CareerPlanSign in

Security Engineer

San Francisco💼 Full-time🗓 2025-03-27 → 2026-09-25

Core

Safeguard applications, infrastructure, and data from threats by implementing secure coding, vulnerability scanning, and threat modeling.

Role type

Security Engineer

Builds

Secure development lifecycle (SDLC), security monitoring frameworks, and automated security testing in CI/CD pipelines

Domain

Cybersecurity, Cloud Security (AWS/Azure/GCP), DevSecOps

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Threat modeling, vulnerability scanning, penetration testing, secure coding principles, SIEM/IDS management, scripting automation (Python/Bash/PowerShell), cloud security (IAM/workload protection), API security, incident response, compliance standards (ISO 27001/GDPR/SOC 2)

Preferred skills

Experience with Nessus, Qualys, Burp Suite, encryption protocols, network security

Technologies

Nessus, Qualys, Burp Suite, Python, Bash, PowerShell, AWS, Azure, GCP, SIEM, IDS

Responsibilities

Develop threat models, conduct vulnerability scans and penetration tests, enforce secure coding practices, integrate security into CI/CD pipelines, monitor and respond to security incidents, ensure compliance with security standards, design IAM policies and authentication mechanisms, review features/APIs for security, develop incident response plans

Seniority

Mid-Senior, hands-on IC

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.