Bitly

Security Engineer - DevSecOps

Remote
USD 105k - 145k
Go JavaScript Bash Terraform AWS GCP
Search for More Jobs Talk to a recruiter now 💪
Description

At Bitly, we believe in the power of the link or scan - to start a conversation, build a relationship or grow a business. Our mission is to turn every interaction into a catalyst for connections. It’s what motivates us to help people share, promote and engage everywhere on the Internet. We do this by being relentlessly product-focused, fostering the free-flowing exchange of ideas, and inspiring people around the world to dream up new ways of using Bitly.

 
The Role

We are seeking a talented and proactive Security Engineer to join our team. The ideal candidate will be passionate about cybersecurity and possess a strong technical background in application and cloud network technologies. In this role, you will collaborate closely with our application production engineering teams and the Infosec team to integrate security best practices into all aspects of our software development lifecycle.

What You'll Do
  • Partner with rest of the InfoSec Team, IT and the Product-Engineering teams to implement the strategic security vision into our products
  • Design, implement, and maintain robust security architectures for our applications and cloud infrastructure to ensure our systems' confidentiality, integrity, and availability
  • Help implement Cloud Security Best Practices by configuring and managing security controls for cloud environments, including identity and access management (IAM), network security groups (NSGs), and encryption mechanisms
  • Keep detailed documentation of security configurations, policies, procedures, and incidents to help keep track of the status of security initiatives and compliance efforts
  • Implement security automation and orchestration workflows to streamline security operations and improve incident response times
  • Perform security-focused code reviews
  • Assist the InfoSec team in supporting the development and implementation of controls to achieve and maintain compliance with SOC 2 and other relevant industry standards
  • Support and consult with product engineering teams in the area of application security, including threat modeling and appsec reviews
  • Work closely with product engineering teams to embed security frameworks and security best practices throughout the software development lifecycle, including secure coding guidelines, static and dynamic code analysis, and dependency scanning
  • Participate in the entire software development lifecycle (SDLC), including threat modeling, secure code reviews, and security testing
  • Assist teams in reproducing, triaging, and addressing application security vulnerabilities
  • Take the lead in incident response efforts during security breaches or incidents, managing investigation, containment, eradication, and recovery activities while implementing preventative measures for the future

Who You Are

  • An expert in application and cloud security with a deep understanding of the latest threats, vulnerabilities, and best practices
  • A cybersecurity enthusiast with a substantial technical foundation and a drive to stay ahead of emerging threats
  • Proficiency in programming and automation using Go, JavaScript, Bash, and Terraform
  • A collaborative team player who can effectively communicate and work with cross-functional teams to integrate security into every phase of the software development lifecycle and convey technical concepts to non-technical stakeholders
  • A problem-solver with a keen eye for detail and a proactive approach to identifying and addressing security vulnerabilities
  • A continuous learner who thrives in a fast-paced environment and is eager to stay updated on emerging technologies and trends in cybersecurity
  • Strong understanding of web application security principles, including OWASP Top 10 vulnerabilities and secure coding practices
  • Familiarity with both AWS and GCP production environments
  • Experienced in applying security best practices to meet industry compliance standards (e.g., SOC 2, PCI-DSS, HIPAA)
  • (Bonus) Security certifications such as CISSP, CSSLP, CEH, or GCP Professional Cloud Security Engineer / AWS Certified Security Engineer

US Employee Benefits

Your benefits start on Day 1!

Health & Wellbeing 

  • Inclusive health, dental, and vision plans built to support diverse lifestyles
  • Employer contribution to HSA plans 
  • Generous paid parental leave
  • Enhanced support for reproductive health, family planning, and new parents
  • Robust mental health support and Employee Assistance Program (EAP) with confidential counseling services
  • Comprehensive well-being benefits including reimbursement program
  • Flexible PTO policy and company breaks - At Bitly, we believe rest and relaxation are essential for rejuvenating the creative spirit that sets us apart

Inclusion & Belonging

  • Impactful connections and community building through our Employee Resource Groups
  • Global DEI programming
  • Company-sponsored events to connect Bitizens together

Financial 

  • 401k with up to 4% employer match, access to financial professionals to offer our employees the opportunity to plan for a strong financial future well beyond their working years
  • Company Stock Options
  • Life, Short-term Disability and Long-term Disability options
  • Flexible workspace support provided, including home office, cell phone and WiFi service reimbursement
  • Coworking reimbursement for eligible employees
  • Voluntary Benefits: Pet Insurance, LegalShield, IDShield, Hospitalization, and Accident coverages
  • Reimbursement for professional development

Eligibility & Closing

US applicants must be currently authorized to work in the United States on a full-time basis.
 
