Talent.com
Staff Security Engineer

Staff Security Engineer

Pomelo CareSan Francisco, CA, United States
2 days ago
Job type
  • Full-time
Job description

About Pomelo Care

Pomelo Care is a multi‑disciplinary team of clinicians, engineers and problem solvers who are passionate about improving care for moms and babies. We are transforming outcomes for pregnant people and babies with evidence‑based pregnancy and newborn care at scale. Our technology‑driven care platform enables us to engage patients early, conduct individualized risk assessments for poor pregnancy outcomes, and deliver coordinated, personalized virtual care throughout pregnancy, NICU stays and the first postpartum year. We measure ourselves by reductions in preterm births, NICU admissions, c‑sections and maternal mortality, and we improve outcomes and reduce healthcare spend.

Job Overview

Pomelo Care is seeking an experienced cybersecurity engineer to mature our security practices and contribute to our mission to ensure that our patients, clinicians and partners trust us implicitly. This is an exciting opportunity for someone who shares our commitment to information security to be part of a fast‑paced environment that will push you to learn while doing.

What You’ll Do

As a Staff Security Engineer at Pomelo Care, you’ll be a key player in shaping our security posture, safeguarding sensitive healthcare data and enabling our engineering teams to build secure and compliant products. This role requires a versatile generalist with deep technical expertise, excellent software engineering fundamentals and the agility to thrive in a startup environment.

Key Responsibilities

  • Lead and execute critical cybersecurity initiatives, spanning areas such as IAM / RBAC, Application Security, Cloud Security, Endpoint Security, CI / CD and supply chain security, SAST / DAST tooling, penetration testing, bug bounty management, Incident Response, DFIR and SaaS security.
  • Develop and implement security solutions and frameworks that proactively mitigate risks and address evolving threats.
  • Collaborate cross‑functionally with engineering, product, compliance and executive teams to drive adoption of security best practices.
  • Own and continuously improve secure software development lifecycle (SDLC) processes and tools.
  • Serve as a subject matter expert and mentor, guiding and educating teams on cybersecurity principles, secure coding and threat modeling.
  • Participate directly in incident response activities, investigations and post‑incident analysis.
  • Demonstrate humility, entrepreneurial spirit, strong communication skills and comfort contributing to a dynamic, cross‑functional environment.

Qualifications

  • 10+ years of hands‑on experience in cybersecurity with a robust software engineering foundation.
  • Direct hands‑on expertise in at least 2–3 key security areas (IAM, Application Security, Cloud Security, CI / CD security, Incident Response, etc.).
  • Curiosity and openness to learn new cybersecurity domains that may not be familiar.
  • Direct experience working in some parts of the full technology stack including Google Cloud Platform (GCP), Kotlin, React / Next.js, Swift, Expo, XCode, Android Studio, yarn, npm, Code Build, among others.
  • Previous cybersecurity experience within healthcare environments and startups, demonstrating familiarity with regulatory frameworks (e.g., HIPAA) and supporting security certifications such as SOC 2 Type 2 and HITRUST.
  • Strong technical background including full‑stack software development, system architecture and security fundamentals such as PKI, SAML, JWT, HMAC, MITRE ATT&CK, D3FEND frameworks and OWASP top ten mitigations.
  • Proven ability to thrive in agile environments, adapting quickly and wearing multiple hats to help scale security programs.
  • Strong problem‑solving skills, excellent communication abilities, and a collaborative mindset.
  • Relevant industry certifications (e.g., CISSP, CISM, CCSP) are highly desirable. OSCP is a big plus.
  • Exceptional communication skills and the ability to convey complex security concepts to non‑technical stakeholders.
  • Why Join Us

    By joining Pomelo, you will get in on the ground floor of a fast‑moving, well‑funded, and mission‑driven startup that always puts the patient first. You will learn, grow and be challenged—and have fun with your team while doing it.

    Benefits

  • Competitive healthcare benefits
  • Generous equity compensation
  • Unlimited vacation
  • Membership in the First Round Network—a curated and confidential community with events, guides, thousands of Q&A questions and opportunities for 1‑1 mentorship
  • Diversity & Inclusion

    We strive to create an environment where employees from all backgrounds are respected. At Pomelo, we are committed to hiring the best team to improve outcomes for all mothers and babies, regardless of their background. We value people from a variety of backgrounds, including but not limited to race, age, sexual orientation, gender identity and expression, national origin, religion, disability and veteran status.

    Compensation

    Our salary ranges are based on paying competitively for our company’s size and industry, and are part of the total compensation package that also includes equity, benefits and other opportunities at Pomelo Care. In accordance with New York City, Colorado, California, and other applicable laws, Pomelo Care is required to provide a reasonable estimate of the compensation range for this role. A reasonable estimate of the current salary range is $200,000 to $220,000. We expect most candidates to fall in the middle of the range.

    Potential Fraud Warning

    Please be cautious of potential recruitment fraud. With the increase of remote work and digital hiring, phishing and job scams are on the rise with malicious actors impersonating real employees and sending fake job offers in an effort to collect personal or financial information. Pomelo Care will never ask you to pay a fee or download software as part of the interview process. We will never ask for your personal banking or other financial information until after you have signed an offer of employment and completed onboarding paperwork that is provided by our People Operations team. All official communication with Pomelo Care People Operations team will come from domain email addresses ending in @pomelocare.com. If you receive a suspicious message, pause communication and contact us directly at careers@pomelocare.com to confirm its legitimacy. For your safety, we also recommend applying only through our official Careers page. If you believe you have been the victim of a scam or identity theft, please contact your local law enforcement agency or another trusted authority for guidance.

