We are the first public safety operating system empowering over 2500 cities to eliminate crime.
Staff Security Engineer
Location
Massachusetts
Posted
1 day ago
Salary
$185K - $230K / year
Seniority
Lead
Job Description
Staff Security Engineer
Flock Safety
• Own the operational model and execution of Flock's Product Security Incident Response Team (PSIRT) across every externally reported and internally discovered product vulnerability. • Serve as the operational lead for our CVE Numbering Authority (CNA), managing vulnerability intake, triage SLAs, severity rubrics, and public CVE record publishing. • Drive cross-functional remediation efforts across Hardware, Firmware, Device SRE, Cloud SRE, Mobile, Legal, Communications, and Support to ensure timely patch delivery. • Author clear, accurate public security advisories, internal postmortems, and executive summaries tailored to technical, legal, and leadership audiences. • Establish metrics and operational reporting for PSIRT performance, tracking time-to-triage, time-to-fix, and time-to-disclose.
Job Requirements
- Demonstrated experience leading or running a PSIRT, product security, or coordinated vulnerability disclosure function, ideally within connected hardware or IoT environments.
- Deep operational experience acting as a CVE Numbering Authority (CNA) or implementing the FIRST PSIRT Services Framework across discovery, triage, remediation, and disclosure.
- Hands-on technical background in product security across embedded or firmware security, Linux or Android device security, AWS cloud security, or mobile application security.
- Expertise applying CVSS, CWE, EPSS, and SSVC frameworks to evaluate risk and assign accurate vulnerability severities.
- Strong written communication skills with the capability to translate complex technical vulnerabilities into clear advisories for customers, engineers, and executives.
Benefits
- Flock Stock Options
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Network & Security Infrastructure Engineer
ECS Tech IncAll candidates must meet the following criteria: Must be a US Citizen, no dual Citizenships. Must be able to secure a Public trust clearance. Must be able to work across multiple programs across the Federal and DOD space. The core values that ECS looks for in an engagement manager include: Teamwork, Respect, Accountability, Integrity, and Leadership.
Role Description Everforth ECS is seeking an experienced and technically versatile Network & Security Infrastructure Engineer to take on a high-impact, dual-function role within a large and complex enterprise environment. This position sits at the crossroads of network infrastructure, virtual environment engineering, and security operations, and it requires genuine depth across all three, not surface-level familiarity. - Lead a major re-architecture of the organization's VMware ESXi virtual environment to support comprehensive firewall and VLAN implementations that deliver proper network segmentation across the enterprise. - Provide dedicated firewall support to the Architecture and Engineering division, administering the enterprise's internal and cloud-facing firewall environments. - Support the security operations division, monitoring and maintaining a Cisco-based network infrastructure and an Aruba wireless environment from a security-first perspective. This role is built for someone who can operate with equal confidence in a virtual environment console, a firewall policy manager, and a network operations context. Salary Range: $120,000 - $130,000 Qualifications - Hands-on experience designing and re-architecting VMware ESXi environments in an enterprise setting. - Ability to plan and implement VLAN segmentation strategies within virtualized infrastructure to support firewall enforcement and proper traffic isolation. - Experience configuring virtual switches, distributed switches, and virtual port groups in support of security segmentation objectives. - Familiarity with NSX or equivalent software-defined networking (SDN) platforms as they relate to micro-segmentation and east-west traffic control. - Ability to document virtual network architecture clearly and thoroughly, including design decisions, configurations, and future-state plans. - Hands-on experience configuring and administering enterprise-class firewall technologies, with specific experience on Check Point and Palo Alto platforms. - Ability to implement new firewall architectures, upgrades, and feature rollouts as directed. - Experience administering firewall policy including updates, upgrades, policy administration, and validation. - Proficiency managing and tuning software blades and associated security features such as IPS, URL filtering, Application Control, antivirus, and advanced malware detection. - Strong knowledge of firewall rules, security policies, and security operations within a large enterprise environment. - Strong hands-on experience with Cisco network infrastructure including routing, switching, and network security configurations in an enterprise setting. - Experience supporting and securing Aruba wireless access point environments. - Solid understanding of core networking protocols including TCP/IP, BGP, OSPF, VLANs, and VPNs. - Ability to monitor and analyze network architecture, communication flows, policies, and protocols from a cybersecurity perspective. - Experience identifying and isolating network-based security issues quickly during incidents and outages. - Familiarity with network access control concepts and how they integrate with broader security operations. - Ability to collaborate across teams including cybersecurity, systems administration, and technology support partners. - Experience supporting security continuous monitoring efforts such as risk assessments, vulnerability identification, and patch coordination. - Ability to create and maintain clear, accurate documentation for virtual, network, and firewall configurations, procedures, and troubleshooting steps. - Comfortable communicating technical findings and infrastructure risk clearly to both technical peers and senior leadership. Requirements - A minimum of 5+ years of experience in network security engineering or a closely related infrastructure discipline is required. - Direct hands-on experience on both Check Point and Palo Alto platforms strongly preferred. - Demonstrated experience with VMware ESXi re-architecture and VLAN segmentation design — in addition to enterprise networking and firewall administration — will be given strong preference over candidates with depth in only one or two of these areas. Benefits - General Description of Benefits
Cybersecurity Operations Manager
ECS Tech IncAll candidates must meet the following criteria: Must be a US Citizen, no dual Citizenships. Must be able to secure a Public trust clearance. Must be able to work across multiple programs across the Federal and DOD space. The core values that ECS looks for in an engagement manager include: Teamwork, Respect, Accountability, Integrity, and Leadership.