*** Must live in or be willing to relocate to one of the following states to be eligible for hire: Arizona, California, Colorado, Connecticut, Florida, Georgia, Illinois, Louisiana, Massachusetts, Michigan, Minnesota, New York, New Jersey,  North Carolina, Pennsylvania, Texas, Vermont, Virginia, Washington ***
 
If you are based in California, we encourage you to read this important information for California residents linked here. (https://bitly.is/CPRACandidates)
 
#LI-AH1 #LI-Remote

Compensation

The salary range for this role takes into account a wide range of factors considered in making compensation decisions including, but not limited to, skill sets, experience and training, licensure and certifications as well as other business and organizational needs.

Base Salary Range
$105,600$145,200 USD

Our Values

  • Be a Catalyst. As an innovative technology company, we build our products to be a catalyst for connection and encourage our team to be catalysts for meaningful impact both at work and in the world
  • Take Ownership. In our highly collaborative culture, Individual accountability is critical. We depend on each other to solve our customers' most challenging problems and celebrate the wins together
  • Champion Diversity, Equity & Inclusion. Our product connects people of all backgrounds and abilities. And our company is built on the belief that our differences make us better and that everyone deserves the opportunity in which to thrive
  • Show Integrity. We don’t cut corners. We don’t look for the easy way out. We approach every day with a shared mindset - let’s do the right thing, even if it’s the harder thing
  • Have Fun. Whether your time is here is as short as a Bitly link or as long as the links your grandma sends you, we want your experience at Bitly to be fun and memorable. We hope the connections you make here last a lifetime
In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital domestic partner status, sexual orientation, gender identity, disability status, or veteran status. Above and beyond discrimination/harassment based on “protected categories,” Bitly also strives to prevent other, subtler forms of inappropriate behavior (e.g., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at Bitly.
Bitly
Bitly
Advertising Analytics Brand Marketing Publishing Social Media Software

2 applies

90 views

Similar Jobs

Software Engineer (Devops Role)

Remote Bengaluru, India

Senior Cloud Engineer

Montreal, Canada Quebec

Systems Developer, IT

Remote Toronto, Ontario

Senior DevOps Engineer

Ho Chi Minh City, Vietnam

Software Developer 4

Santa Clara, CA US

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 377 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • Salaries for the engineering jobs on our site range from $100K-$200K. On average, senior engineer positions on our EchoJobs are about $160K.
  • The EchoJobs positions have been sourced and vetted from the top companies to work for in the US as a software engineer, including LinkedIn and other reputable job sites. We also have syndicated jobs from companies that have just raised funding, as well as those that have great unique products and culture. From all of these sources, our founder, Morgan, has also resourced the company's authenticity in terms of their website, public appearance, and more.
  • Yes, our users asked us for just this, so now our search filters allow you to search for your top jobs via location, as well as by onsite, remote, or both. Approximately 30% of our jobs are remote, so you’ve got the best options for you!
  • We have not yet implemented this option, but are considering doing so in the future. For the moment, you would need to cancel your subscription, and resubscribe when you wanted to come back.
  • We add new jobs to EchoJobs every day! We scan our sources for the newest jobs, verify them, and post them to EchoJobs within minutes. We add about 2,000-3,000 new jobs for you each day!
  • From starting your job search to getting hired, the entire job search process can take us software engineers anywhere between 3-6 months. However, at EchoJobs, we’re striving to shorten this duration by finding the best, newest jobs for you, so you can do less job searching, and more applying.
  • We’d recommend checking EchoJobs daily, as we add new jobs to the site each day. Additionally, if you got a chance to read our previous email on “what makes EchoJobs different from any other job search tools,” we also recommended that you set a job alert based on your job filters, so if you get emails on those new jobs, you could be checking more than once per day.
  • If you decide to continue with us after the 1-month trial, we definitely recommend this, as we all know it usually takes 3-6 months to find a quality job as a software engineer these days. So to best support you, we just adjusted our membership options at EchoJobs to monthly, 3 months, or 12 months (this option is more for passive job seekers looking a little bit for the future if they want to come back to work or make a job switch potentially. This lets you see what’s out there in case an even better fit job becomes available.)
  • EchoJobs is truly the only job site of its kind. We want to be THE spot for you to find the best job for you, and haven’t encountered any other company doing this. Other job sites are in niches besides software engineering or focus on a small portion of engineering jobs (like a specific coding language). In the words of Morgan, our founder, “I think what makes EchoJobs different is the amount of jobs, frequency that we add new jobs (we add 2,000-3,000 new jobs daily!), and the powerful search engines to find exactly the job you want more easily and efficiently. We can provide you with the most jobs that are vetted by us, we’ll continually find more new jobs for you, and we make it easier for you to apply and get hired.

What Fellow Engineers Say