\nDiscord is about giving people the power to create space to find belonging in their lives. Trusted by millions of people to keep their communications secure, private, and out of the hands of evildoers, security and privacy are necessary to Discord's success.\nWe are looking for a Senior Security Engineer, Platform Security reporting to the Platform Security Engineering Manager to join us in building a secure and private platform for Discord's users. If you are a Security Engineer with a passion for security and privacy, a deep sense of curiosity, and an endless desire to improve Discord, read on!\nWhat youโll do:\n\n\n* Perform reviews ranging from architectural design to threat modeling and source code level assessments, providing recommendations to make our platform and infrastructure more secure\n\n* Secure our software supply chain; all the way from a developerโs laptop, through version control, CI/CD, and into production\n\n* Work with our Detection and Response team to ensure that weโre adequately monitoring the security of the systems that Discord builds.\n\n* Develop automation to scale the capabilities of yourself and our team as we build.\n\n* Develop best-in-class secure baselines for cloud and bare-metal resources.\n\n* Partner with Anti-Abuse and Trust & Safety to improve our ability to yeet and delete bad actors from Discord\n\n\n\nExample Projects:\n\n\n* Build automated tooling to across our infrastructure for vulnerabilities including container images and infrastructure-as-code\n\n* Design and implement security controls for a next-generation developer platform for building apps and services at Discord\n\n* Partner with Engineering to design and build authentication in service-to-service communication\n\n* Expand our malware detection capabilities to build a safer Discord\n\n\n\nWhat you have:\n\n\n* You have 5+ years experience building and/or securing production systems and infrastructure.\n\n* You have 3+ years of experience as a Security Engineer working on systems with millions of users.\n\n* You have 3+ years of experience programming in at least one general purpose programming language (we mainly use Python and Rust, but your experience with other languages is great, too!)\n\n* You have experience building images for deploying code (e.g. Docker images)\n\n* You have experience securing cloud-based environments (we use Google Cloud).\n\n* You have experience with infrastructure-as-code tooling (we use Terraform).\n\n* You have experience with container orchestration technologies (e.g. Kubernetes).\n\n* You have experience with serverless technologies (e.g. Cloudflare Workers)\n\n\n\nBonus Points:\n\n\n* Experience building and operating a service mesh (e.g. Envoy, Istio, Linkerd).\n\n* Experience with or an understanding of modern authentication and authorization protocols and concepts (OAuth 2.0, OIDC, WebAuthn/FIDO2, Zero Trust, mTLS).\n\n* Experience building complex applications and services on top of Google Cloud Platform\n\n\n\n\n \n\nNew York City only: Minimum salary of $186,000/year + equity and benefits \n\n*Note: Disclosure as required by NYC Pay Transparency Law\n \nColorado only: Minimum salary of $148,800/year + equity and benefits \n*Note: Disclosure as required by sb19-085(8-5-20). \n\n#Salary and compensation\n
No salary data published by company so we estimated salary based on similar jobs related to Design, Scrum, Git, Typescript, Angular, Ruby, Senior, Digital Nomad, Python, Docker, Serverless, Cloud and Engineer jobs that are similar:\n\n
$70,000 — $120,000/year\n
\n\n#Benefits\n
๐ฐ 401(k)\n\n๐ Distributed team\n\nโฐ Async\n\n๐ค Vision insurance\n\n๐ฆท Dental insurance\n\n๐ Medical insurance\n\n๐ Unlimited vacation\n\n๐ Paid time off\n\n๐ 4 day workweek\n\n๐ฐ 401k matching\n\n๐ Company retreats\n\n๐ฌ Coworking budget\n\n๐ Learning budget\n\n๐ช Free gym membership\n\n๐ง Mental wellness budget\n\n๐ฅ Home office budget\n\n๐ฅง Pay in crypto\n\n๐ฅธ Pseudonymous\n\n๐ฐ Profit sharing\n\n๐ฐ Equity compensation\n\nโฌ๏ธ No whiteboard interview\n\n๐ No monitoring system\n\n๐ซ No politics at work\n\n๐ We hire old (and young)\n\n
