Search jobs > New York, NY > Sr security engineer

Sr. Staff Product Security Engineer

Gusto
New York, NY
$200K-$235K a year
Full-time

About Gusto

Gusto is a modern, online people platform that helps small businesses take care of their teams. On top of full-service payroll, Gusto offers health insurance, 401(k)s, expert HR, and team management tools.

Today, Gusto offices in Denver, San Francisco, and New York serve more than 300,000 businesses nationwide.

Our mission is to create a world where work empowers a better life, and it starts right here at Gusto. That's why we're committed to building a collaborative and inclusive workplace, both physically and virtually.

Learn more about our Total Rewards philosophy.

About the Role

We are looking for a senior software engineer to join our Product Security Engineering team. Our team has the unique opportunity to prioritize bold engineering projects across the company to better protect our customers.

The Product Security team helps Gusto move faster, securely. We're a team of engineers who work to enable other teams to build products as quickly as possible while continuing to protect our customers.

We help developers ship secure code by building security tools and services, providing security training and expertise, and advocating for best practices in authorization and safe data handling across the company.

Here's what you'll do day-to-day :

  • Improving authorization at scale, with considerations for security, engineering and operations.
  • Bolster security in core systems such as access control, sensitive data storage, API design, and more.
  • Build software to keep our customers and company safe and secure.
  • Work on impactful engineering problems across Gusto.
  • Maintain high uptime for core services.
  • Provide leadership in promoting security and software engineering excellence.

Here's what we're looking for :

  • 10+ years of experience building software.
  • Experience with and understanding of authorization strategies such as role-based authorization and attribute-based authorization.
  • Experience building high-availability distributed systems and services.
  • Experience with applied cryptography - envelope encryption, AEAD, ECDSA.
  • Experience with Kotlin or Java with a desire to learn server-side Kotlin.
  • Experience with any of these technologies is a plus : Open Policy Agent, GraphQL, gRPC, Google Tink, Kubernetes, Terraform, Traefik, Vert.x.
  • We mainly use Ruby, Kotlin, and JavaScript / Typescript.

Our cash compensation amount for this role is targeted at $200,000 / yr to $235,000 / yr in Denver & most remote locations, and $235,000 / yr to $280,000 / yr in New York & San Francisco Bay Area.

Stock equity is additional. Final offer amounts are determined by multiple factors including candidate experience and expertise and may vary from the amounts listed above.

Gusto has physical office spaces in Denver, San Francisco, and New York City. Employees who are based in those locations will be expected to work from the office on designated days approximately 2-3 days per week (or more depending on role).

The same office expectations apply to all Symmetry roles, Gusto's subsidiary, whose physical office is in Scottsdale.

Note : The San Francisco office expectations encompass both the San Francisco and San Jose metro areas.

When approved to work from a location other than a Gusto office, a secure, reliable, and consistent internet connection is required.

Our customers come from all walks of life and so do we. We hire great people from a wide variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger.

If you share our values and our enthusiasm for small businesses, you will find a home at Gusto.

Gusto is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic.

Gusto considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Gusto is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures.

If you require assistance in filling out a Gusto job application, please reach out to redacted .

30+ days ago
Related jobs
Promoted
VirtualVocations
Queens, New York

A company is looking for a Staff Product Security Engineer (Detection and Response). ...

Promoted
Warner Bros. Entertainment Inc.
New York, New York

As a Senior Staff Product Designer, Accessibility, you are a member of the world-class CNN Digital Product Design Team, which is responsible for creating industry-leading digital user experiences consumed by millions of audiences across the globe. This is a role for an experienced designer and thoug...

Comfort Click
New York, New York

Staff Software Engineer (Cloud Security). The Security Engineering team helps make the most secure place for our customers to collect, manage, and put to work their business’ financial information . Design and build security-focused infrastructure primitives and integrate them into our existing...

Promoted
Warner Bros. Entertainment Inc.
New York, New York

Staff Product Manager at CNN, you'll be responsible for both the near-term prioritization and the long-term vision for interactive audio & video products and features at CNN. You'll balance user needs and research, the business landscape, and the boundaries of our technical capabilities to asses...

Amazon Advertising LLC
New York, New York

Advanced knowledge and understanding of any combination of the following: security engineering, system and network security, authentication and security protocols, cryptography, network and web related protocols, or application security. As a Senior Security Engineer within Amazon’s Ads Security tea...

Lattice
New York, New York
Remote

The mission of the Lattice Security team is to enable the business, reduce organizational risk, and build customer trust by proactively identifying, assessing, and mitigating security and compliance risks in the organization, cloud infrastructure, and product. Lattices Engineering team continuously ...

Rippling
New York, New York

The IT Cloud product org envisions a world where a few IT-focused administrators can manage thousands of employees and meet security, compliance, finance, and employee experience requirements to scale their company infinitely while their employees seamlessly access their work through software and de...

JPMorgan Chase Bank, N.A.
New York, US

As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity & Technology Controls (CTC) team for the International Consumer, you will work proactively with your technology and business colleagues to identify and quantify security issues within their business and empower them ...

Mediabistro
New York, New York

As a Senior Staff Product Designer, Accessibility, you are a member of the world-class CNN Digital Product Design Team, which is responsible for creating industry-leading digital user experiences consumed by millions of audiences across the globe. This is a role for an experienced designer and thoug...

CVS Health
New York, New York
Remote

The Staff Security Engineer of IAM will be a product owner and lead engineer within Identity Access Management (IAM) space for CVS Health. Operating within DevOps and Agile frameworks as part of our Product Management Model, an ideal candidate will have strong soft skills and engineering skills. Thi...