Sift
Technology
SeniorSecurityEngineer
Neural analysis suggests this role is
optimal for Senior candidates.
“Senior Security Engineer at Sift. Skills: Security engineering, Cloud security, Application security, AI/LLM security. Design security controls. Implement security controls”
What You'll Achieve.
Materially reduce risk; Strengthen security posture
Industry & Context.
Root cause analysis; Troubleshooting
On-call rotation
What They're Looking For.
Must Have
5+ years experience, Hands-on experience with public cloud, Proficiency in programming/scripting language, Experience using code to automate, Direct experience with AI/LLM security risks, Demonstrated knowledge of secure design, Experience with security tooling, Solid understanding of common vulnerabilities, Ability to work cross-functionally, Clear written and verbal communication
Nice to Have
Experience in B2B SaaS environment, Experience in cloud-native environment
What You'll Do.
Design security controls
Implement security controls
Operate security controls
Secure systems end-to-end
Define security standards
Mentor engineers on secure practices
Contribute to compliance efforts
Perform security design reviews
Perform threat modeling
Perform configuration reviews
Integrate AI scanning tools
Integrate security scanning
Own vulnerability management
Co-own vulnerability management
Define vulnerability SLAs
Coordinate vulnerability remediation
Track vulnerability closure
Detect misconfigurations
Detect anomalous activity
Detect policy violations
Participate in incident response
Investigate security incidents
Contain security incidents
Perform root cause analysis
Implement long-term fixes
Contribute to security documentation
Contribute to security standards
Provide technical details
Provide evidence of control
How You'll Work.
Team & Collaboration
Work with Engineers; Work with SREs; Work with IT; Work with Legal; Work with Compliance; Embed with product teams; Embed with platform teams; Cross-functional teams
Communication Scope
Verbal communication; Written communication; Document designs; Document decisions; Educate others
Process & Methodology
Risk-based decisions
Full Job Description
About the team: The Security Engineering team is responsible for protecting Sift’s products, infrastructure, and data while enabling our engineering organization to ship quickly and safely. We embed with product and platform teams, build and run security tooling, and design controls that scale across our cloud‑native environment. As a Senior Security Engineer, you’ll be a key technical contributor and subject‑matter expert, working on projects that materially reduce risk and strengthen Sift’s security posture. Role: In this role, you will design, implement, and operate security controls and tooling across Sift’s stack. You’ll work closely with Engineers, SREs, IT, and Legal/Compliance to secure our systems end‑to‑end—from application code and CI/CD pipelines to cloud infrastructure and identity. You will also help define our standards, mentor other engineers on secure practices, and contribute directly to audits and compliance efforts. What you’ll do: - Design and implement security controls and tooling across Sift’s infrastructure and applications (e.g., IAM policies, network controls, secrets management, endpoint protections, container and workload security). - Embed with product and platform teams to perform security design reviews, threat modeling, and code or configuration reviews for new features and services. - Improve the secure SDLC by integrating AI-powered scanning tools, security scanning (SAST/DAST, dependency and container scanning) into CI/CD, and by developing guardrails, templates, and best practices for engineers. - Own or co‑own vulnerability management workflows, from discovery and triage through remediation, including defining SLAs, coordinating with service owners, and tracking closure. - Develop automation (scripts, services, integrations) to detect misconfigurations, anomalous activity, or policy violations, and to reduce manual operational work for the security team. - Participate in security incident response (on‑call rotation or escalation
Applying for this Senior Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Sift?
Real rants from real employees. Read before you apply.