Jobs
>
San Francisco

    Lead Product Security Engineer - San Francisco, United States - WeightsBiases

    WeightsBiases
    WeightsBiases San Francisco, United States

    4 weeks ago

    Default job background
    Description
    At Weights & Biases, our mission is to build the best developer tools for machine learning. Weights & Biases is a series C company with $250 million in funding and a rapidly growing user base. Our platform is an essential piece of the daily work for machine learning engineers, from academic research institutions like FAIR and UC Berkeley to massive enterprise teams including iRobot, OpenAI, Toyota Research Institute, Samsung, NVIDIA, Salesforce, Blue Cross Blue Shield, Lyft, and more.
    Reporting to the CISO, the Lead Product Security Engineer will directly contribute to securing the Weights & Biases platform that powers our customer's MLOps workflows. Providing both tools and guidance, the Lead Product Security Engineer will enable engineers to deliver our product securely. You will also be the technical leader of our security team responsible for mentoring and growing the team.

    Responsibilities:

    • Build security into each stage of the software development lifecycle through the use of automated tools and processes
    • Collaborate with product and engineering on design reviews and threat models
    • Review code for implementation misconfigurations, vulnerabilities, and business logic flaws
    • Triage and respond to reports from our bug bounty and vulnerability disclosure program
    • Collaborate with our compliance team to mitigate risks related to security
    • Mentor and grow the security team

    Requirements:

    • Deep understanding of modern security principles including encryption, authn/authz, vulnerability management, etc.
    • Experience building security controls into a CI/CD environment
    • Solid understanding of threat modeling techniques such as RTMP, PASTA, STRIDE, etc.
    • Experience reviewing security scans and remediating vulnerabilities
    • Experience writing software in a production setting, ideally with TypeScript, Go, and/or Python
    • Effective written and verbal communication skills
    • Experience with multiple clouds. We're primarily on GCP but also deploy into AWS and Azure
    • Willingness to both teach others and learn new techniques
    We encourage you to apply even if your experience doesn't perfectly align with the job description as we seek out diverse and creative perspectives. Team members who love to learn and collaborate in an inclusive environment will flourish with us. We are an equal opportunity employer and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. If you need additional accommodations to feel comfortable during your interview process, reach out at
    #LI-Remote

  • Asana

    Security Engineer

    2 weeks ago


    Asana San Francisco, United States

    We're looking for a motivated security engineer interested in maturing Asana's product security posture to expand trust with our growing customer base. As a member of the Product Security team, you will focus on shipping features that are free from critical security bugs, enablin ...

  • Notion, LLC

    Security Engineer

    5 days ago


    Notion, LLC San Francisco, United States

    About Us: · We're on a mission to make it possible for every person, team, and company to be able to tailor their software to solve any problem and take on any challenge. Computers may be our most powerful tools, but most of us can't build or modify the software we use on them e ...

  • Integriti Group Pvt Ltd

    Security Engineer

    2 days ago


    Integriti Group Pvt Ltd San Francisco, United States

    Key Responsibilities: · Cloud Security Architecture: Design and implement comprehensive security architectures for cloud-based applications and services, ensuring adherence to best practices and compliance requirements.New Relic Integration: Utilize New Relic or other tools to m ...

  • Figma

    Security Engineer

    4 days ago


    Figma San Francisco, United States

    Figma is growing our team of passionate people on a mission to make design accessible to all. Born on the Web, Figma helps entire product teams brainstorm, design and build better products - from start to finish. Whether it's consolidating tools, simplifying workflows, or collabo ...

  • Vouch

    Security Engineer

    4 weeks ago


    Vouch San Francisco, United States

    [Full Time] Security Engineer at Vouch (United States) | BEAMSTART Jobs · Security Engineer · Vouch United States · Date Posted · 04 Jan, 2023 · Work Location · San Francisco, United States · Salary Offered · $145000 — $165000 yearly · Job Type · Full Time · Experience Required ...

  • NCC Group (Americas), Inc

    Security Engineers

    2 weeks ago


    NCC Group (Americas), Inc San Francisco, United States

    Security Engineers · Company: NCC Group (Americas), Inc · Location: San Francisco, CA · Position Type: Full Time · Experience: 1 year · Education: MS · NCC Group (Americas), Inc. seeks Security Engineers w/MS and min. 1 yr experience sought for positions in San Francisco. Salary ...


