Senior Staff Security Engineer (Network Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Staff Security Engineer (Network Security): Leading 's edge and network security strategy, owning the design and operation of Cloudflare WAF, DDoS protection, and Zero Trust controls with an accent on hardening edge architectures at scale. Focus on automating perimeter controls through policy-as-code, integrating AI-augmented tooling, and defending high-stakes payroll and HR systems.
Location: Must be based in the United States. Hybrid expectations (2-3 days/week) for those in San Francisco, Denver, or New York.
Salary: $210,000 – $270,000 per year
Company
A platform providing payroll, health insurance, and HR services for small businesses.
What you will do
- Design and operate the edge security stack, including Cloudflare WAF, DDoS protection, Bot Management, and Zero Trust Access.
- Own the network security perimeter across AWS and the edge, implementing VPC design and egress filtering codified in Terraform and Crossplane.
- Develop policy-as-code patterns for WAF rules and edge configurations to enable peer-reviewed changes and clean rollbacks.
- Build detections and alerting based on edge and network telemetry flowing into Panther.
- Integrate AI-native workflows using Claude Code and custom MCP servers to compress security manual toil.
- Partner with infrastructure and product teams to make high-impact architectural decisions.
Requirements
- 10+ years of hands-on security engineering experience with a focus on edge and perimeter security at scale.
- Production-grade expertise with Cloudflare's security stack (WAF, DDoS, WARP, Gateway, and Access).
- Strong network architecture skills across cloud and edge, including TLS/mTLS, AWS VPC, and Network Firewall.
- Fluency with Terraform, CI/CD, and policy-as-code delivery.
- AI-native working style with experience building LLM-assisted automations and agents.
- Must be based in the United States.
Culture & Benefits
- Competitive base pay, benefits, and equity (RSUs).
- Engineering-first culture where the security roadmap is predominantly managed in code.
- Hybrid work flexibility with physical hubs in Denver, San Francisco, and New York.
- Strong emphasis on AI fluency and the use of agentic tooling to increase engineering leverage.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →