Talent.com
Staff Security Engineer

Staff Security Engineer

EvenUpSan Francisco, CA, United States
3 days ago
Job type
  • Full-time
Job description

EvenUp is on a mission to close the justice gap using technology and AI. We empower personal injury lawyers and victims to get the justice they deserve. Our products enable law firms to secure faster settlements, higher payouts, and better outcomes for victims injured through no fault of their own in vehicle collisions, accidents, natural disasters, and more.

We are one of the fastest-growing vertical SaaS companies in history, and we are just getting started. EvenUp is backed by top VCs, including Bessemer Venture Partners, Bain Capital Ventures, SignalFire, and Lightspeed. We are looking to expand our team with talented, driven, and collaborative individuals who seek to have a lasting impact. Learn more at www.evenuplaw.com.

Today, our engineering team is roughly ~100 people, but by the end of 2026 we’ll roughly double the size of the team. With our growth, we’re looking for a strong Staff Security Engineer to work cross-functional and manage our security within our infrastructure team. We need a hands-on Staff Security Engineer to lead our Security efforts and drive our growth. You’ll help us evaluate building vs buying security solutions.

What you\'ll do :

Risk Management : Identify and address security risks through thorough assessments and mitigation strategies.

Code and Network Security : Ensure the secure coding of the platform and implement measures to protect against unauthorized access and data breaches.

Incident Response : Develop and execute plans to respond to security incidents, conducting forensic analysis and implementing preventive measures.

Compliance and Ethics : Ensure EvenUp systems comply with regulations and industry standards, addressing ethical concerns and promoting transparency.

Continuous Monitoring : Establish real-time monitoring systems to detect and respond to security threats, conducting regular assessments.

Vendor and Third-Party Security : Assess and secure third-party components integrated into our systems to prevent vulnerabilities.

Security Training : Provide training to enhance the team\'s security awareness and foster a security-conscious culture.

Documentation and Reporting : Maintain documentation of security protocols, incidents, and improvements, and communicate regular reports to stakeholders

What we look for :

10+ years of implementation experience in a security-focused role with an emphasis on hands-on secure technical architecture and implementation work, and oversight in a team setting (e.g., conducting solution security reviews)

Proven expertise in SAST / DAST, application security, and CI / CD pipeline integration

Deep understanding of AI-specific threats — prompt injection, model poisoning, membership inference, adversarial perturbation, and output manipulation

In-depth knowledge and implementation experience of information security principles, policy enforcement, operating systems, web application security, and a high-level of familiarity with malicious code uses, OWASP Top 10, and common techniques used by hackers

Experience with designing and implementing next-generation security technologies, such as SASE, CASB, or RASP

Hands-on experience with application patch management, software supply chain security, or artifact repositories like JFrog and Snyk

Strong fluency in at least one programming or scripting language : Python, Ruby, NodeJs

Cybersecurity certification (e.g. CISSP, CISM, CISA, CRISC, GIAC or other relevant certification)

Up-to-date knowledge and regular monitoring of the evolution of technologies and vulnerabilities to identify the solutions and measures necessary to secure cloud computing applications and ecosystems

Hands-on and in-depth experience with application and infrastructure-level design security including modern mitigation techniques and good practices (e.g., DNS-SEC, OWASP Top 10 mitigations, cryptographic fundamentals etc.)

Strong hands-on skills with creating automations using Python

Nice to haves :

Fluency with at least one infrastructure-as-code or configuration management language

Experience in the design and implementation of security controls

Hands-on experience with GCP security architectures

Experience with the implementation of security compliance standards SOC2, HIPAA, and CCPA

Experience with design and enforcement of security best practices for the development

Experience with planning and execution of security web and infrastructure pen testing

Experience with DLP (data loss prevention)

Experience with Kubernetes

Experience with risk modeling for AI / ML data protection

Notice to Candidates :

EvenUp has been made aware of fraudulent job postings and unaffiliated third parties posing as our recruiting team – please know that we have no affiliation or connection to these situations. We only post open roles on our career page (evenuplaw.com / careers) or reputable job boards like our official LinkedIn or Indeed pages, and all official EvenUp recruitment emails will come from the domains @evenuplaw.com, @evenup.ai, @ext-evenuplaw.com, no-reply@ashbyhq.com or no-reply@canditech.io email addresses.

To ensure fairness and proper consideration, we do not accept resumes or expressions of interest via email or social media messages. If you’re interested in a role, please submit your application directly through our careers page.

If you receive communication from someone you believe is impersonating EvenUp, please report it to us at talent-ops-team@evenuplaw.com. Examples of fraudulent domains include “careers-evenuplaw.com” and “careers-evenuplaws.com”.

Benefits & Perks :

As part of our total rewards package, we offer attractive benefits and perks to our employees, including :

Choice of medical, dental, and vision insurance plans for you and your family

Additional insurance coverage options for life, accident, or critical illness

Flexible paid time off, sick leave, short-term and long-term disability

10 US observed holidays, and Canadian statutory holidays by province

A home office stipend

401(k) for US-based employees and RRSP for Canada-based employees

Paid parental leave

A local in-person meet-up program

Hubs in San Francisco and Toronto

Please note the above benefits & perks are for full-time employees

EvenUp is an equal opportunity employer. We are committed to diversity and inclusion in our company. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

#J-18808-Ljbffr

Create a job alert for this search

Staff Security Engineer • San Francisco, CA, United States

Related jobs
  • Promoted
Staff Product Security Engineer

Staff Product Security Engineer

RipplingSan Francisco, CA, United States
Full-time
Rippling gives businesses one place to run HR, IT, and Finance.It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and co...Show moreLast updated: 29 days ago
  • Promoted
Staff Security Engineer, Secure Digital Asset Operations

