Security Engineer

Gamma

• $180K — $310K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of software engineering experience, with 2-3 years in security engineering
  • Hands-on experience securing AWS environments
  • Proficiency in at least one backend language (Python, TypeScript/Node.js, or Go)
  • Deep understanding of web application security and OWASP Top 10
  • Clear communicator, adept at collaborating with product engineering teams
  • Background in penetration testing and SIEM/log analysis
  • Experience in a high-growth SaaS startup (preferred)

Responsibilities

  • Design and implement security controls across AWS infrastructure and application layer
  • Build security tooling and automation for threat detection and response
  • Conduct security reviews of architecture designs and infrastructure changes
  • Lead vulnerability management and coordinate bug bounty responses
  • Develop security monitoring, alerting, and incident response capabilities
  • Partner with engineering teams on secure coding practices

Benefits

  • Strong in-office culture with 4-5 days per week in-person work in San Francisco
  • Flexibility to work from home when focus is needed
  • Opportunity to influence company-wide security practices
  • Engagement with various teams across the organization
Full Job Description
What you'll do
  • Design and implement security controls across Gamma's AWS infrastructure and application layer
  • Build security tooling and automation to detect, prevent, and respond to threats at scale
  • Conduct security reviews of architecture designs, code, and infrastructure changes
  • Lead vulnerability management, coordinate bug bounty responses, and drive remediation priorities
  • Develop and maintain security monitoring, alerting, and incident response capabilities
  • Partner with engineering teams on secure coding practices and threat modeling
  • Deploy AI-assisted vulnerability scanning across our codebase and infrastructure-scanning our own systems with frontier models before attackers do
  • Build automated triage workflows that use AI to deduplicate findings, estimate exposure, and draft remediation tickets
  • Drive adoption of memory-safe languages and secure-by-design practices for new code, informed by current CISA and NCSC guidance


What you'll bring
  • 5+ years of software engineering experience with at least 2-3 years focused on security engineering or application security
  • Strong hands-on experience securing AWS environments, including IAM, VPC, security groups, CloudTrail, and GuardDuty
  • Proficiency in at least one backend language (Python, TypeScript/Node.js, or Go preferred) with experience building security tools
  • Deep understanding of web application security including OWASP Top 10, common vulnerability classes, and authentication/authorization patterns, with experience implementing security controls in CI/CD pipelines and infrastructure-as-code (Terraform, CloudFormation)
  • Clear communicator who works well embedded with product engineering teams
  • Background in penetration testing, offensive security, and SIEM/log analysis
Nice to have
  • Experience at a high-growth SaaS startup navigating rapid scaling and compliance
  • Familiarity with AI/ML security tooling, including using frontier models for code scanning, automated pentesting, or threat detection
  • Experience building zero trust architecture or identity-aware access controls (FIDO2, short-lived tokens, hardware-bound credentials)
  • Knowledge of supply chain security frameworks like SLSA, OpenSSF Scorecard, or SBOM tooling


Compensation range:

The base salary for this full-time position, which spans multiple internal levels depending on qualifications, ranges between $180K - $310K plus benefits & equity.

Final offer amounts are determined by multiple factors, including but not limited to experience and expertise in the requirements listed above.

If you're interested in this role but you don't meet every requirement, we encourage you to apply anyway! We're always excited about meeting great people.

Similar Jobs

More Jobs at Gamma

  • Site Reliability Engineer
    $230K — $310K *
    San Francisco, CA 94112 (San Francisco County)
    Information Technology
    In-Person
  • Security Engineer
    $180K — $310K *
    San Francisco, CA 94112 (San Francisco County)
    Information Technology
    In-Person
  • Sr. Product Manager, B2B
    $225K — $290K *
    San Francisco, CA 94112 (San Francisco County)
    Enterprise Technology
    In-Person
  • Software Engineer, Backend
    $180K — $310K *
    San Francisco, CA 94112 (San Francisco County)
    Consumer Technology
    In-Person
  • Software Engineer, Data Systems
    $230K — $310K *
    San Francisco, CA 94112 (San Francisco County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Security Engineer jobs: