资深安全工程师
Staff Security Engineer
Redpanda 是首个用于代理-数据交互的运行时和控制平面 —— 一个统一平台,将流处理、SQL 分析和智能连接与企业 AI 代理在生产环境中需要的治理层相结合。
建立在已被财富 500 强公司和快速发展的初创公司信任的基础设施之上,Redpanda 完全在代理的数据路径之外实施治理,控制代理能看到的内容,限制它们能执行的操作,并记录不可篡改的所有它们接触过的事件记录,使组织无需在创新和控制之间做出选择。
**职位描述:**
我们正在寻找一位经验丰富的高级安全工程师,负责扩展 Redpanda 产品的应用安全,从 C++ 核心流引擎到我们的 Go 云控制平面、Console 和 Rust/Go 数据转换 SDK。在 Redpanda,安全是一个工程问题,而不是一份清单:你将花时间分析和破坏真实系统代码,构建便捷道路和自动化工具,使安全路径成为默认选项,并帮助团队更快地交付,因为安全是内置的,而不是后期添加的。
你将成为产品安全团队中两名工程师之一,每天与那些构建出被财富 500 强公司信任的系统的工程师合作。向信息安全总监汇报,并与我们的基础设施安全工程师协作,你将负责日常的应用安全工作:安全的 SDLC、威胁建模、代码级漏洞发现、核心引擎的模糊测试,以及协调的漏洞披露和 PSIRT 响应。随着应用安全实践的发展,你将帮助塑造其技术方向(与负责整体安全计划的总监合作),并提升整个工程团队的安全标准。
**你将:**
- 领导新功能的威胁建模和安全设计评审,覆盖 C++ 引擎、Go 控制平面和 Console,在代码编写之前发现信任边界和授权缺陷。
- 负责并优化我们在 C++、Go 和 Rust 上的应用安全测试(SAST、SCA/依赖项扫描、密钥扫描和 DAST),减少误报,并在 CI 中对最高严重性的问题进行门控。
- 为核心引擎构建模糊测试框架(覆盖引导和协议感知),并与平台工程团队合作持续运行,集成 sanitizers 来暴露内存安全和解析问题
查看英文原文
_Redpanda is the first runtime and control plane for agent-data interaction — a unified platform that combines streaming, SQL analytics, and intelligent connectivity with the governance layer enterprise AI agents need in production._
_Built on infrastructure already trusted by Fortune 500 companies and fast-growing startups, Redpanda enforces governance entirely outside the agent's data path, controlling what agents see, limiting what they do, and capturing a tamper-proof record of everything they touch, so organizations never have to choose between innovation and control._
**About the Role:**
We're looking for an experienced Staff Security Engineer to own and scale application security across Redpanda's products, from the C++ core streaming engine to our Go cloud control plane, Console, and Rust/Go data-transform SDKs. Security at Redpanda is an engineering problem, not a checklist: you'll spend your time analyzing and breaking real systems code, building the paved roads and automation that make the secure path the default, and helping teams ship faster because security is built in rather than bolted on.
You'll be one of two engineers on a small, high-trust product security team, partnering every day with the engineers who build a system that Fortune 500 companies trust with their most critical data. Reporting to the Director of Information Security and working alongside our infrastructure security engineer, you'll own the day-to-day application-security work: secure SDLC, threat modeling, code-level vulnerability discovery, fuzzing the core engine, and our coordinated vulnerability disclosure and PSIRT response. As the application-security practice grows, you'll help shape its technical direction (in partnership with the Director, who owns the overall security program) and raise the security bar across all of engineering.
**You Will:**
- Lead threat modeling and secure design reviews for new product features across the C++ engine, Go control plane, and Console, catching trust-boundary and authorization flaws before code is written.
- Own and tune our application security testing (SAST, SCA / dependency scanning, secret scanning, and DAST) across C++, Go, and Rust, driving down false positives and gating the highest-severity findings in CI.
- Build the fuzzing harnesses for the core engine (coverage-guided and protocol-aware) and partner with platform engineering to run them continuously, integrating sanitizers to surface memory-safety and parsing defects early.
- Drive deep secure code review in systems languages, pairing your own expertise with AI-assisted analysis, and partner with engineering to eradicate whole classes of vulnerabilities rather than patching one bug at a time.
- Operate our product security incident response (PSIRT) and coordinated vulnerability disclosure: triaging external researcher reports, driving fixes with engineering, and publishing advisories and CVEs.
- Strengthen our software supply chain (dependency hygiene, SBOMs, build provenance, and progress toward higher SLSA build levels) in partnership with platform engineering.
- Stand up a security champions program and secure-by-default building blocks (libraries, patterns, guardrails) so engineering teams can own security with your support.
- Define security requirements and help shape the security release gates, and advise on product security features: authentication, authorization / RBAC, encryption, audit logging, multi-tenant isolation, and the Agentic Data Plane.
- Raise the security bar across engineering through pragmatic standards, training, and hands-on partnership, using modern AI-assisted development workflows (including tools like Claude Code) to scale your impact.
**You Have:**
- 7+ years in application or product security or adjacent specialties, with a track record of owning AppSec initiatives end-to-end and influencing engineering teams without direct authority.
- The ability to review and reason about code in a systems language (C++ or Rust strongly preferred, since our core engine is C++; Go valuable across the cloud control plane and tooling), whether reviewing it directly or with AI assistance, with strong instincts for memory safety, concurrency, and the vulnerability classes that matter (use-after-free, buffer overflow, injection, authorization flaws).
- Comfort with the security risks of memory-unsafe code and the appetite to fuzz it; fuzzing or sanitizer experience is a strong plus.
- Practical proficiency with the AppSec toolchain (SAST, SCA, secret scanning, DAST) and the judgment to apply risk-based prioritization rather than rigid textbook approaches.
- Demonstrated experience leading threat modeling and secure design reviews for non-trivial systems.
- Working knowledge of software supply-chain security (dependencies, SBOMs, signing, SLSA) and secure CI/CD practices.
- Familiarity with cloud (AWS / GCP / Azure) and Kubernetes security as it relates to the application layer.
- Excellent written and verbal communication skills; comfortable working in a globally distributed, async environment (e.g., GitHub).
**Nice to Have:**
- Experience with fuzzing (libFuzzer / AFL++ / OSS-Fuzz) and sanitizers (ASan / UBSan / MSan) on a C or C++ codebase.
- Background securing distributed systems, databases, or data-infrastructure products, including threat modeling consensus / replication and multi-tenant isolation.
- Experience running a PSIRT, operating as a CNA, or managing a bug bounty / coordinated disclosure program.
- Exposure to compliance programs (SOC 2, ISO 27001, HIPAA, FedRAMP) from the engineering-evidence side.
- Contributions to open-source security, or experience handling vulnerabilities in a public open-source repository.
_U.S. base salary range for this role is $210,000 - $247,000. Our salary ranges are determined by role, level, and location. We strive to consider each candidate's job-related skills, location, experience, relevant education or training to determine individual base salary. Your talent partner will share more about the specific salary range for your preferred location during the hiring process._
_Please note that Redpanda uses artificial intelligence (AI) technology to assist in the screening and assessment of applications for this position. However, all final hiring decisions are made by our human hiring team._
_Vacancy Status: This job posting is for an existing vacancy._
Join Redpanda if you’d enjoy being part of a fast-moving, diverse, people-first organization with team members around the globe and a culture based on trust, transparency, communication, and kindness. You'll dive into a nimble, high-impact team with the latest AI tools — and the budget to actually use them.