Staff Security Engineer - United States

Reposted 9 Hours Ago
Easy Apply
15 Locations
In-Office or Remote
170K-250K
Senior level
Cloud • Information Technology • Security • Software
Our goal at JumpCloud is to Make (Remote) Work Happen with One Directory to Rule Them All!
The Role
Lead design and maintenance of secure infrastructure, develop automation for policy enforcement, collaborate with engineering teams, and conduct threat model reviews.
Summary Generated by Built In
All roles at JumpCloud® are Remote unless otherwise specified in the Job Description.

About JumpCloud®
JumpCloud® delivers a unified open directory platform that makes it easy to securely manage identities, devices, and access across your organization. With JumpCloud, IT teams and MSPs enable users to work securely from anywhere and manage their Windows, Apple, Linux, and Android devices from a single platform. JumpCloud is IT Simplified.


About the Role: 

JumpCloud is looking for a Staff Security Engineer on the DevSecOps team focusing on building and maintaining infrastructure, software, and automation to monitor and mitigate attacks and vulnerabilities across JumpCloud products and services. You will help lead a team responsible for ensuring JumpCloud products' integrity and keeping JumpCloud users safe.

About the Team
As a Staff Security Engineer specializing in DevSecOps, you will be responsible for designing and developing software solutions for protecting data and infrastructure deployed into the cloud. You will collaborate with SecOps, GRC, and other security functions, gaining exposure to a broad range of security domains. In addition, you will work with various engineering partners across the organization.

What you'll be doing:

  • Lead the design and maintenance of infrastructure, including custom software and vendor integrations, to meet advanced security needs for Product and Infrastructure Security
  • Develop and implement policy enforcement automation and comprehensive reporting systems
  • Set up data ingestion, as needed, for the SIEM or other tooling
  • Collaborate with DevOps and Developer Enablement teams around the globe to embed security best practices and establish guardrails for developers
  • Conduct and oversee threat model reviews of product features and architectures, providing strategic guidance
  • Mentor and guide service/feature teams in secure software design principles

You have:

  • 7-10 years of experience in the field of security engineering with an extensive background and experience in software development and architecture
  • Substantial production experience with AWS or GCP that includes expertise in networking, securing workloads, and IAM management
  • Proficient in writing Golang – almost all of the Security team’s tooling is written in Go, with some miscellaneous scripts in Python
  • Extensive experience in Terraform (HCL) and Kubernetes, including containerization technologies
  • Proficiency with CI/CD tools, particularly GitHub Actions (Spacelift for IaC is a bonus)
  • Exceptional written and oral communication skills, with the ability to convey complex security concepts
  • Proven ability to lead cross functional projects and teams

You are also an expert in one of the following areas:

  • Product Security (ProdSec) 
  • Including threat modeling and secure architecture design/review
  • Authentication protocols (SAML, OAuth, LDAP, etc.) 
  • Mobile application security (iOS and Android)

Bonus points for experience with:

  • Open Policy Agent (OPA) 
  • Open source security tools 
  • Data pipeline tooling
  • Certificate infrastructure
  • Distributed systems
  • Working on core OS (Windows, Mac, Linux) APIs

Personal Characteristics that'll help you succeed:

  • Visionary leadership with a focus on innovation in security
  • Results oriented, self driven, and able to work independently with minimal supervision
  • High level of integrity with a commitment to accountability
  • Excellent communication skills, capable of articulating complex ideas clearly
  • Creative problem-solving abilities with a passion for security

You MUST be:

  • Available for on-call (after hours) duties for any internal tools/services the DevSecOps team owns
  • Willing to support the Security Operations team during incidents in performing ad-hoc queries, forensics, etc. 

In accordance with the Colorado Equal Pay for Equal Work Act, the approximate annual compensation range for this role, depending on individual candidate level and experience, is $170,000 - $250,000 USD, including base salary and any related bonuses or commissions. 


In the US, JumpCloud® provides a comprehensive benefits package, with several medical plans to choose from including a high deductible HSA plan with employer contribution, two dental plans, vision insurance, flexible spending account (FSA), employee assistance program (EAP), short- and long-term disability, life insurance and a 401k savings plan with match. We have a flexible paid time off policy.

