OverviewThe CAPS team at Instacart is responsible for securing Cloud infrastructure, AI systems, and Product surfaces. We work closely with all other engineering teams, enabling them to roll out new product features and internal productivity systems in a secure way. Members of the CAPS team assume ownership of security risks and find solutions that mitigate whole classes of vulnerabilities.
About the Job- Identify business-critical risks present within Instacart's product and infrastructure.
- Analyze the risks and define remediation strategies with actionable roadmaps.
- Develop scalable systems to enable and encourage secure engineering patterns.
- Own and drive systemic improvements across engineering and other functions.
- Coach and mentor other engineers within the organization.
About YouMinimum Qualifications- 5+ years of experience in Security Engineering or Offensive Security roles.
- 3+ years of experience performing code reviews and design reviews.
- Proficiency in at least one production language (Python, Go, or TypeScript) sufficient to build internal tooling.
- Hands-on Infrastructure-as-Code experience (Terraform, CloudFormation, or equivalent).
- Knowledge of security bug classes and best practice remediation techniques.
- Understanding of SaaS architectures, common risks, and threat models.
- Experience with Variant Analysis, Root Cause Analysis, or Secure Frameworks.
Preferred Qualifications- Track record of security research, competitive hacking, or OSS contributions.
- Policy-as-code authoring at organization scope (OPA/Rego, Terraform Sentinel/equivalent) with disciplined test coverage and rollout/grandfathering strategies.
- Cloud Security Posture Management (CSPM) at scale - Wiz/Prisma/equivalent, including remediation programs spanning IaC findings and live threat findings (C2, credential abuse), plus running scan infrastructure across CI fleets.
#LI-Remote
Instacart provides highly market-competitive compensation and benefits in each location where our employees work. This role is remote and the base pay range for a successful candidate is dependent on their permanent work location. Please review our Flex First remote work policy here.
Offers may vary based on many factors, such as candidate experience and skills required for the role. Additionally, this role is eligible for a new hire equity grant as well as annual refresh grants. Please read more about our benefits offerings here.
For US based candidates, the base pay ranges for a successful candidate are listed below.
CA, NY, CT, NJ
$230,000-$242,000 USD
WA
$220,000-$232,000 USD
OR, DE, ME, MA, MD, NH, RI, VT, DC, PA, VA, CO, TX, IL, HI
$211,000-$222,000 USD
All other states
$192,000-$202,000 USD