act (HIPAA) and Federal Information System Controls Audit Manual (FISCAM) security standards and making recommendations for improvement Recommending security enhancements to management and senior ITS staff Analyzing software and systems requirements and providing objective advice on the level of security risks and remediation options Monitoring computer networks for security issues in order to reduce the risk of security incidents Leading investigation of security breaches and other cyber security incidents in collaboration with the Information Security Manager and the infrastructure team Documenting security breaches and assessing the damage caused Collaborating with the infrastructure team to ensure security measures and software to protect systems and information infrastructure, including firewalls and data encryption programs, are up to date Conducting system vulnerability audits and assessments on a proactive basis and collaborating with the infrastructure team to perform tests and uncover network vulnerabilities Managing efforts with vendors on annual security audit, including pen testing Assisting with developing and documenting preventive measures to ensure system security Staying informed of best practices and new developments in the field, analyzing applicability, making related recommendations, and developing written documentation of adopted practices Documenting computer security procedures, and tests Assisting with the development of policies, procedures, standards, and guidelines related to information security Developing information, training materials and presentations to educate the organization about information security management, data security, and prevention of breaches Assisting staff with the installation and utilization of new security products and procedures Conferring with staff regarding issues such as computer data access needs, security violations, and programming changes Monitoring systems and providing frequent training to staff regarding how to detect and avoid phishing attempts Reviewing any violations of security procedures and providing remedial training to staff, as needed Performs other duties as assigned You Will Be Successful If: In-depth knowledge of HIPAA and FISCAM security guidelines. Strong understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts. Proficiency with operating systems, virtualization, and security systems. High proficiency in Windows-based PC systems and Microsoft Office Suite. Working knowledge of penetration testing, patch management, and security frameworks (NIST, ISO 27001, COBIT). Familiarity with project management principles and customer service practices. Awareness of emerging security technologies such as AI, IoT, and blockchain. Strong analytical, problem-solving, and decision-making skills. Clear and concise writing and communication skills, with ability to present technical content to non-technical audiences. Experience creating training materials and leading staff training. Ability to manage multiple priorities, meet deadlines, and adapt to shifting needs. Leadership ability to facilitate meetings, resolve issues, and guide staff. Strong collaboration skills and diplomacy across teams and levels of the organization. Willingness to respond to after-hours information security incidents. What You Will Bring: Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field. 8 years of professional level information technology experience 3 years of experience performing information security functions in a health care environment (a Master?s degree may substitute for two years of the required experience); or an equivalent combination of education and experience may be qualifying Experience working in the health care industry Certification as a Certified Information Systems Security Professional (CISSP) issued by the International Information System Security Certification Consortium (ISC2), Certified Information Security Manager (CISM) issued by the Information Systems Audit and Control Association (ISACA), and/or Certified Ethical Hacker (CEH) issued by the Council of E-commerce Consultants (EC-Council), or equivalent
    $100k-148k yearly est. 12d ago
  • Senior Security Engineer

    Goodleap 4.6company rating

    Security engineer job in San Francisco, CA

    About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America. Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information. The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services. Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response. Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed. While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes. Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. Support or develop components of the security analytics platform. Contribute to investigations, threat hunting, and incident response activities in a supporting role. Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns. Support the security operations team with the vulnerability management lifecycle for products and services under your purview. Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities. Required Skills, Knowledge & Abilities Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences. Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization. Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments. Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus). Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble. Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc. Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases. Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault. Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed. Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas. Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments. Experience engaging with vendors in design partnerships. Experience overseeing vulnerability and threat management at the platform and application levels. Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement. Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution. In addition to the above salary, this role may be eligible for a bonus. Additional Information Regarding Job Duties and s: Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law. If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today! We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
    $123k-156k yearly est. 7d ago
  • Information Security Analyst

