Sr Software Security Engineer
Role details
Job location
Tech stack
Job description
The Senior Software Security Engineer is a key technical leader within our growing Security organization, responsible for owning and evolving the technical strategy and execution of Kentik's application and software security programs. This role plays a critical part in shaping the company's overall security posture and enabling the engineering organization to ship secure software at scale., This is an individual contributor role reporting to Kentik's Chief Security Officer (CSO) with broad impact across the engineering organization and a high degree of autonomy, technical judgment, and influence and has the following responsibilities:
- Secure SDLC: Continuously evolve Kentik's secure SDLC strategy, defining security and privacy standards from design through deployment in partnership with key stakeholders. Design and implement automated security guardrails in CI/CD pipelines to detect vulnerabilities, dependency risks, and misconfigurations in real time, enabling teams to move fast without sacrificing security.
- Vulnerability Management: Lead the analysis and resolution of complex, high-risk, or systemic vulnerabilities, partnering with engineers to design durable fixes and reusable security patterns. This also includes tooling selection, prioritization frameworks, remediation workflows, and developer guidance.
- Threat Detection & Response: Lead threat management automation capabilities by designing automated detections, response playbooks, and escalation paths. Be part of security operations by responding to security alerts/incidents and continuously improving response effectiveness through automation and post-incident learnings. Manage and evolve bug bounty and penetration testing programs in partnership with internal and external stakeholders.
- Internal Tooling & Framework: Design, build, and maintain internal security tools, platforms, and frameworks used broadly across the engineering organization. Focus on scalability, reliability, and developer experience while delivering capabilities such as automated scanning, validation, and security reporting and dashboards.
- Security Guidance and Enablement: Act as a trusted security advisor to engineering and product teams, providing practical guidance during design reviews, architectural discussions, and roadmap planning. Drive security adoption through collaboration rather than gatekeeping, helping teams make informed risk-based decisions.
- Training & Culture: Drive security and privacy awareness across the organization by delivering role-specific training, secure design guidance, and ongoing education. Help foster a culture where security is a shared responsibility embedded into everyday engineering practices., * We use Node.js + Express for application serving, and React as our primary UI framework
- We also use some JS and Python for tooling/scripting
- In addition to our own database, we use Postgres, Kafka, Mysql, and Redis
- Internal and public APIs expose both rest/json and gRPC endpoints
- Haproxy, Envoy for API traffic routing and balancing
- Github for source control, PRs, issues
- Jenkins for automated builds, We are aware of recruitment scams targeting job seekers by posing as Kentik employees or on our behalf. These scams often ask for sensitive information or money. Please remember:
- Kentik will never ask for payment or fees of any kind as part of our recruitment process.
- All official job offers and communications will originate from a verified @Kentik.com email address.
- Trust only the application methods and contact details listed on this official careers site.
If you suspect fraud, do not make any payments or provide personal or financial information. Block the sender appropriately based on the medium they used to contact you and report this to us at security@kentik.com.
Requirements
Do you have experience in gRPC?, * 5+ years of experience in Software Engineering and/or Security Engineering, with demonstrated senior-level impact across multiple systems or teams. Strong proficiency in at least one modern programming language (e.g., Python, Go, or Node.js), with an emphasis on building maintainable, production-quality systems and tooling. Deep understanding of common application security vulnerabilities (e.g., OWASP Top 10), including root causes, exploitability, and real-world risk, and the ability to communicate these effectively to engineers. Strong experience with Linux, containers/Kubernetes, and infrastructure as code in at least one major public cloud provider (AWS, GCP, or Azure). Experience leading threat detection and response efforts, including automation of detections and response playbooks.
- Proven ability to work cross-functionally with engineering, product, and other stakeholders, influencing outcomes through collaboration and technical leadership.
Nice to haves
- Experience defining and tracking security metrics and building dashboards to measure program effectiveness
- Experience working in a remote environment
- Experience working in a pre-IPO startup environment
Benefits & conditions
The compensation range for this position is: €75,000 - €100,000. This range reflects the low and high end of the compensation range Kentik reasonably and generally expects to pay the hired candidate in this role. The actual compensation offered may be lower or higher than the stated range depending on various factors, including but not limited to:
- Experience with the skill sets required for success
- Demonstrated competencies and potential
- A geographic market-based approach
In addition to a great career opportunity, Kentik offers stellar benefits for our employees, which include:
- 100% of premiums are paid by company for health, vision and dental coverage for you and your dependents
- Additionally, an annual Health Reimbursement Account (HRA) of $3,000 for an individual or $4,500 for a family
- Paid family & medical leave
- Open PTO, a quarterly Wellness Day, and a minimum of 10 paid holidays
- 401(k) retirement account
- Home office reimbursement
- Stock options
Note: Benefits are as listed for all US full-time employees. For compensation, international applicants will be treated equitably in relation to the laws applicable within the countries in which we operate., We don't look for individuals who fit the culture, but those who will continue to add to the culture. We encourage everyone to apply, especially those individuals who are underrepresented in the industry: people of color, LGBTQI+ community, women, individuals with disabilities (both seen and unseen), veterans, and people of any age or family status.
Kentik is committed to creating an inclusive interview process. If you require a reasonable accommodation during the application or interview process, please reach out to recruiting@kentik.com.
Come as you are! You will be working at a fast-growing, well-funded startup alongside industry thought leaders and network aficionados as we build the future of observability and set the high bar for how network operations and digital businesses should run. With a competitive salary and amazing benefits on top of the meaningful and challenging projects you'll take on, we're sure you'll enjoy joining the Kentik team.
#li-remote If you require alternative methods of application or screening, you must approach the employer directly to request this as Indeed is not responsible for the employer's application process.