Lime logo
Lime

Building a future where transportation is shared, affordable and carbon-free. Join us! www.li.me/careers

Senior Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 501-1,000Since 2017H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

3 days ago

Salary

$160K - $220K / year

Seniority

Senior

Job Description

Senior Security Engineer

Lime

• Application Security & Secure Development: Partner with engineering teams to perform security reviews, threat modeling, and risk assessments for product features, APIs, mobile applications, and backend services. Provide actionable and risk-calibrated guidance that helps Lime ship securely without slowing down. • Security Tooling & Automation: Develop and maintain scalable security tools and pipelines to automate vulnerability detection, dependency scanning, and security testing across the software development lifecycle. Contribute to and extend our security pipeline and CI/CD security gates (SAST, DAST, SCA, secrets management). • Security Architecture & Design Reviews: Contribute to security architecture reviews for new product platforms and features. Evaluate authentication and authorization designs, API security posture, and data handling practices to ensure risks are identified and addressed early. • Bug Bounty & External Programs: Support the operations of our BugCrowd bug bounty program, including triage, researcher communication, remediation coordination, and internal validation of reported findings. • Incident Response: Serve as a product security point of contact for security incidents affecting Lime's applications and services. Contribute to investigation, root-cause analysis, corrective action, and post-incident improvement. • Cross-functional Partnership & Mentorship: Work closely with Software, Platform, Mobile, and Infrastructure engineering teams to embed security into development workflows. Share knowledge, drive security-by-default practices, and mentor engineers and peers on product security fundamentals. • Stay Ahead of the Threat Landscape: Continuously evaluate emerging threats, vulnerabilities, and regulatory requirements (including EU CRA) relevant to Lime's product and infrastructure stack. Bring proactive recommendations to the team. • Participate in the team's on-call rotation, responding to incidents, troubleshooting issues, and contributing to root cause analysis and service reliability improvements. • Respond to and troubleshoot production issues, outages, and critical alerts during assigned on-call shifts. • Escalate incidents as needed and collaborate with team members to restore service. • Document issues and contribute to improvements that reduce recurring incidents. • Be available to provide occasional after-hours, weekend, and holiday support while on call.

Job Requirements

  • Experience: 5+ years of experience in a dedicated product security, application security, or security engineering role, with a strong track record of hands-on technical contribution across the software development lifecycle.
  • Technical Depth: Demonstrated expertise across core product and application security domains, including:
  • Experience with detection engineering, security monitoring, or building detection-as-code (DaC) pipelines for product or application security threats (SIEM, log analysis, alert tuning).
  • Familiarity with IoT, connected hardware, or vehicle/firmware security in a product security context.
  • Experience operating or contributing to a vulnerability disclosure or bug bounty program.
  • Exposure to regulatory frameworks relevant to connected products, such as EU CRA, UNECE WP.29, or OWASP MASVS.
  • Mobile security (iOS, Android) and API security
  • Secure development practices and SDLC security integration (SAST, DAST, SCA, secrets management)
  • Vulnerability management tooling and processes
  • Cloud security fundamentals (AWS, GCP) and container/infrastructure security
  • Authentication and authorization patterns (OAuth, OIDC, RBAC)
  • Problem-Solver: Strong analytical skills with the ability to triage ambiguous security signals, identify meaningful risk, and propose pragmatic mitigations that teams can act on — without over-engineering or adding unnecessary friction.
  • Communication: Clear written and verbal communicator who can translate complex technical security risks into actionable guidance for both engineering peers and non-technical stakeholders.
  • Team Player: Comfortable operating in a lean, remote-first, high-trust environment. Able to independently drive work forward while collaborating across engineering, product, and security teams.
  • Education & Certifications: Bachelor's degree in Computer Science, Cybersecurity, or a related field preferred but not required. Relevant certifications such as OSCP, CSSLP, GWEB, or equivalent are a plus.
  • Ability to participate in a shared on-call rotation supporting production systems, including occasional after-hours, weekend, and holiday coverage, with responsibility for responding to critical alerts, coordinating escalations to restore service, and documenting issues to help prevent recurrence.

Benefits

  • Comprehensive Health & Wellness: A choice of medical, dental, and vision plans. We also provide company-paid life and disability insurance and company-funded mental health benefits.
  • Financial & Retirement Planning: 401(k) plan with both pre-tax and Roth options, and access to a Health Savings Account (HSA) with a monthly company contribution.
  • Family & Fertility Support: Paid parental leave for birthing and non-birthing parents, plus fertility and family-forming benefits.
  • Paid Time Off: Unlimited vacation, paid leaves, and 10 company holidays.
  • Unique Lime Perks: Complimentary use of Lime vehicles in participating cities, a monthly phone allowance, dedicated learning and development days, and access to perks including One Medical, Wellhub, and Headspace.

Related Categories

Related Job Pages

More Security Engineer Jobs

SonicWall logo

Staff Engineer, Endpoint Security – Windows/Linux

SonicWall

Delivering real-time breach detection and prevention solutions backed by SonicWall Capture Threat Network.

