Roboflow
Security Engineer
Remote work allowed only within certain countries or regions.
Employer listed it 7 months ago · Found 11h ago
Been open since 7 months ago. Long-running listings are sometimes left up after the role is filled.
Salary
$165,000 to $200,000
Location
Timezone
Not stated
Contract
Full-time
Experience
Mid
Category
Software
Stated by the employer in the job description
Remote flexibility
Region Restricted
Remote work is allowed, but the listing limits candidates to NY, SF or Remote.
What the employer says
- Source listing states candidate location: "NY, SF or Remote"
What Nomaders makes of it
- Nomaders could not match this to a wider region
- Check the original posting
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
Who We Are
Our mission is to make the world programmable. Sight is one of the key ways we understand the world, and soon this will be true for the software we use, too.
We’re building the tools, community, and resources needed to make the world programmable with artificial intelligence. Roboflow simplifies building and using computer vision models. Today, over 1M+ developers, including those from half the Fortune 100, use Roboflow’s machine learning open source and hosted tools. That includes counting cells to accelerate cancer research, improving construction site safety , digitizing floor plans , preserving coral reef populations , guiding drone flight , and much more .
Roboflow is supported by great customers and investors, having raised over 63 million from Y Combinator, Google Ventures, Craft Ventures, Sam Altman, Lachy Groom, amongst other leading software investors.
We are looking for a Senior Security Engineer who views security as an engineering challenge, not a checkbox exercise. You will join our Infrastructure Team to own security across our entire stack (from the low-level GKE configurations to the high-level application logic).
In a startup of our size, "chaos" is just another word for "opportunity." You aren’t here to just manage compliance spreadsheets or interface with IT; you are here to build the tooling, automation, and architecture that makes it impossible for our developers to make a critical mistake as we continually increase velocity.
What You’ll Do
Own the Stack: Secure everything from our Kubernetes clusters on the cloud to our SaaS integrations and developer workflows.
Usher in the Future: articulate and execute on a vision for what security should be in the age of LLMs giving both us and attackers increasing leverage.
Engineer for Security: Build internal tooling and CI/CD automations that catch vulnerabilities before they ever hit production.
Architect & Model: Lead threat modeling sessions and secure code reviews, ensuring we design "secure-by-default" APIs and deployments.
Harden the Perimeter: Take a first-principles approach to hardening authentication and access control across all internal and external surfaces.
Red Team: proactively probe for vulnerabilities and lead the remediation.
Lead the Bug Bounty: You will be the primary owner for standing up, launching, and managing our Bug Bounty Program , triaging reports, and driving remediation.
Respond & Remediate: Investigate vulnerabilities, lead incident response, orchestrate pen testing, and run blameless postmortems that actually result in systemic change.
Evangelize: Be the partner, not the blocker. Translate complex security risks into actionable engineering tasks that your peers can get excited about.
Who You Are
Startup Native: You thrive in a fast paced 100–300 person environments. You know how to prioritize when everything feels urgent and are comfortable "failing forward" to find the right solution.
Security-First Engineer: You have 6+ years of experience in software/infrastructure engineering with a deep obsession with security. You don't just find holes; you write the code to plug them.
Cloud Savvy: You are deeply familiar with Google Cloud (GCP) , Kubernetes , and containerized environments.
Systems Thinker: You can analyze a system for weaknesses whether they are buried in business logic, IAM configurations, or the codebase.
Action-Oriented: You have a track record of responding to real-world incidents and leading remediation efforts without being the "no" person.
Our Technical Stack
Cloud: Google Cloud Platform (GCP)
Requirements
- ·[45m] Technical Assessment
- ·Team Interview Phase:
- ·[30m] Meet with another member of the team
- ·[60m] Meet with hiring manager or CTO
- ·Use this time to review specifics about the job description
Benefits
No benefits package published with this listing. Ask about it at first interview.
How to apply
- 1Check the flexibility label above, region restricted, matches where you plan to live and work.
- 2Tailor your CV to the role at Roboflow, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 11h ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
$165,000 to $200,000 · You'll be taken to the employer's careers page.