#LI-PD1

Where you’ll be working/Location:
JumpCloud® is committed to being Remote First, meaning that you are able to work remotely within the country noted in the Job Description.

All roles posted in United States locations require that you be located within one of the 50 U.S. States.  Our Headquarters is in the Denver/Boulder, CO area but as a remote company, you are able to work remotely anywhere in the U.S.  If you would like to spend time in our offices in the Denver/Boulder area, you are welcome to do that as well.

This role is remote in the United States of America. You must be located in and authorized to work in the USA to be considered for this role.

Why JumpCloud®?
If you thrive working in a fast, SaaS-based environment and you are passionate about solving challenging technical problems, we look forward to hearing from you! JumpCloud® is an incredible place to share and grow your expertise! You’ll work with amazing talent across each department who are passionate about our mission. We’re out of the box thinkers, so your unique ideas and approaches for conceiving a product and/or feature will be welcome. You’ll have a voice in the organization as you work with a seasoned executive team, a supportive board and in a proven market that our customers are excited about.  

One of JumpCloud®'s three core values is to “Build Connections.” To us that means creating " human connection with each other regardless of our backgrounds, orientations, geographies, religions, languages, gender, race, etc. We care deeply about the people that we work with and want to see everyone succeed." - Rajat Bhargava, CEO

Please submit your résumé and brief explanation about yourself and why you would be a good fit for JumpCloud®.  Please note JumpCloud® is not accepting third party resumes at this time.   

JumpCloud® is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.

Scam Notice:
Please be aware that there are individuals and organizations that may attempt to scam job seekers by offering fraudulent employment opportunities in the name of JumpCloud. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. Please note that JumpCloud will never ask for any personal account information, such as credit card details or bank account numbers, during the recruitment process. Additionally, JumpCloud will never send you a check for any equipment prior to employment.

All communication related to interviews and offers from our recruiters and hiring managers will come from official company email addresses (@jumpcloud.com) and will never ask for any payment, fee to be paid or purchases to be made by the job seeker. If you are contacted by anyone claiming to represent JumpCloud and you are unsure of their authenticity, please do not provide any personal/financial information and contact us immediately at [email protected] with the subject line "Scam Notice" 

#LI-Remote #BI-Remote

Top Skills

AWS
Ci/Cd
GCP
Github Actions
Go
Kubernetes
Python
Spacelift
Terraform

What the Team is Saying

Aaron
Courtney
Katy
Rajat
Rajat
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Louisville, CO
800 Employees
Year Founded: 2012

What We Do

JumpCloud’s mission is to Make Work Happen®, providing simple, secure access to an organization’s technology resources from any device, or any location. The JumpCloud Open Directory Platform gives IT, security operations, and DevOps a single, cloud-based solution to control and manage employee identities and their devices, and apply conditional access controls based on Zero Trust principals. Since launching in 2012, our global user base has grown to more than 150,000 organizations, with more than 5,000 paying customers including Cars.com, GoFundMe, Grab, ClassPass, Uplight and Peloton. JumpCloud has raised over $400M from world-class investors including Sapphire Ventures, General Atlantic, Sands Capital, Atlassian, and CrowdStrike. Our teams are growing fast, too, and we're looking for talent across engineering, sales, customer success, marketing, product management, and more. Join our team of dedicated, passionate, and creative people who are eager to change the IT industry forever.

We live by our core values which are:
Build Connections
Think Big
1% Better Every Day

Why Work With Us

We offer an incredible opportunity to see your impact. Each team member gets an up close personal view and education into building a fast growing startup. We are transparent about what we are doing, how we are doing it, and the decisions that we are making. There is opportunity to progress and flexibility to find unique approaches to our business

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

JumpCloud Offices

Remote Workspace

Employees work remotely.

JumpCloud is committed to being remote-first across the world. We have team members in most U.S. states and in 14 countries.

Typical time on-site: None
HQLouisville, CO
Turkey
Bangalore, India
United Kingdom
Mexico
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account