Staff Security Engineer

6 days ago


New York, United States Intuit Inc Full time

Overview We are seeking a highly skilled Staff Security Engineer with over 10 years of overall experience, including 5+ years of coding experience, and a robust background in security reviews, threat modeling, and incident response. This role requires a unique combination of advanced software development skills and deep expertise in security to perform thorough security reviews and threat modeling for both regular and Generative AI applications. The ideal candidate will seamlessly integrate security into our development processes, ensuring our applications are secure by design and capable of resisting various threats. This is a unique opportunity for a seasoned software engineer with a strong security focus to play a vital role in enhancing the security posture of our applications, including cutting-edge Generative AI solutions. If you are passionate about integrating security into software development and possess the required skills and experience, we invite you to apply. What you'll bring Bachelor’s degree in computer science, Information Security, Software Engineering, or a related field. Equivalent experience will be considered. A minimum of 10 years of overall experience, including 5+ years of software development experience with a strong emphasis on security. Experience with LLM, Generative AI Models, and prompt engineering (e.g., OpenAI, Google Gemini, Claude). Strong understanding of OWASP Web, LLM, and Mobile Top 10, SANS Top 25, CVE, and MITRE ATT&CK frameworks. Proven experience in security reviews and threat modeling for a wide range of applications, including Generative AI applications. Strong programming skills in languages such as Python, Java, C++, or similar, with a focus on secure coding practices. In-depth understanding of security protocols, authentication/authorization mechanisms, encryption, and secure software development practices. Familiarity with security assessment tools and best practices for identifying and mitigating vulnerabilities. Excellent analytical and problem-solving skills, with the ability to identify and prioritize security risks based on potential impact. Strong communication skills, with the ability to explain complex security issues to both technical and non-technical audiences. Experience managing and mentoring a team of security professionals. Relevant certifications such as OSCP, OSWE, OSEP, CRTE, CRTP, or Security+ are a plus. Experience with secure code review, software development lifecycle (SDLC), and DevSecOps practices is preferred. Proven experience in contributing to incident response efforts, including investigation, remediation, and post-incident analysis. How you will lead Develop, test, and maintain high-quality code for various software applications, emphasizing security best practices. Conduct comprehensive security reviews and threat modeling for new and existing applications, including Web, LLM, Generative AI, Mobile, Cloud, Thick Client applications, to identify potential security vulnerabilities and risks. Automate the security review and threat modeling processes using scripting languages such as Python, Perl, or Bash. Utilize knowledge of OWASP Web, LLM, and Mobile Top 10, SANS Top 25, CVE, and MITRE ATT&CK frameworks to guide security assessments, reviews, code analysis, and threat modeling. Collaborate with various teams across the organization, including software developers, product managers, and security professionals, to ensure security is integrated throughout the software development lifecycle. Develop and implement standardized security methodologies, procedures, and tools for application security. Stay informed about the latest security threats, vulnerabilities, and trends in both traditional and Generative AI application security. Document and report security findings in a clear and structured manner to both technical and non-technical stakeholders. Provide actionable remediation recommendations and track their implementation to closure. Contribute to the development of security policies, standards, and guidelines. Mentor junior engineers on secure coding practices and develop internal training materials. Participate in code reviews to ensure that security best practices are maintained across all projects. Lead the development of security-related features and tools to enhance the security posture of our applications. Collaborate with the incident response team to investigate, remediate, and learn from security incidents, ensuring that findings are integrated into future security measures. Develop incident response plans and ensure they are tested and revised regularly to remain effective and current. EOE AA M/F/Vet/Disability. Intuit will consider for employment qualified applicants with criminal histories in a manner consistent with requirements of local law.



  • New York, New York, United States Datadog Full time

    Job Summary:We are seeking a highly skilled Staff Security Engineer to join our Core Security Response team at Datadog. As a Staff Security Engineer, you will play a critical role in maintaining the stability and integrity of our systems and data.Key Responsibilities:Lead the design and implementation of tools, systems, and programs to improve our IR...


  • New York, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is looking for a Staff Software Engineer to lead the Cellular Architecture team. This team will be responsible for executing Abnormal Security's strategic goal for moving their cloud infrastructure to a Cellular-based Architecture, an ambitious project to support the hyper-growth of the...


  • New York, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is hiring a Software Engineer to join the Threat Response Engine team, an essential part of our mission to protect global enterprises from diverse and evolving email threats. At Abnormal, we've taken a novel approach to email security, utilizing behavioral AI to identify and counter complex...


  • New York, New York, United States Databricks Full time

    About the Role:We are seeking a Senior Staff Software Security Engineer to join our team at Databricks. As a key member of our security engineering team, you will be responsible for designing and implementing secure systems and infrastructure to protect our customers' data.Key Responsibilities:Design and implement secure systems and infrastructure to protect...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a Senior Software Engineer to join the Inbound Email Products - Systems (IEPS) team. The IEPS team is responsible for Abnormal's core Inbound Email Security product backend systems, including Remediation and Threat Log (data processing and storage). Our objective is to enhance stability and scalability, as well as...


