Experience: 5 years of experience in Application Security, DevSecOps, or Software Engineering roles
Development Background: Solid foundational experience working in a software development capacity
Code Literacy: Ability to read, understand, and safely patch security flaws in JavaScript/TypeScript, Python, and Go
Build System Expertise: Strong familiarity with build systems, package managers, and compilation workflows across multiple languages and frameworks
AppSec Tooling Expertise: Hands-on experience operating SAST, SCA, and Secret Scanning tools (such as Snyk, Socket, Wiz Code, Semgrep, or Checkmarx)
Compliance Awareness: Understanding of how vulnerability management maps to security compliance frameworks like SOC 2, ISO 27001, or NIST
Systems Thinking: The ability to see the "big picture" and understand how security decisions impact the entire stack
Technical Influence: The ability to drive technical alignment across the organization through expertise and collaboration rather than direct authority
Autonomy: Comfortable leading major technical initiatives and driving outcomes with minimal oversight
Problem-Solving Mindset: A passion for breaking down complex security challenges into elegant, scalable engineering solutions
This is a full-time role that can be held from our Foster City, CA office. The role has an in-office requirement of Monday, Wednesday, and Friday