Hopper
Senior Security Engineer- USA
Boston - Remote · Senior
Sponsorship not specifiedDetected 50 days ago
AlgorithmsGCPCloud PlatformsCI/CDPlatform EngineeringMachine LearningLLMsCybersecurityCommunication
About the role
- This is a builder's role in every sense: you'll write code, ship tools, and use AI as a core part of how you work - not as a novelty, but as a force multiplier.
- Assess and improve how we leverage available telemetry across our systems
- Adapt quickly as priorities shift - our team is agile and tomorrow's challenge may look different from todays
Responsibilities
- Hopper's Security team is small by design and consequential by impact- and this role sits at the centre of it.
- As a Senior Security Engineer, you'll own the tooling, automation, and processes that keep our applications secure across their entire lifecycle, building the systems that make security invisible to developers and unavoidable by default.
- Own and evolve our vulnerability management program with a focus on application security - container images, dependencies, code scanning, and runtime detection
- Build and maintain security tooling that integrates directly into CI/CD pipelines and developer workflows, so security happens automatically rather than as a gate
- Use AI extensively to write code faster, automate analyses that would otherwise require manual review, and build intelligent tooling that scales beyond what a small team could achieve manually
- Work directly with engineering teams to influence secure development practices - not by writing standards and documents, but by shipping tools and defaults that make the secure path the easy path
- Investigate and respond to security findings when needed, but spend more of your time building systems that prevent and detect issues than manually chasing them
- At least 5 years experience software and/or platform engineering, with the ability to design, build, and maintain production-quality tools
- A demonstrated habit of using AI tools - coding assistants, LLMs - as a core part of how you build and analyse, not an occasional shortcut
Requirements
- Deep experience in application security and vulnerability management - you understand CVEs, dependency risks, container security, and SDLC integration, and you have opinions about what's worth fixing and what's noise
Nice to have
- Hands-on experience with cloud infrastructure, ideally GCP/GKE or equivalent, with the ability to adapt to our stack
Compensation
- Well-funded and proven startup with large ambitions, competitive salary and the upsides of pre-IPO equity packages.
Company info
- Billions of dollars worth of travel and travel fintech are sold through Hopper and HTS' channels every year.
- Our fintech products - including Cancel for Any Reason and Flight Disruption Assistance - have exceptionally strong CSAT because the terms are always clear, and customers receive instant, no-questions-asked resolutions.
- Almost 30% of our app customers purchase at least one fintech product when making a booking; and consumers are 1.6x more likely to repurchase if they add fintech to their booking vs if they booked just travel.
- Given the success of its fintech products, Hopper launched a B2B initiative, HTS (Hopper Technology Solutions), which represents more than 75% of the business.
- Through HTS, any travel provider (airlines, hotels, banks, travel agencies, etc.) can integrate and seamlessly distribute Hopper's fintech or travel inventory on their direct channels. As its first HTS partnership, the company partnered with Capital One to co-develop Capital One Travel, a new travel portal designed specifically for cardholders. Other HTS partners include Air Canada, Uber, CommBank, Nubank, Flair Airlines and many more.
- Open communication with management and company leadership.
This listing is sourced directly from Hopper's careers page and normalized into a canonical job model.