Maximum of 25 job preferences reached.
Top Security Engineer Jobs in San Francisco, CA
Professional Services • Consulting
Lead the company’s security engineering function as its first dedicated security hire. Define security architecture across the LLM pipeline, cloud infrastructure, and product; improve tenant isolation and data residency; conduct threat modeling, penetration testing, vulnerability remediation, and security operations; and support audits and enterprise security reviews. The role reports to the CTO and may eventually grow into team leadership.
Top Skills:
Cloud InfrastructureIdentity And Access ManagementLlmMulti-Tenant SaasPenetration TestingTypescriptVulnerability Scanning
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Monitor and analyze security events, lead incident response and employee investigations, conduct digital forensics, and communicate findings to technical, executive, legal, and compliance stakeholders. Build investigation scripts, runbooks, automated workflows, and security operations capabilities. Mentor engineers and support insider threat initiatives while collaborating across teams on cloud security and incident response.
Top Skills:
AWSGCPLinuxmacOSPythonSIEMWindows
Cloud • Security • Software • Cybersecurity • Automation
Lead corporate endpoint security architecture with a focus on macOS, designing secure-by-default controls, automation, patching, software distribution, and security baselines across macOS, iOS, Windows, and Linux. Manage configurations through Terraform, GitOps, version control, CI pipelines, and automated rollouts. Partner with IT and security teams to improve telemetry, detection, response, auditability, and operational efficiency. Mentor engineers and serve as a senior escalation point for complex endpoint security issues in a fully remote environment.
Top Skills:
BashFleetdmGitGitopsGoGoogle WorkspaceInfrastructure As CodeiOSJamf ProLdapLinuxmacOSOktaPowershellPythonTerraformWindows
Artificial Intelligence • Cloud • Software
Lead product security work across Vercel: threat modeling, secure code reviews, open-source and supply-chain security, SDLC tooling and automation, bug bounty triage, cross-team security projects, and customer-facing security support to embed security across development and platform operations.
Top Skills:
Ci/CdDastDependabotGithub Advanced SecurityGithub WorkflowsJavaScriptNext.JsNode.jsOpen Policy AgentReactSastSecret DetectionServerlessSnykTerraformTypescript
HR Tech • Information Technology • Professional Services • Consulting
Build and secure scalable backend services and APIs while debugging, optimizing performance, implementing features, refactoring codebases, and conducting security reviews and penetration testing. The role also involves automated testing, code review, vulnerability assessment, and contributing domain expertise to training next-generation AI systems.
Top Skills:
C++CweGoJavaNode.jsOwaspPython 3RustTypescript
3D Printing • Artificial Intelligence • Machine Learning • Other
Leads hands-on security engineering across infrastructure, cloud, identity, applications, AI tools, and compliance. Responsibilities include IAM design, access audits, incident investigation, threat response, security reviews, vulnerability scanning, AI integration governance, audit evidence, policy development, and security automation. The role acts as an escalation point, prioritizes security initiatives, supports global compliance programs, and develops repeatable security processes and documentation.
Top Skills:
Ai/Llm SecurityApplication SecurityAutomated Security ScanningAWSAws IamAzureBashClaudeCloud SecurityCmmc 2.0FirewallsIamIncident ResponseJ-SoxMcp ServersMicrosoft Entra IdNetwork SegmentationNist 800-171Nist 800-53OktaPermission PoliciesPowershellPythonRbacSecurity GroupsSecurity MonitoringSoc 2Threat Detection
Cloud • Information Technology • Machine Learning
Lead enterprise eDiscovery and insider-risk investigations by collecting, preserving, analyzing, and reviewing data from cloud infrastructure, endpoints, and repositories. Build AI-powered automation, correlate activity logs into investigative timelines, manage legal holds and governance policies, support digital forensics, and produce structured evidence packages for Security, Legal, HR, and investigative teams.
