The RoleYou'll be Tempo's first dedicated product security engineer, standing up application and infrastructure security from the ground floor. You'll build real tooling, respond to real incidents, and work directly with engineering to secure systems that help onboard the largest enterprises onchain.
Responsibilities- Build and deploy security tooling across endpoint management, supply-chain security, infrastructure, and application layers
- Identify and remediate security gaps across Tempo's production systems and development pipelines
- Lead incident response end-to-end: triage, containment, remediation, and post-mortems
- Partner with engineering on secure design reviews and operational security decisions
- Establish repeatable, practical security practices for how systems are built, deployed, monitored, and secured
- Improve supply-chain security across dependencies, build systems, and deployment artifacts
- Scale application-security coverage as Tempo's infrastructure and product surface grow
- Operate with autonomy, build what's needed without waiting for large-company support structures
Qualifications- 5-8 years of hands-on product or application security engineering experience
- Track record building security practices at a company in the 100-500 person range, or similar environments with limited existing security infrastructure
- Hands-on coding ability: you build security tooling, automation, and detection, not just recommendations
- Deep incident-response experience including high-severity situations owned end-to-end
- Strong infrastructure security knowledge: hosting environments, network security, monitoring, and securing system integrations
- Application security fundamentals: threat modeling, secure code review, vulnerability management, supply-chain security
- Comfortable communicating technical security decisions to engineers with real depth and specificity