Superhuman

Corporate Security Engineer

Superhuman$108K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years experience in securing applications at scale
  • Proficient in secure SDLC processes: threat modeling, design reviews, secure code reviews, and web app pentesting
  • Familiar with security tools like SAST, DAST, and SCA
  • Experience incorporating AI to address security challenges
  • Software engineering experience in languages such as Java, Python, JavaScript, or Go
  • Management of vulnerability disclosure programs or experience in bug bounty platforms like HackerOne or Bugcrowd
  • Ability to think adversarially while effectively engineering risk mitigations
  • Proficient in independent task management across multiple projects.

Responsibilities

  • Collaborate with engineering teams to create Threat Models and conduct design and secure code reviews
  • Develop end-to-end security solutions to mitigate risks across products
  • Enhance Product Security tooling and automate the bug bounty program
  • Experiment with AI-based tools to expedite Security processes
  • Engage with stakeholders, communicating security risks and safeguarding customer data

Benefits

  • Comprehensive health care including medical, dental, vision, and mental health benefits
  • Disability and life insurance options
  • 401(k) and RRSP matching
  • Paid parental leave
  • Generous paid time off package including 20 days PTO and 12 paid holidays annually
  • Stipends for caregiving, pet care, wellness, and home office
  • Annual professional development budget and opportunities
Full Job Description
Superhuman offers a dynamic hybrid working model for this role. This flexible approach gives team members the best of both worlds: plenty of focus time along with in-person collaboration that helps foster trust, innovation, and a strong team culture.

The Opportunity

Superhuman is building the AI-native future of work: a family of products people and companies rely on to think, write, and get things done faster. We ship AI features and agents at a pace that makes security one of the most interesting problems in the building, and we're looking for a Product Security Engineer to help us solve it. Your job won't be to slow us down; it will be to make moving fast the safe default. You will be building the identity model, guardrails, and secure-by-default platform that lets our engineers and AI systems operate boldly. You'll work on bleeding-edge AI and product security problems: securing AI agents and applications, automating KTLO and toil work away, and empowering our engineers to build quickly and securely because the safe path is the default path.

As a Product Security Engineer, you will:
  • Collaborate with Product Engineering teams throughout the SDLC, creating Threat Models, conducting Design Reviews, Secure Code Reviews, and manual testing to identify vulnerabilities.
  • Develop and implement end-to-end security solutions to mitigate risks across our product suite.
  • Help drive improvements across our Product Security tooling, automation, and bug bounty program.
  • Experiment with and develop AI-based tools to enable the Security team to move even faster.
  • Be the voice of our customers, actively engaging stakeholders across engineering teams, communicating security risks and trade-offs while keeping customer data secure.


Qualifications
  • Has 3+ years of relevant experience in securing applications at scale.
  • Experience working at each touchpoint in a secure SDLC: threat modeling, design reviews, secure code reviews, and web app pentesting.
  • Familiarity with the standard Product Security tool suite: SAST, DAST, and SCA.
  • Experience with using AI to solve Security challenges at scale.
  • Software engineering or programming experience in at least one language, such as Java, Python, JavaScript, or Go.
  • Experience managing vulnerability disclosure programs or conducting security research on bug bounty platforms such as HackerOne or Bugcrowd.
  • The ability to think like an adversary to identify risk, and then build like an engineer to mitigate those risks.
  • Has a demonstrated ability to work independently with minimal guidance, proactively manages tasks and priorities across multiple projects, analyzes and executes work efficiently, collaborates effectively with cross-functional teams, and thrives in fast-paced, results-driven environments.


Compensation and Benefits

Superhuman offers all team members competitive pay along with a benefits package encompassing the following and more:
  • Excellent health care (including a wide range of medical, dental, vision, mental health, and fertility benefits)
  • Disability and life insurance options
  • 401(k) and RRSP matching
  • Paid parental leave
  • 20 days of paid time off per year, 12 days of paid holidays per year, two floating holidays per year, and flexible sick time
  • Generous stipends (including those for caregiving, pet care, wellness, your home office, and more)
  • Annual professional development budget and opportunities

Superhuman takes a market-based approach to compensation, so base pay may vary by location. Our US locations are categorized into two compensation zones based on proximity to our hub locations.

Base pay may vary considerably depending on job-related knowledge, skills, and experience. The expected salary ranges for this position are outlined below by compensation zone and may be modified in the future.

Similar Jobs

More Jobs at Superhuman

More Information Technology Jobs

Find similar Corporate Security Engineer jobs: