Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Sr. Security Engineer role.
Rezi rewrites your resume against C1's job description. Free.

Tailor your resume to this Sr. Security Engineer role.
Rezi rewrites your resume against C1's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Sr. Security Engineer posting at C1 — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Sr. Security Engineer posting at C1 — free, in seconds.
About the Role
We're hiring a Senior Security Engineer to join a small, early-stage security team with a broad remit spanning security engineering, application and cloud security, and compliance. This is a generalist role where you'll have the opportunity to go deep in one domain over time while staying hands-on and supportive across others. Our stack is primarily Go and AWS. Little of this job is manual; instead of hand-reviewing every ticket, spec, or deploy, you'll spend your time building purpose-built agents and skills that do that work continuously, and using them to orchestrate security into the development lifecycle through a risk-based approach. Our goal is to bake security into design specs up front, not catch it in post-deploy review. You don't just want to hand engineering teams a list of findings - you want to roll up your sleeves and help implement the fix. You care about solving problems systemically, not just patching individual instances, and you want your work to make it easier for everyone at the company to build securely by default.
Responsibilities
- Define and drive security standards and secure-by-default solutions, serving as a subject matter expert for application and/or cloud security.
- Build purpose-built agents and skills that orchestrate security into the development lifecycle through a risk-based approach, automating manual, repetitive work.
- Shift security left by baking risk-based review into design specs and architecture decisions.
- Build security tooling and automation that scales security practices across engineering.
- Help implement meaningful, actionable security observability and detection signals.
- Lead threat modeling and risk assessment for high-risk features and platform changes.
- Assess and help mitigate security risks introduced by agentic development practices and AI-powered product features.
- Partner with engineering teams to prioritize and remediate critical threats.
- Help define API security standards and conduct security code reviews.
- Continuously explore and adopt open-source tools to assess the security of and test our services.
- Identify systemic security risks and lead multi-team remediation efforts end-to-end.
- Partner across security, compliance, and engineering on cross-domain problems.
- Contribute to compliance and trust initiatives (e.g., SOC 2, ISO 27001/42001).
- Invest in the growth of teammates and in raising the security bar across the broader engineering org.
Requirements
- Proven experience securing enterprise SaaS applications, including authentication flows, authorization patterns, and input validation at API boundaries.
- Demonstrated experience securing deployment and change-management mechanisms for software and infrastructure.
- Background in Software Engineering, Platform Engineering, Systems Engineering, Network Engineering, Cloud Security, or Application Security.
- Hands-on code review experience, ideally in Go, Python, or Rust.
- Experience with AWS (or another major cloud provider) and comfort working across cloud infrastructure.
- Comfortable working both independently and collaboratively in a fast-paced, high-growth environment.
- Curious and current on modern security practices, tooling, and emerging threats, including how AI is changing the threat landscape.
- Must participate quarterly in-person in one of our primary offices (San Francisco, or Portland Oregon).
Skills
- Go
- AWS
- API security
- Security code reviews
- Open-source tools
- Kubernetes
- Service mesh
- PKI/network technologies
- Consul
- Envoy
- Cilium
- Vault
- Istio
Location
- San Francisco
- Portland Oregon
Work Type
- Onsite
- Full-time
Experience Level
- Senior
Benefits
- Competitive salary
- Meaningful equity
- Comprehensive health benefits
About the Company
- C1 is the first AI-native identity security platform that protects every identity: human, non-human, and AI.
- With powerful automation, platform-level AI, and out-of-the-box connectors, it centralizes access visibility, enforces fine-grained controls, enables just-in-time access, and automates user access reviews across all apps.
- It's easy to use, quick to deploy, and trusted by enterprises like DigitalOcean, Instacart, Ramp, and Zscaler.
Equal Opportunity
- ConductorOne, Inc. is an Equal Employment Opportunity Employer.
- All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status or any other category protected by law.