    Teledyne 4.0company rating

    Security engineer job in Mountain View, CA

    **Be visionary** Teledyne Technologies Incorporated provides enabling technologies for industrial growth markets that require advanced technology and high reliability. These markets include aerospace and defense, factory automation, air and water quality environmental monitoring, electronics design and development, oceanographic research, deepwater oil and gas exploration and production, medical imaging and pharmaceutical research. We are looking for individuals who thrive on making an impact and want the excitement of being on a team that wins. **Job Description** **Make an impact where security meets innovation.** At Teledyne RF & Microwave, we design and deliver advanced technologies that power aerospace, defense, and communications worldwide. Our team thrives on precision, collaboration, and a commitment to protecting critical systems. If you're passionate about cybersecurity and want to work for a trusted leader in high-tech solutions, this role is for you. **What you'll do** + Maintain the security posture of classified systems in line with approved policies + Verify implementation of security controls and keep documentation current + Manage system accounts and ensure proper authorization procedures + Conduct regular system assessments and report findings to the ISSM + Monitor audit logs and analyze user activity for compliance + Respond to security incidents and oversee recovery processes + Notify ISSM of system changes that impact authorization + Support hardware maintenance, backups, and virus updates + Train employees on internal security policies and assist with spill containment + Participate in configuration control activities when designated **What you need** + Strong problem-solving and organizational skills (required) + Ability to analyze security data and enforce compliance (required) + Excellent communication and teamwork skills (required) + U.S. citizenship and eligibility for security clearance (required) + Bachelor's degree in Information Systems or Security+ certification (required) + Experience with classified systems and security audits (advantage) + Familiarity with DAAPM and ITPSO policies (advantage) + Hands-on technical competence with system administration (advantage) **What we offer** + Competitive pay and comprehensive health benefits + 401(k) with company match and retirement plans + Paid time off and flexible work arrangements + Professional development and training opportunities + Employee wellness programs and assistance resources + A collaborative environment working on mission-critical technology **What happens next** Apply online through Teledyne's careers page. If your qualifications align, our team will contact you for interviews and guide you through the clearance process. _Teledyne is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status._ **Salary Range:** $61,600.00-$82,100.000 **Pay Transparency** The anticipated salary range listed for this role is only an estimate. Actual compensation for successful candidates is carefully determined based on several factors including, but not limited to, location, education/training, work experience, key skills, and type of position. Teledyne and all of our employees are committed to conducting business with the highest ethical standards. We require all employees to comply with all applicable laws, regulations, rules and regulatory orders. Our reputation for honesty, integrity and high ethics is as important to us as our reputation for making innovative sensing solutions. Teledyne is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other characteristic or non-merit based factor made unlawful by federal, state, or local laws. You may not realize it, but Teledyne enables many of the products and services you use every day **.** Teledyne provides enabling technologies to sense, transmit and analyze information for industrial growth markets, including aerospace and defense, factory automation, air and water quality environmental monitoring, electronics design and development, oceanographic research, energy, medical imaging and pharmaceutical research.
    $61.6k-82.1k yearly 60d+ ago
  • Product Security Engineer, Operating System

