As a Security Engineer, you will help identify and drive impactful projects to improve the security of Figma's product, platform, and our IT systems. The mission of the Figma Security team is to help Figmates ship the most secure product to our users. We are looking for security generalists with a strong grasp of Computer Science and security fundamentals. You will partner closely with teams across the company and focus on systemic security improvements and risk reduction. You will also maximize your security skills to support and participate in operational security responsibilities like security reviews and consulting, external research/bug-bounty triage, incident response, and risk management.
This is a full time role that can be held from one of our US hubs or remotely in the United States.
What you’ll do at Figma:
- Perform technical security assessments, code audits and design reviews.
- Develop technical solutions to help mitigate security vulnerabilities.
- Advocate security and secure practices throughout Figma
- Conduct assessments to identify current and new attack vectors against Figma products and services.
- Help run our pen-testing and offensive security exercises as well as our bug bounty program.
We'd love to hear from you if you have:
- 6+ years of proven experience working in a Security team
- Good understanding of at least two of Linux/Unix/Mac based systems security, AWS security, Cloud SaaS Security, and web application security
- Proficient in at least one general purpose coding language
- Demonstrated experience engineering security-based tooling and/or software
- Strong communication and interpersonal skills, with demonstrated experience collaborating across functions
While not required, It’s an added plus if you also have:
- Demonstrated ability to make hard prioritization decisions in security controls
- Experience in a software engineering role and interested in working on security related projects
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
Read more about our team
#LI-Remote
#LI-PM3