
Security Engineer
Clay
full-time
Posted on:
Location Type: Hybrid
Location: New York City • New York • United States
Visit company websiteExplore more
Salary
💰 $225,000 - $300,000 per year
About the role
- Build security primitives, tooling, and automation that scale with the product and engineering org
- Define and implement our strategy for modern security workflows: AI-assisted vulnerability discovery, automated code review, threat detection, and remediation
- Collaborate with Infrastructure and Product Engineering to make secure defaults the easiest path
- Own projects end to end: design, implementation, rollout, and measurement
- Secure our cloud environment (IAM, network policies, container security, secrets management, and misconfiguration prevention)
- Define and enforce least-privilege access patterns across services and humans.
- Improve cloud visibility and control using infrastructure-as-code and cloud security tooling (we currently use Terraform, AWS Config, and AWS Security Hub)
- Develop preventative controls and safe deployment patterns that reduce the probability and blast radius of incidents
- Lead secure design and secure coding practices, and prevent common vulnerability classes.
- Perform architecture reviews and code-level security reviews, and work hands-on with engineers to ship fixes.
- Own the vulnerability discovery and validation lifecycle: static and dynamic analysis, dependency checks, pen tests, and bug bounties. Integrate modern automated detection systems (including Claude Mythos-class models) to find vulnerabilities at scale.
- Build and deploy security agents and automated workflows that can scan codebases, propose fixes, and in some cases autonomously deploy security patches.
- Build frameworks and reusable components for authentication, authorization, and secure-by-default patterns.
- Define practical policies and controls for code generation tools and coding agent changes, so they can be used safely and consistently.
Requirements
- Strong software engineering fundamentals and a track record of shipping production systems
- Deep expertise in either cloud security or application security, with the ability to flex into the adjacent domain
- Ability to build, not just advise: You translate risk into concrete engineering work and ship solutions
- Comfort with ambiguity: You thrive when building from first principles and defining what good looks like
- Forward-thinking about tooling: Interest in leveraging modern automation and AI to scale security operations while maintaining engineering rigor
Benefits
- All employees can work for free with world-class coaches who specialize in creativity, management, and more.
- Offers Equity
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cloud securityapplication securityinfrastructure-as-codestatic analysisdynamic analysisvulnerability discoveryautomated code reviewthreat detectionsecure coding practicespreventative controls
Soft Skills
collaborationleadershipproblem-solvingadaptabilitycommunicationstrategic thinkingrisk managementcreativityattention to detailcomfort with ambiguity