  • New York, New York, United States Coinbase Full time

    At Coinbase, we're seeking a highly skilled Blockchain Security Engineer to join our team. As a key member of our Protocol Security team, you'll play a critical role in ensuring the security of our onchain products and services.Key Responsibilities:Expand and formalize our Blockchain Security program to evolve towards continuous and ongoing risk assessment...

  • Field Sales Engineer

    3 weeks ago


    New York, New York, United States acre security Full time

    Job OverviewAcre security is seeking a skilled Field Sales Engineer to provide pre-sales support and technical expertise to our sales team. As a key member of our sales team, you will work closely with regional sales teams to deliver technical demonstrations, configure products, and manage Proof of Concept.Key Responsibilities:Support sales and channel...


  • New York, New York, United States Intuit Inc Full time

    Job DescriptionWe are seeking a highly skilled Staff Security Engineer to join our team at Intuit Inc. The ideal candidate will have over 10 years of overall experience, including 5+ years of coding experience, and a robust background in security reviews, threat modeling, and incident response.This role requires a unique combination of advanced software...


  • New York, New York, United States Uniswap Labs Full time

    We are seeking a highly skilled and experienced Staff Application Security Engineer to take on a technical leadership role within our organization.You will be responsible for driving the security of our applications, mentoring a team of security engineers, and ensuring our software products are robust against security threats.The ideal candidate will have a...


  • New York, New York, United States Zip Security Full time

    About the RoleWe're seeking a highly skilled Backend Engineer to join our team at Zip Security. As a Founding Backend Engineer, you'll play a key role in designing and implementing secure APIs that harmonize functionality across multiple enterprise software providers.You'll be responsible for building a first-class, multi-tenant, cloud-native product, and...

  • Security Professional

    4 weeks ago


    New York, New York, United States Arrow Security Full time

    Job OverviewArrow Security is seeking a highly skilled Security Officer to join our team in Northern Manhattan, NYC. As a Security Officer, you will play a vital role in maintaining a secure environment for our clients and visitors while delivering exceptional customer service.Responsibilities:Ensure a safe and secure work environment while providing...


  • New York, New York, United States Taptap Send Full time

    About the RoleWe are seeking a highly skilled Staff Software Engineer to join our growing engineering team and lead the evolution of our backend systems as we scale. As a Staff Software Engineer, you will work closely with Product, Operations, Customer Support, Growth, and other functions to design and build out a reliable, performant, and secure platform...

  • Security Engineer

    2 weeks ago


    New York, United States Nationstaff Full time

    About This Role We are seeking a highly capable Security Engineer / Senior Security Engineer, who will be responsible for various technical and cryptographic security aspects. This role requires a certain range of experience and an in-depth understanding of security engineering facets. Primary ResponsibilitiesPerform security analysis/audits/reviews/testing,...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a Senior ML Infra Engineer to join the Detection Team. The Detection Division focuses on building advanced technology for identifying and stopping email and cloud-based attacks. As an ML Infra Engineer, you will be responsible for making feature development at Abnormal fast, responsive, stable, and confident for...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a skilled Cloud Infrastructure Engineer to join its Cloud Infrastructure team. This team is responsible for ensuring the company's presence in the public cloud is secure, reliable, and repeatable.The ideal candidate will be responsible for complex features in support of the team, focusing on automation. They will...

  • Resident Engineer

    3 weeks ago


    New York, New York, United States Armis Security Full time

    Job Title: Resident Engineer - Cybersecurity ExpertAbout the Role:Armis Security is seeking a highly skilled Resident Engineer to join our team. As a Resident Engineer, you will be responsible for the full platform management of our customers' systems, ensuring operational uptime and alignment with business use cases.Key Responsibilities:* Collaborate with...

  • IT Security Engineer

    2 weeks ago


    New York, United States NYC Health Hospitals Full time

    MetroPlusHealth provides the highest quality healthcare services to residents of Bronx, Brooklyn, Manhattan, Queens and Staten Island through a comprehensive list of products, including, but not limited to, New York State Medicaid Managed Care, Medicare, Child Health Plus, Exchange, Partnership in Care, MetroPlus Gold, Essential Plan, etc. As a wholly-owned...


  • New York, New York, United States Signature Security Full time

    Job OverviewAt Signature Security, we're seeking a highly skilled Lead Security Install Technician to join our team. As a key member of our installation team, you will be responsible for overseeing and coordinating the installation and maintenance of security systems for our clients.Key Responsibilities:Manage a team of technicians to ensure timely and...

  • Backend Engineer

    4 months ago


    New York, United States Zip Security Full time

    Company Enterprise cybersecurity is broken. Current annual cybersecurity spending is roughly $150B, with most enterprises spending heavily to deploy, manage, and configure 100s of different tools for marginal security benefit. At Zip, our goal is to build software that makes enterprise cybersecurity reasonable - to reduce bloat by bundling and configuring...


  • New York, New York, United States Winfield Security Full time

    Job DescriptionWinfield Security, a leading provider of security services, is seeking an experienced Security Operations Manager to oversee the day-to-day operations of our security officers. The ideal candidate will have a proven track record of managing teams, building strong relationships with clients and employees, and ensuring high-quality security...