MongoDB logo
MongoDB

MongoDB, originally called 10gen, is a software development company. Since 2007, MongoDB has created an open-source, document-oriented database to help clients

Senior Product Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 5,550Since 2008Company Site

Location

Ireland

Posted

25 days ago

Salary

0

Seniority

Senior

Job Description

Senior Product Security Engineer

MongoDB

Role Description Want to secure the future of data management and AI/ML? At MongoDB we are transforming industries and empowering developers to build amazing AI/ML-powered apps that people and enterprises use every day. We are the leading modern data platform and the first database provider to IPO in over 20 years. Overall, the worldwide data management software market is massive (IDC forecasts it to be $138 billion by 2026!). Join our team and be at the forefront of innovation and creativity. With a strong security engineering background, you’re looking for a role that gives you the freedom to increase MongoDB’s resonance with customers by strengthening our core database products. You’re passionate about solving hard security engineering problems while putting a strong emphasis on customer experience, leveraging your own significant experience. You enjoy collaborating with different teams to innovate and implement pragmatic solutions. Responsibilities - Take ownership, define strategy, and drive improvement for parts of our program such as fuzzing, threat modeling, secrets management, or container security. - Advocate for and lead complex security projects from inception through completion. - Drive architecture, patterns, and processes across Server Engineering that make security the easiest path. - Partner closely with engineering teams to design and implement security controls across our software and systems. - Research and POC new attacks against our systems. Plan and perform product security assessments including architecture review, threat modeling, code review, pen testing, and general security consulting to proactively build security controls. - Serve as a security subject matter expert for software security and architecture. - Educate the engineering org on security through CTFs, lunch-and-learns, and one-on-one mentorship. Qualifications - 7+ years of experience in application security, software security, or product security. - Proven experience in C++ programming, performing security assessments on low-level codebases, and implementing remediation strategies for memory-related security flaws such as buffer overflows and memory leaks. - Programming experience and ability to contribute code back to our environments. - A strong track record of partnering with software engineers: leading threat models, performing security design reviews, and developing an understanding of their product space to form pragmatic security recommendations and influence their prioritization. - Comfortable communicating complex technical issues in a simple manner that builds trust with a variety of audiences. - Demonstrated ownership of security initiatives, with the ability to deliver results autonomously or collaboratively. - Can work flexible hours occasionally to collaborate with US-based colleagues. Nice to Haves - Subject matter expertise in database security, or data security. - Knowledge of database engines, database internals, or applied cryptography. - Experience contributing or partnering with security researchers to identify vulnerabilities that eventually are published CVEs or administrative responsibilities of a CNA. Success in this role means - Seeing projects through from conception to completion in order to deliver new services or capabilities for the team. - Establishing yourself as a go-to person for discussing security topics. Company Description MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the database for the AI era, enabling innovators to create, transform, and disrupt industries with software. MongoDB’s unified database platform—the most widely available, globally distributed database on the market—helps organizations modernize legacy workloads, embrace innovation, and unleash AI. - Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available across AWS, Google Cloud, and Microsoft Azure. - With offices worldwide and nearly 60,000 customers—including 75% of the Fortune 100 and AI-native startups—relying on MongoDB for their most important applications, we’re powering the next era of software. - Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. - To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. - From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys.

Related Categories

Related Job Pages

More Security Engineer Jobs

OpsArmy logo

Junior Security Questionnaire, Compliance Analyst

OpsArmy

Screen top international talent, onboard, run payroll, and manage performance.

