Who We Are
Introduction to the Role
Join our dynamic team as a Staff Application Security Engineer, where you'll play a pivotal role in securing the Temporal development pipeline and product. In this position, you'll directly contribute by working closely with our software engineering teams and customers, empowering you to substantially impact our technology and community. We're looking for individuals who are ready to innovate and build the most supportive and inclusive developer ecosystem in the industry.
What You’ll Do
- Collaborate with product and engineering teams to integrate security principles into the design and architecture of products, including the development pipeline.
- Lead complex threat modeling and risk assessments to identify vulnerabilities and potential attack vectors.
- Drive strategy, influence architecture, and set direction for security across multiple teams or org-wide.
- Act as a security advocate, fostering a culture of security within the organization.
- Triage Bug Bounty findings and responsibility disclosed vulnerabilities.
- Able to participate in on-call rotation.
- Mentor other engineers in areas of application security, including brown bag sessions.
What You’ll Bring
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- 7+ years in application or product security or a related role.
- Proven partnership with engineering teams, bringing security expertise to the planning and development process.
- Knowledge of encryption, authentication, and secure communication protocols.
- Familiarity with multiple tools in the areas of SAST, DAST, and penetration testing frameworks.
- A deep understanding of application architecture and design principles, ability to effectively identify vulnerabilities across multiple programming languages
- An understanding of AI-related threats, including MCP servers.
- Demonstrated success defining actionable roadmaps from loosely scoped or ambiguous problem domains.
- Excellent collaboration and communication skills.
- Excellent communication and ability to explain complex security concepts to non-technical stakeholders.
- History of some software development more complex than scripting.
- Familiarity with Python and Go.
Nice to Have
- Distributed computing and related vulnerability experience.
- Running a Security Champions program.
- Kubernetes security posture and auditing.
- Open Source automation or automation projects.
- Professional Software Engineering experience.
Compensation
- The estimated pay range for this role is $190,000 - $250,000, depending on qualifications and location.
- This role is eligible to participate in Temporal's equity plan.
U.S. Benefits
- Unlimited PTO, 12 Holidays + 2 Floating Holidays
- 100% Premiums Coverage for Medical, Dental, and Vision
- ADD, LT ST Disability, and Life Insurance (Standard Supplemental Available)
- Empower 401K Plan
- Additional Perks for Learning Development, Lifestyle Spending, In-Home Office Setup, Professional Memberships, WFH Meals, Internet Stipend and more!
International Benefits
- Paid Time Off (PTO) and Benefits outside the United States vary by country, and are issued in partnership with Remote.com. Additionally, Temporal offers perks to all international employees for learning career development, a lifestyle spending account, in-home office setup (in addition to company-issued hardware), professional memberships, work-from-home meals, and access to the Calm app for mental wellness.
Additional Perks
- $3,600 / Year Work from Home Meals
- $1,500 / Year Career Development Learning
- $1,200 / Year Lifestyle Spending Account
- $1,000 / Year In-Home Office Setup (In addition to Temporal issued equipment - laptop, monitor, keyboard, mouse, trackpad, and extension power cable at no cost to you)
- $500 / Year Professional Memberships
- $74 / Month Reimbursement for Internet
- Calm App Subscription for Mental Health Wellness