    1X Technologies As

    Security engineer job in Palo Alto, CA

    Palo Alto, CA (on-site) About 1X We build humanoid robots that work alongside people to solve labor shortages and create abundance. The Role We are seeking a Product Security Engineer with expertise in operating system security to strengthen the foundation of our robotics platform. In this role, you will design and implement security features such as secure boot, trusted execution environments, and system service hardening. Your work will ensure that sensitive operations and data remain protected while enabling developers to follow security best practices. This position is critical to increasing the resilience and trustworthiness of our systems. You Will Develop and maintain secure critical services for Linux systems Implement secure boot chains using fused hardware keys with rollback protection Integrate OP-TEE to safeguard sensitive assets including mTLS certificates and disk encryption keys Harden system services using least-privilege operations, systemd features, namespacing, and syscall filtering Build hardening templates and automation tools to streamline security enforcement for developers Automate security validation processes within CI/CD pipelines Design and enforce device access controls for Linux systems Contribute and ship C/C++ code (or similar) to production environments Job requirements Must Have Strong experience with Linux operating system internals and security mechanisms Hands-on expertise with secure boot and verified boot implementations Familiarity with Trusted Execution Environments such as OP-TEE Proven track record of applying least-privilege principles and hardening root-level services Proficiency with systemd and sandboxing tools including namespacing, privilege restrictions, and syscall filtering Experience designing developer-focused security tools, automation, and templates Knowledge of device access control and Linux permissions management Solid understanding of CI/CD security validation integration Expertise in software development and code auditing Experience with NVIDIA Orin or similar SoC platforms (preferred) Benefits & Compensation Salary Range: $137,861 - $240,000 + Equity Health, dental, and vision insurance 401(k) with company match Paid time off and holidays Equal Opportunity Employer 1X is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, ancestry, citizenship, age, marital status, medical condition, genetic information, disability, military or veteran status, or any other characteristic protected under applicable federal, state, or local law. On-site Palo Alto, California, United States $137,861 - $240,000 per year Software EngineeringAll done! Your application has been successfully submitted! Other jobs
    $137.9k-240k yearly 60d+ ago
  • Staff Infrastructure Security Engineer

    Linkedin 4.8company rating

    Security engineer job in Sunnyvale, CA

    LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. Our products help people make powerful connections, discover exciting opportunities, build necessary skills, and gain valuable insights every day. We're also committed to providing transformational opportunities for our own employees by investing in their growth. We aspire to create a culture that's built on trust, care, inclusion, and fun - where everyone can succeed. Join us to transform the way the world works. Job Description At LinkedIn, our approach to flexible work is centered on trust and optimized for culture, connection, clarity, and the evolving needs of our business. The work location of this role is hybrid, meaning it will be performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team. This role will be hybrid in LinkedIn's Sunnyvale campus. LinkedIn's members entrust us with their information every day and we take their security seriously. Our core value of putting our members first powers all the decisions we make, including how we manage and protect the data of our members and customers. We never stop working to ensure LinkedIn is secure. We follow industry standards and have developed our own best practices to stay ahead of the increasing number of threats facing all Internet services and infrastructure. LinkedIn is looking for a Staff Infrastructure Security Engineer to be an integral part of our Information Security organization. LinkedIn's Platform Security team provides security architecture and design services throughout the organization as we scale our platform to support 1 billion+ members across the globe. Our vision is to appropriately secure all infrastructure and data systems that power the LinkedIn experience and the tooling that empowers engineers. In this role, you will help LinkedIn continue its journey of innovation, and keep us at the forefront of the world as an organization worthy of the trust people place in us. We are a multi-functional team, composed of self-driven individuals that take the hypothetical and wrap it in real-world tradeoffs in why, what, and how. We secure production workflows, harden existing design patterns, and are a voice for security on cutting edge engineering initiatives. As a Security Partner, you will own and