Security Engineer

1 month ago


New York, New York, United States Bilt Rewards Full time

Security Engineer

Reporting to: Chief Information Security Officer

Location: New York, NY

What is Bilt?

Bilt Rewards is the first program for consumers to earn rewards on rent and daily neighborhood spend while creating a path towards home ownership.

With an alliance of the nation's largest real estate owners, Bilt Rewards enables renters in more than three million units across the country to earn points just by paying rent.

Bilt Rewards boasts one of the highest value rewards programs on the market today, including one-to-one point transfers to twelve loyalty programs allowing members to travel across more than 100 major airlines and hotel partners; fitness classes at the country's top boutique studios; limited-edition and exclusive collections of art and home decor through the Bilt Collection, and the ability to use points for rent credits or towards a future downpayment.

Bilt has also partnered with Mastercard to create the Bilt Mastercard - the first and only credit card that can be used to pay rent with no fees.

What's the role?

We are seeking a Security Engineer with a deep passion for information security to collaborate with us in developing the most outstanding security program possible. As a Security Engineer at Bilt Rewards, you will be entrusted with the critical task of protecting sensitive company data, responding promptly to potential breaches, and implementing robust security and data governance protocols. You will work closely with various departments of the organization to lead and participate in security operations, risk assessments, incident responses, and project maintenance. Our ideal candidate must possess the ability to work alongside more traditional engineering teams, IT teams, and non-technical employees alike to attain product goals and implement fundamental changes that enhance the overall security posture of the company.

In this role, you will...

  • Develop and run tools to gather security signals from production services.
  • Automate workflows and improve identification and response time for security events.
  • Build and optimize security detection rules for production infrastructure and services.
  • Respond to security events, triage, perform investigations, incident analysis, and communicate clearly and efficiently to stakeholders.
  • Partner with the engineering team on internal and customer-facing security and privacy initiatives while ensuring secure data accessibility, quality, and reliability are considered.
  • Work closely with the engineering and IT team to document the security architecture, review non-security process workflows, and threat model against both.
  • Interact with all Bilt employees and contractors for incident response followups, containment, security awareness education, tabletops and trainings.
  • Contribute to refining Bilt Rewards' policies, guidelines, and procedures about protecting information assets, and presenting those policies Bilt-wide when appropriate.
  • Work closely with various departments of the organization to lead and participate in security operations, vulnerability management, risk assessments, and project maintenance.
  • Remain updated on common, bleeding-edge security incidents affecting the industry and ensure Bilt remains properly protected from them.
  • Understanding application security (AppSec) standards and practices is preferred but not mandatory, such as the OWASP Mobile Application Security Verification Standard (MASVS) and Mobile Security Testing Guide (MSTG).

In terms of qualifications, we're seeking:

  • 2+ years with GCP or 4+ years with AWS/Azure experience
  • Hands-on experience with data analysis, modeling, and correlation at scale.
  • Experience developing tools and automation using common DevOps/DevSecOps toolsets and programming languages.
  • Ability to analyze endpoint, network, and application logs for anomalous events.
  • Operating systems internals and forensics experience for macOS, Windows & Linux.
  • A sense of helpfulness towards the less technical, dedication towards the Bilt mission and a critical-thinking mindset often needed in InfoSec.
  • BurpSuite, BigQuery, Java, GitHub admin experiences a big plus

With also...

  • AppSec Engineers with Incident Response experience, or
  • T2 Incident Responders with forensic/containment experience in Google Cloud Platform (GCP), Data Loss Protection (DLP), or
  • Purple-teamers with experience applying their own remediations successfully in client environments, or
  • Detection/Rules engineers with track record of successful workflow automations, or
  • Security Researchers/Threat Hunters who specialize in Cloud (GCP), Web/Mobile apps, and/or DLP, or
  • Someone with a blend of action-oriented, automation-focused incident response and AppSec experience (2+ years), or
  • Your background

Benefits:

