Principal Security Engineer at CLEAR (Remote)

| Remote
Sorry, this job was removed at 6:51 a.m. (EST) on Saturday, March 5, 2022
Find out who’s hiring remotely
See all Remote jobs
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

With CLEAR, you are always you. CLEAR's mission is to enable frictionless and safe journeys using your identity. With more than 8 million members and 100+ partners across North America, CLEAR's identity platform connects you to the cards in your wallet - transforming the way you live, work and travel. Trust and privacy are the foundation of CLEAR. We have a commitment to members being in control of their own information and never sell member data. CLEAR is at the highest level of security by U.S. government regulators and is also certified as Qualified Anti-Terrorism Technology under the SAFETY Act.

We’re looking for an outstanding and passionate Principal Security Engineer. Successful candidates will be strong software developers and architects with an eye toward security and the ability to become evangelists and leaders.In this role, your primary focus will be ensuring and maintaining our high standards of security, specifically with regards to member data.

CLEAR is a fast and nimble company, so the ideal candidate will be able to leverage automation and data analysis to embed continuous security practices into our development and operational workflows. This role is hands on and technical while requiring a heads-up nature to identify gaps and drive the creative application of state-of-the-art security practices and controls 

What You Will Do:

  • Partner with the company’s Software Engineering, DevOps, and IT teams. 
  • Perform security risk assessments, threat modeling, security testing,  and code review
  • Automate security testing, code tools and pipelines, and create secure libraries and code launchpads to be used throughout the company
  • Work side by side with and educate developers on security best practices.
  • Lead internal and external penetration tests and code security audits
  • Triage issues with internal stakeholders for remediation.
  • Establish security standards and specifications to balance the needs of a more secure product offering with the needs of the business. 
  • Help develop and enable a secure by default culture

Who You Are:

  • 7+ years of experience in software development with interest or experience in security/secure coding
  • Ability to architect and design software applications 
  • Has excellent interpersonal communication skills and can take very technical issues and make them understandable to all audiences.
  • Personal passion for security and cutting edge security concepts.

Required Skills:

  • Experience coding web applications and web services.
  • Proficient in reading many different programming languages.
  • Experience writing in one or more of the following programming languages: C/C++, Java, Ruby, Python, and JavaScript.
  • Able to evaluate, deploy, and manage software tools and build strong vendor relationships.
  • Experience with a public cloud based provider (AWS Azure, or GCP)
  • Knowledge of containers (e.g Kubernetes, Docker, ECS).
  • Experience integrating with continuous integration tools and pipelines
  • Ability to listen for nuances, dig into details in order to understand systems deeply, and articulate technical details to business leaders.
  • Experience leading teams or projects or have functioned as a software development lead

Desirable Skills:

  • Understanding of and/or experience with OWASP Top 10
  • Previous experience on a Security team, coordinating responses to security incidents and/or writing and presenting application security assessment reports.
  • Background in application security including knowledge of internet security issues and threat landscape

Bonus Points:

  • Experience with mobile platform-specific security, privacy, and permission concepts for iOS & Android mobile platforms. (Intricate understanding of WebViews, TouchID API, Frida, Radare, etc.).
  • Knowledge of TCP/IP, HTTP, RESTful APIs and experience supporting service-oriented, asynchronous, and distributed application architectures.
  • Familiarity with one or more industry standards and regulations such as PCI, HIPAA, NIST 800-53, FedRAMP and ISO27001.
  • Participates in CTFs or actively contributes to the security community through exploitation development.

Read Full Job Description
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
    • C++Languages
    • JavaLanguages
    • JavascriptLanguages
    • KotlinLanguages
    • Objective-CLanguages
    • PythonLanguages
    • SwiftLanguages
    • TypeScriptLanguages
    • TypescriptLanguages
    • ReactLibraries
    • Node.jsFrameworks
    • Microsoft SQL ServerDatabases
    • PostgreSQLDatabases
    • RedshiftDatabases
    • AWS (Amazon Web Services)Services
    • ConfluenceManagement
    • JIRAManagement

Location

We are located in the Chelsea neighborhood on Manhattan's west side. Chelsea is the primary art district within the borough.

An Insider's view of CLEAR

How would you describe the company’s work-life balance?

Our CEO values personal responsibility above all else and that includes the responsibility of taking good care of ourselves. I have no problem asking for time off when I need it; I just coordinate with my boss to make sure the work gets covered. Plus, we have the best work parties.

Justin

Software Engineer II

What projects are you most excited about?

Recently, I was working with our training team to create a leadership development program for our operations organization. We’re developing all of the courses in-house and it’s given me exposure to virtually every single team in the company. I’ve used these lessons to amp up my communication strategy for other projects.

Clory

Senior Director, Member Experience

How has your career grown since starting at the company?

I started my CLEAR journey on the tech recruiting team and was brought in to help grow the Product organization. A year later I found myself in one of those once-in-a-lifetime opportunities and made a move to the product team. I never thought about leaving recruiting prior to that but taking a leap of faith was the best career decision I ever made!

Aleks

Product Operations Manager

What is your vision for the company?

SVP of Engineering Amanda Li-Garfin frequently reiterates the “speak up” company value to her team. As engineers, their job is to innovate toward the right solutions for CLEAR’s partners and users, and to revisit what’s currently working to future-proof solutions as the company scales.

Amanda

SVP of Engineering

What’s the vibe like in the office?

The “Vibes” in the office are simply amazing! I feel like there’s something new and inviting every time I go in. I always look forward to coming into the office because everyone is super nice and helpful, and there's great food and great places to get the brain juices flowing.

Kamra

Hardware Engineer

What are CLEAR Perks + Benefits

Culture
Volunteer in local community
Friends outside of work
Eat lunch together
Daily sync
Team owned deliverables
Group brainstorming sessions
Open office floor plan
Diversity
Unconscious bias training
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability Insurance
Dental Benefits
Vision Benefits
Health Insurance Benefits
Life Insurance
Pet Insurance
Wellness Programs
Mental Health Benefits
Retirement & Stock Options Benefits
401(K)
Company Equity
Performance Bonus
Child Care & Parental Leave Benefits
Child Care Benefits
Through our partnerships with Care.com and OneMedical, we offer various benefits relating to child care.
Remote Work Program
All CLEAR HQ's work in a hybrid model. Employees can work remotely up to 3 days/week (with at least 2 days in office.)
Family Medical Leave
Return-to-work program post parental leave
Vacation & Time Off Benefits
Unlimited Vacation Policy
Paid Holidays
Perks & Discounts
Casual Dress
Commuter Benefits
Free Daily Meals
We provide daily, catered breakfast and lunch for those who are in office!
Stocked Kitchen
Happy Hours
Relocation Assistance
Fitness Subsidies
Home Office Stipend for Remote Employees
Professional Development Benefits
Promote from within
Online course subscriptions available

More Jobs at CLEAR

Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about CLEARFind similar jobs like this