be responsible for the security risk posture of a partner engineering organization, while striving to shift the security engagement to the left. You will build and maintain deep relationships with the partner organization, and contribute to building a frictionless engagement model with the Security Organization. Responsibilities: * You will partner with architects, engineers and software engineers across the organization; build threat models, design secure systems, perform security design assessments, paint the overall risk picture, and help find solutions for the risks and vulnerabilities you identify. * You will build necessary proof of concepts to ensure viability of security recommendations in the Li tech stack. * You will articulate and communicate risk decisions effectively and drive security initiatives within the partner organization. * You will influence technical architecture based on risk decisions derived from security assessments. * You will identify and coach Security "Champions" within your partner organization. * You will mentor team members to uplevel technical and interpersonal skills Qualifications Basic Qualifications * BA/BS Degree in Computer Science, Cybersecurity, Information Security, or related technical field, or equivalent technical experience. * 4+ years of experience in information security principles; such as threat modeling, security architecture, secure system design, system and network security, big data security, authentication and security protocols, or cryptography * 4+ years experience and in-depth knowledge of container security, data security, network security, CI/CD security, or control plane security. * 3+ years experience with security in cloud environments and Linux deployments * 3+ of experience in scripting languages such as Python Preferred Qualifications * MS or PhD in Computer Science, Cybersecurity, Information Security, or related technical field * 8+ years of experience in threat modeling, security architecture, secure system design, system and network security, big data security, authentication and security protocols, and cryptography * 8+ years of experience in container security, data security, network security, CI/CD security, and control plane security. * Experience working in organizations securing massively scaled networks and systems * Ability to work across teams and communicate concisely and clearly to partners * You thrive in taking initiative and helping set direction when needed and adapt well to an ever evolving environment Suggested Skills * Infrastructure Security * Container Security * Cloud Security * Technical Leadership LinkedIn is committed to fair and equitable compensation practices. The pay range for this role is $152,000 to $248,000. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to skill set, depth of experience, certifications, and specific work location. This may be different in other locations due to differences in the cost of labor. The total compensation package for this position may also include annual performance bonus, stock, benefits and/or other applicable incentive compensation plans. For more information, visit ************************************** Additional Information Equal Opportunity Statement We seek candidates with a wide range of perspectives and backgrounds and we are proud to be an equal opportunity employer. LinkedIn considers qualified applicants without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other legally protected class. LinkedIn is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful. If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at accommodations@linkedin.com and describe the specific accommodation requested for a disability-related limitation. Reasonable accommodations are modifications or adjustments to the application or hiring process that would enable you to fully participate in that process. Examples of reasonable accommodations include but are not limited to: * Documents in alternate formats or read aloud to you * Having interviews in an accessible location * Being accompanied by a service dog * Having a sign language interpreter present for the interview A request for an accommodation will be responded to within three business days. However, non-disability related requests, such as following up on an application, will not receive a response. LinkedIn will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by LinkedIn, or (c) consistent with LinkedIn's legal duty to furnish information. San Francisco Fair Chance Ordinance Pursuant to the San Francisco Fair Chance Ordinance, LinkedIn will consider for employment qualified applicants with arrest and conviction records. Pay Transparency Policy Statement As a federal contractor, LinkedIn follows the Pay Transparency and non-discrimination provisions described at this link: ******************************** Global Data Privacy Notice for Job Candidates Please follow this link to access the document that provides transparency around the way in which LinkedIn handles personal data of employees and job applicants: ********************************************
    $152k-248k yearly 9d ago
  • Information Security Analyst