Staff Security Engineer, Secure Digital Asset Operations

P2PSan Francisco, CA, United States
Full-time
At Ripple, we’re building a world where value moves like information does today.It’s big, it’s bold, and we’re already doing it. Through our crypto solutions for financial institutions, businesses, ...Show moreLast updated: 30+ days ago
  • Promoted
Staff Engineer Software (L7 Security)

Staff Engineer Software (L7 Security)

Jobs via DiceSanta Clara, CA, United States
Full-time
Staff Engineer Software (L7 Security).Be among the first 25 applicants.Staff Engineer Software (L7 Security).Get AI-powered advice on this job and more exclusive features.Dice is the leading career...Show moreLast updated: 2 days ago
  • Promoted
Principal Cyber Security Engineer

Principal Cyber Security Engineer

Cloud Software Group, Inc.San Ramon, CA, United States
Full-time
Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

CyberSNSouth San Francisco, CA, US
Full-time +1
Senior Threat Detection Engineer - Contract to hire (With strong intention of converting to full time permanent) - Remote in the U. In this roleyou will be responsible for the following : .Improve ale...Show moreLast updated: 3 days ago
  • Promoted
Senior / Staff Enterprise Security Engineer

Senior / Staff Enterprise Security Engineer

The Rundown AI, Inc.San Francisco, CA, United States
Full-time
Abridge was founded in 2018 with the mission of powering deeper understanding in healthcare.Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation eff...Show moreLast updated: 2 days ago
  • Promoted
Staff Software Engineer, Platform Security

Staff Software Engineer, Platform Security

King River Capital GroupSan Francisco, CA, United States
Full-time
Discord is used by over 200 million people every month for many different reasons, but there is one thing nearly everyone does on our platform : . Over 90% of our users play games, spending a combined...Show moreLast updated: 11 days ago
  • Promoted
Staff Security Engineer

Staff Security Engineer

DecagonSan Francisco, CA, United States
Full-time
Decagon is the leading conversational AI platform empowering every brand to deliver concierge customer experience.Our AI agents provide intelligent, human-like responses across chat, email, and voi...Show moreLast updated: 11 days ago
  • Promoted
Staff Security Assurance Engineer

Staff Security Assurance Engineer

Databricks Inc.San Francisco, CA, United States
Full-time
Citizenship is required for this position ==.The Databricks Security Assurance Team ensures that Databricks achieves and maintains critical third-party certifications, helping secure our operations...Show moreLast updated: 23 days ago
  • Promoted
Senior Staff Infrastructure Security Engineer

Senior Staff Infrastructure Security Engineer

Promote ProjectSan Francisco, CA, United States
Full-time
Senior Staff Infrastructure Security Engineer.Crusoe is building the World’s Favorite AI-first Cloud infrastructure company. We’re pioneering vertically integrated, purpose-built AI infrastructure s...Show moreLast updated: 30+ days ago
  • Promoted
Offensive Security Engineer, Hardware

Offensive Security Engineer, Hardware

OpenAISan Francisco, CA, United States
Full-time
Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products.We are...Show moreLast updated: 10 days ago
  • Promoted
Staff Security Engineer

Staff Security Engineer

ZaniaSan Francisco, CA, United States
Full-time
At Zania, we’re redefining security compliance through cutting-edge AI solutions.Our mission is to empower enterprises with intelligent AI agents that streamline security compliance processes with ...Show moreLast updated: 30+ days ago
  • Promoted
Staff Engineer

Staff Engineer

Bio-Rad LaboratoriesPleasanton, CA, United States
Full-time
As a Senior Electrical Engineer, you will play a critical role in designing, debugging, and supporting custom electronics solutions for cutting-edge life science research platforms.You'll drive the...Show moreLast updated: 30+ days ago
  • Promoted
Sr. Staff Engineer

Sr. Staff Engineer

Bio-Rad LaboratoriesPleasanton, CA, United States
Full-time
You'll drive the development of hardware products that directly impact healthcare innovation and improve lives worldwide. You'll collaborate cross-functionally to.Your expertise in electrical engine...Show moreLast updated: 30+ days ago
  • Promoted
Technical Staff Engineer - Architecture (FPGA Security)

Technical Staff Engineer - Architecture (FPGA Security)

Microchip TechnologySan Jose, CA, United States
Permanent
Are you looking for a unique opportunity to be a part of something great? Want to join a 20,000-member team that works on the technology that powers the world around us? Looking for an atmosphere o...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer

Security Engineer

Robert HalfFremont, CA, US
Full-time
Security Engineer | $120K + Bonus + Benefits | Fremont (ONSITE).A major player in the technology hardware industry continues to grow their Fremont campus which manufactures servers for all the top ...Show moreLast updated: 25 days ago
  • Promoted
Sr Staff Engineer Software (L7 Security)

Sr Staff Engineer Software (L7 Security)

Jobs via DiceSanta Clara, CA, United States
Full-time
Sr Staff Engineer Software (L7 Security) Palo Alto Networks.Innovate, design, develop and improve the Next-Generation Firewall in terms of functionality and performance, working on device identity ...Show moreLast updated: 2 days ago
  • Promoted
Security Engineer - Dragonfly Portfolio

Security Engineer - Dragonfly Portfolio

P2PSan Francisco, CA, United States
Full-time
Security Engineer - Dragonfly Portfolio.Remote • San Francisco • New York City • Portfolio • Remote • Remote • Full‑time. Dragonfly is a crypto‑native Venture Capital and research firm with $4B+ in ...Show moreLast updated: 2 days ago