Figure
Security Engineer, Vulnerability Management and Automation
San Jose, CA · Full-time
Sponsorship not specified$150k-$350kDetected 30 days ago
PythonGoRustC++Backend DevelopmentAWSGCPAzureCloud PlatformsLinuxNetwork SecurityRoboticsVPNZero TrustCommunication
About the role
- This information will be shared if an employment offer is extended.
Responsibilities
- Develop systems and tools to improve the security posture of Figure's enterprise infrastructure, touching domains such as client platform, corporate networks, as well as SaaS infrastructure
- Build and manage automation for vulnerability management, and help Figure prioritize and address vulnerabilities across the infrastructure
- Design and implement security controls for securing backend services and cloud infrastructure at Figure
Requirements
- Experience in several of the following Enterprise Security Domains: Zero Trust/Beyond Corp, Endpoint Security, Cloud Security, Data Loss Prevention, Cryptography and PKI, SaaS Security.
- Strong understanding of federated authentication/authorization technologies (e.g., SAML, SCIM, OPA, OIDC).
- Strong understanding of network security mechanisms, including mTLS, 802.1X, SSH, DNSSEC, Certificate transparency, VPN, and others
- Experience in common tools and processes of adjacent security domains, esp.
- Solid knowledge of operating system internals, and experience with several of the following areas: Identity and Access, OS Hardening (macOS, Windows, Linux, ChromeOS), SaaS Security or Assurance and Validation
- Bachelor of Science in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field
- 6+ years of experience as an Enterprise/Cloud focused Security Engineer
Skills
- It's time to build.
- The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience.
Compensation
- Strong understanding of federated authentication/authorization technologies (e.g., SAML, SCIM, OPA, OIDC).
- Strong understanding of network security mechanisms, including mTLS, 802.1X, SSH, DNSSEC, Certificate transparency, VPN, and others
- Experience developing and deploying services in multi-cloud environments, preferably one of the following Azure, AWS or Google Cloud Platform
- Strong software engineering (beyond scripting or automation) skills in C/C++, Rust, Golang, Python or similar.
- Experience in common tools and processes of adjacent security domains, esp. Detection and Response.
- Solid knowledge of operating system internals, and experience with several of the following areas: Identity and Access, OS Hardening (macOS, Windows, Linux, ChromeOS), SaaS Security or Assurance and Validation
This listing is sourced directly from Figure's careers page and normalized into a canonical job model.