Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer, Product Security image - Rise Careers
Job details

Security Engineer, Product Security

The Company

Cape was founded in early 2022 by Palantir and Anduril alums with deep expertise in privacy and national security. While running Palantir’s US national security business, our CEO became passionate about privacy and security on mobile devices. Our mission is to be a force for good in global wireless.

At Cape, we are not just another cellular service provider; we are the architects of a privacy-centric movement that starts with the devices in your pocket. We are building a cellular network that helps citizens, including those responsible for our nation’s security, regain control of their own data.

We believe that where we are, where we go, and whom we are with are among our most personal information and should be kept private. Privacy is not something you achieve by limiting yourself or by doing less, it is a set of features to be built so you can do more. We have raised money from Andreessen Horowitz and other top-tier VCs, and are excited to grow the team.

The Team

We are relentless builders, constantly pushing the boundaries of what's possible and bringing to life ideas that have never before existed. Innovation is at the core of everything we do. At Cape, we trust our team to deliver greatness and empower them to make a profound impact. As a member of our team, you will collaborate seamlessly with our diverse group of talented engineers and other team members, enjoying dynamic interactions with colleagues from across the organization.

The Role

We are seeking a Security Engineer with a specialization in product security to join our team. As a strategic partner, you will make an immediate impact by leveraging your expertise in cloud and application security. This role is pivotal in reducing risk across our AWS cloud environments and mobile applications. You will be responsible for designing, implementing, and maintaining security measures that comply with regulatory standards, enhance internal processes, and minimize data security risks. Through developing ongoing security strategies and technologies, you will support the organization's business objectives and daily operations.

Responsibilities

  • Design, implement, and manage robust security controls and policies within AWS, focusing on the confidentiality, integrity, and availability of data and services.

  • Perform comprehensive security assessments of our cloud environments to identify vulnerabilities, assess risks, and recommend actionable mitigation strategies.

  • Lead the integration of security practices into the DevOps lifecycle, promoting secure code development, deployment, and operations.

  • Utilize and optimize AWS security tools (such as Amazon GuardDuty, Amazon Inspector, AWS IAM, AWS KMS, AWS WAF, and AWS Shield) and explore third-party solutions to bolster our security posture.

  • Assist in addressing findings from penetration tests and security audits, ensuring prompt and effective remediation.

  • Stay informed about the latest security threats, vulnerabilities, and compliance mandates affecting cloud environments, providing guidance on emerging technologies and security best practices.

  • Offer expert guidance and mentorship to junior security team members and engineers across the company, fostering an organizational culture of security awareness and continuous improvement.

  • Collaborate with stakeholders to integrate security requirements effectively into engineering projects and business initiatives.

Preferred Experience

  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience), with advanced degrees or certifications (e.g., CISSP, AWS Certified Security Specialty) being advantageous.

  • A minimum of 5 years of experience in information security, with at least 2 years concentrated on cloud security within AWS environments.

  • Deep understanding of AWS architecture, security services, and best practices for securing cloud applications and data.

  • Proficiency in using infrastructure as code (IaC) tools (like Terraform or AWS CloudFormation) and in automating security tasks within AWS.

  • Skilled in scripting languages (Python, TypeScript, Go) for the automation of security tasks and the integration of security tools.

  • Solid knowledge of network security, encryption technologies, and secure coding practices.

  • Excellent analytical skills for identifying and mitigating complex security vulnerabilities and risks.

  • Strong communication and leadership abilities, capable of working collaboratively across teams and effectively conveying technical information to non-technical stakeholders.

  • Organized and able to manage multiple priorities in a dynamic, fast-paced environment.

Our Culture 

  • We are builders, and we choose to spend our time building things that matter. Many of our people have backgrounds in Defense Tech as well as the defense and intelligence community. We build to win.

  • We hire excellent people, give them outsized responsibility, and trust them to execute at a high level. Everyone here has a track record of solving hard problems throughout their careers.

  • We believe that personal privacy and national security interests are not inherently at odds, and can be reconciled via strong technology.

  • We believe that companies exist to build awesome things and take care of their people. Our benefits reflect that– top-tier health care, 401(k) matching, and a generous vacation policy (that we actually use).

  • We hire candidates of any race, color, ancestry, religion, sex, national origin, sexual orientation, gender identity, age, marital or family status, disability, Veteran status, and any other status. Achieving diversity across these categories will serve to make our company stronger and our product better.

How to apply

Click the link below to apply.

We reserve the right to make use of any unsolicited resumes received from outside recruiting agencies and / or individual recruiters without being responsible for payment of any fees asserted from the use of unsolicited resumes.

Cape Glassdoor Company Review
3.3 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Cape DE&I Review
1.8 Glassdoor star icon Glassdoor star icon Glassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Cape
Cape CEO photo
Joe Oatley
Approve of CEO

Average salary estimate

$140000 / YEARLY (est.)
min
max
$120000K
$160000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Product Security, Cape

Are you excited about the chance to merge technology with privacy and security? Join Cape as a Security Engineer specializing in Product Security! At Cape, we're not your typical cellular service provider; our mission is to revolutionize the way we think about privacy in an increasingly connected world. With your expertise in cloud and application security, you'll be instrumental in fortifying our innovative privacy-centric wireless network. Your role will focus on creating, implementing, and managing robust security controls in our AWS cloud environments, all while ensuring compliance with regulatory standards. You'll conduct comprehensive security assessments to identify and mitigate risks and lead the charge in integrating top-notch security practices into our DevOps lifecycle. Plus, you’ll mentor junior team members, sharing your knowledge of the latest security threats and best practices. We value collaboration and an innovative spirit, so expect dynamic interactions with a talented and diverse group of engineers. If you have at least five years of experience in information security, including cloud security within AWS, and know your way around tools like Terraform or Python, you might just be the perfect fit. At Cape, we're builders at heart, committed to making an impact that matters, all while enjoying a supportive and fulfilling work culture. This is your chance to help change the game in privacy and national security with us!

