Magic logo

Senior Security Engineer

Magic

About the Role

Magic's security team is critical – it is responsible for safeguarding Magic’s tools and products. We are looking for a Senior Security Engineer to play a pivotal role in expanding our security program. The Senior Security Engineer will also work on some of the most challenging and high-visibility risks the company is facing. You will identify and mitigate security risks in our product and infrastructure, in addition to conducting security assessments, and assist with investigations. The ideal candidate will be an innovative self-starter, who is motivated by our mission and results-driven, and will be able to extract, assimilate, and correlate a wide variety of data in order to surface and disrupt threat actors across multiple spaces.

This is a fully remote position for US and Canada-based candidates.

Responsibilities

  • Contribute to further securing our SDLC, to include secure coding practices, CI/CD pipelines, and regression tests.
  • Lead and grow our vulnerability management program, which spans across our cloud infrastructure (AWS) and endpoint machines (macOS).
  • Collaborate with Engineering teams to harden our frontend and backend systems (Next.js, Typescript, AWS, Python).
  • Foster your extensive experience securing a cloud microservices platform like Kubernetes, including ingress/egress, and container communication.
  • Manage our external bug bounty program and be able to technically contribute to mitigations.
  • Support compliance standards like NIST, ISO 27001, SOC 2 Type 2, and GDPR.
  • Build a security mindset across the organization by providing security guidance and best practices.
  • Take a holistic approach towards security, ensuring coverage from code quality up and out to our edge services including Cloudflare and Vercel.
  • Participate in 24/7 on-call and security incidents, acting as Incident Manager.

Requirements

  • 6+ years of security engineering or software security experience in either frontend or backend environments.
  • Experience with programming and scripting languages such as Python, Golang, or TypeScript.
  • Excellent Incident Management skills to navigate and lead incidents adeptly to ensure platform uptime.

Bonus Points

  • Have previously built or managed a SIEM like OpenSearch or Splunk.
  • Built out modular authentication flows including WebAuthn OAuth.
  • Experience with Web3 protocol or smart contract security auditing.

Benefits

  • Fully remote team and flexible working hours
  • Competitive salary and stock options
  • Unlimited paid time off
  • Health, Vision, Dental, Disability, and Life Insurance
  • 401(k) program
  • Top of the line equipment
  • $300 monthly budget for home office needs and professional development
  • Annual team meetups

At Magic, we believe building a team full of diverse perspectives and experiences is vital to success. Therefore, we strongly encourage anyone historically underrepresented in tech to apply for this role. Magic does not discriminate based on gender, sexual orientation, race, religion, citizenship status, age, or physical ability. Empathy, authenticity, and inclusivity are at the core of all we do.

Benefits
Extracted with AI

  • Disability insurance
  • 401(k)
  • Fully remote team and flexible working hours
  • Competitive salary and stock options
  • Unlimited paid time off
  • Health, Vision, Dental, Disability, and Life Insurance
  • Top of the line equipment
  • $300 monthly budget for home office needs and professional development
  • Annual team meetups

Similar jobs

Last update: 23 minutes ago

Magic logo
Magic

Senior Security Engineer

Senior Security Engineer role focusing on web3 security, remote work, with extensive benefits including 401(k) and health insurance.

Atos logo
Atos

Senior Security Engineer

Join Atos as a Senior Security Engineer in Amstelveen, focusing on cybersecurity, network security, and vulnerability management.

Vattenfall logo
Vattenfall

Data Security Engineer - Cryptography

Join Vattenfall as a Data Security Engineer focusing on cryptography and key management in a hybrid work environment.

RightCrowd logo
RightCrowd

Full Stack Engineer with Node.js and React

Join RightCrowd as a Full Stack Engineer to develop cloud-native applications using Node.js and React. Work remotely with cutting-edge technology.

Magic logo
Magic

Software Engineer - TypeScript

Join Magic as a Software Engineer in San Francisco, focusing on TypeScript and AI development. Equity, 401(k), and health benefits included.

Gorgias logo
Gorgias

Senior Full-Stack Engineer ReactJS/NodeJS

Join Gorgias as a Senior Full-Stack Engineer specializing in ReactJS and NodeJS, enhancing AI-powered ecommerce solutions.

yourfirm GmbH logo
yourfirm GmbH

Senior Fullstack Developer for AI-Driven Mission Technologies

Seeking a Senior Fullstack Developer for AI-driven mission technologies, focusing on Java, JavaScript, Python, and C++. Remote work available.

Magical logo
Magical

Senior Full Stack Software Engineer (Hybrid, San Francisco/Toronto)

Join Magical as a Senior Full Stack Software Engineer in San Francisco or Toronto. Work on innovative projects with a focus on productivity.

Pass App logo
Pass App

Senior Software Engineer (Backend)

Join Pass App as a Senior Software Engineer (Backend) to build scalable web3 solutions using microservices, TypeScript, and Node.js.

Magic Eden logo
Magic Eden

Senior Backend Engineer

Join Magic Eden as a Senior Backend Engineer to build scalable systems using Node.js and cloud technologies.

Magic logo
Magic

Software Engineer - Pretraining Data

Join Magic as a Software Engineer to develop robust pipelines for multimodal datasets, focusing on distributed computing and data quality.

MagicLinks logo
MagicLinks

Senior Fullstack Engineer

Join MagicLinks as a Senior Fullstack Engineer to build and scale platforms using Ruby on Rails, ReactJS, and more.

Zivver logo
Zivver

Front-end Angular Engineer

Join Zivver as a Front-end Angular Engineer to shape the future of secure web applications. Work with Angular, TypeScript, and more in Amsterdam.

Instapro Group logo
Instapro Group

Senior Backend Engineer - Payments

Join Instapro Group as a Senior Backend Engineer in Berlin, focusing on PHP and payment systems in a hybrid work environment.

iubenda logo
iubenda

Chief Technology Officer (CTO) - Ruby on Rails & JavaScript

Join iubenda as CTO to lead tech strategy in a SaaS scale-up. Expertise in Ruby on Rails, JavaScript, and cloud infrastructure required.

Motius logo
Motius

Senior Backend Developer

Join Motius as a Senior Backend Developer to work on cutting-edge R&D projects using AWS, Docker, GraphQL, and more in a hybrid work environment.

Attio logo
Attio

Senior Product Engineer [Rust & Typescript]

Join Attio as a Senior Product Engineer working with Rust & TypeScript to build innovative CRM features. Remote work available.

Darktrace logo
Darktrace

Solutions Engineer

Join Darktrace as a Solutions Engineer in Amsterdam, providing technical pre-sales and post-sales support in a hybrid work environment.

Alchemy logo
Alchemy

Software Engineer (Fullstack) with Blockchain and Web3 Experience

Join Alchemy as a Fullstack Software Engineer to develop user-facing blockchain products. Hybrid role in San Francisco.

Reddit, Inc. logo
Reddit, Inc.

Senior Solutions Engineer

Join Reddit as a Senior Solutions Engineer in Amsterdam to support our growing advertising business with technical expertise and problem-solving skills.

DeepL logo
DeepL

Security Engineer

Join DeepL as a Security Engineer to enhance cybersecurity and network security in a dynamic AI-driven environment.

Instapro Group logo
Instapro Group

Senior Backend Engineer - PHP, Symfony, Laravel

Join Instapro Group as a Senior Backend Engineer, working with PHP, Symfony, and Laravel in a hybrid environment.

Adva Network Security GmbH logo
Adva Network Security GmbH

Senior Software Engineer - Embedded Systems and Cryptography

Join Adva Network Security as a Senior Software Engineer in Berlin, focusing on embedded systems and cryptography.

Pleo logo
Pleo

Senior Mobile Platform Engineer

Join Pleo as a Senior Mobile Platform Engineer to empower product teams in building and maintaining mobile app features with React Native and TypeScript.