Jobs
>
San Francisco

    Senior Security Engineer - San Francisco, United States - AutoFi

    Default job background
    Description
    About AutoFi AutoFi is the leading provider of digital commerce technology that powers the sales and finance experiences for the most innovative brands and dealers in automotive. The AutoFi platform enables a more transactional buying experience with $4B in funded loans processed through AutoFi annually. AutoFi's dynamic selling platform empowers dealers to sell vehicles more efficiently and profitably, both online and in the showroom. We are funded for years of future growth and backed by investors including Crosslink Capital, Santander Holdings USA, SVB Financial Group, Ford, BMW iVentures and Mouro Capital.
    Our team is diverse - spread out across the U.S. and Canada, we have backgrounds from finance and technology as well as deep experience in all areas of the auto space. We're empathetic, gritty, curious, and humble owners of this business and are supported by some of the biggest names in the auto and financial industries as commercial partners. We've never been more excited about the opportunity in front of us to help transition the auto industry from offline to online. If changing a trillion-dollar industry sounds exciting, we'd love to hear from you.
    For more information, visit

    In addition to competitive compensation plans, we offer the following benefits & perks:

    • $160,000 - $200,000 salary
    • Unlimited PTO
    • Comprehensive health, vision & dental plans for you and your family
    • Latest technology & software tools including company-paid MacBook computer
    • Remote office
    • Opportunity to quickly grow your career

    Responsibilities:

    • Design and implement security practices and standards for security-related activities in the software engineering process (e.g. threat modeling and secure coding practices)
    • Implement tooling to support DevSecOps processes including SAST, DAST, IAST, and SCA
    • Assess infrastructure, web, and application environments to help identify & prioritize risks
    • Lead RED team activities, including both in-house and 3rd-party penetration tests
    • Drive first-level triage and resolution of Bug Bounty submissions

    Required Qualifications:

    • Experience with static & dynamic analysis, security code reviews, and application security frameworks (e.g. OWASP)Strong understanding of SAST, DAST, IAST, and SCA tooling
    • Experience with web & cloud security controls/frameworks
    • Minimum of 6 years of experience designing secure products and engineering security functions
    • Familiarity with network and web application protocols (HTTP/S, SAML 2.0, OAuth, Rest APIs)
    • Industry experience building data-driven applications with Javascript, , and NoSQL
    • Minimum BS/BA in Cybersecurity, Information Security, Computer Science, or relevant degree, with the ability to demonstrate sophisticated logical thought processes
    • CISSP or similar certifications (SANS, CEH, AWS Security)
    • Comfortable in a fast-paced start-up environment.

    Preferred Qualifications:

    • Experience with common threat modeling frameworks (STRIDE, DREAD, etc).
    • Experience with cloud-based Web Application Firewall solutions
    • Experience running or participating in bug bounty programs
    • Familiarity with ethical hacking and penetration testing tools & methodologies
    • Experience with AWS security best practices and native controls & services
    • Prior Automotive or Fin Tech experience
    What's in it for you:
    - We offer full training and a competitive total rewards package along with great benefits - Medical, Dental & Vision coverage - 100% premium coverage for employee / 50+% for dependents - Flexible work hours - Remote environment - Competitive pay - Visionary leadership team - Growth opportunities within a dynamic culture - Wellness & cultural initiatives (fitness challenges, wellness webinars, virtual games, regional activities, etc.) - Up to $1K per year for employee professional development - Stock options - we are all owners

    Individual compensation decisions are based on a number of factors, including the candidate's experience and qualifications and local market conditions. Please note, the foregoing salary range does not reflect an employee's total compensation package, which may include bonus, company equity, and health benefits.
    AutoFi is an equal opportunity employer. Individuals seeking employment are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, sexual orientation, gender identity or other protected status under all applicable laws, regulations, and ordinances.
    Personal Information submitted as part of your application is subject to our website privacy policy, located at

  • NCC Group (Americas), Inc

    Security Engineers

    1 week ago


    NCC Group (Americas), Inc San Francisco, United States

    Security Engineers · Company: NCC Group (Americas), Inc · Location: San Francisco, CA · Position Type: Full Time · Experience: 1 year · Education: MS · NCC Group (Americas), Inc. seeks Security Engineers w/MS and min. 1 yr experience sought for positions in San Francisco. Salary ...

  • Hive

    Security Engineer

    1 week ago


    Hive San Francisco, United States

    About Hive · Hive is the leading provider of cloud-based AI solutions to understand, search, and generate content, and is trusted by hundreds of the world's largest and most innovative organizations. The company empowers developers with a portfolio of best-in-class, pre-trained ...

  • Commit Partnership

    Security Engineer

    3 weeks ago


    Commit Partnership San Francisco, United States

    About the company: Company size: <50 · Industry: Data Analytics, Data Science, AI · Founding year: 2019 · Stage: B · Funding: $100M · Backed by: Top-tier investors including Sequoia Capital, Andreessen Horowitz, and Snowflake · Tech Stack/Key Tech: Kubernetes, AWS, Terrafor ...

  • HonorVet Technologies

    Security Engineer

    2 weeks ago


    HonorVet Technologies San Francisco, United States

    Title: Security Engineer · Location: Remote · Duration: 12+ months · Position Description · A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy development ...