Role Description Everforth ECS is seeking an experienced and driven Cybersecurity Operations Manager to lead two high-impact security teams: Endpoint Management and Threat Intelligence. This is a senior-level position within a mature, full-spectrum security operations organization that spans endpoint security, event monitoring, threat intelligence, and advanced incident response. - Lead a group that keeps the enterprise's endpoint environment — servers, workstations, and mobile devices — hardened, well-managed, and continuously improving. - Guide analysts who track adversary behavior, process indicators of compromise, and deliver intelligence that shapes the organization's defensive strategy before threats have a chance to land. - Work directly with executive leadership to define acceptable risk thresholds. - Translate complex technical findings into clear organizational guidance. - Ensure both teams are operating with purpose, measurable goals, and a proactive mindset. Salary Range: $155,000 - $165,000 Qualifications - Expert-level knowledge of enterprise endpoint security across servers, workstations, and mobile devices. - Experience with Mobile Device Management (MDM) and enterprise mobility security. - Proficiency in vulnerability management, patch management, and associated frameworks such as CVSS and CWE. - Working knowledge of Microsoft Active Directory and Group Policy Objects (GPOs). - Ability to develop, document, and execute repeatable operational metrics for endpoint security. - Strong understanding of threat intelligence operations, platforms, and analytical frameworks. - Hands-on experience with cyber adversary research, indicator of compromise (IOC) processing, and TTP analysis. - Familiarity with adversary emulation, penetration testing, purple teaming, and enterprise risk analysis. - Experience supporting or leading cybersecurity exercise planning. - Ability to produce and deliver actionable intelligence briefings to both technical teams and executive stakeholders. - Proven experience managing security operations teams in a fast-paced, high-priority environment. - Ability to develop and execute detailed, multi-month resourced project plans with proactive risk tracking and clear stakeholder communication. - Comfortable working across organizational boundaries, including networking, systems administration, and technology support partners. - Able to manage competing priorities, including ad-hoc requests from senior leadership, without losing sight of team objectives. - Experience working directly with executive management to identify, evaluate, and communicate enterprise risk. Benefits - General Description of Benefits Company Description
Sr Enterprise Account Exec (Cybersecurity)
ServiceNowAs the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,400+ customers, we serve approximately 90% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.careers.servicenow.com From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.
Company Description It all started when engineer Fred Luddy wrote code that automated a tedious task for his coworker, Phyllis. She cried tears of joy. That moment inspired Fred to build a company that could do that for everyone—freeing people from busywork so they could focus on meaningful work. Today, ServiceNow is the AI control tower for business reinvention. Our ServiceNow AI platform brings together any AI, any data, and any workflow— helping 85% of the Fortune 500® work smarter, faster, and better. We're building an AI-native culture where technology and talent are unstoppable together. And we're just getting started. Join us to put AI to work for people. Armis from ServiceNow, protects the entire attack surface and manages an organization’s cyber risk exposure in real time. Combined with ServiceNow’s Security and Risk capabilities, as well as Identity Security capabilities from Veza, we bring together all critical capabilities to secure every asset, every identity - incl. AI Agents - across all environments with the right level of context - security, operational and business - to build the first of its kind autonomous defense platform for the Agentic Enterprise. Job Description You will produce new business sales revenue from a SaaS license model. You will accomplish this through account planning, territory planning, researching prospect customers, using business development strategies and completing field-based sales activities within a defined set of prospects, territory or vertical. What you get to do in this role: - Develop relationships with multiple C-suite personas (e.g., CFO, CIO, COO, CDO) across all product sales - Oversee client relationship mapping to the account team, orchestrating an account strategy while leading across a broad virtual team (Solutions Consultants, Solutions Specialist, Success resources, Partners and Marketing, etc.) - Be a trusted advisor to your customers by understanding their business and advising on how ServiceNow can help help their IT roadmap - Identify the right specialist/ support resources to bring into a deal, at the right time Qualifications To be successful in this role you have: - 10+ years of sales experience within software OR solutions sales organization - Experience in and knowledge of Cybersecurity - Experience establishing trusted relationships with current and prospective clients and other teams - Experience producing new business, negotiate deals, and maintain healthy C-Level relationships - Experience achieving sales targets - Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI's potential impact on the function or industry. - The ability to understand the "bigger picture" and our plans around IT - Experience promoting a customer success focus in a "win as a team" environment - Willingness to travel up to 50% For positions in this location, we offer a base pay of $130,650 - $215,550, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs. Compensation is based on the geographic location in which the role is located and is subject to change based on work location. Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here. To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.
Product Security Engineer
ClickHouseClickHouse is an open-source, column-oriented OLAP database management system.
• Collaborate with engineering and product on improving existing and building new product features with focus on threat modeling, assurance and secure implementation, some examples of recent work include implementation of secure key management, passwordless authentication, m2m authentication, sandboxing and compute/network/storage isolation • Identify security gaps and vulnerabilities in ClickHouse Cloud and OSS, triage a wide range of vulnerabilities reported via our bug bounty program, responsible disclosure, GitHub Issues covering web, API and server - client assets including low level memory issues like heap or buffer overflows • Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing • Drive implementation and usage of engineering security tools - static, dynamic code analysis, dependency checks, code licensing compliance (working knowledge of Snyk, Semgrep, GitHub CodeQL) • Nurture the engineering - security relationship, identify and implement process and technology improvements • Handle information security events and incidents across ClickHouse products and services • Develop processes, tooling and automation to scale security processes and mitigate risks to the business



