Taro Logo

Contract Security Engineer

Leading all-in-one platform for incident management, helping teams respond fast, reduce downtime, and improve incident response.
Security
Senior Software Engineer
In-Person
101 - 500 Employees
Enterprise SaaS

Job Description

incident.io is revolutionizing incident management as the leading all-in-one platform, serving 800 prominent companies including Netflix, Airbnb, and Block. Since 2021, they've helped resolve over 250,000 incidents, supporting 30,000+ responders monthly across Engineering, Product, and Support teams.

The company is seeking their first Security Engineer to join their Engineering team, which comprises professionals who understand the challenges of incident response firsthand. This role focuses on application security and requires someone who can seamlessly integrate with product teams. The position involves working closely with engineers to design and implement secure systems from the ground up, rather than just performing end-stage security checks.

The role combines hands-on security work with collaborative team engagement, requiring both technical expertise and strong communication skills. You'll be responsible for vulnerability assessment, secure design reviews, and implementing security automation while working alongside the Infrastructure team to secure various aspects of the system.

The ideal candidate will bring experience in application security, penetration testing, and modern web development technologies. They should be comfortable with both white-box and black-box testing approaches and have experience with cloud security, particularly in Google Cloud Platform. The role offers a chance to shape security practices at a growing company while working with cutting-edge technologies.

Benefits include comprehensive medical insurance, generous parental leave, regular time off (including first Fridays), competitive compensation with equity, and professional development opportunities. The company, backed by $100M in funding from prestigious investors, maintains a culture focused on pragmatism, quality, and rapid innovation.

Last updated 6 hours ago

Responsibilities For Contract Security Engineer

  • Partner with product teams to design and review features with security in mind
  • Identify and mitigate vulnerabilities through white-box and black-box testing
  • Proactively find security flaws in applications, APIs, and infrastructure
  • Introduce pragmatic security tooling and automation
  • Champion secure coding practices
  • Collaborate on incident response and post-incident reviews

Requirements For Contract Security Engineer

React
Go
TypeScript
PostgreSQL
  • Track record of finding and remediating application security vulnerabilities
  • Hands-on experience with white-box and black-box testing techniques and tools
  • Familiarity with secure software development in modern web applications
  • Ability to embed within product teams and influence design decisions
  • Experience with cloud security in Google Cloud Platform
  • Pragmatic approach to risk reduction

Benefits For Contract Security Engineer

Medical Insurance
Parental Leave
Equity
401k
  • Market leading private medical insurance
  • Generous parental leave
  • First Friday of the month off
  • Generous annual leave/PTO allowance
  • Competitive salary and equity
  • Remote working and personal development budget
  • Enhanced pension/401k