远程工作雷达

资深安全工程师

Staff Security Engineer

开发工程全球可投
公司LiveKit
薪资未公开
工作地点不限地点
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间11 天前
数据来源Real Work From Anywhere
前往 Real Work From Anywhere 查看并投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

关于LiveKit
LiveKit正在为计算的代理时代构建基础设施层。我们的平台为开发者提供了构建、测试、部署、扩展和监控生产环境中的AI代理所需的一切。成立于2021年,LiveKit为OpenAI、Salesforce、Spotify、Meta以及成千上万其他开发者提供语音和代理AI应用,每年共同处理数十亿次通话。

关于该职位
这不是一个“安全”意味着运行扫描或编写被束之高阁的政策的角色。我们寻找的是真正的工程师——一个像建造者和破坏者一样思考的人。一个深入堆栈的人,无论是API端点、容器镜像还是浏览器沙盒。你知道事物应该怎样工作——以及当它们出问题时会发生什么。

一些安全专业人员倾向于政策、合规或审计(我们也重视这一点),但我们寻找的是希望编写代码、保护系统、挖掘奇怪的bug,并从上到下加固平台的人。这不是一个指出需要做什么的角色,而是一个准备去做的角色。

如果你:
- 像建造者和破坏者一样思考,并从第一原理理解安全
- 能分析系统的弱点——无论是在业务逻辑、配置还是代码中
- 能将安全问题转化为工程行动,而不是“否决者”
- 是优秀的沟通者,能在整个组织中记录和推广最佳实践
- 跟踪安全研究、工具和威胁,并将这些知识付诸实践

你将在这里茁壮成长
- 负责整个堆栈的安全——应用程序、服务、基础设施和开发者工作流
- 主动识别、评估和缓解基础设施和应用代码库中的风险
- 领导安全代码审查、架构讨论和威胁建模会议
- 构建工具和自动化流程,以在问题进入生产环境之前防止安全问题
- 在内部和外部表面加强身份验证和访问控制
- 与各团队的工程师紧密合作,设计默认安全的API、工作流和部署
- 调查漏洞,响应安全事件,并在需要时管理披露流程

你是什么样的人
- 有6年以上软件工程师经验,对安全工程有浓厚兴趣
- 在应用程序、基础设施或两者中领导或深度参与过安全工程工作
- 熟悉威胁

查看英文原文

About LiveKitLiveKit is building the infrastructure layer for the agentic era of computing. Our platform gives developers everything they need to build, test, deploy, scale, and observe AI agents in production. Founded in 2021, LiveKit powers voice and agentic AI applications for OpenAI, Salesforce, Spotify, Meta, and tens of thousands of other developers, collectively facilitating billions of calls each year.About This RoleThis isn't one of those roles where "security" means running scans or writing policies that gather dust. We're looking for a real engineer — someone who thinks like a builder and a breaker. Someone who gets deep into the stack, whether it's an API endpoint, a container image, or a browser sandbox. You know how things are supposed to work — and what happens when they don't.While some security professionals lean toward policy, compliance, or audits (and we value that too), we're after someone who wants to write code, secure systems, dig into strange bugs, and harden the platform from top to bottom. This is not a role for pointing out what needs to be done. It's for someone who's ready to do it.You'll Thrive Here If You:think like both a builder and a breaker, and understand security from first principlescan analyze systems for weaknesses — whether they're in business logic, configuration, or codetranslate security concerns into engineering action without being the "no" personare an excellent communicator who can document and evangelize best practices across the orgstay current with security research, tooling, and threats — and put that knowledge into actionWhat You'll DoOwn security across the stack — applications, services, infrastructure, and developer workflowsProactively identify, assess, and mitigate risks in both infrastructure and application codebasesLead secure code reviews, architecture discussions, and threat modeling sessionsBuild tooling and automations that help prevent security issues before they reach productionHarden authentication and access control across internal and external surfacesPartner closely with engineers across teams to design secure-by-default APIs, workflows, and deploymentsInvestigate vulnerabilities, respond to security incidents, and manage disclosure processes when neededWho You Are6+ years of experience as a software engineer with a strong interest in security engineeringYou've led or heavily contributed to security engineering efforts across applications, infrastructure, or bothExperienced with threat modeling, secure coding practices, and vulnerability managementWorked with CI/CD systems, cloud platforms (AWS, GCP, etc.), and containerized environmentsYou've responded to real-world security incidents, led postmortems, or driven remediation effortsNice to HaveExperience with security reviews of WebRTC, media pipelines, or real-time systemsContributions to open-source security tooling or researchHands-on experience with static and dynamic analysis tools, fuzzing, or sandboxingYou've built (or tried to build) something with LiveKitOur Commitment to YouAn opportunity to build something truly impactful to the worldContribute to open source alongside world-class engineersCompetitive salary and equity packageHealth, dental, and vision benefitsFlexible vacation policyLiveKit is an equal opportunity employer and does not discriminate on the basis of any characteristic protected by applicable law. If you require a reasonable accommodation during the application or interview process, please contact recruiting@livekit.io.

本页面信息整理自 Real Work From Anywhere,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位