Full TimeRemoteTeam 1,001-5,000Since 1991H1B Sponsor

• Design, develop, test, and maintain client applications for Windows and Linux, with opportunities to contribute to macOS and mobile platforms. • Write clean, maintainable, and well-documented code in languages such as C/C++, Golang, and other technologies used by the team. • Collaborate closely with QA, product managers, and designers to deliver reliable and user-friendly experiences. • Debug and troubleshoot issues across client applications, working with teammates to identify root causes and implement solutions. • Participate in code reviews and technical discussions while learning engineering best practices and software design principles. • Contribute to feature development, testing, and release activities throughout the software development lifecycle. • Assist with performance, reliability, and security improvements across supported platforms. • Continuously learn new technologies, tools, and development practices relevant to endpoint, networking, and systems software.

India
ServiceNow logo

Senior Staff Cloud Security Engineer – Office of the CISO

ServiceNow

As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,400+ customers, we serve approximately 90% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.careers.servicenow.com From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.

Full TimeRemoteTeam 10,001+Since 2004H1B Sponsor

Company Description It all started when engineer Fred Luddy wrote code that automated a tedious task for his coworker, Phyllis. She cried tears of joy. That moment inspired Fred to build a company that could do that for everyone—freeing people from busywork so they could focus on meaningful work. Today, ServiceNow is the AI control tower for business reinvention. Our ServiceNow AI platform brings together any AI, any data, and any workflow— helping 85% of the Fortune 500® work smarter, faster, and better. We're building an AI-native culture where technology and talent are unstoppable together. And we're just getting started. Join us to put AI to work for people. Job Description The ServiceNow Security Organization (SSO) The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact We employ the brightest and most forward-thinking Security Professionals on the planet. We have offices around the world and work as a global team. Come join the Office of the CISO and help set the bar for cloud security! What you get to do in this role: ServiceNow’s Office of the CISO team leverages its diverse security background and expertise to help enhance ServiceNow’s security and communicate ServiceNow’s security features to the world. The team works closely with various departments in ServiceNow’s security organization and with sales, legal, IT, and product teams on security-related topics. Most importantly, the Office of the CISO team works with prospects, customers, and partners to address questions related to the security of ServiceNow’s cloud-based service. This team values integrity, quality, expertise, precision, communication, and efficiency and is looking for a Cloud Security Professional with a broad security background and excellent communication skills. You will be a member of the AMS team of the Office of the CISO in English and French-speaking countries. As a valued member of our esteemed team, you will assume the pivotal role of a Cloud Security Professional. Your mission encompasses ensuring unwavering support for the Sales Team in both pre- and post-sales endeavors. You will expertly navigate questionnaires and address customer inquiries. Your proactive engagement will extend to driving impactful security meetings with customers and delivering compelling presentations at conferences, both internal and external. As a leader in security conversations, you will skillfully rebut cloud and AI technology myths and provide invaluable support during Security Incidents and Investigations. Collaborating seamlessly with internal teams, you will be key in resolving security issues arising from investigations and conducting thorough postmortems to guarantee comprehensive remediation. Should the need arise, you will spearhead structural or design changes, propelling the security posture of our cloud environment and elevating the subscription service to new heights. Your expertise and dedication will be instrumental in safeguarding the integrity and excellence of our cloud security initiatives. This role may require access to a Protected B cloud environment. The successful candidate must be eligible to obtain and maintain a Government of Canada Reliability Status under PSPC's Contract Security Program. Clearance is a condition of employment in this function. The company will sponsor and support the screening process through its designated Company Security Officer. Key Responsibilities: - Lead multifaceted security conversations, primarily focused on Canada Finserv customers and prospects. - Understanding security concerns associated with Artificial Intelligence solution implementations involving Agentic AI and GenAI. - Support ServiceNow’s Sales Teams in Pre- and Post-Sales efforts - Respond to prospect and customer questions related to security. - Conduct security calls with customers - Respond to security questionnaires - Present and evangelize on AI and cloud adoption & assurance. - Contribute to the overall messaging and positioning of the Security Office - Coordinate and manage end-to-end customer cloud security experience. - Active participation in Security Industry forums, communities, and standards organizations - Participation in discussions & presentations with Partners and Customers - Investigate and understand cloud and AI threats. - Escalation point for Security Incidents & investigations - Work with internal teams to resolve security issues arising from investigations and incidents and conduct post mortem’s to ensure issues are properly remediated - Propose & develop structural/design changes to advance the security posture of ServiceNow (Voice of the Customer). - Lead cross-functional teams to accomplish your goals. - Contribute to contract negotiations related to security terms. Qualifications Requirements: - Minimum 12 years experience in IT & 5 years in Cloud Security Candidate must be eligible to obtain and hold a reliability status in Canada. - Solid understanding of security concerns associated with Artificial Intelligence solution implementations involving Agentic AI and GenAI. - Expertise in Financial Services security and regulations desired. - Excellent communication and presentation skills (i.e. strong interpersonal and customer-facing skills) - Experience with Cloud Operations (either as a customer or provider) is required. - Expertise in enterprise cyber defense techniques - Desired Industry Certifications: CISSP, CISM, CSSP, CEH or equivalent - A general understanding of ITIL and ITSM. - Understanding of the sales life cycle. - Expertise in Threat analysis and enterprise cyber defense techniques - Deep understanding of Security Operations. - Ability to articulate complex issues to executives and customers. - Strong interpersonal skills. - Self-motivated and driven; ability to perform and excel with little supervision. - Able to serve as an authoritative source on security. - Excellent collaborator and teammate; Fluent in English. French speaking a plus. #SecurityJobs Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here. To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.  Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.

