We're seeking a Senior Security Engineer to join our Infrastructure Team to own security across our entire stack. You will build internal tooling and CI/CD automations, lead threat modeling sessions, and secure code reviews. You will also lead the Bug Bounty Program and respond to vulnerabilities.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Job Description
Who We Are
Our mission is to make the world programmable. Sight is one of the key ways we understand the world, and soon this will be true for the software we use, too.
We’re building the tools, community, and resources needed to make the world programmable with artificial intelligence. Roboflow simplifies building and using computer vision models. Today, over 1M+ developers, including those from half the Fortune 100, use Roboflow’s machine learning open source and hosted tools. That includescounting cells to accelerate cancer research, improvingconstruction site safety,digitizing floor plans,preserving coral reef populations,guiding drone flight, andmuch more.
Roboflow is supported by great customers and investors, having raised over 63 million from Y Combinator, Google Ventures, Craft Ventures, Sam Altman, Lachy Groom, amongst other leading software investors.
We are looking for a Senior Security Engineer who views security as an engineering challenge, not a checkbox exercise. You will join our Infrastructure Team to own security across our entire stack (from the low-level GKE configurations to the high-level application logic).
In a startup of our size, "chaos" is just another word for "opportunity." You aren’t here to just manage compliance spreadsheets or interface with IT; you are here to build the tooling, automation, and architecture that makes it impossible for our developers to make a critical mistake as we continually increase velocity.
What You’ll Do
- Own the Stack: Secure everything from our Kubernetes clusters on the cloud to our SaaS integrations and developer workflows.
- Usher in the Future: articulate and execute on a vision for what security should be in the age of LLMs giving both us and attackers increasing leverage.
- Engineer for Security: Build internal tooling and CI/CD automations that catch vulnerabilities before they ever hit production.
- Architect & Model: Lead threat modeling sessions and secure code reviews, ensuring we design "secure-by-default" APIs and deployments.
- Harden the Perimeter: Take a first-principles approach to hardening authentication and access control across all internal and external surfaces.
- Red Team: proactively probe for vulnerabilities and lead the remediation.
- Lead the Bug Bounty: You will be the primary owner for standing up, launching, and managing our Bug Bounty Program , triaging reports, and driving remediation.
- Respond & Remediate: Investigate vulnerabilities, lead incident response, orchestrate pen testing, and run blameless postmortems that actually result in systemic change.
- Evangelize: Be the partner, not the blocker. Translate complex security risks into actionable engineering tasks that your peers can get excited about.
- Startup Native: You thrive in a fast paced 100–300 person environments. You know how to prioritize when everything feels urgent and are comfortable "failing forward" to find the right solution.
- Security-First Engineer: You have 6+ years of experience in software/infrastructure engineering with a deep obsession with security. You don't just find holes; you write the code to plug them.
- Cloud Savvy: You are deeply familiar with Google Cloud (GCP), Kubernetes , and containerized environments.
- Systems Thinker: You can analyze a system for weaknesses whether they are buried in business logic, IAM configurations, or the codebase.
- Action-Oriented: You have a track record of responding to real-world incidents and leading remediation efforts without being the "no" person.
Looking to advance your Cyber Security career with relocation support? Explore Cyber Security Jobs with Relocation Packages that include comprehensive packages to help you move and settle in your new role.
- Cloud: Google Cloud Platform (GCP)
- Orchestration: Kubernetes (GKE)
- Infrastructure: Terraform / Infrastructure-as-Code
- Pipeline: Modern CI/CD workflows and various SaaS integrations
Roboflow is distributed across the US and Europe. We currently have Hubs in New York City and San Francisco (and plan to open more as we grow density in new cities). We provide opportunities (like team onsites in different cities) and resources (like a $4000/yr travel stipend) to work in person with other team members as much as you'd like, while also supporting remote team members. You can work from one of our Hubs (we offer a relocation bonus), work from home, work at co-working spaces, etc. We want you to work where you work best!
What You’ll Receive
To determine your salary, we use a number of market and data-driven salary sources. We review all salaries every six months to ensure we stay in line with the market.
The target salary for this position ranges from $165,000-$200,000
📈 In addition to our cash compensation, we offer generous perks and benefits. Below are some of the highlights:
Discover our full range of relocation jobs with comprehensive support packages to help you relocate and settle in your new location.
- $4000/yr Travel Stipend to travel anywhere anytime to work alongside other Roboflowers
- $350/mo Productivity stipend to spend on things that make your work environment more productive, like high-speed internet at home or a co-working space
- $350/mo AI Tools stipend
- $150/mo team lunch stipend
- $500/one time home office stipend
- Cover up to 100% of your health insurance costs for you and your partner or family
- Equity in the company so we are all invested in the future of computer vision
Below is the interview process you can expect for this role. We are all motivated to work with an exceptional team and you will be speaking directly with our team about what it's like to work and thrive at Roboflow. We like to be decisive and work fast, so don't be surprised if all the below conversations happen over a day or two.
Before The Interview
- We’ll review your application, LinkedIn, Github, etc.
- The best way to stand out is to write about something you’ve built with Roboflow or contribute to one of our open source projects.
- We may send you a technical screen if applicable.
- [30m] Meet with People Ops
- [30m] Meet with hiring manager to assess for overall mindset and skillset
- [45m] Technical Assessment
Interested in relocating to United State? Check out our comprehensive Relocation Jobs in United State page with detailed relocation packages and benefits.
- [30m] Meet with another member of the team
- [60m] Meet with hiring manager or CTO
- [45m] Meet with Head of Operations for a culture discussion
- [60m / Optional] Meet with Joseph Nelson, CEO
Learn More About Us
Roboflow is a diverse, distributed team and an Equal Opportunity Employer. We welcome applicants from all backgrounds and experiences. We offer competitive compensation and benefits, plus opportunities to learn from and contribute to our world-class team.
Equal Employment Opportunity
We’re committed to building an inclusive team where great ideas come from everywhere. We consider all qualified applicants regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, veteran status, or any other protected characteristic.
Similar Jobs
Explore other opportunities that match your interests
Member of Technical Staff - Infrastructure Security
reflection ai
Security Engineer III
Fanatics