Sourcegraph is on a mission to bring clarity and control to the world's most complex codebases by providing the infrastructure for engineering teams to navigate and evolve their code. As a Security Engineer, you will join our globally distributed team to build world-class security into our products, ensuring our systems remain resilient and trusted by top-tier organizations.
Key responsibilities
- Manage security operations, including monitoring, alerting, and incident response.
- Conduct application security testing, threat modeling, and security reviews for infrastructure and code.
- Maintain and improve internal security tooling and automation to assist in alert triaging.
- Collaborate with engineering teams to mitigate vulnerabilities and ensure compliance with standards like SOC 2, ISO 27001, and GDPR.
- Participate in on-call rotations to maintain the security posture of our cloud and on-premise deployments.
Requirements
- Practical experience as a security generalist, covering infrastructure, application security, and compliance.
- Proficiency in Go, including writing internal tooling and performing code reviews.
- Experience with the Elastic stack and GCP environments.
- Strong ability to automate defensive security tools and effectively communicate technical concepts.
- High agency and a proactive approach to identifying and mitigating new attack vectors.
What we offer
- Competitive base salary with transparent pay bands.
- Meaningful equity participation in a growing, ambitious company.
- A fully remote work environment with a global team.
- Opportunities to work on critical infrastructure used by leading tech companies.