[Remote] Security Engineer [IC3]
Note: The job is a remote job and is open to candidates in USA. Sourcegraph is a leading code intelligence platform, empowering developers to navigate complex codebases effectively. As a Security Engineer, you will be part of the security team, focusing on security operations, incident response, and application security testing to enhance the overall security of the product and its infrastructure.ResponsibilitiesBe onboarded to our alerting and monitoring stackBe able to participate in on-call rotationsYou will discover, fix, and mitigate infrastructure vulnerabilities by updating libraries, base images, and analyzing containersMaintain internal systems, such as automations that assist in alert triagingYou will work with other teams to triage, troubleshoot, and mitigate customer concerns and questions about our securityYou will enhance our application security with audits, best practices, code fixes, and continuous educationYou will perform reactive incident response if a security event occursYou and your manager will work together on a career plan with actionable goalsYou will perform proactive research to detect new attack vectorsYou will perform threat modeling for existing and future applicationsYou will assess and integrate new tools and technologies to improve our operational efficienciesYou will help maintain compliance with SOC 2, ISO 27001 & GDPR standardsSkillsPractical experience reviewing SIEM alerts and participating in on-call rotationsPractical experience securing SaaS applications as a security generalist, including infrastructure security, application security, and/or complianceExperience with Go, including writing and maintaining internal tooling along with code reviewsExperience with Elastic stack and GCPExperience using and automating a wide range of defensive security toolsExperience working across engineering teams to secure projects across the organizationYou are high agencyYou communicate effectively in writing and documentationExperience developing software as an engineer (i.e., writing code and contributing directly to applications)Experience working in a startup environmentExperience with TypeScript and TerraformExperience with KubernetesExperience securing AI productsBenefitsEquity (because when we succeed as a company, we want you to succeed, too)Generous perks & benefitsSourcegraph participates in E-Verify for U.S. Employees.Company OverviewThe complete AI SDLC platform where devs can compose code, contextualize knowledge, and catalyze delivery. It was founded in 2013, and is headquartered in San Francisco, California, USA, with a workforce of 51-200 employees. Its website is https://about.sourcegraph.com.