This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
At Scale, our Security Architecture team builds the foundations that allow engineers to ship fast without compromising security. From securing modern TypeScript services and cloud infrastructure to enabling safe adoption of AI-driven systems, our work shapes how products are designed, deployed, and operated across the company. We are looking for a Staff Security Engineer to help define and build the “paved road” for secure development at Scale. As a Security Engineer Engineering manager,you will manage a team of Security Engineers that operate as a builder first mentality — roughly 60% software engineering and 40% security. You’ll partner deeply with product, platform, and infrastructure teams to design secure architectures, build shared primitives, and influence how engineering teams work end-to-end. This role requires strong experience in security engineering around pen testing, product/infrastructure security, detention and response.
Job Responsibility:
Partner with product and engineering teams across the full SDLC, from RFC and architecture reviews through implementation, launch, and long-term maintenance
Conduct deep architecture and design, identifying systemic risks beyond individual vulnerabilities
Managing a team that will build and maintain secure cloud and CI/CD foundations using Infrastructure as Code
Act as a technical advisor to engineering teams, helping them ship secure, maintainable, production-grade systems
Influence security strategy and technical direction through tooling, standards, and clear technical guidance
Own performance management for Security Engineering teams, setting expectations, evaluating impact, and developing senior talent
Requirements:
Experience conducting security, architecture, and design reviews
Deep familiarity with AWS cloud primitives, including IAM, and experience designing systems for multiple environments
Experience working with Infrastructure as Code (Terraform, CDK, or similar), treating infrastructure as software
Strong ability to structure ambiguous problems and propose pragmatic solutions
Excellent communication skills, with the ability to explain complex security and architectural tradeoffs to technical and non-technical stakeholders
A proven ability to influence cross-functional teams and drive adoption of secure patterns without blocking velocity
Nice to have:
Experience working with Kubernetes and container security, including network policies and workload isolation
Experience supporting AI/ML workloads
Familiarity with AI / LLM systems, agentic workflows, and emerging AI security concerns
Experience working in large-scale monorepos or with modern build systems (e.g., Bazel)
Exposure to data security, data pipelines, or compliance-driven systems (e.g., GDPR)
Willingness to learn and build automation around compliance environments (e.g., FedRAMP, GovCloud)
Interest in emerging infrastructure challenges such as GPU or HPC cluster security