Apply

Senior Software Engineer, Security Partner

Posted 11 days agoViewed

View full description

💎 Seniority level: Lead, 5+ years

📍 Location: United States

💸 Salary: 190800.0 - 267100.0 USD per year

🔍 Industry: Information Security

🏢 Company: Reddit👥 1001-5000💰 $410,000,000 Series F almost 4 years ago🫂 Last layoff almost 2 years agoNewsContentSocial NetworkSocial Media

🗣️ Languages: English

⏳ Experience: 5+ years

🪄 Skills: AWSDockerProject ManagementSoftware DevelopmentCloud ComputingCybersecurityCommunication SkillsDevOpsComplianceRisk ManagementScripting

Requirements:
  • Deep experience with Golang programming languages, and familiarity with DevOps technologies and capabilities to deploy code to production environments.
  • 5+ years of experience in security partnerships, information security, or a related role.
  • Strong understanding of security principles, best practices, and industry standards (e.g., ISO 27001, NIST, SOX).
  • Experience with threat modeling, security risk assessment and mitigation techniques.
  • Excellent communication, interpersonal, and presentation skills.
  • Knowledge of cloud security (AWS, GCP), infrastructure components (Redis, Postgres, Cassandra), and distributed systems design.
  • Experience with vendor security assessments.
  • Experience with security compliance.
Responsibilities:
  • Develop and maintain strong relationships with key internal stakeholders (engineering, product, legal, etc.) and external partners (vendors, clients, etc.).
  • Act as a primary point of contact for security-related inquiries and issues for a particular subset of Reddit products.
  • Facilitate effective communication and collaboration between security teams and partner organizations.
  • Conduct threat modeling assessments of partner integrations, collaborations, and planned features.
  • Identify and evaluate potential security vulnerabilities and develop mitigation strategies.
  • Make recommendations and ship those recommendations with partner development teams to mitigate identified risks.
  • Ensure compliance with relevant security standards and regulations.
  • Promote security awareness and best practices among partners and internal teams.
  • Develop and deliver security training materials and presentations.
  • Stay up-to-date on the latest security trends and technologies.
  • Evangelize paved paths developed by Reddit security teams for adoption within product teams they cover.
  • Perform peer reviews of code related to security and privacy components.
  • Able to provide input and value to technical design discussions and decisions that touch on security and reliability features.
  • Act as a glue between infrastructure and development teams, flexing security troubleshooting skillset and ability to connect the dots and cross functional problems.
  • Participate in security incident response activities, providing technical expertise and support related to product security incident response.
  • Conduct post-incident reviews and develop recommendations for improvement.
Apply