Top Skills:
Ai AutomationCloud Audit LogsData Classification And Labeling TechnologiesDigital Forensics SoftwareEdiscovery PlatformsEs/QlGoPythonSIEMSQL
Artificial Intelligence • Gaming • Software • Generative AI
Secure federal health IT supply-chain and logistics software by designing and validating application and infrastructure controls, assessing vulnerabilities, driving remediation, embedding security checks into CI/CD pipelines, monitoring security tools, supporting incident response, and translating federal security requirements into implementable technical designs.
Top Skills:
Ci/CdCloud InfrastructureHipaaKubernetesNist 800-53Risk Management Framework (Rmf)
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Designs and engineers secure network and cloud architectures across AWS, GCP, Azure, and physical data centers. Responsibilities include threat modeling, network segmentation, monitoring, alerting, automation, attack-surface reduction, and secure connection patterns. The role drives strategic security improvements, partners with product and infrastructure teams, communicates architectural decisions, and mentors engineers. Candidates need deep hybrid networking and cloud security expertise, protocol knowledge, scripting ability, independent problem-solving skills, and strong communication.
Top Skills:
AIApplied CryptographyAWSAzureCi/CdDnsGCPGoHttp/SHybrid Cloud NetworkingPrivate EndpointsPythonService MeshesShell ScriptingTcp/IpTlsTransit GatewaysVpcsZero Trust Architecture
Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Lead technical strategy and architecture for software security across Block. Design and deliver security solutions, drive Secure SDLC adoption, threat model critical systems, mentor engineers, and execute high-priority security initiatives for scalable, resilient security services and mobile/platform security.
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Leads Samsara’s application security and vulnerability management programs across cloud, firmware, IoT, and corporate systems. Responsibilities include setting technical strategy, reducing remediation time, developing automation, guiding engineering teams, mentoring security engineers, assessing high-profile vulnerabilities, supporting incident investigations, and participating in on-call response. The role requires extensive security experience, programming proficiency, AWS expertise, vulnerability management knowledge, and practical use of AI/LLM tooling.
Top Skills:
Ai/Llm ToolingAWSAws LambdaC/C++Ci/CdCvssDastEpssFedrampGoJavaScriptPythonSastScaSemgrepTinesWiz
AdTech • Artificial Intelligence • Big Data • Machine Learning • Marketing Tech • Mobile • Software
The Security Engineer will manage Liftoff's SIEM, lead the adoption of AI-augmented SOC tools, triage alerts, and improve incident response processes while collaborating on various security functions.
Top Skills:
AIAWSDetection-As-CodePantherSecurity AutomationSIEM
New
Cut your apply time in half.
Use ourAI Assistantto automatically fill your job applications.
Use For Free
Consulting • Design
Protect Air Force modernization efforts by assessing legacy and modernized applications, conducting security audits and risk analyses, implementing RMF, ATO, and cATO processes, authoring security controls and authorization evidence, researching emerging threats, and coaching government engineering teams on secure software development and compliance.
Top Skills:
Authorization To Operate (Ato)Cloud InfrastructureContinuous Authorization To Operate (Cato)Infrastructure As CodeRisk Management Framework (Rmf)Web DevelopmentWeb Testing Frameworks
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Build and operate cloud security tooling, automation, and controls across AWS and Azure. Secure IAM, networks, infrastructure-as-code, CI/CD, PKI, certificates, Kubernetes integrations, and secrets management with HashiCorp Vault. Lead security projects from design through implementation, troubleshoot multi-account cloud networks, conduct CSPM and threat detection work, and support incident response. Collaborate with engineering teams on secure architectures and leverage AI to accelerate development. The role is onsite in Denver or Long Beach, may include on-call duties and occasional travel, and requires obtaining and maintaining a security clearance.
