Security Engineer, Proactive Security
2 weeks ago
At DoorDash we're building the industry's most scalable and reliable delivery network to support our three-sided marketplace of consumers, merchants, and Dashers. Security is paramount to the success of our business, and DoorDash Security aspires to be the world's most admired security team. We are committed to building the world's most trusted on-demand, logistics engine for delivery We're expanding our team of great minds to help us secure and maintain a 24x7, no downtime, global infrastructure system that powers DoorDash's multi-sided marketplace of consumers, merchants, and drivers.
About the RoleOur Security Engineering team is looking for a Senior Security Engineer to lead threat modeling, hardening and operation of security services within DoorDash's Product and Cloud Security domains. You will be a part of our inclusive, collaborative global team responsible for building "paved paths" to ensure a safe, reliable and resilient delivery network. This is a US or Canada remote position reporting directly to the Manager of our Security Engineering team.
You're excited about this opportunity because you will…- Threat model, design, harden, and operationalize Product and Cloud Security services and controls at DoorDash scale.
- Define, document and implement security standards, guidelines and procedures to design and implement automated security controls and remediation tools with rigor and developer ergonomics.
- Partner cross-functionally with Core Infrastructure, Product Engineering, Legal, Security teams and Vendor Partners to build "paved paths" that provide actionable feedback to embed secure design practices into the product and infrastructure development process.
- Lead the technical direction and roadmap for your assigned area of ownership.
- Build and maintain high Operational Excellence (OE) to ensure we operate services with excellence, rigor and durable standards to ensure minimal downtime.
- Participate in on-call rotation and promptly respond to on-call events with urgency and rigor.
- Manage the lifecycle of product and cloud security vulnerabilities, from identification, triage, and drive remediation, reporting and metrics.
- Influence and enable the secure and responsible adoption of LLMs and AI tools.
- Mentor and coach earlier career engineers, setting high standards for Operational Excellence and Security Engineering.
- 6+ years of experience as a security engineer in a product security or infrastructure security discipline.
- Able to demonstrate a track record of driving foundational improvements to a company's infrastructure security posture.
- Breadth of technical experience across various infrastructure and security areas running in large production environments.
- Deep understanding of each OWASP top 10 vulnerability, distributed systems security and design.
- Experience in CI/CD pipelines to automate security control enforcement and testing.
- You proficient in analyzing code, architecture and designs from a security perspective
- Well versed with scripting languages (e.g. Python) and other programming languages (e.g. Java). Golang experience is a plus.
- Strong experience with infrastructure as a code tooling like Terraform.
- Expertise with cloud infrastructure and management in AWS.
- Experience solving complex, systemic issues that require creative thinking and solutions.
- Exceptional analytical and investigative abilities with hands-on experience leading root cause analysis.
- Excellent verbal and written communication skills - you can understand and review design documents with respect to cloud infrastructure with engineering personnel.
- Must be comfortable regularly exercising discretion and independent judgment in performing job duties, including evaluating options, making informed decisions, and determining appropriate courses of action within the scope of assigned responsibilities.
Applications for this position are accepted on an ongoing basis.
Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only
We use Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023, and resumed using Covey Scout for Inbound again on June 29, 2024.
The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: Covey
Compensation
The successful candidate's starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee's work location. Ranges are market-dependent and may be modified in the future.
In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.
DoorDash cares about you and your overall well-being. That's why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.
To learn more about our benefits, visit our careers page here.
See below for paid time off details:
- For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
- For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).
The national base pay range for this position within the United States, including Illinois and Colorado.
$159,800 - $235,000 USD
About DoorDashAt DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods.
DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees' happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.
We're committed to growing and empowering a more inclusive community within our company, industry, and cities. That's why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.
Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on "protected categories," we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.
Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.
If you need any accommodations, please inform your recruiting contact upon initial connection.
-
Security Strategist
2 weeks ago
Remote, Oregon, United States Security On-Demand Full timeCompany BackgroundWith 30 years of experience in cyber defense, DeepSeas is trusted by nearly 1,000 clients around the world, including Fortune 100 enterprises and mid-market organizations, higher education institutions, municipality and local governments, and federal agencies. Known for its programmatic approach to continuously transforming cyber defense...
-
Senior Security Advisor
1 week ago
Remote, Oregon, United States GuidePoint Security Full timeGuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...
-
Security Designer
1 week ago
Remote, Oregon, United States granite communications and security Full timeJob Description: Security DesignerAbout us:We are headquartered in Florida, is a full-service low voltage service provider. Our commitment to excellence drives us to deliver the highest quality services and products. With a nationwide team of highly qualified employees, we're always on the lookout for exceptional individuals to join our ranks. We tackle some...
-
Security Engineer
2 weeks ago
Remote, Oregon, United States Benchling Full timeBiotechnology is rewriting life as we know it, from the medicines we take, to the crops we grow, the materials we wear, and the household goods that we rely on every day. But moving at the new speed of science requires better technology.Benchling's mission is to unlock the power of biotechnology. The world's most innovative biotech companies use Benchling's...
-
Security Engineer
2 weeks ago
Remote, Oregon, United States Digital Harbor Full timeAbout Digital HarborDigital Harbor has been at the forefront of Composite Risk & Compliance solutions for over a decade. Our award-winning platform is trusted by some of the largest U.S. Financial Institutions, Government Agencies, and Healthcare organizations. Today, we're driving the integration of Web 3.0 into enterprise solutions through our Social...
-
Staff Security Engineer
2 weeks ago
Remote, Oregon, United States Modern Health Full timeModern HealthModern Health is a mental health benefits platform for employers. We are the first global mental health solution to offer employees access to one-on-one, group, and self-serve digital resources for their emotional, professional, social, financial, and physical well-being needs—all within a single platform. Whether someone wants to proactively...
-
Security Engineer, Cloud Security
1 week ago
Remote, Oregon, United States Trase Systems Full timeAbout UsCo-founded in 2023 by Joe Laws and Grant Verstandig, Trase Systems is AI, Uncomplicated. Trase empowers enterprise leaders to harness the full potential of AI without the associated complexity and risks. We are an end-to-end solution for deploying, managing, and optimizing AI in the enterprise. Our platform specializes in bridging the "last mile" of...
-
Staff Security Engineer
2 weeks ago
Remote, Oregon, United States Modern Health Full timeModern Health Modern Health is a mental health benefits platform for employers. We are the first global mental health solution to offer employees access to one-on-one, group, and self-serve digital resources for their emotional, professional, social, financial, and physical well-being needs—all within a single platform. Whether someone wants to...
-
Senior Security Engineer
15 hours ago
Remote, Oregon, United States EIS Group Full timeDepartment508 Production OperationsEmployment TypeFull TimeLocationRemote, United States of AmericaWorkplace typeFully remoteWe are seeking a Senior Security Engineer with a strong background in application security and penetration testing to join our team. This person will be responsible for safeguarding our SaaS platform and performing security testing on...
-
Security Engineer
1 week ago
Remote, Oregon, United States AQR Full timeAbout AQR Capital ManagementAQR is a global investment firm built at the intersection of financial theory and practical application. We strive to deliver concrete, long-term results by looking past market noise to identify and isolate the factors that matter most, and by developing ideas that stand up to rigorous testing. By putting theory into practice, we...