    Bickham Services Unlimited, LLC

    Security engineer job in Sunnyvale, CA

    • Analyzes information security practices to ensure alignment with industry standards and guidelines. • Identifies, investigates, and resolves security breaches detected by security solutions. • Contributes to the creation and maintenance of security policies, standards, guidelines, and procedures. • Leads and delivers staff training on information security and breach prevention. What You Will Do: • Staying current on information security trends, news and security standards, especially those related to the healthcare industry • Participating in the development of security standards and best practices for the organization • Participating in the evaluation, design and implementation of new information security solutions to protect the organization's computer networks from cyber attacks • Assessing the efficacy of existing security measures and processes to ensure that these measures and processes meet Health Insurance Portability and Accountability Act (HIPAA) and Federal Information System Controls Audit Manual (FISCAM) security standards and making recommendations for improvement • Recommending security enhancements to management and senior ITS staff • Analyzing software and systems requirements and providing objective advice on the level of security risks and remediation options • Monitoring computer networks for security issues in order to reduce the risk of security incidents • Leading investigation of security breaches and other cyber security incidents in collaboration with the Information Security Manager and the infrastructure team • Documenting security breaches and assessing the damage caused • Collaborating with the infrastructure team to ensure security measures and software to protect systems and information infrastructure, including firewalls and data encryption programs, are up to date • Conducting system vulnerability audits and assessments on a proactive basis and collaborating with the infrastructure team to perform tests and uncover network vulnerabilities • Managing efforts with vendors on annual security audit, including pen testing • Assisting with developing and documenting preventive measures to ensure system security • Staying informed of best practices and new developments in the field, analyzing applicability, making related recommendations, and developing written documentation of adopted practices • Documenting computer security procedures, and tests • Assisting with the development of policies, procedures, standards, and guidelines related to information security • Developing information, training materials and presentations to educate the organization about information security management, data security, and prevention of breaches • Assisting staff with the installation and utilization of new security products and procedures • Conferring with staff regarding issues such as computer data access needs, security violations, and programming changes • Monitoring systems and providing frequent training to staff regarding how to detect and avoid phishing attempts • Reviewing any violations of security procedures and providing remedial training to staff, as needed • Performs other duties as assigned You Will Be Successful If: • In-depth knowledge of HIPAA and FISCAM security guidelines. • Strong understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts. • Proficiency with operating systems, virtualization, and security systems. • High proficiency in Windows-based PC systems and Microsoft Office Suite. • Working knowledge of penetration testing, patch management, and security frameworks (NIST, ISO 27001, COBIT). • Familiarity with project management principles and customer service practices. • Awareness of emerging security technologies such as AI, IoT, and blockchain. • Strong analytical, problem-solving, and decision-making skills. • Clear and concise writing and communication skills, with ability to present technical content to non-technical audiences. • Experience creating training materials and leading staff training. • Ability to manage multiple priorities, meet deadlines, and adapt to shifting needs. • Leadership ability to facilitate meetings, resolve issues, and guide staff. • Strong collaboration skills and diplomacy across teams and levels of the organization. • Willingness to respond to after-hours information security incidents. What You Will Bring: • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field. • 8 years of professional level information technology experience • 3 years of experience performing information security functions in a health care environment (a Master?s degree may substitute for two years of the required experience); or an equivalent combination of education and experience may be qualifying • Experience working in the health care industry • Certification as a Certified Information Systems Security Professional (CISSP) issued by the International Information System Security Certification Consortium (ISC2), Certified Information Security Manager (CISM) issued by the Information Systems Audit and Control Association (ISACA), and/or Certified Ethical Hacker (CEH) issued by the Council of E-commerce Consultants (EC-Council), or equivalent
    $100k-148k yearly est. 10d ago
  • Senior Security Engineer

    Goodleap 4.6company rating

    Security engineer job in San Francisco, CA

    About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America. Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information. The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services. Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response. Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed. While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes. Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. Support or develop components of the security analytics platform. Contribute to investigations, threat hunting, and incident response activities in a supporting role. Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns. Support the security operations team with the vulnerability management lifecycle for products and services under your purview. Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities. Required Skills, Knowledge & Abilities Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences. Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization. Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments. Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus). Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble. Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc. Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases. Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault. Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed. Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas. Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments. Experience engaging with vendors in design partnerships. Experience overseeing vulnerability and threat management at the platform and application levels. Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement. Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution. Additional Information Regarding Job Duties and s: Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law. If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today! We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI.
    $123k-156k yearly est. Auto-Apply 60d+ ago
  • The hardware hacker

    1X Technologies

    Security engineer job in Palo Alto, CA

    About 1X Since its founding in 2015, 1X has been at the forefront of developing advanced humanoid robots designed for household use. Our mission is to create an abundant supply of labor through safe, intelligent humanoids. We strive for excellence in all we do, solving some of the hardest problems in robotics with the world's most talented individuals. Every part of our robots is designed and produced in house, from motor coils to AI, reflecting our vertically integrated approach. At 1X, you will own real projects, be recognized for your achievements, and be rewarded based on merit. Neo is already an incredible piece of engineering - a humanoid built to be around humans like no other. But this is not where we stop. The NEXT team at 1X pushes the boundaries of core technologies - actuation, drive train, structure, and sensing - building an incredibly capable body for embodied AGI. The team is led by the former creator of Kind Humanoid. The effort is backed up by state of the art materials and prototyping facilities run by top PhD scientists and engineers. Your role - the hardware hacker - will be * challenge the state of the art * ideate, create concepts, invent solutions * turn those into highly functional prototypes * relentlessly scrutinize, test, benchmark and falsify your builds * iterate fast on your prototypes * then do what it takes to integrate your development into product So, your responsibilities will be * research state of the art technologies and critically evaluate their application to humanoids * for technologies that look promising, rapidly get to first prototype using electronics and mechanics and coding prototyping methods * critically evaluate prototypes for performance and build a battery of experimental findings * collaborate with engineering, materials and manufacturing teams to develop strategies on how new technologies can be integrated into product
    $84k-129k yearly est. 17d ago
  • Manager, Information Security - Detection Engineering