Full TimeRemoteTeam 51-200H1B No Sponsor

• Review and complete customer security questionnaires (e.g., SIG, CAIQ, VSA, and custom formats) with high accuracy • Assist with security-related sections of RFPs and RFIs, ensuring responses are clear, consistent, and submitted on time • Partner with Sales, Legal, Engineering, Product, and Security to gather and confirm required information • Maintain a centralized, up-to-date repository of security documentation, FAQs, and standard responses • Learn and document security controls, processes, and certifications (e.g., SOC 2, ISO 27001) • Support follow-up security reviews by tracking questions, clarifications, and approvals • Help build templates, checklists, and lightweight processes to improve future response efficiency

Colombia
HealthMark Group logo

Security Engineer

HealthMark Group

Take the headaches out of managing patient data

Full TimeRemoteTeam 501-1,000H1B No Sponsor

• Design, implement, and maintain AWS-focused cloud security architecture aligned with HIPAA, NIST, and HITRUST. • Secure AWS environments using IAM, Organizations, CloudTrail, Config, GuardDuty, Security Hub, KMS, and network security controls. • Build, review, and maintain Infrastructure-as-Code using Terraform, ensuring security controls are versioned, auditable, and enforced by default. • Develop secure Terraform modules, guardrails, and policy-as-code to prevent misconfiguration and drift. • Partner with Development and CloudOps teams to implement DevSecOps practices, including CI/CD pipeline security and IaC scanning. • Establish and manage identity and access standards across AWS and Microsoft Entra. • Support SOC 2 Type II, HITRUST, HIPAA, and PCI audits with a focus on cloud control evidence. • Monitor cloud environments, triage security events, and respond to incidents in partnership with the MSP. • Maintain documentation related to cloud security architecture, IaC standards, and incident response. • Provide security mentorship and cloud security expertise across the organization.

Texas
$90K - $120K / year
World Wide Technology Healthcare Solutions logo

Cyber Security Sales Specialist

World Wide Technology Healthcare Solutions

Founded in 1990, World Wide Technology (WWT) is a global systems integrator with $13.4 billion in annual revenue that provides digital strategy, innovative technology and supply chain solutions to large public and private organizations.

Full TimeRemoteSince 1990H1B No Sponsor

Role Description World Wide Technology, Inc. (WWT) is seeking a highly driven and experienced Cyber Security Specialist to join our dynamic Security Sales team. In this role, you will collaborate closely with cross-functional teams to develop and execute comprehensive security sales strategies, driving initiatives from concept to business outcomes. The primary goal of this position is to achieve and exceed sales targets by promoting Extrahop’s security products. Responsibilities: - Drive profitable revenue growth on all strategic ExtraHop opportunities within the assigned territory, with the objective of increasing GTM speed, technical coverage, and deal velocity in tight partnership with the Cyber Security Specialist team. - Build, develop and own sales plans on targeted opportunities, using the MEDDIC framework. - Build and maintain strong alignment with ExtraHop field teams (SEs, AEs, leadership). - Deliver monthly targeted enablement sessions for the WWT Cyber Security Specialty team, tied to active opportunities and vertical use cases. - Strategically expand WWT’s market presence by aligning solutions with clients' key business objectives. - Build and nurture relationships with C-level executives and decision-makers at targeted clients. - Manage client and Extrahop relationships, creating value for accounts from ideation through to successful outcomes. - Stay updated with emerging trends across cybersecurity. Reporting & Cadence: (Monthly) - Pipeline and deal progression. - New logo activity and advancement. - Enablement delivered and planned. - Certification status. - ATC lab development and usage. - Key wins, blockers, and next steps. Qualifications - Proven track record of successfully selling cybersecurity hardware, software, and services to Fortune 500 clients. - Demonstrated experience and deep technical acumen in security services sales. - Strong consultative selling experience, with the ability to develop tailored solutions that address client-specific business challenges. - Excellent relationship-building skills and ability to engage effectively at all organizational levels. - Proven ability in account planning, partner relationship management, and sales strategy execution. - Outstanding communication, presentation, and organizational skills. - Bachelor’s degree or equivalent industry experience preferred. Requirements - A reasonable estimate of the current base pay range for this position is $150,000.00 to $175,000.00 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. - Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay. Benefits - Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program. - Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement. - Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement. - Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program.