Canada
Full TimeRemoteTeam 51-200

Role Description Foresite is seeking a highly motivated and passionate Security Engineer with a specialized focus on Google Security Operations (SecOps) to join our growing team. In this client-facing role, you will be instrumental in helping our clients leverage the full potential of Google's security offerings to enhance their security posture. If you have a strong foundation in security operations, a drive to continuously learn, and a desire to provide expert guidance, we encourage you to apply! What You'll Do: - Infrastructure Provisioning: - Design, configure, and deploy Google security tools and platforms for clients, ensuring seamless integration with their existing environments. - This may include configuring Google Cloud Security Command Center, Chronicle Security Operations, BeyondCorp Enterprise, and other relevant Google security services. - General Support & Troubleshooting: - Provide expert-level support for client inquiries and issues related to Google SecOps tools and configurations. - Diagnose and resolve technical challenges efficiently and effectively. - Security Guidance & Best Practices: - Offer proactive security guidance and recommendations to clients based on Google's security best practices and industry standards. - Help clients understand and mitigate potential risks within their Google Cloud environments. - Product Strategy & Optimization: - Collaborate with clients to understand their security objectives and develop tailored Google SecOps strategies. - Advise on product selection, feature utilization, and roadmap planning to maximize their security investments. - Client Relationship Management: - Build and maintain strong, positive relationships with clients, acting as a primary technical point of contact for Google SecOps initiatives. - Documentation & Knowledge Sharing: - Create and maintain comprehensive documentation for client environments, configurations, and best practices. - Share knowledge and expertise with internal teams. - Stay Current: - Continuously research and stay up-to-date with the latest Google security product updates, features, and threat landscape trends. Qualifications - Passion for Security: You possess a genuine enthusiasm for cybersecurity and a strong desire to protect organizations from evolving threats. - Experience: 3-5 years of experience in security operations, with a solid understanding of common security frameworks, incident response processes, and threat detection methodologies. - Google SecOps Focus: Demonstrated experience with and understanding of Google Cloud security services, including but not limited to: - Google Cloud Security Command Center (SCC) - Google Security Operations - Google Threat Intelligence - Cloud Logging and Monitoring for security - Google Cloud Identity and Access Management (IAM) - Google Cloud Armor - Certifications: Possess one or more security certifications such as: - CompTIA Security+ - (ISC)² SSCP or CISSP (Associate of (ISC)²) - Google Cloud Professional Cloud Security Engineer (highly preferred) - Other relevant cloud security certifications - Client-Facing Skills: Excellent communication, presentation, and interpersonal skills with the ability to articulate complex technical concepts clearly to both technical and non-technical audiences. - Problem-Solver: Strong analytical and problem-solving skills with a meticulous attention to detail. - Self-Starter: Ability to work independently and as part of a team in a fast-paced, dynamic environment. - Proactive Learner: A continuous learner who stays ahead of industry trends and new technologies. Benefits - Comprehensive Health & Wellness: Robust medical insurance options to keep you and your family healthy. - Employer-Covered Insurance: We fully provide employer paid Dental coverage, as well as Short-Term (STD) and Long-Term Disability (LTD) to ensure you are protected financially if life takes an unexpected turn. - Generous Time Off: We believe in a true work-life balance. You’ll start with 3 weeks of paid vacation, plus additional sick leave and paid company holidays to ensure you have time to recharge. - Growth & Mentorship: Access to world-class training and mentorship. We support your career trajectory, whether you’re looking to deepen your technical skills or move into leadership. - Impactful Work: Help protect global clients using the latest AI-enhanced security tools and GCP native technologies.

United States
GitLab logo

Senior Software Security Engineer

GitLab

GitLab, founded in 2011 and based in San Francisco, California, maintains a distributed team of professionals that work remotely across multiple continents. Git

Full TimeRemoteTeam 2,500Since 2014

• Maintain core abuse prevention systems and build new abuse detection rules to identify and prevent evolving platform abuse such as spam, AI/token, SEO optimization/redirects and other financially motivated abuse campaigns. • Become a core maintainer for our in-house abuse platform (Ruby on Rails monolith) and be comfortable supporting and building new features for the platform. • Improve and expand agentic AI capabilities in our abuse mitigation tools, including improving multi agent reasoning decision patterns with a target to reduce HITL operational load. • Lead collaboration with peer engineering teams to deliver safety improvements for the GitLab product • Resolve automation gaps and create efficient, automated processes • Create and maintain documentation such as runbooks and procedures

United States
$139.2K - $196K / year