> Markdown version of [/jobs/ext/595868-security-engineer-core-command](https://www.wearedevelopers.com/jobs/ext/595868-security-engineer-core-command). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer, Core Command - **Company:** Verkada Inc. - **Location:** San Mateo, CA, United States - **Experience:** Expert - **Salary:** $200,000.0 - $300,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, User Authentication, Code Review, Web Development, Mobile Application Software, Python (Programming Language), Systems Development Life Cycle, Cloud Services, Software Engineering, Software Technical Review, Software Security, Information Technology - **Published:** June 19, 2026 - **Apply:** https://diversityjobs.com/career/17324149/Security-Engineer-Core-Command-California-San-Mateo ## About the Role * Bachelor of Science in Computer Science degree or equivalent * Strong experience with AWS, GCP or other cloud service provider * 7+ years of experience as a security engineer in an advisory role * Understanding of security weaknesses, exploits, attacks and mitigations * Experience and enthusiasm for learning about new security products, features, and strategies * Coding ability. You will sometimes write production Python/Go code, security peer review code, build proofs of concept or implement automation scripts * Excellent collaborative skills * Outstanding written and verbal communication * Experience with most of the following: + Security Development Lifecycle + Threat Modeling + Architecture Analysis + Technical Design Review + Security Code Review ## Description We are looking for a security engineering leader to collaborate with the Core Command engineering team. As an embedded partner for the team, you will perform threat models, security design reviews and refine security tools that facilitate security throughout the SDLC. You will define the security roadmap, requirements and priorities to expand and enhance the Verkada Command platform core security services (Authentication, Authorization, Users, Roles, Audit), web frontend, and mobile applications. What You'll Do * Facilitate the security baked into our applications throughout the software development lifecycle * Evangelize software security best practices through training and information sharing * Partner closely with engineering and product teams to improve the security of Verkada's products and exceed customers' expectations * Explore innovative solutions to enable Verkada business instead of "Security says No" * Collaborate with other engineering leaders to define, communicate, and execute on goals, priorities and process * Set up security tooling and secure defaults to ensure software security best practices * Perform architecture analysis, threat modeling and technical design reviews of sensitive features and infrastructure * Create and operate a bug bounty program * Triage and recommend solutions for security bugs from tools, third party assessments and bug bounties * Collaborate with the CISO and security team to grow the broader Verkada security program * Share your security experience with other teams internally and externally via security conferences and blogs * Help your peer engineers grow their own security reasoning and knowledge ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Angular Unleashed: Mastering Modern Web Development with Angular](https://www.wearedevelopers.com/videos/685-angular-unleashed-mastering-modern-web-development-with-angular) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)