United States
$150K - $175K / year
Rubrik Job Board logo

Enterprise Security Engineer

Rubrik Job Board

At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data. Our goal is to hire and promote the best talent, regardless of background We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential

Full TimeRemoteTeam 1,001-5,000

Role Description Rubrik is seeking an Enterprise Security Engineer. In this role, you will be responsible for ensuring that Rubrik's Corporate Enterprise IT technologies are designed and implemented to the highest possible security standards. You will partner with a variety of stakeholders across the business to improve the Security posture of SaaS applications, integrations, identity and access, endpoints, wireless network, and IoT devices. What you'll do: - Design and implement security standards across Identity (Okta), Endpoint (Windows, MacOS, Linux), Secrets Management (Vault, Lastpass) and Business Applications (Salesforce, Glean, etc). - Partner with IT and other organizations to improve the security posture of enterprise applications, integrations, and access to sensitive and business data. - Actively participate in evaluation, development, and management of security and compliance policies within IT management systems such as JAMF, inTune, etc. - Analyze and harden existing applications, infrastructure, automation, and deployment processes: CircleCI, Github workflows, Tines, Zapier, etc. - Work with Corp IT teams, operations, governance, and other stakeholders to draft security standards and implement monitoring, alerting, and governance. - Review and approve application security review requests to ensure new applications used by Rubrik and employees are secure, monitored, and security standards are enforced. - Support the SOC in analyzing applicable threats, vulnerabilities, controls, and residual risks. - Partner with Vulnerability Management and Threat Operations to drive remediation of critical vulnerabilities and detection of IOC’s in the environment. - Actively monitor and manage EDR policies. - Partner with the organization to deploy technologies for AI usage and security. - Leverage AI tools and agents to improve team performance, enterprise security capabilities, and team efficiency - do more with less and faster. Qualifications - 6+ years experience in enterprise security, with hands-on experience in administration and design across Windows, Mac, Okta, and public cloud infrastructure. - Broad knowledge of enterprise attack vectors and exploits in both end-user and IT Apps. - Subject matter expertise in business applications, endpoint, and Identity management. - Deep understanding of endpoint systems, corporate networking including wi-fi and IT application systems (Salesforce, Mulesoft, Lastpass, etc). - Programming experience in PowerShell, Python, Go, or Java. - Experience with deploying and securing Enterprise applications and environments at scale. - Security and administrative expertise in at least one major public cloud provider (AWS, GCP, Azure). - Understanding of corporate security maturity model frameworks and how to apply them. - Strong written and verbal communication skills. - Knowledge of regulatory guidelines and standards such as SOC2, ISO 27001, FedRAMP, etc. Requirements - Know, acknowledge, and follow system-specific security policies and procedures. - Protect data and individual privacy per requirements and regulations. - Perform ongoing activities in compliance with service and contractual obligations. - Participate in role-based training, completing assignments on a timely basis. - Report security issues promptly, and aid investigation when needed. - Support controlled changes and vulnerability remediation activities. - Work collaboratively with Information Security in designing, implementing, assessing, or enhancing system-specific security and privacy controls. Position Risk Designation - Position Risk Designation: Non-Sensitive, Low Risk, Tier 1. - Incumbents without access to U.S. Government data may be required to complete Standard Form 85 and undergo a Tier 1 Investigation (T1) for non-sensitive positions of Low Risk. - Position Risk Designation: Non-Sensitive, Moderate Risk, Tier 2 (Public Trust). - Incumbents with access to U.S. Government data may be required to complete Standard Form 85P and undergo Tier 2 (T2) Investigation for non-sensitive positions designated Moderate Risk. - Position Risk Designation: Moderate Risk Law Enforcement (CJIS). - When hired for a position where access to Moderate Risk criminal justice information is required, the employee must complete a fingerprint-based national criminal history background check within 30 days after the employee’s start date. Benefits - The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity, and benefits. - US (SF Bay Area, DC Metro, NYC, Seattle) Pay Range: $150,200 — $225,400 USD. - US2 (all other US offices/remote) Pay Range: $135,200 — $202,800 USD.

United States
$135.2K - $225.4K / year