Magic logo

Senior Security Engineer

Magic

About the Role

Magic's security team is critical – it is responsible for safeguarding Magic’s tools and products. We are looking for a Senior Security Engineer to play a pivotal role in expanding our security program. The Senior Security Engineer will also work on some of the most challenging and high-visibility risks the company is facing. You will identify and mitigate security risks in our product and infrastructure, in addition to conducting security assessments, and assist with investigations. The ideal candidate will be an innovative self-starter, who is motivated by our mission and results-driven, and will be able to extract, assimilate, and correlate a wide variety of data in order to surface and disrupt threat actors across multiple spaces.

This is a fully remote position for US and Canada-based candidates.

Responsibilities

  • Contribute to further securing our SDLC, to include secure coding practices, CI/CD pipelines, and regression tests.
  • Lead and grow our vulnerability management program, which spans across our cloud infrastructure (AWS) and endpoint machines (macOS).
  • Collaborate with Engineering teams to harden our frontend and backend systems (Next.js, Typescript, AWS, Python).
  • Foster your extensive experience securing a cloud microservices platform like Kubernetes, including ingress/egress, and container communication.
  • Manage our external bug bounty program and be able to technically contribute to mitigations.
  • Support compliance standards like NIST, ISO 27001, SOC 2 Type 2, and GDPR.
  • Build a security mindset across the organization by providing security guidance and best practices.
  • Take a holistic approach towards security, ensuring coverage from code quality up and out to our edge services including Cloudflare and Vercel.
  • Participate in 24/7 on-call and security incidents, acting as Incident Manager.

Requirements

  • 6+ years of security engineering or software security experience in either frontend or backend environments.
  • Experience with programming and scripting languages such as Python, Golang, or TypeScript.
  • Excellent Incident Management skills to navigate and lead incidents adeptly to ensure platform uptime.

Bonus Points

  • Have previously built or managed a SIEM like OpenSearch or Splunk.
  • Built out modular authentication flows including WebAuthn OAuth.
  • Experience with Web3 protocol or smart contract security auditing.

Benefits

  • Fully remote team and flexible working hours
  • Competitive salary and stock options
  • Unlimited paid time off
  • Health, Vision, Dental, Disability, and Life Insurance
  • 401(k) program
  • Top of the line equipment
  • $300 monthly budget for home office needs and professional development
  • Annual team meetups

At Magic, we believe building a team full of diverse perspectives and experiences is vital to success. Therefore, we strongly encourage anyone historically underrepresented in tech to apply for this role. Magic does not discriminate based on gender, sexual orientation, race, religion, citizenship status, age, or physical ability. Empathy, authenticity, and inclusivity are at the core of all we do.

Benefits
Extracted with AI

  • Disability insurance
  • 401(k)
  • Fully remote team and flexible working hours
  • Competitive salary and stock options
  • Unlimited paid time off
  • Health, Vision, Dental, Disability, and Life Insurance
  • Top of the line equipment
  • $300 monthly budget for home office needs and professional development
  • Annual team meetups

Similar jobs

Last update: 23 minutes ago

Magic Eden logo
Magic Eden

Senior Backend Engineer

Join Magic Eden as a Senior Backend Engineer to build scalable systems using Node.js and cloud technologies.

Magic Eden logo
Magic Eden

Senior Frontend Engineer

Join Magic Eden as a Senior Frontend Engineer to innovate and build on a multi-chain NFT platform using Angular, JavaScript, and more.

Agoda logo
Agoda

Staff/Lead Application Security Engineer

Join Agoda as a Staff/Lead Application Security Engineer in a dynamic DevSecOps environment.

Swile logo
Swile

Senior Security Engineer - Application Security

Join Swile as a Senior Security Engineer focusing on application security, threat modeling, and vulnerability management.

Agoda logo
Agoda

Staff/Lead Application Security Engineer

Join Agoda as a Staff/Lead Application Security Engineer in Bangkok. Enhance security in a dynamic DevSecOps environment.

Human Interest logo
Human Interest

Senior Full-Stack Software Engineer

Join Human Interest as a Senior Full-Stack Software Engineer to build world-class customer experiences in a remote role.

Intuit logo
Intuit

Software Engineer 2 - Platform Security

Join Intuit as a Software Engineer 2 in Platform Security, focusing on cloud infrastructure and security best practices.

Inclusively logo
Inclusively

Senior Cloud Engineer

Join as a Senior Cloud Engineer to architect and deploy cloud solutions using Azure, AWS, and GCP. Lead innovation in cloud technology.

Immunefi logo
Immunefi

Hacker Program Operations Specialist

Join Immunefi as a Hacker Program Operations Specialist to lead and manage Web3 security programs.

Spinwheel logo
Spinwheel

Senior Software Engineer - Remote

Join Spinwheel as a Senior Software Engineer to lead API design and integration architecture in a remote-first, fast-growing startup.

Veriff logo
Veriff

Senior Full-Stack Engineer

Join Veriff as a Senior Full-Stack Engineer in Barcelona. Work with TypeScript, Python, GraphQL, and more.

Inclusively logo
Inclusively

Senior Software Engineer, Machine Learning

Join as a Senior Software Engineer in Machine Learning, working remotely to build ML-driven products for user engagement.

Dragonfly logo
Dragonfly

Senior Frontend Engineer - Web3 and Blockchain

Join Dragonfly's portfolio as a Senior Frontend Engineer, focusing on blockchain and crypto applications using React.js and NextJS.

Vouch Insurance logo
Vouch Insurance

Senior Full Stack Software Engineer

Join Vouch Insurance as a Senior Full Stack Software Engineer, leading projects and mentoring in a remote role.

Messari logo
Messari

Senior Full Stack Engineer with Front-End Focus

Join Messari as a Senior Full Stack Engineer focusing on front-end development, bridging frontend and backend teams.

Microsoft logo
Microsoft

Principal Software Engineer - Cloud Security

Join Microsoft as a Principal Software Engineer focusing on cloud security solutions. Remote work available.

SentinelOne logo
SentinelOne

Senior Backend Engineer - Cloud Native Security

Join SentinelOne as a Senior Backend Engineer focusing on cloud-native security solutions. Work remotely in Slovakia.

15Five logo
15Five

Senior Software Engineer

Join 15Five as a Senior Software Engineer to develop high-quality software solutions in a remote-first environment.

Cyberhaven logo
Cyberhaven

Senior Backend Developer

Join Cyberhaven as a Senior Backend Developer to design scalable systems using Go, Kubernetes, and more. Remote position with competitive benefits.

Microsoft logo
Microsoft

Software Engineer II - Hardware Security

Join Microsoft as a Software Engineer II focusing on hardware security, working remotely to innovate and secure billions of devices.

Square logo
Square

Software Engineer (Frontend/Fullstack) - E-commerce Website

Join Square as a Software Engineer (Frontend/Fullstack) to enhance e-commerce experiences. Work remotely with VueJS, PHP, and Laravel.

Waabi logo
Waabi

Remote Software Engineer

Join Waabi as a Remote Software Engineer to develop cutting-edge self-driving technology. Work with AI, Python, C++, and more.

Valdera logo
Valdera

Senior Software Engineer (Full-Stack)

Join Valdera as a Senior Software Engineer (Full-Stack) to build innovative tools for global teams. Work remotely with AWS, React.js, and more.

Mintlify logo
Mintlify

Founding Support Engineer

Join Mintlify as a Founding Support Engineer in San Francisco. Solve complex customer issues and help build our innovative platform.