\n\n#Location\nSan Francisco, California, United States
๐ Please reference you found the job on Remote OK, this helps us get more companies to post here, thanks!
When applying for jobs, you should NEVER have to pay to apply. You should also NEVER have to pay to buy equipment which they then pay you back for later. Also never pay for trainings you have to do. Those are scams! NEVER PAY FOR ANYTHING! Posts that link to pages with "how to work online" are also scams. Don't use them or pay for them. Also always verify you're actually talking to the company in the job post and not an imposter. A good idea is to check the domain name for the site/email and see if it's the actual company's main domain name. Scams in remote work are rampant, be careful! Read more to avoid scams. When clicking on the button to apply above, you will leave Remote OK and go to the job application page for that company outside this site. Remote OK accepts no liability or responsibility as a consequence of any reliance upon information on there (external sites) or here.
This job post is closed and the position is probably filled. Please do not apply. Work for Fugue, Inc and want to re-open this job? Use the edit link in the email when you posted the job!
**About Fugue**\n\nFugue helps engineers build and operate secure cloud infrastructure. We continuously monitor infrastructure-as-code and cloud resources for our customers, report on vulnerabilities that we find, and help remediate the underlying issues. Our platform and open source tools are used in CI/CD pipelines to spot misconfigurations early and fix them before they are deployed to production environments.\n\nWe are headquartered in Frederick, MD and have always been remote-friendly. This year we took that one step further and now consider ourselves remote-first, but we also aim to provide office space to those who want it.\n\n\n**Our Product Team**\n\nEngineering at Fugue is part of our Product team. Weโre a friendly, small, and nimble group of experienced engineers who are having a great time building and scaling the Fugue SaaS. We care about cloud security and helping our customers find and fix security vulnerabilities. We find a lot of satisfaction in working with incredibly considerate, collaborative, and curious teammates.\n\n\n**The Role**\n\nAs a Senior Software Engineer on the Fugue Product team, you will lend a hand in designing, implementing, and automating the deployment of new features in our SaaS application. You will work with the Product team to create solutions that are technically sound, support a good user experience, and are efficient to implement. Youโll contribute to sprint planning and help ship product updates regularly. Youโll need familiarity with at least one of the major cloud providers and must be able to contribute significantly in a codebase of Python and Go. Your focus will be on backend services, but there are opportunities to assist with frontend development as well.\n\n\n**Requirements**\n\n* 5+ years of software development experience\n* Knowledge of web technologies and Linux proficiency\n* Familiarity with Python or Go\n* Proven track record of problem solving and helping ship software products\n* Experience with deploying infrastructure or applications in AWS\n* Experience or interest in cloud engineering and cloud security\n* Proficiency with automated testing and CI/CD\n\nIf you have experience with CloudFormation, Terraform, or other infrastructure-as-code technologies, then thatโs a real bonus. Also, we work with these tools and technologies, so any background with these is a plus: Open Policy Agent, Swagger APIs, MySQL, Redshift, Docker, and serverless computing in AWS.\n\n\n**More about Fugue**\n\nThe principles that matter most to us as a company are to be Curious, Considerate, Customer obsessed, Collaborative, and Committed. Working on a team that lives by these principles is tremendously important both for personal job satisfaction and also our overall productivity and success as a team.\n\nWe offer competitive compensation, a great healthcare plan, and a remote-friendly culture. Plus we offer a free Developer plan for use by any engineer that is looking to secure their cloud.\n\nAt Fugue we believe that the only way to build a successful company is by building a diverse team of talented, smart individuals. We know that humans are better together than alone. Whether or not the government provides protection, we do not discriminate against anyone for any reason. Hereโs the standard EEO statement - know that we believe in it!\n\nFugue provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetics, sexual orientation or veteran status. In addition to federal law requirements, Fugue complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment. \n\nPlease mention the words **TURKEY FURY VERIFY** when applying to show you read the job post completely (#RMjE2LjczLjIxNi4zNA==). This is a feature to avoid spam applicants. Companies can search these words to find applicants that read this and see they're human.\n\n \n\n#Salary and compensation\n
$120,000 — $170,000/year\n
\n\n#Location\nWorldwide
# How do you apply?\n\nThis job post has been closed by the poster, which means they probably have enough applicants now. Please do not apply.