Top Skills:
Ad CsAWSAws Private CaAzureCi/CdCloudFormationCspmCwppExpressconnectGoHashicorp VaultIamInfrastructure-As-CodeKubernetesMtlsNaclsNsgsPkiPythonSecurity GroupsSIEMTerraformTlsTransit GatewayVirtual WanVnetVpcVpnX.509
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Designs and operates controlled cyber-capability evaluations for frontier AI models and agentic systems. Builds vulnerable applications, cyber ranges, exploit-development targets, and evaluation harnesses; runs experiments; collects telemetry; analyzes model behavior and evaluation artifacts; and documents security findings. The role also develops sandboxing, containment, access, and secrets-management controls while collaborating with red-team operators, researchers, engineers, and Responsible AI stakeholders.
Top Skills:
Ai AgentsCloud-Based Test InfrastructureContainersCyber RangesExploit DevelopmentGenerative AiLarge Language ModelsModel ApisPenetration TestingPyritPythonSandboxed ExecutionVulnerability Research
Agency • Professional Services • Consulting
Build and improve security across applications, cloud infrastructure, internal systems, and products. Responsibilities include identifying and remediating risks, developing security tooling and automation, conducting architecture reviews and threat modeling, integrating security into the software development lifecycle, strengthening identity and access controls, and developing monitoring, vulnerability management, detection, and incident response capabilities.
Top Skills:
Application SecurityCloud InfrastructureIdentity And Access ManagementIncident ResponseProduct SecuritySecrets ManagementSecurity AutomationThreat ModelingVulnerability Management
Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Secure LLMs, generative AI systems, ML infrastructure, training pipelines, and AI applications. Responsibilities include threat modeling, architecture reviews, security controls, hardening, vulnerability remediation, data privacy, incident response runbooks, vendor reviews, governance, policy development, and AI security training. The role also supports proof-of-concept security solutions and monitors emerging AI threats.
Top Skills:
AnsibleBashETLGdprGenerative AiGoInfrastructure As CodeKubernetesLarge Language ModelsPythonPyTorchScikit-LearnSoc 2TensorFlowTerraform
News + Entertainment
Designs, builds, operates, and integrates workforce identity and access management solutions for employees, contractors, and partners. Responsibilities include federated authentication, provisioning and deprovisioning, identity governance, compliance, access management, vendor integrations, acquisition-related migrations, solution rollout, and cloud-based service operation. The role requires hands-on IAM expertise, strong communication, programming familiarity, CI/CD experience, and AWS experience.
Top Skills:
Auth0AWSCi/CdJavaLdapOauthOkta Identity EngineOkta WorkflowsOpenid ConnectPythonSAMLScim
Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
Serves as the senior technical authority for enterprise browser data protection and security. Owns architecture, roadmap, standards, lifecycle, browser-based DLP controls, integrations, automation, and operational support. Leads complex troubleshooting, major incident response, root-cause analysis, runbook development, and continuous improvement. Partners across cybersecurity, identity, endpoint, network, cloud, risk, compliance, and vendor teams while mentoring engineers and influencing enterprise security design.
Top Skills:
Active DirectoryAzure DevopsCasbChrome Enterprise PremiumCisco Secure AccessCloud PlatformsCrowdstrikeCyberarkDigital GuardianDnsEntra IdForcepoint DlpGitGitIslandJAMFMecm/SccmMenlo SecurityMicrosoft Defender XdrMicrosoft Edge For BusinessMicrosoft GraphMicrosoft IntuneMicrosoft Purview DlpMicrosoft SentinelNetskope DlpOktaPalo AltoPalo Alto Prisma BrowserPing IdentityPowershellPythonRest ApisSaseSplunkSwgSymantec DlpTaniumTerraformTls/HttpsVpnZscalerZtna
Fintech • Financial Services
Staff Security Engineer partners with Product, Engineering, and DevOps to embed security into application architecture, cloud infrastructure, and CI/CD processes. Responsibilities include secure design and code review, vulnerability remediation, AWS cloud security, WAF tuning, security automation in Python, SIEM and log pipeline contributions, endpoint controls, and security standards. The role requires deep expertise in application security, cloud security, or security automation, plus threat modeling and independent project ownership.
