Raydar Logo

Raydar

Software Engineer, Security

Posted 4 Hours Ago
Be an Early Applicant
In-Office
San Francisco, CA, USA
250K-350K Annually
Mid level
In-Office
San Francisco, CA, USA
250K-350K Annually
Mid level
Own the company’s security engineering program across AWS infrastructure, Kubernetes, application security, vulnerability management, penetration testing, bug bounty operations, and compliance support. Harden cloud and application environments, identify and remediate security gaps, partner with engineers on secure designs and code fixes, and improve monitoring, incident readiness, secrets management, and defense in depth.
The summary above was generated by AI

Our client is building modern financial infrastructure for businesses, combining reliable banking with industry-specific software, payments, rewards, and intelligent financial workflows. The platform powers more than $10 billion per year in business purchasing across thousands of customers. Founded in 2021, the company has grown to approximately 60 employees, reports more than $300 million in annual revenue, and has raised approximately $160 million, including a recent $100 million Series C.

This is the first dedicated security engineering hire, reporting directly to the CTO and owning the security program end to end. You will build and operate the security program across infrastructure security, application security, vulnerability management, penetration testing, bug bounty operations, and engineering support for compliance. This is a hands-on generalist role for someone who wants to ship real security improvements rather than operate only through policy and checklists.

What you will do:

• Build and own the security engineering program across infrastructure and application layers.

• Identify and prioritize security gaps, develop pragmatic remediation plans, and drive high-impact changes.

• Harden AWS infrastructure, Kubernetes and EKS clusters, server configurations, networking, access controls, and cloud security posture.

• Improve application security across services written in TypeScript, Go, Rust, and related technologies.

• Manage recurring penetration tests and drive findings through remediation.

• Operate the bug bounty program, triage vulnerability reports, and coordinate responses.

• Partner with engineering on secure design, code-level fixes, deployment patterns, secrets management, and defense in depth.

• Own technical work supporting SOC 2, PCI, monitoring, incident readiness, and vulnerability-management workflows.


Requirements

• Approximately 2 to 8 years of hands-on security engineering, software security, infrastructure security, or closely related experience.

• Strong generalist ability across cloud infrastructure, application security, vulnerability management, and security operations.

• Hands-on experience securing AWS and container-orchestration environments such as Kubernetes or EKS.

• Experience assessing and remediating application vulnerabilities in production software.

• Experience managing penetration tests, bug bounty reports, or coordinated vulnerability disclosure.

• Familiarity with network security, identity and access controls, secrets management, web application defenses, and cloud posture management.

• Ability to write code, automate security work, and collaborate directly with software engineers on technical fixes.

• Strong risk judgment, high ownership, clear communication, and comfort operating independently.

• Ability to work on-site five days per week in San Francisco or willingness to relocate.

Nice to have: Experience with TypeScript, Go, Rust, CockroachDB, Kafka, Terraform, Pulumi, Cloudflare, AWS WAF, PCI, SOC 2, incident response, detection engineering, threat modeling, or secure architecture reviews.


Benefits

$250,000 to $350,000 base salary, based on qualifications and experience, plus competitive equity. This role is on-site five days per week in San Francisco. Existing visa transfers, including OPT and H-1B transfers, may be considered.

Similar Jobs

5 Days Ago
Remote or Hybrid
USA
100K-145K Annually
Entry level
100K-145K Annually
Entry level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Secure CrowdStrike’s software supply chain and code-hosting environments by assessing GitHub organizations, open-source integrations, repositories, dependencies, and third-party packages. Implement repository guardrails, secret scanning, access controls, and automation; investigate supply-chain threats such as typosquatting and dependency confusion; promote secure coding and open-source compliance; and collaborate with engineering teams on security initiatives.
Top Skills: Amazon S3Argo CdArtifactoryBitbucketCi/CdDatadogGitGithub ActionsGitlabGoJavaScriptJenkinsLinuxLogscalePrometheusPythonSecret ScanningShellSoftware Composition Analysis (Sca)SplunkUnix
5 Days Ago
Remote or Hybrid
United States
69K-117K Annually
Mid level
69K-117K Annually
Mid level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Build and maintain custom security tools, middleware, automation, APIs, integrations, dashboards, and security workflows. Integrate identity, endpoint, SIEM, SaaS, and other security platforms using APIs, cloud services, containers, and CI/CD. Translate security policies into secure, code-driven solutions while supporting SOAR, continuous monitoring, compliance, and cross-functional collaboration.
Top Skills: AngularAWSAws LambdaDockerEdrEntra IdGithub ActionsGitlab CiGoGraphQLIamJenkinsKubernetesMdmMicrosoft IntuneNode.jsOauthOidcPythonReactRestSIEMSoarTerraformVueWebhooks
6 Days Ago
Remote or Hybrid
Santa Clara, CA, USA
191K-334K Annually
Senior level
191K-334K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Build and operate a security data platform connecting SIEM, identity, asset, threat intelligence, and knowledge graph systems. Design core APIs, distributed data pipelines, schemas, risk scoring, entity resolution, and coverage queries. Own architecture and platform workstreams from scoping through delivery, collaborate with detection and identity teams, review code, mentor engineers, and drive partner adoption. The role requires expert Python, deep Splunk expertise, cybersecurity experience, and senior-level project ownership.
Top Skills: Asset InventoryAsynchronous Data PipelinesIdentity GovernanceKnowledge GraphsLarge Language ModelsMachine LearningMessage BusMitre Att&CkPythonRetrieval-Augmented GenerationSchema RegistrySIEMSplSplunkSplunk Apis

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account