  • Compensation - We offer a competitive salary with a meaningful stake in the company via equity and our performance bonus program
  • Health insurance for you (& your loved ones) from day one - Enjoy a One Medical Membership, wellness stipends, family programs and more, on us. We've got you and your family covered from day one.
  • 401k plan with a match - Retirement may feel more like a pipe dream than a reality but we're here to help you get there.
  • Commuter FSAs - We believe the best ideas come from being together in one place. We just don't think getting there should be so expensive.
  • UNLIMITED PTO - Because we believe that working hard shouldn't mean always working. Take time for you as often as you need it.
  • Exclusive Employee only Bilt Points - We give our employees unique opportunities to earn points throughout their time at Bilt.
  • Team Events - We believe in human connection so we hold events to help our employees break from the monotony of the typical work week.

At Bilt Rewards, we believe in transparency and we do our best to make sure the company and our candidates are on the same page as it relates to compensation. In addition to posting salary ranges for our open roles, candidates should expect to be asked about compensation expectations and requirements early on in their interview process. Our goal is to highlight when expectations and Bilt's salary range may be out of sync, and work with the candidate to determine whether it makes sense to continue conversations.

We are considering candidates with differing levels of expertise for this position. Leveling will be based upon your experience and performance in the interview process.

Where a new hire falls within a range will be based on their individual skills and experience, and how these competencies compare across other employees in the same role. Bilt's bands are designed to allow for individual compensation growth within the role. As such, new hires typically start at the lower end of the range. Bilt rewards performance and outcomes - should you join the company, you will have the opportunity to grow your salary over time.

The salary range for a Security Engineer is $125, ,000 and will be eligible for equity and an annual performance-based bonus.



  • New York, New York, United States Contrast Security Full time

    About the RoleContrast Security is seeking a highly skilled Sr. Alliance Sales Manager to join our Strategic Alliances team. As a key member of our team, you will be responsible for driving incremental revenue, joint go-to-market initiatives, and enhancing product value through integrations with leading marketplaces.Key ResponsibilitiesDevelop and execute...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a skilled Software Engineer to join the Inbound Email Products (IEP) team. The IEP team is responsible for developing and operating core components of Abnormal's flagship Email Security product, including Remediation Flows and Customer Portal Dashboards.Key ResponsibilitiesCollaborate with the Tech Lead, Engineering...


  • New York, New York, United States OPT Nation Full time

    In this role you will work closely with development teams across platform engineering to ensure our applications are secure. We are looking for a skilled application security engineer to analyze software designs and implementations from a security perspective and identify and resolve security issues. You will perform security analysis and implement controls...


  • New York, New York, United States Abnormal Security Full time

    Job OverviewAbnormal Security is seeking a talented Machine Learning Engineer to become a part of our Message Detection - Attack Detection team. Our mission is to safeguard our clients from sophisticated threats that continually adapt their strategies to bypass conventional security measures. Our innovative behavioral-based methodology sets us apart in the...


  • New York, New York, United States Abnormal Security Full time

    Job OverviewAbnormal Security is seeking a Senior Cloud Infrastructure Engineer to spearhead the Cellular Architecture team. This team plays a crucial role in achieving Abnormal Security's strategic vision of transitioning their cloud infrastructure to a Cellular-based Architecture. This ambitious initiative is designed to support the rapid growth of the...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking an experienced Full Stack Software Engineer to lead areas of the Portal team for Messaging Security Products. This is a new team focusing on our Portal, Dashboards, and other components our customers interact with, responsible for the frontend & backend layers (70% BE and 30% FE). The ideal candidate will have...

  • Security Engineer

    4 days ago


    New York, New York, United States Jobot Full time

    Job SummaryWe are seeking a highly skilled Senior DevSecOps Engineer to join our dynamic technology team at Jobot. As a key member of our team, you will be responsible for implementing, supporting, and enhancing our robust security infrastructure.Key ResponsibilitiesDevelop, deploy, and maintain security infrastructure tools to support the entire...


  • New York, New York, United States Clark Davis Associates Full time

    Position Overview: The Director of Security Engineering at Clark Davis Associates will spearhead the formulation and execution of innovative security engineering methodologies and solutions to protect our worldwide operations. This position necessitates a profound comprehension of security technologies, risk assessment, and leadership capabilities to...