    Contact

    For inquiries, email careers@pomelocare.com.

    #J-18808-Ljbffr

    Create a job alert for this search

    Staff Security Engineer • San Francisco, CA, United States

    Related jobs
    • Promoted
    Senior Staff Infrastructure Security Engineer

    Senior Staff Infrastructure Security Engineer

    Promote ProjectSan Francisco, CA, US
    Full-time
    Senior Staff Infrastructure Security Engineer Location San Francisco Salary 55000 - 95000 a year (s) Description Crusoe is building the World's Favorite AI-first Cloud infrastructure company.We...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer, Security Partnerships

    Staff Security Engineer, Security Partnerships

    StripeSan Francisco, CA, United States
    Full-time
    Staff Security Engineer, Security Partnerships.Staff Security Engineer, Security Partnerships.Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's lar...Show moreLast updated: 2 days ago
    • Promoted
    Staff Security Engineer, Secure Digital Asset Operations

    Staff Security Engineer, Secure Digital Asset Operations

    P2PSan Francisco, CA, United States
    Full-time
    At Ripple, we’re building a world where value moves like information does today.It’s big, it’s bold, and we’re already doing it. Through our crypto solutions for financial institutions, businesses, ...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Platform Security Engineer

    Staff Platform Security Engineer

    GeminiSan Francisco, CA, United States
    Full-time
    Staff Platform Security Engineer.Be among the first 25 applicants.Staff Platform Security Engineer.Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offer...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer

    Staff Security Engineer

    EvenUp Inc.San Francisco, CA, United States
    Full-time
    EvenUp is on a mission to close the justice gap using technology and AI.We empower personal injury lawyers and victims to get the justice they deserve. Our products enable law firms to secure faster...Show moreLast updated: 3 days ago
    • Promoted
    • New!
    Staff Platform Security Engineer

    Staff Platform Security Engineer

    Gemini, Inc.San Francisco, CA, United States
    Full-time
    Staff Platform Security Engineer.Be among the first 25 applicants.Staff Platform Security Engineer.Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offer...Show moreLast updated: 11 hours ago
    • Promoted
    Staff Security Engineer

    Staff Security Engineer

    Credit GenieSan Francisco, CA, United States
    Full-time
    Credit Genie is a mobile-first financial wellness platform designed to help individuals take control of their financial future. We leverage artificial intelligence to provide personalized insights a...Show moreLast updated: 2 days ago
    • Promoted
    Staff Enterprise Security Engineer

    Staff Enterprise Security Engineer

    GeminiSan Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer, Container & VM Security

    Staff Security Engineer, Container & VM Security

    The Rundown AI, Inc.San Francisco, CA, United States
    Full-time
    At Anthropic, we're building frontier AI systems that require unprecedented levels of security and isolation.We're seeking a Staff Security Engineer specializing in container and VM security to hel...Show moreLast updated: 5 days ago
    • Promoted
    Staff Security Operations Engineer

    Staff Security Operations Engineer

    CanonicalSan Francisco, CA, United States
    Full-time
    Staff Security Operations Engineer.Continue with Google Continue with Google.Be among the first 25 applicants.Staff Security Operations Engineer. We have opened several senior / staff Security Operati...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Engineer

    Staff Engineer

    Bio-Rad LaboratoriesPleasanton, CA, United States
    Full-time
    As a Senior Electrical Engineer, you will play a critical role in designing, debugging, and supporting custom electronics solutions for cutting-edge life science research platforms.You'll drive the...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Staff Engineer

    Sr. Staff Engineer

    Bio-Rad LaboratoriesPleasanton, CA, United States
    Full-time
    You'll drive the development of hardware products that directly impact healthcare innovation and improve lives worldwide. You'll collaborate cross-functionally to.Your expertise in electrical engine...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer, TDI Okta

    Staff Security Engineer, TDI Okta

    Isc2 Eastbay ChapterSan Francisco, CA, United States
    Full-time
    Okta is The World’s Identity Company.We free everyone to safely use any technology, anywhere, on any device or app.Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secur...Show moreLast updated: 5 days ago
    • Promoted
    Staff Enterprise Security Engineer

    Staff Enterprise Security Engineer

    Gemini Trust CompanySan Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show moreLast updated: 2 days ago
    • Promoted
    Staff Security Engineer

    Staff Security Engineer

    BoxRedwood City, CA, United States
    Full-time
    Box (NYSE : BOX) is the leader in Intelligent Content Management.Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform ...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer, TDI

    Staff Security Engineer, TDI

    OktaSan Francisco, CA, United States
    Full-time
    We are seeking a highly skilled and hands-on Security Engineer with a DevSecOps focus to join the TDI BT Security team.In this role, you will be embedded directly within our technical environments,...Show moreLast updated: 5 days ago
    • Promoted
    Staff Security Engineer (Hybrid)

    Staff Security Engineer (Hybrid)

    Fiddler AISan Francisco, CA, United States
    Full-time
    Staff Security Engineer (Hybrid).Join us as our first Security Engineer to define and drive the foundation of security for a next‑generation developer platform that powers responsible AI.Your work ...Show moreLast updated: 2 days ago
    • Promoted
    Staff Security Engineer

    Staff Security Engineer

    ParafinSan Francisco, CA, United States
    Full-time
    At Parafin, we’re on a mission to grow small businesses.Small businesses are the backbone of our economy, but traditional banks often don’t have their backs. We build tech that makes it simple for s...Show moreLast updated: 5 days ago