Figure

Figure

Security Engineer, Vulnerability Management and Automation

San Jose, CA · Full-time

Sponsorship not specified$150k-$350kDetected 30 days ago
PythonGoRustC++Backend DevelopmentAWSGCPAzureCloud PlatformsLinuxNetwork SecurityRoboticsVPNZero TrustCommunication

About the role

  • This information will be shared if an employment offer is extended.

Responsibilities

  • Develop systems and tools to improve the security posture of Figure's enterprise infrastructure, touching domains such as client platform, corporate networks, as well as SaaS infrastructure
  • Build and manage automation for vulnerability management, and help Figure prioritize and address vulnerabilities across the infrastructure
  • Design and implement security controls for securing backend services and cloud infrastructure at Figure

Requirements

  • Experience in several of the following Enterprise Security Domains: Zero Trust/Beyond Corp, Endpoint Security, Cloud Security, Data Loss Prevention, Cryptography and PKI, SaaS Security.
  • Strong understanding of federated authentication/authorization technologies (e.g., SAML, SCIM, OPA, OIDC).
  • Strong understanding of network security mechanisms, including mTLS, 802.1X, SSH, DNSSEC, Certificate transparency, VPN, and others
  • Experience in common tools and processes of adjacent security domains, esp.
  • Solid knowledge of operating system internals, and experience with several of the following areas: Identity and Access, OS Hardening (macOS, Windows, Linux, ChromeOS), SaaS Security or Assurance and Validation
  • Bachelor of Science in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field
  • 6+ years of experience as an Enterprise/Cloud focused Security Engineer

Skills

  • It's time to build.
  • The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience.

Compensation

  • Strong understanding of federated authentication/authorization technologies (e.g., SAML, SCIM, OPA, OIDC).
  • Strong understanding of network security mechanisms, including mTLS, 802.1X, SSH, DNSSEC, Certificate transparency, VPN, and others
  • Experience developing and deploying services in multi-cloud environments, preferably one of the following Azure, AWS or Google Cloud Platform
  • Strong software engineering (beyond scripting or automation) skills in C/C++, Rust, Golang, Python or similar.
  • Experience in common tools and processes of adjacent security domains, esp. Detection and Response.
  • Solid knowledge of operating system internals, and experience with several of the following areas: Identity and Access, OS Hardening (macOS, Windows, Linux, ChromeOS), SaaS Security or Assurance and Validation

This listing is sourced directly from Figure's careers page and normalized into a canonical job model.