Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Founding Security Engineer image - Rise Careers
Job details

Founding Security Engineer

About Clay

Clay is a creative tool for growth. Our mission is to help businesses grow  — without huge investments in tooling or manual labor. We’re already helping over 100,000 people grow their business with Clay. From local pizza shops to enterprises like Anthropic and Notion, our tool lets you instantly translate any idea that you have for growing your company into reality. We’re looking for sharp, low-ego people to help us turn every business's creative ideas into a reality.  Check out our wall of love to learn more about the product.

Why is Clay the best place to work in New York?

  • Customers love the product (100K+ users and growing)

  • We’re growing a lot (10x YoY for the past two years) 

  • Incredible culture (our customers keep applying to work here)

  • In-person work (beautiful office space in Flatiron)

  • Well-resourced (raised a Series B in June 2024 from investors like Sequoia and Meritech)

Clay is looking for its first dedicated Security Engineer. We’re looking for someone with a broad knowledge of security topics, that would be able to independently prioritize and address security needs, with the ability to deep dive and learn specific topics as the need arises, as well as build out internal tools as needed.

We’re looking for a senior level engineer with expertise in the following areas:

Cloud Security

  • Experience securing cloud environments (e.g., AWS, Azure, Google Cloud).

  • Familiarity with Identity and Access Management (IAM) in cloud settings.

  • Experience with monitoring and mitigating network-level attacks (e.g., DDoS).

  • Experience with key management (Secrets, credentials, etc…)

  • Knowledge of infrastructure-as-code security tools (e.g., Terraform, AWS Config).

Application Security

  • Familiarity with secure coding practices and common vulnerabilities (e.g., OWASP Top 10), as evaluated by penetration testing

  • Experience conducting code reviews and identifying vulnerabilities.

  • Familiarity with tools like static analysis (SAST), dynamic analysis (DAST), and dependency checks.

  • Knowledge of authentication and access control mechanisms (e.g., OAuth, RBAC, MFA).

Office & employee Security

  • Provisioning/de-provisioning of employee access

  • Employee hardware security monitoring (e.g. managing software updates, etc)

  • Corporate network security (e.g. 802.1X implementation, VPN access to Cloud resources, etc)

Incident Response and Threat Detection

  • Experience setting up monitoring and alerting systems (e.g., SIEM tools).

  • Knowledge of common attack vectors and tactics (e.g., phishing, malware, APTs).

  • Hands-on experience with incident response, investigation, and remediation.

Regulatory Compliance and Best Practices

  • Awareness of relevant industry standards (e.g., ISO 27001, SOC 2, GDPR, HIPAA).

Life @ Clay 

Based out of a central office on 19th Street in Manhattan's Flatiron District. We love the energy of in-person collaboration while also offering the flexibility to work from home when needed.

  • Competitive salary and role trajectory: Roles, responsibilities, and comp grow as we do

  • Health insurance: Fully funded, high quality health, dental & vision coverage (including 80-100% therapy coverage)

  • Visa sponsorship: We get it - it's an arduous process, but we're not scared of it

  • Paid time off: We expect team members to take at least 3 weeks fully-disconnected per year, with a flexible vacation policy beyond that

  • Free lunch: Lunch is provided in office every day

  • Parental leave & fertility support: IVF fertility benefits, egg freezing, and 4 months of paid parental leave

Learn more about Clay and what it’s like to work with us right here!

Clay Labs Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Clay Labs DE&I Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Clay Labs
Clay Labs CEO photo
Unknown name
Approve of CEO

Average salary estimate

$150000 / YEARLY (est.)
min
max
$120000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Founding Security Engineer, Clay Labs

Are you ready to take on a pivotal role in shaping the security landscape at Clay? We're on the hunt for a Founding Security Engineer who will help safeguard our innovative platform, allowing businesses to grow effortlessly. At Clay, our mission is straightforward yet ambitious: to empower companies of all sizes with tools that don't require massive investments or cumbersome processes. Joining us means becoming a vital part of a dynamic team that's already making waves, with over 100,000 users including notable enterprises like Anthropic and Notion. As our first dedicated Security Engineer, you will bring your extensive knowledge of cloud security, application security, and incident response to the forefront, establishing the security foundation for Clay’s continued growth. Your role will involve deep-diving into security topics, enhancing our internal tools, and addressing security needs independently. We understand the importance of a healthy work culture—after all, our customers love us, and our staff is inspired to assist! You'll enjoy numerous benefits, from competitive salaries to fully funded health insurance and generous parental leave policies. With a collaborative environment rooted in Manhattan's Flatiron district and flexible work options, we truly believe that the best ideas emerge from collaboration. So, if you’re a proactive security specialist looking to steer Clay into its promising future, we can’t wait to meet you!

Frequently Asked Questions (FAQs) for Founding Security Engineer Role at Clay Labs
What are the core responsibilities of a Founding Security Engineer at Clay?

As a Founding Security Engineer at Clay, you will oversee the security architecture of our products, focusing on cloud security, application security, and incident response. Your responsibilities will include conducting code reviews, implementing best practices for secure coding, establishing monitoring and alerting systems, and ensuring regulatory compliance with industry standards. You'll also play an essential role in the provision of employee access and network security, making your contributions vital to the company's growth.

Join Rise to see the full answer
What qualifications are required for the Founding Security Engineer position at Clay?

