Jobs
>
San Francisco

    Product Security Engineer - San Francisco, United States - Notion

    Default job background
    Full time
    Description

    About Us:

    We're on a mission to make it possible for every person, team, and company to be able to tailor their software to solve any problem and take on any challenge. Computers may be our most powerful tools, but most of us can't build or modify the software we use on them every day. At Notion, we want to change this with focus, design, and craft.

    We've been working on this together since 2016, and have customers like Pixar, Mitsubishi, Figma, Plaid, Match Group, and thousands more on this journey with us. Today, we're growing fast and excited for new teammates to join us who are the best at what they do. We're passionate about building a company as diverse and creative as the millions of people Notion reaches worldwide.

    Notion is an in person company, and currently requires its employees to come to the office for two Anchor Days (Mondays & Thursdays).

    About The Role:

    Millions of people use Notion — and this number is increasing every day. Our users depend on us to deliver a secure and trustworthy experience, and we value this more than anything. We want to keep building on that trust, while also continuing to amaze our users with the tools they can build in Notion. This is where you come in — to help us forge a strong, reliable path forward to the future. The Notion application is flexible, powerful and always evolving. With a product that needs to scale to meet the needs of many thousands of businesses globally. They rely on us to protect their data and that of their customers.

    Notion is looking for software engineers that have a passion for security. As an Application Security Engineer you will build and maintain solutions that enhance the security and privacy our products. You will create hardened frameworks that make the secure path the easiest path to implementing at Notion.


    What You'll Achieve:

    • As an early member of Notion's Application Security team you will build the technical foundation of the security and privacy of our products long into the future
    • Make the secure path the easy path for product teams through hardened libraries and building solutions that eliminate classes of vulnerabilities
    • Create static and dynamic analysis rules that detect weaknesses in our codebase
    • Provide developers guidance and education on security and privacy best practices that prevent the authoring of vulnerabilities
    • Participate in and drive mitigation strategies during security related incident responses.


    Skills You'll Need to Bring:

    • Secure Software Development Expertise: You have at least 5+ years of implementing software that must be secure, scalable, and used by multiples teams. You are empathetic software engineers that will utilize your software, looking for sharp edges and eliminating them. You are able to use your experience to educate others and make those around you a better software engineer.
    • Full stack Development Expertise: You have at least 3+ years of experience as a full stack developer. You are equally comfortable commiting code in a client side React app as you are in an Express backend server. You leverage your frontend skills combined with security knowledge to identify secure by default solutions.
    • Security Architecture expertise: You have at least 5+ years of experience building systems that are secure by design. Your system designs have scaled from thousands to even millions of users in order to ensure user data is protected while enabling product teams to be more productive.
    • Thoughtful problem-solving: For you, problem-solving starts with a clear and accurate understanding of the context. You can decompose tricky problems and work towards a clean solution, by yourself or with teammates. You're comfortable asking for help when you get stuck.
    • Ability to advocate for and lead cross functional projects: You regularly advocate for security hardening projects that you then lead by partnered with product engineering teams to improve the security story of the products you are responsible to secure.
    • Pragmatic and business-oriented: You care about business impact and prioritize projects accordingly — As a product security expert you communicate and facilitate understand of the threat model and risks with the goal to balance the right security investments with the right bottom line outcomes.
    • Empathetic communication: You communicate nuanced ideas clearly, whether you're explaining technical decisions in writing or brainstorming in real time. In disagreements, you engage thoughtfully with other perspectives and compromise when needed.

    Nice to Haves:

    • Participates in other companies bug bounty programs or capture the flag experience
    • Published reports of vulnerabilities you have found
    • Involvement in local or regional security user groups or conferences

    We hire talented and passionate people from a variety of backgrounds because we want our global employee base to represent the wide diversity of our customers. If you're excited about a role but your past experience doesn't align perfectly with every bullet point listed in the job description, we still encourage you to apply. If you're a builder at heart, share our company values, and enthusiastic about making software toolmaking ubiquitous, we want to hear from you.

    Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.

    Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role's scope and complexity, and the candidate's experience and expertise, and may vary from the range provided below. For roles based in San Francisco, the estimated base salary range for this role is $160,000 - $250,000 per year.

    #LI-Onsite


  • HonorVet Technologies

    Security Engineer

    3 days ago


    HonorVet Technologies San Francisco, United States

    Title: Security Engineer · Location: Remote · Duration: 12+ months · Position Description · A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy development ...

  • Asana

    Security Engineer

    1 week ago


    Asana San Francisco, United States

    We're looking for a motivated security engineer interested in maturing Asana's product security posture to expand trust with our growing customer base. As a member of the Product Security team, you will focus on shipping features that are free from critical security bugs, enablin ...

  • ShiftCode Analytics

    Security Engineer

    3 days ago


    ShiftCode Analytics San Francisco, United States

    Interview : Video · Visa : All apart from H1b and CPT · This is hybrid from day-1. Candidate must be local. · Description : · Qualifications: · 4+ years of security engineering experience OR equivalent experience in a SWE/DevOps role and an interest in working on security en ...

  • Commit Partnership

    Security Engineer

    5 days ago


    Commit Partnership San Francisco, United States

    About the company: Company size: <50 · Industry: Data Analytics, Data Science, AI · Founding year: 2019 · Stage: B · Funding: $100M · Backed by: Top-tier investors including Sequoia Capital, Andreessen Horowitz, and Snowflake · Tech Stack/Key Tech: Kubernetes, AWS, Terrafor ...

