Jobs and Careers
RE

Software Engineer, Security

Render
San Francisco, United StatesRemotefull_timeVerifiedPosted 27 Apr 2024
💰 $220,000/yr($150,000/yr$220,000/yr)

About the role

At Render, we are building a powerful, easy-to-use cloud platform to host anything online: from simple static sites to complex applications with dozens of microservices. Render offers the flexibility of traditional cloud providers without their complexity and maintenance headaches so developers and businesses can focus on building products instead of managing servers.

We're a talented and diverse group solving a problem faced by every development team. We iterate quickly while placing the utmost importance on user experience, quality, and reliability. We push ourselves to do better every day. Our organic, product-led growth has already attracted over a million developers. Customers include innovators like Mitchell Hashimoto, the cofounder of HashiCorp; climate unicorns like Watershed; and global enterprises like Red Bull. With our rapidly increasing revenue, we're on to something big.

Applying to Render

We're looking for candidates with high integrity, low ego, and an insatiable drive to learn. We use reasoned discussion and constant feedback to improve as individuals and as a company. We cultivate mutual trust and respect, empowering us to debate ideas effectively and create the best outcomes for our customers and our team.

We especially encourage members of underrepresented groups in the tech community to apply.

Our interview process is unique to each role, and we value the candidate experience just as much as our customer experience. We hope your conversations with us reflect a thoughtful process that is illuminative, enjoyable, and respectful of your time.

About the role

We have a product developers love and proven market momentum. Enterprise teams are onboarding to Render with mature security programs. They have built strong internal controls and policies to support their business needs. We're raising the bar on our platform security to give our customers confidence in the confidentiality, integrity, and availability of their services on Render. Through our work, we'll continue to attract and retain larger customers, unlocking revenue growth for our business. We're looking for a well-rounded, empathetic, security-minded software engineer to be a foundational part of building Render's security program.

You will

  • Build internal tooling to enable secure access to resources (e.g., wrappers, utilities, authentication services, and proxies).
  • Maintain a development toolkit that enables our teammates to write secure code with ease and apply security best practices.
  • Analyze and assess security issues identified through security reviews, threat modeling, penetration testing, and vulnerability disclosure.
  • Work with developers on sensitive code paths and educate them on secure design patterns.
  • Liaise with customers regarding their security and compliance needs, and in return, inform our security program.
  • Reduce compliance toil and friction through high-leverage automation and programmatic workflows.
  • Communicate security risks and solutions to technical and non-technical stakeholders as part of company-wide planning and prioritization processes.
  • Stay up-to-date with the latest security threats, vulnerabilities, and best practices and make recommendations for improvements to our security posture.
  • Partner with product engineering teams to inform and build thoughtful security features for our customers.
  • Continually ensure that our systems have appropriate authentication, authorization, and accounting with low internal overhead.

What we’re looking for

  • Experience designing and building secure web applications, tools, and APIs
  • Experience securing systems on AWS or GCP
  • Experience with infrastructure as code (e.g. Terraform, Ansible)
  • Knowledge of the Go programming language
  • Experience with vulnerability review and analysis

Nice-to-Haves

  • Experience building a security program such as one based on NIST CSF or ISO 27001
  • Experience securing Kubernetes clusters and workloads
  • Experience designing and analyzing secure GraphQL APIs
  • Experience securing software supply chains in accordance to frameworks like SLSA
  • Experience with testing tools such as Burp Suite, OWASP ZAP, and Semgrep
  • Active participation and contributions to the security community through public research, blogging, presentations, and other means
  • Proven expertise in exploiting common security vulnerabilities, demonstrating practical experience in identifying and leveraging vulnerabilities to assess security posture
  • Security certifications such as CISSP

Benefits

  • Our openings span more than one career level. The starting salary for this role is between $150,000 and $220,000 USD. The provided salary depend

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Render

View company profile →