    Linkedin 4.8company rating

    Security engineer job in Sunnyvale, CA

    LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. Our products help people make powerful connections, discover exciting opportunities, build necessary skills, and gain valuable insights every day. We're also committed to providing transformational opportunities for our own employees by investing in their growth. We aspire to create a culture that's built on trust, care, inclusion, and fun - where everyone can succeed. Join us to transform the way the world works. Job Description At LinkedIn, our approach to flexible work is centered on trust and optimized for culture, connection, clarity, and the evolving needs of our business. This role may be remote or hybrid. At LinkedIn, hybrid roles are performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team. Remote roles are performed from the designated home work location upon time of hire, and any changes to this home work location requires a review of remote status and approval. LinkedIn's members entrust us with their information every day and we take their security seriously. Our core value of putting our members first powers all the decisions we make, including how we manage and protect the data of our members and customers. We never stop working to ensure LinkedIn is secure. We follow industry standards and have developed our own best practices to stay ahead of the increasing number of threats facing all Internet services and infrastructure. LinkedIn is looking for an experienced Engineering Manager to lead the Detection Engineering team in the US and to be an integral part of our Information Security organization. The Detection Engineering team is responsible for developing and maintaining threat detection capabilities, security monitoring systems, and detection rules to protect our infrastructure, applications, and, most importantly, our members. This is a key role in supporting and growing our security detection and monitoring capabilities. Responsibilities: Leadership and Team Management * Lead and manage the detection engineering team, including hiring, training, and mentoring team members. * Develop and maintain detection engineering policies, procedures, infrastructure, and guidelines. * Coordinate and oversee all activities of the detection engineering team during threat detection development and implementation. Detection Development and Management * Serve as the primary point of contact for all threat detection development and enhancement initiatives. * Ensure timely development, testing, and deployment of detection rules and monitoring capabilities. * Conduct post-deployment analysis and create detailed reports on detection effectiveness with KPIs, including tuning recommendations and optimization strategies. Communication and Coordination * Communicate detection development status, updates, metrics and reporting, and capabilities to senior management, stakeholders, and security teams regularly. * Coordinate with internal and external teams, including security operations, defense infrastructure, incident response, and product engineering teams to develop and maintain effective detection capabilities. * Develop and maintain an effective detection engineering communication plan. Continuous Improvement * Continuously evaluate and improve detection engineering processes, tools, and capabilities. * Conduct and report on regular detection testing and validation exercises to test and refine detection rules and monitoring systems. * Stay current with emerging threats, attack techniques, and detection technologies to enhance the detection engineering program. Reporting and Documentation * Maintain comprehensive documentation of all detection rules, including development rationale, testing results, and performance metrics. * Prepare and present detection engineering reports and metrics to senior leadership and stakeholders. * Ensure compliance with regulatory requirements and industry standards related to threat detection and monitoring. Training and Awareness * Develop and deliver detection engineering training programs for team members and other relevant personnel. * Promote security detection awareness and best practices across the organization. * Ensure the detection engineering team is up-to-date with the latest tools, techniques, and procedures. Budget and Resource Management * Manage the detection engineering budget and allocate resources effectively. * Evaluate and recommend tools, technologies, and services to enhance the detection engineering program. * Ensure the team has the necessary resources and support to perform their duties effectively. Qualifications Basic Qualifications: * Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related technical discipline, or equivalent practical experience. * 1+ year(s) of management experience or 1+ year(s) of staff level engineering experience with management training. * 7+ years of experience in cybersecurity, with a focus on detection engineering, security monitoring, threat intelligence, incident response, or related security roles. * Experience leading or managing a cybersecurity, incident response, or detection