Assured is on a mission to modernize insurance. We're looking for a Staff Security Engineer to help scale and mature security across our platform, infrastructure, and development workflows.
Requirements
- Lead security architecture and design reviews across applications, infrastructure, and integrations to ensure secure patterns are embedded early in the development lifecycle.
- Conduct and coordinate penetration testing, threat modeling, and security reviews for critical services, new features, and third-party integrations.
- Design and implement security automation within CI/CD pipelines to ensure secure coding practices and infrastructure policies are enforced at scale.
- Partner with infrastructure and DevOps teams to secure cloud platforms (AWS) and improve identity, network, and workload security.
- Build security observability and detection capabilities, including security data pipelines, SIEM integrations, and threat intelligence signals.
- Think like an attacker—identify systemic weaknesses and design controls that protect against entire classes of attacks, not just individual vulnerabilities.
- Work closely with developers to improve security practices through secure architecture guidance, code review support, and developer enablement.
- Lead incident response investigations and help build processes for identifying, analyzing, and mitigating security incidents.
- Own and evolve the bug bounty program, including triage, response processes, and improvements to vulnerability management workflows.
- Develop security standards, playbooks, and training programs that make security practices easier for engineering teams to adopt.
- Help define the security roadmap, identifying initiatives that improve both risk posture and operational efficiency.
Benefits
- Competitive Compensation
- Healthcare Plan
- Free life insurance
- Unlimited PTO
- Family Leave
- 401(k) Contribution
- WFH Benefits
- Health FSAs & HSAs
- Team events & Offsites