Frequently Asked Questions (FAQs) for Security Engineer, Product Security Role at Cape
What are the primary responsibilities of a Security Engineer, Product Security at Cape?

As a Security Engineer, Product Security at Cape, your main responsibilities include designing and managing security controls in AWS, performing security assessments to identify vulnerabilities, and integrating security practices into the DevOps lifecycle. You'll also utilize AWS security tools, address findings from security audits, and mentor junior team members on best practices.

Join Rise to see the full answer
What qualifications do I need to become a Security Engineer, Product Security at Cape?

To qualify for the Security Engineer, Product Security role at Cape, candidates should possess a bachelor's degree in Computer Science or a related field, with at least five years of information security experience, including two years focusing on AWS cloud security. Advanced certifications like CISSP and proficiency in scripting languages are advantageous.

Join Rise to see the full answer
How does Cape support its Security Engineer, Product Security in professional development?

Cape fosters a culture of continuous improvement and professional development for its Security Engineers, Product Security. You will receive expert guidance and mentorship opportunities, allowing you to share your knowledge and learn from experienced professionals. The company encourages staying updated on the latest security trends and technologies.

Join Rise to see the full answer
What tools and technologies should I be familiar with as a Security Engineer, Product Security at Cape?

As a Security Engineer, Product Security at Cape, familiarity with AWS security tools such as Amazon GuardDuty, AWS IAM, and AWS KMS is essential. Additionally, skills in using Infrastructure as Code tools like Terraform and scripting languages such as Python or TypeScript for automating security tasks are highly desirable.

Join Rise to see the full answer
What is the company culture like for a Security Engineer, Product Security at Cape?

Cape's culture is one of innovation and collaboration, where builders team up to tackle difficult challenges in privacy and national security. Employees are empowered with responsibilities and encouraged to exercise their expertise, all while benefiting from a supportive environment that values personal privacy and individual contributions.

Join Rise to see the full answer
Common Interview Questions for Security Engineer, Product Security
Can you describe your experience with AWS security tools?

In response, highlight specific AWS security tools you have used in past roles, such as Amazon GuardDuty or AWS WAF. Share examples of how you implemented these tools to enhance security measures, focusing on the results achieved in terms of risk reduction and compliance.

Join Rise to see the full answer
How do you approach vulnerability assessments in cloud environments?

For this question, discuss your methodology for performing vulnerability assessments. Explain how you identify, evaluate, and prioritize vulnerabilities, mentioning any frameworks or tools you typically rely on, and emphasize your ability to transform findings into actionable remediation strategies.

Join Rise to see the full answer
Describe a time you integrated security practices into a DevOps lifecycle.

Share a specific example demonstrating your experience in integrating security into DevOps. Talk about the challenges you faced, the strategies you implemented, and the overall impact on the development process. Highlight any lessons learned that you can apply in future endeavors.

Join Rise to see the full answer
What scripting languages are you proficient in, and how have you used them in security tasks?

Talk about the languages you are comfortable with, such as Python or TypeScript. Describe specific security tasks where you automated processes or integrated security tools using scripts, reflecting on what was streamlined and how it benefited the team.

Join Rise to see the full answer
How do you stay informed about emerging security threats and compliance requirements?

Discuss your routine for keeping up with trends in cybersecurity, such as following reputable blogs, participating in forums or webinars, and connecting with professional organizations. Mention the importance of continuous learning in evolving your security strategies.

Join Rise to see the full answer
What is your experience mentoring junior team members in security best practices?

Explain your approach to mentorship, including an example of how you've helped a junior team member grow in their understanding of security practices. Highlight the success stories of team collaboration and knowledge transfer, which foster a culture of security awareness.

Join Rise to see the full answer
How do you prioritize conflicting security needs in a fast-paced environment?

Share your strategies for balancing multiple priorities. Discuss how you assess urgency and impact, using examples from past experiences where you successfully managed conflicts while ensuring critical security measures were not compromised.

Join Rise to see the full answer
Can you give an example of a complex security vulnerability you identified and mitigated?

Provide a detailed account of a specific vulnerability scenario. Discuss how you discovered it, your analysis process, the steps taken to mitigate it, and the long-term impact of your efforts on the organization’s security posture.

Join Rise to see the full answer
What is your understanding of regulatory compliance requirements in cloud security?

Outline your knowledge of key compliance frameworks relevant to cloud security, such as HIPAA or GDPR, and discuss how you foster compliance within security strategies. Give reasons why maintaining compliance is crucial for the organization.

Join Rise to see the full answer
Why do you want to work at Cape as a Security Engineer, Product Security?

In your response, align your values with Cape’s mission of privacy and national security. Share what inspires you about the opportunity to help build a privacy-centric cellular network and how your skills and experiences align with the company's goals.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 7 hours ago
Photo of the Rise User
WPROMOTE Remote Remote, United States
Posted 7 days ago
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Zoox Hybrid Foster City, CA
Posted 9 days ago
Photo of the Rise User
Robinhood Hybrid Menlo Park, CA; Bellevue, WA; New York, New York
Posted 5 days ago
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Dare to be Different
Reward & Recognition
Fast-Paced
Maternity Leave
Paternity Leave
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Learning & Development
Social Gatherings
Photo of the Rise User
Posted 19 hours ago

Our aim is to bring excellence to every customer we support, and continuously look into new ways we can add to and improve on what we provide for our clients. Through our values we will build a better business for the long-term and achieve our o...

7 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
January 11, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!