To be successful as a Founding Security Engineer at Clay, you should possess extensive experience in cloud security, including familiarity with platforms like AWS and Azure, as well as Identity and Access Management. Candidates should have a deep understanding of application security practices, including knowledge of OWASP Top 10 vulnerabilities. Experience with incident response and familiarity with various regulatory compliance standards such as ISO 27001 and SOC 2 are also important. We value team members with a strong desire to learn and adapt, so a proactive attitude is essential.

Join Rise to see the full answer
What is the work environment like for a Founding Security Engineer at Clay?

The work environment for a Founding Security Engineer at Clay is vibrant and collaborative. Located in our modern Flatiron office in Manhattan, we prioritize in-person collaboration but also offer flexibility for remote work as needed. Our team's culture is built on respect and creativity, where each member is encouraged to bring innovative ideas to the table. You'll also enjoy comprehensive benefits, including competitive salaries, free daily lunches, health insurance, and plenty of opportunities for professional growth.

Join Rise to see the full answer
What opportunities for growth exist for a Founding Security Engineer at Clay?

At Clay, growth opportunities for a Founding Security Engineer are significant. As we expand, roles and responsibilities within the engineering team will evolve, offering you the chance to take on greater challenges and leadership positions. We're committed to your professional development, providing a supportive environment where you can continuously learn and advance your skills in security techniques and industry practices, paving the way for exciting career growth.

Join Rise to see the full answer
What are some benefits offered to the Founding Security Engineer at Clay?

As a Founding Security Engineer at Clay, you will enjoy a range of competitive benefits designed to support your health and well-being. These include fully funded health, dental, and vision coverage, generous paid time off, and a flexible vacation policy that encourages well-deserved breaks. Additional perks include lunch provided daily in the office, substantial parental leave policies, and fertility support options. We also support visa sponsorship for family members relocating to join our dynamic team.

Join Rise to see the full answer
Common Interview Questions for Founding Security Engineer
Can you explain the role of cloud security in a company like Clay?

Cloud security is crucial at Clay because we rely heavily on cloud-based tools and services. When discussing this topic in an interview, focus on your experience securing cloud environments, your understanding of Identity and Access Management, and how you proactively mitigate network attacks. Demonstrating your knowledge of cloud vulnerabilities and how you've previously tackled them will highlight your preparedness for the role.

Join Rise to see the full answer
What strategies would you employ to ensure application security?

In your response, you should detail various strategies such as implementing secure coding practices, conducting rigorous code reviews, and utilizing automated security scanning tools. Emphasize your familiarity with the OWASP Top 10 vulnerabilities and how to address them effectively, illustrating your proactive approach to ensuring the integrity and security of applications at Clay.

Join Rise to see the full answer
Describe your experience with incident response and threat detection.

When answering this question, outline specific examples of past incidents you've responded to, detailing the process you followed to investigate and remediate threats. Discuss the monitoring tools you've set up or worked with (like SIEM tools) and how you've trained your team or organization in recognizing potential threats, showing your hands-on experience in creating a robust incident response plan.

Join Rise to see the full answer
How do you keep yourself updated with the latest security trends and threats?

To thoroughly answer this question, you should mention the resources you use, such as industry blogs, forums, threat intelligence platforms, and official documentation from organizations like NIST or SANS. Highlighting your commitment to continuous learning through certifications or workshops can also show your proactive nature towards adapting to evolving security landscapes.

Join Rise to see the full answer
What is your experience with regulatory compliance in a tech environment?

Discuss your experience navigating various compliance frameworks like ISO 27001, SOC 2, GDPR, or HIPAA. Provide examples of how you've implemented compliance requirements in past roles, the challenges faced, and how you ensured your team understood and adhered to those standards, demonstrating your thorough understanding of their importance in our industry.

Join Rise to see the full answer
Can you provide an example of a security project you led?

When describing a past project, focus on the objectives, the security measures implemented, and the impact it had on your previous organization. Highlight the collaboration with various teams, your leadership skills, and the positive results achieved, which could encompass improved security postures, cost savings, or enhanced user trust.

Join Rise to see the full answer
What tools have you utilized for security monitoring and alerting?

Your answer should include specific tools you've used, such as intrusion detection systems, SIEM tools, or vulnerability scanners. Explain how these tools help in real-time monitoring and how they contribute to a proactive security strategy. Discuss how you have configured and optimized these tools based on past experiences to align with business needs.

Join Rise to see the full answer
Discuss your approach to managing employee access and security.

In your response, focus on the importance of a structured provisioning/de-provisioning process, and how roles define access control. Discuss policies you’ve implemented or participated in to ensure employee hardware security and measures taken to maintain compliance with best practices in employee access management to protect sensitive company data.

Join Rise to see the full answer
How do you approach vulnerability assessment in an organization?

Emphasize the importance of regular vulnerability assessments and penetration testing. Discuss how you have previously identified and categorized vulnerabilities, and the methodologies you employed to prioritize remediation efforts. Highlight any tools you’ve leveraged for these assessments to demonstrate your technical proficiency in vulnerability management.

Join Rise to see the full answer
What is your experience with securing third-party applications?

Discuss your past experiences managing third-party risks, focusing on due diligence processes when integrating external applications. Talk about assessing vendor security practices and the importance of ongoing monitoring after integration, and how you've ensured these applications adhere to the same standards as in-house developed tools.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 14 days ago
Photo of the Rise User
Posted 13 days ago
Posted 2 days ago
Photo of the Rise User
Posted yesterday
Posted 13 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
January 9, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!