  • HonorVet Technologies

    Security Engineer

    4 days ago


    HonorVet Technologies San Francisco, United States

    Title: Security Engineer · Location: Remote · Duration: 12+ months · Position Description · A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy developmen ...

  • Retool

    Security Engineer

    1 week ago


    Retool San Francisco, United States Full time

    ABOUT RETOOL: · Nearly every company in the world runs on custom software: Gartner estimates that up to 50% of all code is written for internal use. This is the operational software for refunding orders, underwriting loans, onboarding employees, analyzing transactions, and prov ...

  • HeyGen

    Security Engineer

    6 days ago


    HeyGen San Francisco, United States

    About HeyGen · HeyGen is a cutting-edge AI-powered platform revolutionizing the world of video creation. · Position Summary: · As a Security Engineer at HeyGen, you will play a critical role in protecting our systems and data from threats. Your expertise will be essential in i ...

  • Hive

    Security Engineer

    1 week ago


    Hive San Francisco, CA, United States

    About Hive · Hive is the leading provider of cloud-based AI solutions for content understanding, trusted by the world's largest, fastest growing, and most innovative organizations. The company empowers developers with a portfolio of best-in-class, pre-trained AI models, serving ...

  • Vouch

    Security Engineer

    3 days ago


    Vouch San Francisco, United States

    [Full Time] Security Engineer at Vouch (United States) | BEAMSTART Jobs · Security Engineer · Vouch United States · Date Posted · 04 Jan, 2023 · Work Location · San Francisco, United States · Salary Offered · $145000 — $165000 yearly · Job Type · Full Time · Experience Required ...


  • Gunderson Dettmer San Francisco, United States

    Gunderson Dettmer · is the only business law firm of its kind - exclusively serving the global venture capital and emerging technology marketplace. With 400 attorneys in eleven offices - from Silicon Valley to Singapore - we innovate for innovators, accelerate entrepreneurship, ...

  • Retool

    Security Engineer

    1 week ago


    Retool San Francisco, CA, United States

    WHY WE'RE LOOKING FOR YOU · Retool aspires to be the single best way companies build internal tools, bringing good software to everyone. Central to this vision is an unwavering commitment to security. Retool both handles our clients' most sensitive data and offers a Turing-compl ...

  • Innovaccer

    Security Engineer

    3 days ago


    Innovaccer San Francisco, United States

    Your Role · We are growing rapidly in the US with acquisitions and in the US Government space. We are looking to expand our US security team with talented people. We at Innovaccer are looking for a · Security Engineer-III · who will be responsible for performing real-time moni ...

  • Vouch

    Security Engineer

    2 weeks ago


    Vouch San Francisco, CA, United States

    Full Time] Security Engineer at Vouch (United States) | BEAMSTART Jobs Security Engineer · Full Time · Remote Work · Stock Options · Vouch is a new, technology-first insurance company backed with $160M in funding from world-class investors. Like Stripe for payments or Brex fo ...

  • Retool

    Security Engineer

    1 week ago


    Retool San Francisco, CA, United States

    Retool aspires to be the single best way companies build internal tools, bringing good software to everyone. Retool both handles our clients' most sensitive data and offers a Turing-complete coding environment, so security is a core criterion for everything we build. Bringing our ...

  • Insight Global

    Security Engineer

    1 week ago


    Insight Global San Francisco, United States

    The Security Engineer on the Enterprise Security team is responsible for protecting Grammarly's infrastructure, including the corporate environment within which all our employees do their work and our cloud infrastructure within which all our product offerings and services run · ...

  • Anyscale

    Security Engineer

    3 days ago


    Anyscale San Francisco, United States

    About Anyscale · At Anyscale , we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We're commercializing Ray , a popular open-source project that's creating an ecosystem of libraries for scalable machine lear ...

  • Insight Global

    Security Engineer

    1 week ago


    Insight Global San Francisco, United States

    Job Description · * The Security Engineer on the Enterprise Security team is responsible for protecting Grammarly's infrastructure, including the corporate environment within which all our employees do their work and our cloud infrastructure within which all our product offering ...

  • Asana

    It security engineer

    2 weeks ago


    Asana San Francisco, CA, United States

    Keep remote and distributed teams, and your entire organization, focused on their goals, projects, and tasks with Asana. We are looking for a Corporate Security Engineer to lead our cross-functional IT and Security initiatives. You will be working with the Security and IT teams t ...

  • Saxon Global

    Security Engineer

    1 week ago


    Saxon Global San Francisco, CA, United States

    USC,GC Title: Security Engineer Location: San Francisco, CA (hybrid) and travel as needed Duration: 6 Months + Client: WWT/PG&E Interview: Phone/Video Rate: $60-65/hr on c2c Required Skills: Security Engineering Contractor with experience deploying the Elastic Endgame-REQUIRED ( ...

  • Insight Global

    Security Engineer

    1 week ago


    Insight Global San Francisco, CA, United States

    Job Description * The Security Engineer on the Enterprise Security team is responsible for protecting Grammarly's infrastructure, including the corporate environment within which all our employees do their work and our cloud infrastructure within which all our product offerings a ...