Security Engineer - Platform & Shared Services

Anaconda, Inc.
United States
3 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$120,000.0 - $185,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Software System Penetration Testing Microsoft Azure Bash Shell Code Review Communications Protocols DevOps Identity and Access Management Python (Programming Language) Key Management Open Source Technology
+16 more
Public Key Infrastructure Azure Active Directory Zero Trust Network Access Reverse Engineering Software Engineering Scripting Okta Multi-Cloud Firewalls (Computer Science) Containerization Kubernetes Terraform Docker Static Application Security Testing Golang Dynamic Application Security Testing

Job description

We’re growing our Security team to protect and enable Anaconda’s platform as we scale from 50 million users toward the next phase of growth. You’ll design and implement security controls, automation, and guardrails that reduce systemic risk while helping engineering teams ship faster. This role is about building secure-by-default systems through hands-on engineering, not enforcing checklists from the sidelines. What You’ll Do:

  • Design and implement security controls across firewalls, IAM, endpoint detection and response, and secrets management in hybrid and multi-cloud environments
  • Build security automation and tooling using Python, Go, and Bash, managing infrastructure as code with Terraform to scale security baselines and reduce manual toil
  • Conduct vulnerability and threat management by triaging scanner output, investigating root causes, and driving risk reduction with clear operational guidance
  • Perform code reviews and architecture assessments to identify security risks early and collaborate with engineering teams to design secure solutions
  • Embed security into CI/CD pipelines through SAST, DAST, and dependency scanning, creating developer-friendly workflows that catch issues before production
  • Respond to security incidents as an escalation point, performing forensic analysis and maintaining tested runbooks for calm, effective containment during critical events
  • Partner with Legal, IT, Platform Engineering, and Developer Experience teams to translate security risks into business impacts and deliver controls that add velocity
  • Develop secure-by-default templates, libraries, and tooling that make it easier for developers to do the right thing without friction

Your Impact Will Be Measured Through:

  • Risk reduction velocity measured by mean time to remediate high-severity vulnerabilities and percentage of defects caught in development versus production
  • Operational automation measured by reduction in false positive rates and percentage of security baselines managed through infrastructure as code
  • Cross-functional partnership measured by adoption of secure-by-default templates and feedback from engineering teams on whether security adds or removes velocity
  • Incident preparedness measured by runbook coverage and response effectiveness during critical risks or zero-day events

Requirements

  • 3+ years of hands-on experience in systems administration, DevOps, network engineering, or software development prior to or alongside security work
  • Proficiency with cloud platforms including AWS, Azure, or GCP, and experience managing infrastructure as code using Terraform
  • Experience writing scripts and automation in Python, Go, or Bash to integrate tools and reduce manual security tasks
  • Working knowledge of core security disciplines including IAM, PKI, cryptography basics, network protocol analysis, and threat modeling frameworks
  • Demonstrated ability to communicate technical security risks to non-security audiences and design workflows that respect developer experience
  • Experience working in containerized environments with Docker or Kubernetes
  • You embody our values of Clarity, Care and Candor
  • You care deeply about fostering an environment where people of all backgrounds and experiences can flourish

What Will Make You Stand Out:

  • You have offensive security experience through penetration testing, red teaming, bug bounty programs, or reverse engineering, and can think like an attacker to build better defenses
  • You’ve worked with advanced container security tools such as Falco or eBPF, or implemented zero trust architecture and network isolation in production environments
  • You bring a production engineering, SRE, or software engineering background with experience writing custom SAST or DAST rules, or managing SBOM and supply chain security
  • You have specialized expertise in HSMs, hardware tokens like YubiKeys or FIDO2, applied cryptography, or identity provider integrations with platforms like Okta or Azure AD
  • You’ve contributed to security culture through training programs, threat modeling workshops, CTF events, conference talks, or open-source security projects
  • You’ve thrived in fast-paced startup environments where you balanced speed with thoughtful risk management
  • Experience working in a fast-paced startup environment
  • Experience working in an open-source, AI, or data science-oriented company

Benefits & conditions

  • You’ll thrive in a high-performance environment where results are recognized and rewarded
  • Your work directly contributes to shaping the future of data science, machine learning, and AI in the enterprise.
  • You’ll work alongside a collaborative team that values diverse, thoughtful discussion, clarity and candor.
  • You’ll be supported by a culture that puts employees first - with flexible hours, a fully remote setup, and a genuine commitment to your wellbeing and growth.

The application deadline for this role is 12/01/2026; applicants will be reviewed on an ongoing basis until the role is filled.

The base salary range for this role is $120,000 - $185,000 for US-based team members, along with annual bonus potential, equity participation, and benefits.

Our salary ranges are determined by role, level, and location. Within the range, individual compensation is determined by various factors, including work location, job-related skills, experience, and relevant education or training. Your recruiter will provide more specific details on the salary range for your preferred location during the hiring process.

In addition to base salary, we offer a comprehensive benefits package that includes:

  • Flexible Vacation Policy
  • Medical, Dental, and Vision Insurance
  • Short Term and Long Term Disability
  • Paid Parental Leave
  • Monthly Wellness Stipend
  • Employee Assistance Program and Mental Health Resources

About the company

Anaconda is built to advance AI with open source at scale, giving builders and organizations the confidence to increase productivity, and save time, spend and risk associated with open source. 95% of the Fortune 500 including Panasonic, AmTrust, Booz Allen Hamilton and over 50 million users rely on the value The Anaconda AI Platform delivers through a centralized approach to sourcing, securing, building, and deploying AI. With 21 billion downloads and growing, Anaconda has established itself as the gold standard for Python, data science, and AI and the enterprise-ready solution of choice for AI innovation. Anaconda is backed by world-class investors including Insight Partners. Learn more at https://www.anaconda.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:22 min

Analyzing differences between mobile and traditional backend DevOps

Mete Baydar Mete Baydar · World Congress 2025

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

3:27 min

Defining DevOps through its historical origins and foundational texts

Sonal Patil · LIVE

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

Videos

See all

Related articles

See all