  • Amazon Development Center U.S., Inc. San Francisco, United States Full time

    Go beyond protecting Amazon Web Services (AWS) and have a direct impact on new cutting-edge initiatives at Amazon. Work across multiple security domains as well as strategic security partnerships. Since 2006, our great team at AWS has been enabling our customers to bring great id ...


  • BHO Tech San Francisco, United States Full time

    s the Principal Security Engineer you will help create and maintain automated tooling, processes, and procedures that integrate into our SDLC process. To apply for the role, you should possess strong analytical, design, and problem diagnosis skills. You like thinking "outside the ...


  • Stefanini North America and APAC San Francisco, United States

    3+ years of experience in application security or related field. · Strong understanding of application security principles, OWASP Top 10, and common attack vectors and experience with secure coding practices and security testing tools (SAST, DAST, IAST) · Hands-on experience with ...


  • TREE House San Francisco, United States

    We're looking for a motivated security engineer interested in maturing Asana's product security posture to expand trust with our growing customer base. As a member of the Product Security team, you will focus on shipping features that are free from critical security bugs, enablin ...


  • Dropbox San Francisco, United States

    Role Description · The Detection and Response Team (DART) is looking for a Security Engineer with experience performing detection, incident response, security engineering, and maintaining operationally excellent systems. You will operate and build the tools and detections to cat ...

  • Encore IT Solutions

    Security Engineer

    2 days ago


    Encore IT Solutions San Francisco, United States Permanent

    Role: Security EngineerLocation: Remote WORKING IN USA FOR MORE THAN 7 YEARS -Integrating various platforms with CyberArk, such as different LDAP providers, Windows servers, UNIX servers, Databases and networking client's Privileged Access Management solution based on CyberArk te ...

  • Motion Recruitment

    Security Engineer 1

    5 days ago


    Motion Recruitment San Francisco, United States

    A large enterprise social network is hiring a Security Engineer I to join the Security Team based in office in San Francisco with work from home flexibility. · The Security Engineer will be responsible for reviewing and processing security related requests including Access Manag ...


  • Clever San Francisco, United States

    Founded by educators and technologists passionate about improving education, Clever is on a mission to unlock new ways to learn for all students. Already used by more than 75% of U.S. K-12 schools, Clever brings all applications into one secure portal and provides single sign-on ...


  • TaxBit West Valley City, United States

    Company · Founded in 2018 by CPAs, tax attorneys, and software developers, TaxBit is creating an entirely new category to enable widespread compliant adoption of digital assets for the global economy. TaxBits Software-as-a-Service (SaaS) platform streamlines and automates custom ...


  • Unit21 San Francisco, United States

    About Unit 21: · Unit21 protects businesses against adversaries engaging in money laundering, fraud, and other sophisticated risks by offering a no-code toolset to model, detect, and remediate suspicious activity. We are backed by investments from Google, Tiger Global, ICONIQ, D ...


  • Crusoe Energy Systems San Francisco, United States

    Crusoe Energy is on a mission to unlock value in stranded energy resources through the power of computation. · Take a look at what we do - · We aim to align the long term interests of the climate with the future of global computing infrastructure. As data centers consume an ex ...


  • Carta San Francisco, United States

    The Company Youll Join · Carta is a platform that helps people manage equity, build businesses, and invest in the companies of tomorrow. Our mission is to unlock the power of equity ownership for more people in more places. · Carta is trusted by more than 40,000 companies and o ...


  • X (formerly Twitter) San Francisco, United States

    Are you prepared to join the X team and help build the ultimate real-time information-sharing app, revolutionizing how people connect? At X, we're on a mission to become a trusted global digital public square, committed to minimal censorship within legal boundaries. Our goal is t ...


  • TaxBit San Francisco, United States

    Company · Founded in 2018 by CPAs, tax attorneys, and software developers, TaxBit is creating an entirely new category to enable widespread compliant adoption of digital assets for the global economy. TaxBit's Software-as-a-Service (SaaS) platform streamlines and automates custo ...