93 vulnerability engineer jobs at 74 companies in San Leandro, CA
4d
Save
Mark Applied
Hide
4d
Staff Vulnerability Management Engineer
Seattle or San Francisco
$144k-$248k/yrOnsiteFull Time
SoFiNasdaq: SOFI: Mobile-first platform for banking, lending, and investment services.
Deep vulnerability management and security engineering expertise; strong software engineering skills in Python/Go/JavaScript/TypeScript; experience with cloud, containers, SBOMs, and vulnerability tooling; ability to lead technical initiatives and incident response.
Seattle or Palo Alto or Dallas or Bethesda or Washington
$110k-$230k/yrHybridFull Time
GEICO: Provides vehicle and property insurance services to consumers.
8+ YOE8+ years in cybersecurity/security engineering; deep vulnerability management, cloud/containers experience; strong Python/Go/Java scripting, SQL, automation, offensive security, and ability to influence technical stakeholders.
RobinhoodNASDAQ: HOOD: Provides a commission-free platform for investing and financial services.
3+ YOE3+ years in security engineering or security automation; Python or Go proficiency; cloud-native infra experience; vulnerability management knowledge; experience with security tooling.
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years in software engineering with a security focus; proficient in Python, Go, Java, or C#; strong problem-solving; track record delivering features and solving operational problems.
SalesforceNYSE: CRM: Sells cloud-based customer relationship management and business software solutions.
6+ YOE6+ years software engineering with security focus; proficient in Python; experience with security tooling and CI/CD; strong cross-team collaboration and communication.
Boston or Chicago or Los Angeles or New York or San Francisco or Toronto or Vancouver or Vancouver
$145k-$175k/yrRemoteFull Time
Later: Provides software for social media scheduling and influencer marketing.
5+ YOE5+ years security engineering experience; strong application, cloud, and infrastructure security; SOC 2 and compliance experience; vulnerability management, IaC and CI/CD security; strong communication and software engineering skills.
OWASP, NIST, CIS Controls, SOC 2, ISO 27001, AWS Security Hub, Azure Security Center, GCP Security Command Center, SIEM, SOAR, Terraform, CloudFormation, C#, CI/CD
IonQNYSE: IONQ: Develops and sells trapped-ion quantum computers and cloud services.
12+ YOE12+ years production engineering experience; hands-on CI/CD platform, IaC, pipeline security, release and dependency management, scripting/automation, and vulnerability remediation.
Serval: AI platform for automating IT and enterprise service workflows.
10+ YOE10+ years in cybersecurity with deep expertise in application security, secure SDLC, vulnerability management, secure cloud-native architecture, leadership experience, and strong software engineering skills.
LanceDB: Vector database for multimodal AI search and retrieval.
8+ YOE8+ years as a software engineer with experience on large-scale data platforms, building encryption/auth/authZ, cloud/CSP security, vulnerability management (CVE), strong communication and data-driven decision making.
MetaNASDAQ: META: Develops social networking platforms and virtual reality technologies.
10+ YOE10+ years security experience, BS/MS in CS/Engineering or equivalent, experience leading cross-functional programs, expertise in threat modelling, vulnerability management, AWS, and infrastructure hardening.
Decagon: Conversational AI platform for automated customer support.
3+ YOE3+ years application security experience, expertise in secure SDLC, threat modeling, secure code review, vulnerability assessment, SAST/DAST/IAST and CI/CD integration, and working with engineering teams to remediate findings.
SAST, DAST, IAST, CI/CD, Semgrep, CodeQL, Cursor Bug Bot, XBOW, Google Cloud, OWASP Top 10
5+ YOE5+ years security engineering and coding experience, security assessments or threat modeling, vulnerability management, bachelor\u0002s or equivalent, strong communication and collaboration skills.
San Francisco or Palo Alto or Toronto or Los Angeles
OnsiteFull Time
HeyGen: Generate professional AI videos using digital avatars and voices.
Hands-on Python and AWS experience, cloud and application security, vulnerability management, IAM and secrets management, familiarity with SOC 2/ISO 27001, strong communication and threat modeling skills.
Python, AWS, Drata, Infisical, Bugcrowd, SOC 2, ISO 27001
Andreessen Horowitz: Provides venture capital and support to technology startups.
5+ YOE5+ years security engineering with automation and tool-building, strong Python or similar, hands-on LLM/AI API experience, broad cloud security/detection/identity/vulnerability knowledge, and ability to communicate technical security concepts to non-technical audiences.