Top Skills:
AsmAWSCi/CdCnappContainer OrchestrationDastGoIamInfrastructure As CodePythonRuby On RailsSastScaSIEMTerraformWaf
Aerospace • Information Technology • Security • Cybersecurity • Defense
Provides information assurance and cybersecurity services for DoD applications, including RMF and A&A support, security documentation, vulnerability assessments, POA&M management, STIG compliance, security audits, incident reporting, continuous monitoring, and DevSecOps security integration. The role supports cloud migration, cybersecurity tooling, compliance with DoD and NIST standards, external audits, and implementation of government cybersecurity directives.
Top Skills:
Burp SuiteCmmcDevsecopsEmassFismaFortifyJIRANist RmfOracle Cloud Infrastructure (Oci)OwaspServicenowSharepointSonatypeStig
Fintech
Leads KeyBank’s Red Team and offensive security program, including adversary emulation, penetration testing, physical and application assessments, cloud security testing, AI security evaluations, and purple team exercises. Develops testing strategy, methodologies, tooling, metrics, and maturity roadmaps; mentors engineers; coordinates internal and third-party engagements; validates remediation and attack paths; and presents findings and strategic recommendations to executives and cybersecurity stakeholders.
Top Skills:
Artificial IntelligenceAutonomous AgentsAWSBashCommand-And-Control (C2) FrameworksEdr/XdrGenerative AiGoGoogle Cloud PlatformIsecomIssafJavaScriptKali LinuxLarge Language ModelsLinuxMachine LearningmacOSAzureMitre Att&CkOsstmmPowershellPtesPythonSIEMWindows
Social Impact
Designs, implements, configures, and supports enterprise cybersecurity solutions across IAM, endpoint, network, email, application, cloud, and security awareness domains. Conducts vulnerability assessments, threat hunting, incident investigation, security tool tuning, policy development, and security architecture reviews. Serves as a security subject matter expert on technology projects, collaborates with an MSSP, provides incident escalation support, and maintains availability for critical security operations.
Top Skills:
AtpAzureAzure Active DirectoryAzure SentinelAzure VmCisco FirewallsCisco Umbrella Dns SecurityContent FilteringEdrEmail Security GatewaysEndpoint SecurityIamIntuneMicrosoft DefenderNetwork FirewallsNetwork Security GroupsOffice 365SsoVirtualizationVMwareWindows ServerXdr
eCommerce • Manufacturing
Administer identity and access security programs, including access reviews, privileged access management, endpoint privilege controls, and Azure PIM. Support compliance audits through evidence collection, triage SIEM and endpoint alerts, manage phishing simulations, document procedures, and track vulnerability remediation. Partner with IT, engineering, and compliance teams to improve security processes and posture in a cloud-native environment.
Top Skills:
Admin By RequestAzure Privileged Identity ManagementAzure RbacBeyondtrustCyberark EpmKqlMicrosoft 365Microsoft Entra IdMicrosoft SentinelOktaSIEM
Consumer Web • eCommerce • Marketing Tech • Retail • Software • Analytics • Generative AI
Build and maintain scalable security observability, detection, and response systems. Develop AI- and ML-based detections, normalize large-scale security logs, automate incident workflows, respond to alerts and threats, conduct investigations and threat hunts, and participate in detection and response on-call rotations.
Top Skills:
Centralized LoggingCi/CdData LakesData PipelinesGitGitGoMachine Learning ModelsPythonSIEM
Let Your Resume Do The Work
Upload your resume to be matched with jobs you're a great fit for.
Success! We'll use this to further personalize your experience.
Top San Francisco Companies Hiring Security Engineers
See AllPopular Job Searches
All Filters
Total selected ()
No Results
No Results















.png)






.png)











