Automattic logo
Automattic

We are passionate about making the web a better place. Fully distributed since 2005.

Senior Security Research Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 2005H1B SponsorCompany SiteLinkedIn

Location

Worldwide

Posted

31 days ago

Salary

$70K - $170K / year

Seniority

Senior

Bachelor Degree3 yrs expEnglishPHP

Job Description

Senior Security Research Engineer

Automattic

• Analyze vulnerable and malicious code • Track emerging threats • Build tools and processes that detect, prevent, and remediate malware and other security issues

Job Requirements

  • At least 3 years of experience as a security researcher or equivalent experience investigating vulnerabilities
  • Understanding of threat models, security threats, vulnerabilities, and common attack vectors
  • Experience with PHP and some exposure to software engineering
  • Strong ability to use AI tools effectively
  • Openness and ability to travel 2-3 weeks per year

Benefits

  • open vacation policy
  • generous personal development budget
  • opportunities for leadership
  • flexibility in work arrangements

Related Categories

Related Job Pages

More Security Engineer Jobs

Reco logo

Security Researcher

Reco

SaaS moves so fast, security can’t keep up. Except one – Dynamic SaaS Security by Reco.

Full TimeRemoteTeam 51-200Since 2020H1B No Sponsor

• Analyze large-scale SaaS security data, investigate incidents, and develop advanced threat detection strategies • Dive deep into terabytes of SaaS Application data to identify new attack vectors, emerging threats, and vulnerabilities • Utilize your technical prowess to investigate complex SaaS & AI security incidents • Leverage your expertise in data analysis to fine-tune detection rules and algorithms • Drive thought leadership initiatives by creating technical blog posts, delivering webinars, and speaking at conferences • Collaborate with security researchers and data scientists to define new threat detection strategies • Continuously monitor and analyze SaaS attack techniques and adapt security posture accordingly • Work with APIs and integrations to ingest security logs from various SaaS platforms

United States
Job Closed
Full TimeRemoteTeam 201-500H1B No Sponsor

• Lead security certification & audit readiness (ISO 27001 / SOC 2). • Operate the ISMS controls program. • Evidence management & auditor response. • Risk management program execution. • Metrics, reporting, and stakeholder enablement. • Manage periodic reviews and updates of security policies and procedures. • Partner with an outsourced/internal audit function to validate control performance. • Support cross-functional education and adoption of security requirements.

United States
$110K - $140K / year
CAQH logo

Data Security Engineer

CAQH

CAQH delivers technology-enabled solutions, operating rules and research to the healthcare industry.

Full TimeRemoteTeam 51-200Since 1998H1B No Sponsor

• Partner with data owners and the Data team to identify and inventory critical data assets across the enterprise. • Implement automated and programmatic classification of sensitive data using tools such as Wiz, Microsoft Purview, Varonis and other data security solutions. • Develop and maintain data protection policies aligned with regulatory standards (e.g., HITRUST, HIPAA). • Apply and tune DLP policies across email, cloud, USB, printing, and endpoint channels. • Build dashboards, alerts, and metrics for real-time monitoring of data protection events. • Implement and manage data rights enforcement mechanisms to ensure appropriate access and usage of sensitive data. • Contribute to the deployment and tuning of DSPM tools such as Wiz, Zscaler, Varonis, Imperva and others to enhance visibility and control. • Collaborate with infrastructure teams to ensure backup and recovery strategies align with data protection objectives and support immutable backups. • Integrate DLP and DSPM tools with SIEM for incident response, ticketing, and compliance reporting. • Work closely with CAQH teams to align protection strategies with business operations. Provide training and documentation to business units on data protection best practices.

United States
$160K - $180K / year
Job Closed
Stefanini LATAM logo

Cyber Security Architect

Stefanini LATAM

Co-creating solutions for a better future

Full TimeRemoteTeam 10,001+Since 1987H1B No Sponsor

• Analizar los requerimientos del negocio para diseñar arquitecturas, patrones y soluciones que mitiguen riesgos en los proyectos de transformación • Construir matrices de controles personalizadas según el contexto tecnológico (Nube, Aplicación, APIs, Microservicios) • Verificar la correcta implementación de los controles en todas las capas del software mediante la ejecución de escaneos de línea base y la validación de evidencias técnicas • Realizar el seguimiento, priorización y recomendaciones técnicas para el cierre de vulnerabilidades identificadas durante el ciclo de desarrollo de aplicaciones • Actuar como referente frente a las células de transformación, detallando activos críticos, amenazas y riesgos asociados a la arquitectura • Coordinar la respuesta a requerimientos de auditorías internas/externas y evaluaciones de riesgo • Elaborar informes sobre el estado de seguridad de las iniciativas y comunicar desviaciones de manera oportuna a las partes interesadas

Colombia
Job Closed