Security Engineer

ONE STOP COLLECTIBLE CORP
San Francisco, CA, United States
2 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) Artificial Intelligence Cloud Computing Security DevOps Github Software Engineering TypeScript Stripe Information Technology Figma Software Coding

Job description

We want to build agents that autonomously validate code changes. Today that looks like AI that reviews pull requests in GitHub, catching bugs and enforcing standards.

Greptile reviews 5B lines of code every month for 22,000+ customers.

Problems we’re excited about

  • Coding standards can be idiosyncratic and are often poorly documented; can we build agents that learn them through osmosis like a new hire might?

  • Can we identify for each customer what types of PR feedback they do and don’t care about in order to increase signal-to-noise ratio?

  • Some bugs are best caught by running the code. Can we autonomously deploy feature branches and use agents to try to break the application?

  • How do we secure a product that processes highly sensitive code across cloud, self-hosted, and air-gapped environments?

Trajectory

  • 22,000+ customers

  • 5B lines of code reviewed every month

  • Scaled from $0 to eight figures in ARR

  • Raised $30M from Benchmark, Y Combinator, Paul Graham, and Initialized

Team

  • We have assembled a small, talent dense team who have scaled critical functions at companies like Stripe, Google, Figma, etc.

Responsibilities

  • Own Greptile’s security posture across the product, infrastructure, and internal systems

  • Consult on risky code changes and critical architecture decisions

  • Fix pentest findings and patch reported vulnerabilities

  • Manage our bug bounty program and coordinate vulnerability response

  • Design, implement, test, and deploy secure product and infrastructure improvements

  • Work directly with engineers to make security part of how we build, rather than a final review step

Requirements

  • B.S. Computer Science or equivalent degree, undergraduate or higher

  • 3+ years of software engineering, DevOps, or security engineering experience

  • Experience with JavaScript/TypeScript

  • Deep knowledge of application, infrastructure, and cloud security

  • Experience working on security-critical products and complex architectures

  • Strong judgment when evaluating vulnerabilities, technical tradeoffs, and risk

You will like this role if

  • You want to work on a product that thousands of developers rely on

  • You want real ownership over the security of a fast-growing technical product

  • The chaos of high growth and things breaking is exciting to you

  • You like being in an office every day around other smart people who are excited about what they’re building

  • You love solving very hard problems.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:04 min

Configuring the Figma MCP for local code generation

Perf + AI

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:26 min

Implementing custom component libraries with Figma

Philipp Kremer · World Congress 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all