Figma

A design platform for teams who build products together.

Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteTeam 201-500Since 2012H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

22 hours ago

Salary

$149K - $350K / year

Threat ModelingPenetration TestingVulnerability AssessmentCode AuditCloud SecurityApplication SecurityIdentity AND Access ManagementPythonSecurity Incident ResponseSecurity Tooling Development

Job Description

Role Description

As a Security Engineer you will identify and drive impactful projects to improve the security of Figma’s product, platform, and IT systems. We are hiring for multiple teams within Security Engineering: AI Security, Platform Security, Product Security, and Anti-Abuse.

You will partner closely with teams across the company and focus on systemic security improvements and risk reduction. You will also participate in operational security responsibilities like security reviews, consulting, vulnerability triage, and security incident response.

Examples of what you may work on across teams:

  • AI Security
    • Perform technical security assessments, code audits, and design reviews for new AI infrastructure, platforms, and products.
    • Design and develop technical solutions to secure AI models, tooling, debugging workflows, and data pipelines.
    • Advocate for secure practices across Figma’s AI infrastructure, platforms, and data systems.
    • Build the next generation of internal AI-powered access insights and security tooling.
    • Help run penetration testing and offensive security exercises against Figma’s AI infrastructure, platforms, and products.
  • Platform Security
    • Perform technical security assessments, code audits, and design reviews for changes to Figma’s cloud and corporate infrastructure.
    • Design and develop solutions to prevent or mitigate cloud and corporate security risks.
    • Advocate for secure practices within Figma’s cloud and corporate infrastructure.
    • Build platforms and tooling to detect and respond to infrastructure and corporate security threats.
  • Product Security
    • Perform technical security assessments, code audits, and design reviews for new product features.
    • Design and develop solutions to prevent or mitigate product security vulnerabilities.
    • Advocate for secure development practices across Figma’s products and services.
    • Help run penetration testing, offensive security exercises, and support our bug bounty program.
    • Help respond to product security incidents.
  • Anti-Abuse
    • Design and build technical systems to prevent spam, fraud, and abuse.
    • Partner closely with product teams to identify and address potential abuse vectors.
    • Develop new signals and improve the use of existing signals to detect abusive behavior.
    • Help respond to spam, fraud, and abuse incidents.

This is a full-time role that can be held from one of our US hubs or remotely in the United States.

Qualifications

  • 5+ years of proven engineering experience working in either a Security Engineering or a Software Engineering role. In the case of the latter, some security experience is preferred.
  • Strong security judgment in threat modeling and risk prioritization and/or strong technical judgment in designing and building maintainable, scalable systems.
  • Proficiency in at least one general-purpose coding language.
  • Strong communication and interpersonal skills, with demonstrated experience collaborating across functions.

Requirements

  • While not required, it’s an added plus if you also have subject matter expertise in Application Security, Cloud Security, Corporate Security, Data Access Governance, and/or IAM (Identity and Access Management).
  • Demonstrated ability to make hard prioritization decisions in security controls.

Benefits

  • Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement.
  • Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles.
  • Annual Base Salary Range: $149,000 — $350,000 USD

Job Requirements

  • 5+ years of proven engineering experience working in either a Security Engineering or a Software Engineering role. In the case of the latter, some security experience is preferred.
  • Strong security judgment in threat modeling and risk prioritization and/or strong technical judgment in designing and building maintainable, scalable systems.
  • Proficiency in at least one general-purpose coding language.
  • Strong communication and interpersonal skills, with demonstrated experience collaborating across functions.
  • While not required, it’s an added plus if you also have subject matter expertise in Application Security, Cloud Security, Corporate Security, Data Access Governance, and/or IAM (Identity and Access Management).
  • Demonstrated ability to make hard prioritization decisions in security controls.

Benefits

  • Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement.
  • Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles.
  • Annual Base Salary Range: $149,000 — $350,000 USD

Related Categories

Related Job Pages

More Security Engineer Jobs

Senior Security Engineer

Flex

Flex splits your bills into smaller, stress-free payments throughout the month. Start today with your rent bill!

Security Engineer22 hours ago
Full TimeRemoteTeam 201-500Since 2019H1B Sponsor

Senior Security Engineer supporting product security for Flex's fintech platform

AWSCloudSDLC
United States
$132.6K - $195K / year

Teaching Assistant, Cybersecurity

Correlation One

We transform workforces today to power the data economy of tomorrow. | #6 on LinkedIn's Top Startups 2022 list

Security Engineer22 hours ago
ContractRemoteTeam 51-200H1B Sponsor

Teaching Assistant for Correlation One’s Information Security virtual training program

United States
Full TimeRemoteTeam 5,001-10,000

This role supports the company’s cybersecurity program by identifying enterprise risks and developing initiatives to mitigate them, while also handling security-related triage and incident escalations. Responsibilities include authoring security policies, standards, and runbooks, and resolving security issues in collaboration with infrastructure staff and users.

Vulnerability ManagementSIEMSOCEndpoint Detection and ResponseEmail Secure GatewayWeb FilteringSSL DecryptionNext-Gen FirewallsWindowsVMwareNetworkingCISSPCEHCISM
United States
$110K - $211K / year

Director of Information Security Engineering

Penn Mutual

Helping people get stronger is a pretty good business to be in.

Security Engineer23 hours ago
Full TimeRemoteTeam 1,001-5,000Since 1847H1B Sponsor

Director of Information Security Engineering for Penn Mutual

AWS
United States
$170K - $190K / year