This job post is closed and the position is probably filled. Please do not apply. Work for ZibaSec and want to re-open this job? Use the edit link in the email when you posted the job!
We are looking for a senior infrastructure engineer, with deep AWS experience, who feels comfortable with new project implementation. Prior experience with serverless architectures is ideal.\n\nThe ideal candidate has experience with programmatically managing AWS infrastructure. We currently use Serverless Framework and Terraform.\n\nWe are looking for expert level proficiency in Python. Experience with any of the following is an additional asset:\n\n- Linux\n- Node\n- Working with the AWS SDK\n- Infrastructure as Code\n- Writing CLIs\n- CI/CD architectures including developing CI-server workflows\n- Terraform (or something similar like Ansible, etc)\n\n## **Weโd be especially interested in you if you have:**\n\n- Contributed to any infrastructure or security automation project in the open source world\n- Built systems around observability and tracing\n- Knowledge on Chaos engineering concepts and theory\n- Fought and won battles against AWS Lambda + AWS API Gateway\n- Worked under the constraints of FedRAMP\n\n# About ZibaSec\n\nThe best way to learn about our company is to look at our publicly available employee handbook at [https://www.notion.so/zibasec/Our-Why-f5245149408f4f43baad7ef4de4e0a91](https://www.notion.so/zibasec/Our-Why-f5245149408f4f43baad7ef4de4e0a91)\n\nWeโre an early stage, funded startup focused on helping organizations improve their security posture. We build easy-to-use tools that make it harder for attackers to exploit the people within an organization.\n\nOur flagship product is focused on helping organizations run email phishing campaigns against their own employees. This lets organizations assess their risk levels while also providing insight as to what type of training might be necessary for their organization.\n\nWe are a growing company and can promise you the following:\n\n- A diverse organization.\n- A safe workplace with zero tolerance for discrimination and harassment of any kind.\n- A solid workstation; your choice of a Linux, Mac, or Windows laptop.\n- A 100% remote and balanced work life. We actually prefer you don't work for more than 40 hours a week. We don't have VCs or other outside entities to answer to, and we rather our people have a balanced life than no life.\n- Flexible scheduling. Early riser? Night owl? No problem. We maintain an overlapping 3-hour window for synchronous work. Other than that, work any hours that work for you!\n- We're a tight-knit group and we value each other. Your voice will carry the same weight as anyone else.\n- You'll have dedicated time to learn, and a budget to pay for it.\n\n# **ZibaSec's Core Software Beliefs**\n\n- **Testing is important:**ย Untested code does not get shipped...but hitting 100% unit test coverage can be detrimental to productivity for no or very little gain; it's about the right balance. We're more fond of integration and end-to-end testing.\n- **Git activity != actual productivity:**ย Developers need time to debug locally, research, and learn.\n- **Continuous Deployment:**ย When code is ready, passes tests, it should make it into production within minutes.\n- **Readability > clever code:**ย Slick code isn't so slick if it's hard to grok.\n- **Continuous Improvement:**ย Everything can be improved and nobody knows any code, stack, framework perfectly; there is always room to learn and improve. In fact, we'll provide you with a budget that you can spend on learning (conferences, courses, etc).\n- **Dogma is bad:**ย Some method, technique, etc., may have been the right answer 100 times, but on the 101st time it's possible that another way could be the best path.\n- **Open Source is crucial:**ย As a company, we're very involved with open source, we are active consumers and contributors to multiple projects. We feel so strongly about this that if we find that a particular internal library could be beneficial to the outside world, then we take the time to package it up and open source it as a standalone library (we did exactly this for a Django SAML2 authentication back end). \n\nPlease mention the words **DRUM RIDE BOMB** when applying to show you read the job post completely (#RMjE2LjczLjIxNi4zNA==). This is a feature to avoid spam applicants. Companies can search these words to find applicants that read this and see they're human.\n\n \n\n#Salary and compensation\n
$180,000 — $180,000/year\n
\n\n#Location\nUnited States
# How do you apply?\n\nThis job post has been closed by the poster, which means they probably have enough applicants now. Please do not apply.