Lead Security Engineer
PindropAbout the role
Lead Security Engineer
US Remote
Who we are
Are you passionate about innovating at the intersection of technology and personal security? At Pindrop, we recognize that the human voice is a unique personal identifier, increasingly susceptible to sophisticated fraud, including the threat of deepfakes. We're leading the way in developing cutting-edge authentication, fraud prevention, and deepfake detection. Our mission is to provide seamless and secure digital experiences, safeguarding the most personal aspect of our identity: our voice. Here, you'll be part of a team driven by values of Innovation, Customer Advocacy, Excellence, and Impact. We're not just creating a safer digital landscape by fortifying trust and integrity with those we serve, we’re also building a dynamic, supportive workplace where your contributions make a real difference.
Headquartered in Atlanta, GA, Pindrop is backed by world-class investors such as Andreessen-Horowitz, IVP, and CapitalG.
What you’ll do
- Lead and examine and secure systems, network, infrastructure and applications to assess and improve the current on premises and cloud security posture.
- Lead administration, management and incident response of security tools and technologies such as EDR (Endpoint Detection & Response), SIEM (Security Information & Event Management), DLP (Data Loss Prevention), Vulnerability Management, Firewalls, WAF (Web Application Firewalls)
- Support daily security operations (SecOps) functions such as configuring, monitoring and responding to security alerts. Assist with Incident Response, and investigations.
- Build automation for security tools and SecOps functions such as compliance checks, alerts and reporting.
- Lead security analysis, review and deployment of solutions (systems, network, infrastructure and applications) to protect Pindrop assets in the cloud and our data centers.
- Lead technical security assessments, security reviews, code audits and offensive security exercises to test security controls and detection capabilities
- Be aware of Information security standards such as ISO27001, SOC2, PCI and support internal and third party audits.
- Provide thought leadership and technical direction based on security news, research, threats, attack vectors, technologies, certifications, laws and regulations and report on anything that could impact the company.
- Collaborate with stakeholders, provide security guidance and support and develop dashboards, reports, and alerts to meet their cybersecurity operational information requirements.
Who you are
- You are an engineer at heart with strong problem-solving, analytical, communication and interpersonal skills and who has knowledge or experience in several areas such as - defending against and/or mitigating system vulnerabilities (including enterprise level concerns, infrastructure, and host/endpoint), intrusion detection and incident response, network traffic analysis, scripting languages, software reverse engineering, network security devices (e.g., firewalls, intrusion and detection systems), cloud and compliance frameworks.
- You continuously look for automation and programmatic efficiencies in security processes
- You have excellent written and verbal communication skills and can communicate technical details in a clear, concise, understandable manner
- You work independently and as part of a team with minimal supervision
- You are resilient in the face of challenges, change, and ambiguity
- You are optimistic and believe that you can make a problem into a solution
- You are resourceful, excited to uncover innovative solutions and teach yourself something new when needed
- You take accountability, do the things you say you’ll do, under-promise and over-deliver
- You are nimble and adaptable when priorities change and continue to see the “forest through the trees”
Your skill-set:
- At least 7 years of experience with administering and managing security technologies and tools such as EDR, SIEM, Vulnerability Management, SAST and DAST, Data Loss Prevention and File Integrity Monitoring tools.
- At least 5 years of experience with Security Operations (SecOps), incident response, security investigations.
- At Least 1 year of experience with a scripting or programming language: python, golang, ruby, bash, Java.
- Strong understanding of Networks, Cloud, Containers, API, Application Security, SDLC, Web security, Docker, and Kubernetes
- Fundamental understanding of accepted security practices, known attack vectors and vulnerability assessment methodologies
- Nice to have:
-
- Prior experience as a soft
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s