engineering team. * Experience in cybersecurity frameworks and standards (e.g., NIST, MITRE ATT&CK, OCSF). * Experience in detection engineering tools and technologies (e.g., Query Languages, CI/CD, YARA, Sigma rules, threat intelligence platforms). * Experience with threat analysis, detection rule development, automation engineering, and security monitoring optimization. * Project management experience with managing budgets and resources. Preferred Qualifications: * Master's degree in Cybersecurity, Information Assurance, or a related field. * 10+ years of experience in cybersecurity, with significant experience in detection engineering, threat intelligence, or incident response. * 3+ years of management experience in building small to medium-sized teams, demonstrating growth and a track record of successful deliveries. * Ability to work under pressure and manage multiple detection development projects simultaneously as well as managing an oncall team. * Relevant certifications (e.g., CISSP, CISM, GCIH, GCFA, SANS). * Experience in developing and delivering detection engineering training and awareness programs. * Strong proficiency in Kusto Query Language (KQL) and SQL. * Proficiency in programming or scripting languages (e.g., Python, Go, etc.) for automating detection development and testing processes. * Experience with cloud security and detection engineering in cloud environments especially Azure. * Knowledge of advanced threat detection techniques, including threat hunting and behavioral analysis as well as applied threat intelligence. * Familiarity with detection engineering frameworks and best practices (e.g., Sigma, YARA, STIX/TAXII, OCSF). * Strong communication skills, both written and verbal, with the ability to convey complex technical information to non-technical stakeholders. Suggested Skills : * Security Information and Event Management (SIEM) * Query languages (KQL, SPL, SQL, Elastic, etc.) * Detection Rule Development (YARA, Sigma) * Scripting and Automation (e.g., Python, PowerShell, SQL) * Threat Intelligence Integration * Cloud Security (e.g., Azure, GCP) You will Benefit from our Culture We strongly believe in the well-being of our employees and their families. That is why we offer generous health and wellness programs and time away for employees of all levels. LinkedIn is committed to fair and equitable compensation practices. The pay range for this role is $152,000 - $248,000. Actual compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years & depth of experience, certifications and specific office location. This may differ in other locations due to cost of labor considerations. The total compensation package for this position may also include annual performance bonus, stock, benefits and/or other applicable incentive compensation plans. For additional information, visit: ************************************** Additional Information Equal Opportunity Statement We seek candidates with a wide range of perspectives and backgrounds and we are proud to be an equal opportunity employer. LinkedIn considers qualified applicants without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other legally protected class. LinkedIn is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful. If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at accommodations@linkedin.com and describe the specific accommodation requested for a disability-related limitation. Reasonable accommodations are modifications or adjustments to the application or hiring process that would enable you to fully participate in that process. Examples of reasonable accommodations include but are not limited to: * Documents in alternate formats or read aloud to you * Having interviews in an accessible location * Being accompanied by a service dog * Having a sign language interpreter present for the interview A request for an accommodation will be responded to within three business days. However, non-disability related requests, such as following up on an application, will not receive a response. LinkedIn will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by LinkedIn, or (c) consistent with LinkedIn's legal duty to furnish information. San Francisco Fair Chance Ordinance Pursuant to the San Francisco Fair Chance Ordinance, LinkedIn will consider for employment qualified applicants with arrest and conviction records. Pay Transparency Policy Statement As a federal contractor, LinkedIn follows the Pay Transparency and non-discrimination provisions described at this link: ******************************** Global Data Privacy Notice for Job Candidates Please follow this link to access the document that provides transparency around the way in which LinkedIn handles personal data of employees and job applicants: ********************************************
    $152k-248k yearly 50d ago

Learn more about security engineer jobs

How much does a security engineer earn in San Rafael, CA?

The average security engineer in San Rafael, CA earns between $97,000 and $191,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.

Average security engineer salary in San Rafael, CA

$136,000
Job type you want
Full Time
Part Time
Internship
Temporary