Senior Security Engineer
Core
Own and elevate the end-to-end security posture of an open-source orchestration platform, infrastructure, and ecosystem by actively breaking systems and fixing vulnerabilities.
Role type
Senior Security Engineer (Offensive/Defensive)
Builds
A world-class security foundation for a fast-growing open-source and SaaS platform
Domain
Cloud security, Open Source Security, DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, Threat modeling, Vulnerability management, Cloud security (GCP), Container security (Kubernetes, Docker), Supply chain security, Security code review, Incident response, CI/CD security automation
Preferred skills
Open source community management, Security advisory writing
Technologies
Trivy, GitHub Security, Dependabot, Elastic Security, Docker, Kubernetes, Terraform, GCP, Java, Typescript, Javascript, PostgreSQL, Elasticsearch, Redis, Kafka, ELK, Prometheus, Grafana, GitHub Actions, ArgoCD
Responsibilities
Conduct hands-on penetration testing and threat modeling; Manage end-to-end vulnerability tracking across codebases and dependencies; Proactively fix security flaws by writing patches and submitting PRs; Audit and harden cloud infrastructure; Automate security tooling into CI/CD pipelines; Perform security code reviews and evaluate third-party dependencies; Lead incident response efforts; Own public security posture including vulnerability disclosure and CVE handling.
Seniority
Senior, hands-on IC