  • ShiftCode Analytics

    Security Engineer

    3 weeks ago


    ShiftCode Analytics San Francisco, United States

    Interview : Video · Visa : All apart from H1b and CPT · This is hybrid from day-1. Candidate must be local. · Description : · Qualifications: · 4+ years of security engineering experience OR equivalent experience in a SWE/DevOps role and an interest in working on security en ...

  • Retool

    Security Engineer

    3 weeks ago


    Retool San Francisco, CA, United States

    WHY WE'RE LOOKING FOR YOU · Retool aspires to be the single best way companies build internal tools, bringing good software to everyone. Central to this vision is an unwavering commitment to security. Retool both handles our clients' most sensitive data and offers a Turing-compl ...

  • HonorVet Technologies

    Security Engineer

    3 weeks ago


    HonorVet Technologies San Francisco, United States

    Title: Security Engineer · Location: Remote · Duration: 12+ months · Position Description · A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy developmen ...

  • Retool

    Security Engineer

    1 week ago


    Retool San Francisco, United States

    ABOUT RETOOL: · Nearly every company in the world runs on custom software: Gartner estimates that up to 50% of all code is written for internal use. This is the operational software for refunding orders, underwriting loans, onboarding employees, analyzing transactions, and prov ...

  • Hive

    Security Engineer

    3 weeks ago


    Hive San Francisco, CA, United States

    About Hive · Hive is the leading provider of cloud-based AI solutions for content understanding, trusted by the world's largest, fastest growing, and most innovative organizations. The company empowers developers with a portfolio of best-in-class, pre-trained AI models, serving ...

  • Innovaccer

    Security Engineer

    2 weeks ago


    Innovaccer San Francisco, United States

    Your Role · We are growing rapidly in the US with acquisitions and in the US Government space. We are looking to expand our US security team with talented people. We at Innovaccer are looking for a · Security Engineer-III · who will be responsible for performing real-time moni ...

  • HeyGen

    Security Engineer

    3 weeks ago


    HeyGen San Francisco, United States

    About HeyGen · HeyGen is a cutting-edge AI-powered platform revolutionizing the world of video creation. · Position Summary: · As a Security Engineer at HeyGen, you will play a critical role in protecting our systems and data from threats. Your expertise will be essential in i ...

  • Gunderson Dettmer

    IT Security Engineer

    2 weeks ago


    Gunderson Dettmer San Francisco, United States

    Gunderson Dettmer is the only business law firm of its kind - exclusively serving the global venture capital and emerging technology marketplace. With 400 attorneys in eleven offices - from Silicon Valley to Singapore - we innovate for innovators, accelerate entrepreneurship, and ...

  • Insight Global

    Security Engineer

    2 weeks ago


    Insight Global San Francisco, United States

    The Security Engineer on the Enterprise Security team is responsible for protecting Grammarly's infrastructure, including the corporate environment within which all our employees do their work and our cloud infrastructure within which all our product offerings and services run · ...

  • Retool

    Security Engineer

    2 weeks ago


    Retool San Francisco, United States Full time

    ABOUT RETOOL: · Nearly every company in the world runs on custom software: Gartner estimates that up to 50% of all code is written for internal use. This is the operational software for refunding orders, underwriting loans, onboarding employees, analyzing transactions, and prov ...

  • Insight Global

    Security Engineer

    4 weeks ago


    Insight Global San Francisco, United States

    Job Description · * The Security Engineer on the Enterprise Security team is responsible for protecting Grammarly's infrastructure, including the corporate environment within which all our employees do their work and our cloud infrastructure within which all our product offering ...

  • Russell Tobin

    Security Engineer

    1 week ago


    Russell Tobin San Francisco, United States

    Job Description · Job Description · Job Title: Security Engineer Level V · Job Location: San Francisco, CA · Duration: 11 Months plus · Pay Range: $120/hr-$130/hr on W2 · Duties: · Identify gaps in our infrastructure, and work with business partners to gain visibility throug ...

  • Iterable

    Security Engineer

    1 hour ago


    Iterable San Francisco, United States

    Iterable · The cross channel marketing platform that powers unified customer experiences, and empowers you to create, optimize, and measure every customer interaction. · View company page · Iterable is the top-rated AI-powered customer engagement platform that helps organizati ...

  • HonorVet Technologies

    Security Engineer

    1 week ago


    HonorVet Technologies San Francisco, United States

    Title: Security EngineerLocation: RemoteDuration: 12+ months · Position DescriptionA Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy development or opera ...

  • Vouch

    Security Engineer

    3 weeks ago


    Vouch San Francisco, United States

    [Full Time] Security Engineer at Vouch (United States) | BEAMSTART Jobs · Security Engineer · Vouch United States · Date Posted · 04 Jan, 2023 · Work Location · San Francisco, United States · Salary Offered · $145000 — $165000 yearly · Job Type · Full Time · Experience Required ...

  • Insight Global

    Security Engineer

    2 weeks ago


    Insight Global San Francisco, United States

    Role: Security EngineerPR: $50 -70/hrLocation: hybrid phx azContract: 12 month contract (possible extensions) · * 2-4 Years of professional experience as a Security Engineer or equivalent position.* Professional experience utilizing Palo Alto.* Professional Experience working wi ...