Staff Software Engineer
Job description
About the role
The owns the design and execution of critical infrastructure that safeguards the company's internal systems and the sensitive data of our global customers. This role requires a proactive mindset where the hire will architect and own the security controls that monitor, detect, and respond to sophisticated threats across the enterprise. You will be responsible for ensuring the integrity, reliability, and confidentiality of the platforms that power our physical AI ecosystem. The position demands deep collaboration with executive leadership to translate high-level security strategies into robust technical implementations. You will drive the standardization of security practices across engineering teams, ensuring consistency and resilience in our operations. This role is pivotal in bridging the gap between cutting-edge security research and production-ready systems at scale. Ultimately, the hire will act as a trusted advisor and technical leader, shaping the future of our security posture and influencing industry best practices.
Key facts
What you'll do
- Architect and maintain the core infrastructure responsible for security monitoring, detection, and automated response mechanisms.
- Design and integrate new microservices and external feeds into our Security Information and Event Management (SIEM) platform to enhance visibility.
- Analyze and refine alert detection logic and configurations to eliminate noise and amplify actionable, high-fidelity security signals.
- Engineer and deploy automated playbooks that orchestrate incident response procedures and perform contextual data enrichment during investigations.
- Lead and facilitate structured tabletop exercises to validate incident response plans and manage the continuous improvement of procedures.
- Collaborate closely with the Chief Information Security Officer and security engineering teams to define, evolve, and scale the enterprise security program.
- Provide technical mentorship to mid-level and senior engineers, elevating the overall team's capability in security reasoning and system design.
- Serve as a subject matter expert representative at major industry security conferences and through the publication of technical content on corporate blogs.
- Evaluate emerging security frameworks and tools, conducting proof-of-concept implementations to assess their viability for adoption.
- Optimize the performance and scalability of critical security data pipelines to handle massive volumes of telemetry and event data.
- Partner with cross-functional product teams to embed security controls directly into the software development lifecycle from inception.
- Document complex system architectures and operational procedures to ensure clarity, auditability, and knowledge transfer.
- Drive initiatives to automate compliance reporting and evidence collection for internal and external regulatory requirements.
- Champion the development of secure-by-design principles, influencing code reviews and architectural decisions across the engineering organization.
Requirements
- Hold a Bachelor of Science degree in Computer Science, Information Security, or a closely related field, or possess equivalent practical experience.
- Bring a minimum of 7 years and up to 10+ years of professional experience in roles related to software engineering, security engineering, site reliability engineering, or security consulting.
- Demonstrate a proven track record of designing, building, and operating scalable, highly available products and services within the Amazon Web Services ecosystem.
- Show advanced proficiency in at least one of the following modern programming languages: Python or Golang, with a strong grasp of concurrent programming patterns.
- Possess hands-on experience with Infrastructure as Code methodologies and tools, coupled with a deep understanding of continuous integration and continuous delivery/ deployment pipelines.
- Have a substantial background in designing, building, and optimizing high-throughput, low-latency ETL data pipelines that process massive datasets.
- Demonstrate exceptional written and verbal communication skills, with the ability to convey complex technical concepts to both technical and non-technical stakeholders.
- Exhibit a consistent ability to work collaboratively in a team environment, fostering a culture of trust, shared ownership, and collective problem-solving.
- Must be legally authorized to work in the United States without requiring current sponsorship, as the role is based in San Mateo, California.
Nice to have
- Experience contributing to open-source security projects or publishing research findings in the field of cybersecurity.
- Familiarity with regulatory frameworks such as NIST, ISO 27001, or SOC 2.
- Prior experience in a Site Reliability Engineering role managing large-scale distributed systems.
- Knowledge of modern container orchestration platforms, specifically Kubernetes, and service mesh technologies.
- Experience with data visualization platforms such as Grafana or Kibana for security dashboards.
- Understanding of identity and access management protocols, including SAML, OAuth, and OIDC.
Practical notes
- This position is based in San Mateo, California, and requires consistent presence in the office five days per week.
- The standard work schedule aligns with business hours, with expectations for occasional after-hours support during major incident response activities.
- Compensation details, including base salary and equity compensation in the form of RSUs, are outlined in the offer letter upon hiring decisions.
- While visa sponsorship is generally not available for this specific role due to location and regulatory constraints, the company remains committed to inclusive hiring practices where legally permissible.