HimalayasHimalayas logo
HightouchHI

Application Security Lead

Hightouch is a Composable Customer Data Platform (CDP) that empowers companies to activate their data warehouse to power personalized marketing and business operations.

Hightouch

Employee count: 51-200

CA, MX + 1 more

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

About Hightouch

Hightouch is the modern AI platform for marketing and growth teams. Our AI agents reimagine marketing workflows, allowing marketers to create content, plan campaigns, and execute strategies with transformational velocity and performance.

Hightouch is a rare company built on the intersection of two fundamental technological shifts: advances in LLMs and agentic AI, and the creation and rapid adoption of cloud data warehouses like Snowflake and Databricks. Building on these tailwinds, we’ve become a leader in AI marketing and partner with industry leaders like Domino’s, Chime, Spotify, Ramp, Whoop, Grammarly, and over 1000 others.

Our team focuses on making a meaningful impact for our customers. We approach challenges with first-principles thinking, move quickly and efficiently, and treat each other with compassion and kindness. We look for team members who are strong communicators, have a growth mindset, and are motivated and persistent in achieving our goals.

AbouttheRole

This is our first dedicated security hire, and it's a rare chance to define the function from the ground up. You'll own Hightouch's application security posture end-to-end. We have strong engineering fundamentals and a solid foundation; now you'll shape what security looks like here as we scale from 70 to 140+ engineers.

This is a hands-on, high-autonomy role. You'll spend most of your time in the codebase, not in meetings. You’ll be solving hard problems at the intersection of security and distributed systems:

  • Multi-tenantisolation on a system running ~1M data syncs per day and ingesting 100K+ events/sec
  • Sub-tenant access control - for multi-team and multi-brand use cases, requiring differentiated access to configuration and data
  • Securityarchitecture - Build and refine our frameworks for compute isolation and perform threat modeling and hardening of new products
  • Internet-facing APIs - Our high-throughput, internet-facing architecture services customer data at scale. You’ll improve our rate limiting, abuse detection, and granularity of access control
  • Multi-Region and Multi-Cloud - Supporting our multi-region and multi-cloud backend, including extending it to launch Hightouch on in new regions to support data residency requirements of our global customer base

You'll own your roadmap. We're not looking for someone to run a checklist — we're looking for someone who can look at our architecture, identify the highest-leverage problems, and go fix them.

AboutYou

You’ve been an early security hire at a SaaS company before and moved the needle on how they approach security. You can read application code, threat model a distributed system, and ship production fixes. You have significant distributed systems expertise so that you can understand and influence what is being built by the product teams and influence from a place of trust.

Experience that's relevant:

  • Being an early security hire (first 1-3) at a SaaS or data infrastructure company
  • Securing multi-tenant platforms: tenant isolation, authorization models, etc
  • Cloud security on systems that span more than one cloud and operate against customer-owned accounts
  • Design and build of data infrastructure as an early engineer, not just a user. You helped secure it from early design or during major redesigns. You understand how it scales and how it’s secured
  • Privacy-adjacent security (PII handling, data residency, GDPR/CCPA technical controls)

We don't care about certifications. We care about what you've built.

InterviewProcess

  1. RecruiterScreen[30m] - Introductory mutual fit assessment

  2. Security Architecture Interview[60m] - Threat model discussion of a real-ish system, followed by a systems design exercise

  3. Core interview [90m] - deep dive on distributed systems knowledge

  4. HiringManagerInterview[60m] - What you've built in the past, how you work

  5. Security Program Interview [60m] with Head of Engineering — How you've run security programs in practice: bug bounty, pentest engagements, working with external researchers, and partnering across engineering to drive adoption.

E-Verify Statement

Hightouch participates in E-Verify. We will provide the Social Security Administration, and if necessary, the Department of Homeland Security, with information from each new employee’s Form I-9 to confirm work authorization. Please note that we do not use this information to pre-screen job applicants.E-Verify NoticeE-Verify Notice (Spanish)Right to Work NoticeRight to Work Notice (Spanish)

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Location requirements

Hiring timezones

United States +/- 0 hours, and 2 other timezones

About Hightouch

Learn more about Hightouch and their company culture.

View company profile

We're Hightouch, and we're on a mission to make the best customer data technology in the world available to every enterprise. We were founded by engineers who, after years of working with customer data platforms and AI, saw the transformative impact of enabling business and marketing teams to activate customer data. However, they also recognized the limitations of existing rigid tools like legacy Customer Data Platforms. By building a platform that sits on top of an organization's existing data infrastructure, our founders knew that teams could unlock a more performant, flexible, and secure solution to activating customer data at scale — and thus, Hightouch was born.

Our Composable Customer Data Platform (CDP) empowers companies to activate their data warehouse to power personalized marketing and business operations. We enable anyone to deliver personalized customer experiences, optimize performance marketing, and move faster by leveraging data and AI across their organization. With Hightouch, you can use your data warehouse to power business growth. Enterprises use our platform to collect behavioral events, resolve identities into Customer 360 profiles, build audiences, sync data to over 200 destinations like ad platforms and CRMs, and analyze the results of marketing campaigns. We've built a product that can handle the scale of the largest enterprises' most intense customer data use cases. Now, we are dedicated to helping enterprises around the world leverage the most innovative technologies in AI and customer data to grow their business. We believe in a future where marketers can break free from manual work, using AI to achieve 1:1 personalization by simply setting goals and letting AI agents decide the next best action for each individual customer.

Claim this profileHightouch logoHI

Hightouch

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

35 remote jobs at Hightouch

Explore the variety of open remote roles at Hightouch, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Hightouch

Remote companies like Hightouch

Find your next opportunity by exploring profiles of companies that are similar to Hightouch. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan