Grow Therapy
Senior/Staff Engineer, Application & Product Security
Remote work allowed only within certain countries or regions.
Employer listed it 5 weeks ago · Added yesterday
Been open since 5 weeks ago, still being checked, but it has been live a while.
Salary
$182,000 to $288,000
Location
Timezone
Not stated
Contract
Full-time
Experience
Lead
Category
Software
Published by the employer
Remote flexibility
Region Restricted
Remote work is allowed, but only for candidates based in United States, Canada.
What the employer says
- Source listing states candidate location: "Remote, Seattle, New York City, Waterloo, San Francisco"
What Nomaders makes of it
- Applications outside the listed area are usually rejected
- Timezone overlap with the listed area is often expected
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
About Us:
Grow was born to tackle a critical challenge: making mental health care more effective and accessible for everyone. Since launching in 2020, 15 million sessions have started on Grow, and we've barely scratched the surface. We do it through a three-sided marketplace that empowers providers, augments insurance payors, and serves patients. Every solution we build reveals ten more waiting to be delivered, and that's just what gets us going. We've backed that ambition with more than $328M in funding, including our Series D at a $3B valuation from Sequoia Capital, Transformation Capital, TCV, SignalFire, Menlo Ventures, Goldman Sachs Alternatives, and others.
At Grow, the work you do can literally change someone's life. Your work here doesn't stay on a screen; it impacts whether someone can find, afford, and access quality care. That ambition sets us apart, and offers you an endless runway to impact one of the world's most urgent issues. We don’t have passenger seats here. Everyone is driving something that matters.
This work deserves real commitment. So if you thrive on meeting problems head on, untangling serious complexity, and working at pace with the sharpest yet kindest people around, you've come to the right place.
The Opportunity
You'll make the secure path - the easy path for our engineering org of roughly 145 engineers, baking secure defaults, CI guardrails, and threat modeling into the SDLC so security ships with the product instead of blocking it, including for our fast growing AI and agent features.
What You'll Be Doing
Champion a secure by default culture, building defense in depth into our frameworks, architecture, and everyday processes
Develop security requirements and work directly with teams to build them into new applications and services
Manually dig into our source code to build a real, working understanding of our products, not just a surface level view from tooling output
Drive the product security roadmap in collaboration with product, engineering, and the wider security team
Partner across product, engineering, DevOps, and services to ship secure software without slowing teams down
Design solutions that resolve and mitigate vulnerabilities and risk, and research the threats and attack methods most relevant to Grow
Run security risk assessments, hands on penetration testing, and threat modeling, and turn those findings into secure coding education for engineers
You'll Be a Good Fit If
You have 6+ years of experience in application or product security
You code well enough to automate tedious work and build frameworks or services that solve real security problems
You've been hands on with microservice architectures
You collaborate well, both within a security team and across the wider engineering org
You prioritize based on real risk, not just raw vulnerability counts
You've rolled up your sleeves and built a deep understanding of a codebase, rather than just talking about SAST, DAST, and SBOM tooling from the outside
You work well with product managers and service teams, not just engineers, and you genuinely care about the product and how it actually functions
Employment Type: Full Time, Exempt Base Compensation: The base compensation range for this position is:
Hybrid Commitment: $217,000–$288,000 USD Annually
Requirements
- ·You code well enough to automate tedious work and build frameworks or services that solve real security problems
- ·You've been hands on with microservice architectures
- ·You collaborate well, both within a security team and across the wider engineering org
- ·You prioritize based on real risk, not just raw vulnerability counts
- ·You've rolled up your sleeves and built a deep understanding of a codebase, rather than just talking about SAST, DAST, and SBOM tooling from the outside
Benefits
- ·Health Benefits : Comprehensive medical, dental, vision, life, and disability coverage.
- ·Grow for Grow: No cost access to therapy through the Grow platform (available to US employees)
- ·Financial Wellness : Retirement savings programs and equity opportunities to help you invest in your future.
- ·Flexible Time Off, Paid Holidays & Winter Break : Flexible time off, company paid holidays (which vary by country), and a full company wide Winter Break to rest and recharge
- ·Parental Leave : Up to 18 weeks of paid parental leave to support you and your growing family and a new child stipend.
How to apply
- 1Check the flexibility label above, region restricted, matches where you plan to live and work.
- 2Tailor your CV to the role at Grow Therapy, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 1d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
$182,000 to $288,000 · You'll be taken to the employer's careers page.