  • New York, New York, United States Clark Davis Associates Full time

    Position Overview: The Director of Security Engineering at Clark Davis Associates will spearhead the formulation and execution of sophisticated security engineering strategies and solutions to protect our international operations. This position demands a profound comprehension of security technologies, risk management, and leadership capabilities to...


  • New York, New York, United States Cockroach Labs Full time

    Cockroach Labs is the creator of CockroachDB, the most highly evolved cloud-native, distributed SQL database on the planet that scales fast, survives anything, and thrives anywhere. We created CockroachDB to unshackle teams from the constraints of their database. Join us on our mission to simplify how businesses build and operate world-changing...


  • New York, New York, United States Abnormal Security Full time

    Job OverviewAbnormal Security is seeking a skilled Machine Learning Engineer to contribute to the Message Detection - Attack Detection team. Our mission is to safeguard our clients from evolving threats posed by adversaries who continuously adapt their strategies to bypass conventional security measures. Our innovative behavioral-based approach has earned us...


  • New York, New York, United States Abnormal Security Full time

    Job OverviewAbnormal Security is seeking a talented Software Engineer II to enhance our Cloud Infrastructure team. This team plays a crucial role in managing our operations within the public cloud, ensuring that our cloud usage is secure, dependable, and efficient while catering to the needs of our engineering teams.Key ResponsibilitiesThe selected candidate...


  • New York, New York, United States Facebook Full time

    The Meta Security team is responsible for improving the security posture of the software and services used throughout our company. Our work spans Facebook, Instagram, WhatsApp, Oculus, and all of the underlying systems and infrastructure that power these products behind the scenes.We are seeking a passionate and experienced security engineer to help design...

  • Security Engineer

    1 month ago


    New York, New York, United States Hudson River Trading Full time

    Hudson River Trading (HRT) is seeking a seasoned Security Engineer to join their expanding Identity & Access Management (IAM) team. As a senior-level Security Engineer at HRT, you will play a key role in designing secure identity, authentication, and access control solutions that have a strategic impact on the company's global cyber security systems.The...


  • New York, New York, United States Braze Full time

    About the RoleWe are seeking a highly skilled Senior Security Engineer to join our Enterprise Security team at Braze. As a key member of our security team, you will be responsible for protecting our employees, assets, and work locations using various tools and technologies.Key ResponsibilitiesInvestigate and mitigate malware and advanced threatsImplement...

  • Security Engineer, XRM

    2 months ago


    New York, New York, United States Meta Full time

    The Meta Security team is responsible for improving the security posture of the software and services used throughout our company. Our work spans Facebook, Instagram, WhatsApp, Oculus, and all of the underlying systems and infrastructure that power these products behind the scenes.We are seeking a passionate and experienced security engineer to help design...


  • New York, New York, United States Yoh Full time

    About the RoleWe are seeking a highly skilled Senior Security Engineer to join our IT Security Team at Yoh, a Day & Zimmermann company. This pivotal role entails close collaboration with the Site Reliability Engineering (SRE), Network, and Operations teams aimed at elevating our security posture.Key ResponsibilitiesCollaborate with cross-functional teams to...


  • New York, New York, United States Clark Davis Associates Full time

    Position Overview: The Director of Security Engineering at Clark Davis Associates will spearhead the formulation and execution of sophisticated security engineering methodologies and solutions to protect our international operations. This position demands an in-depth comprehension of security technologies, risk assessment, and leadership capabilities to...


  • New York, New York, United States Clark Davis Associates Full time

    Position Overview: The Director of Security Engineering at Clark Davis Associates will spearhead the formulation and execution of innovative security engineering strategies and solutions to protect our global operations. This position demands a profound comprehension of security technologies, risk management, and leadership capabilities to cultivate and...


  • New York, New York, United States Clark Davis Associates Full time

    Position Overview: The Director of Security Engineering at Clark Davis Associates will spearhead the formulation and execution of sophisticated security engineering methodologies and solutions to protect our international operations. This position demands an in-depth knowledge of security technologies, risk management, and leadership capabilities to...