Location
We are hiring for this role to be based in the United States or Canada. This is a remote role unless you fall within the following parameters. If you live within approximately 50 miles of our San Mateo, CA or Provo, UT office, the position follows a hybrid schedule with in-office days on Mondays, Wednesdays, and Fridays.
About The Role
Help harden, simplify, and operationalize a TypeScript-based production system used by security-conscious, legal/regulatory, and enterprise customers.
This is not a feature-churn role – though you may contribute directly to product experiences. The core need centers on security, auditability, infrastructure correctness, and customer trust, with occasional forward-deployed and sales-adjacent work when deep technical context is required.
A major component of this role will be to collaborate to form and evangelize engineering direction and culture with respect to security needs. If you’re comfortable owning security surfaces end-to-end—code, cloud, and customer conversations—this role will suit you.
We’re an AI-forward environment and (responsibly) use AI tools like Cursor and Claude Code for our work.
What You'll Do
• Help unify logging, security events and other auditability functionality within our platform.
• Work with legal and sales to help communicate security posture, functionality, and compliance.
• Work with DevOps and other engineering functions to promote and maintain strong security positions, clear auditability, tight network boundaries, and alignment with security, compliance, and customer needs.
What You Bring
• Strong experience with TypeScript across backend and frontend.
• Production experience with Google Cloud Platform (IAM, service accounts, project isolation).
• Experience with infrastructure as code (Terraform, Pulumi, or similar).
• Practical experience designing or implementing:
• Audit logs and SIEM experience
• Access controls / complex roles, organizations, and permissioning
• Security-relevant telemetry
• Ability to reason about real risk vs. checklist compliance.
Nice to Have
• Experience acting as a technical lead either on a team or a vertical, strong soft skills.
• Familiarity with security questionnaires, vendor risk reviews, SOC 2, and audits.
• Prior work in regulated or compliance-heavy environments.
• Comfort working directly with customers or sales in technical contexts.