Logo
Instacart

Senior Product Security Engineer

Instacart, Myrtle Point, Oregon, United States, 97458

Save Job

Overview

About the Role -

You will be a key member of the Security Engineering team that is tasked with developing security-focused features and frameworks for Instacart. Ideally a hybrid builder/breaker, you will have an opportunity to lead highly impactful projects across the platform and assist in defining the internal team processes. You will be directly influencing the security posture of many products and systems across the company. About the Team

The security team at Instacart is tasked with ensuring the security and privacy of Instacart’s suite of products and the company as a whole. We believe that with the right mixture of tools and engineering prowess, we can secure our most important assets without negatively impacting productivity. We pride ourselves on fostering a collaborative and inclusive environment where continuous learning and growth are encouraged. About the Job

Design, implement and ship high-quality security features for product and internal tools across Instacart. Deploy and operationalize a variety of open-source and commercially available security tools and frameworks, including static and dynamic analysis, secret scanning, and IDS tools. Conduct comprehensive security design reviews of new and existing products to identify potential security risks and develop mitigation strategies. Collaborate with cross-functional teams, including engineering and product, to integrate security best practices into the software development process. Advise on common best practices for security application design and architecture. Participate in on-call rotations to support critical operations and respond to incidents with urgency. Share knowledge and mentor other team members, promoting a culture of continuous learning and growth. About You

Minimum Qualifications 5+ years of experience in Security Engineering or Software Engineering, demonstrating a strong grasp of product security concepts and principles Strong knowledge of common back-end web technologies (such as Ruby on Rails, Python, Golang, SQL, etc.) in a large-scale distributed system environment Experience with threat modeling, security assessments, product security concepts, and security architecture reviews An ability to make data-driven decisions & prioritize initiatives that improve key security metrics An ability to balance a sense of urgency with shipping high-quality and pragmatic solutions Solid self-management and organizational skills Experience developing tools and automation using common DevOps toolsets and programming languages (such as Python, Ruby, or Go) Preferred Qualifications Bachelor’s degree in Computer Science, Engineering, Math, or related work experience In-depth knowledge of the best remediation techniques for different application vulnerabilities and the ability to explain them to product teams An ability to create written work products and detailed technical documents to work effectively with cross-functional teams and drive alignment on security objectives and plans. Breaker experience, such as web/application penetration testing Experience working with highly ephemeral environments A security-related or architecture-related certification such as CISSP, OSCP, CEH Instacart provides highly market-competitive compensation and benefits in each location where our employees work. This role is remote and the base pay range for a successful candidate is dependent on their permanent work location. Currently, we are only hiring in the following provinces: Ontario, Alberta, British Columbia, and Nova Scotia. Offers may vary based on many factors, such as candidate experience and skills required for the role. Additionally, this role is eligible for a new hire equity grant as well as annual refresh grants. Please read more about our benefits offerings. For Canadian based candidates, the base pay ranges for a successful candidate are listed below. CAN $165,000 — $214,000 CAD

#J-18808-Ljbffr