Senior Security Enginer

New York City, New York

Apply now Apply later

Graphite builds consumer-quality tools for modern software engineering teams, so they can ship faster and create amazing products.

Our product

Graphite is modern code review for fast-moving teams - we help engineers write and review smaller pull requests, stay unblocked, and ship faster.

Anyone can start using Graphite individually without needing their coworkers to change tools - we seamlessly sync code changes and reviews. We started Graphite because we missed internal code review tools like Phabricator (at Facebook) and Critique (Google) that help engineers create, approve, and ship small, incremental changes, and long-term we’re passionate about creating products & workflows that help fast-moving eng teams achieve more.

Our company

We’re a small-but-mighty team of 30+ based in Manhattan in the heart of Soho, with a passionate and rapidly growing group of users at top engineering orgs like Datadog, Vercel, Ramp, and Snowflake.

We've raised a $52mil Series B (featured in TechCrunch) led by Christine Esserman, following a previous $20mil Series A from Peter Levine at Andreessen Horowitz (who led GitHub's Series A). Other investors include folks like Tom Preston-Werner (founder of GitHub), Sam Lambert (Planetscale CEO & ex-GitHub CTO), Sebastian Markbåge (creator of React), and many more.

About the Role

Graphite is growing rapidly, and we're looking for a security engineer to own all things security here.

Fast-moving teams choose Graphite because we help them ship quickly without sacrificing quality. Your work ensures that “fast” never comes at the expense of “secure,” keeping our platform - and our customers - safe as we scale beyond millions of pull-requests a month.

What you’ll do

  • Own the security roadmap. Define strategy, priorities, and success metrics across application, cloud, and corporate security.

  • Build & automate. Implement guardrails - static analysis, secret scanning, IAM policy enforcement, sandboxing, and beyond - that make the secure path the easy path for every Graphite engineer.

  • Harden our stack. Threat-model new features, review designs, and lead red-/blue-team exercises to stay ahead of emerging risks.

  • Champion compliance. Drive SOC 2 Type II and future certifications; level-up our logging, monitoring, incident-response playbooks, and vendor risk reviews.

  • Scale security culture. Pair with product and infra teams, run internal trainings, and document best practices so security becomes muscle memory, not bottleneck.

  • Mentor & hire. Help us grow a world-class security function by coaching teammates and shaping future security hires.

What we’re looking for

  • Industry experience building high-quality software products

  • An ability to identify problems, build alignment, and implement solutions autonomously

  • Comfortable working with and designing abstractions and frameworks that increase developer velocity

Life at Graphite

  • Competitive comp: ($160-220k base + substantial equity). We're backed by some of the best investors and excited to offer competitive compensation packages.

  • Role trajectory. We're excited to build a team whose responsibilities and comp to grow as we do.

  • Benefits. Top-tier health, dental, and vision coverage and 16 weeks paid parental leave.

  • Time to decompress. We ask that our team take 4 weeks of vacation a year to unplug and unwind.

  • Relocation expenses. We're an in-person, NYC-based team, and we're happy to help with your relocation expenses!

  • The team that eats together. Company-paid lunch, snacks, and coffee during workdays.

  • Commuter perks. Ride around NYC with an Unlimited Ride MetroCard, on us.

As a team, we're very aware of the systemic structural issues that have created inequalities for many communities, especially in the tech industry. We recognize that women and underrepresented minorities are statistically less likely to apply for a role that they feel unqualified for. If you are interested in this role but you’re concerned about not meeting all requirements, we encourage you to apply anyway - we'd love to get to know you and see if there's a place for you here at Graphite!

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Cloud Compliance GitHub Graphite IAM Monitoring Snowflake SOC SOC 2 Strategy

Perks/benefits: Competitive pay Equity / stock options Health care Parental leave Unlimited paid time off

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.