Security Engineer

San Francisco, CA • New York City • United States

Applications have closed

Figma

Figma is the leading collaborative design tool for building meaningful products. Seamlessly design, prototype, develop, and collect feedback in a single platform.

View company page

Figma is growing our team of passionate people on a mission to make design accessible to all. Born on the Web, Figma helps entire product teams brainstorm, create, test, and ship better designs, together. From great products to long-lasting companies, we believe that nothing great is made alone—come make with us!

As a Security Engineer, you will help identify and drive impactful projects to improve the security of Figma's product, platform, and our IT systems. The mission of the Figma Security team is to help Figmates ship the most secure product to our users. We are looking for security generalists with a strong grasp of Computer Science and security fundamentals. You will partner closely with teams across the company and focus on systemic security improvements and risk reduction. You will also maximize your security skills to support and participate in operational security responsibilities like security reviews and consulting, external research/bug-bounty triage, incident response, and risk management. 

 

What you’ll do at Figma:

  • Perform technical security assessments, code audits and design reviews.
  • Develop technical solutions to help mitigate security vulnerabilities.
  • Advocate security and secure practices throughout Figma
  • Conduct assessments to identify current and new attack vectors against Figma products and services.
  • Help run our pen-testing and offensive security exercises as well as our bug bounty program.

 

We'd love to hear from you if you have:

  • 3+ years of proven experience working in a Security team OR have experience in a software engineering role and interested in working on security related projects
  • Good understanding of at least two of Linux/Unix/Mac based systems security, AWS security, Cloud SaaS Security, and web application security
  • Strong interpersonal skills and curiosity to learn
  • The ability to collaborate across functions
  • The ability to make hard prioritization decisions

 

At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
 
 

Pay Transparency Disclosure

If based in Figma’s San Francisco or New York hub offices, this role has the annual base salary range stated below.  

Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information. 

Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement.  Figma also offers sales incentive pay for most sales roles. Figma’s compensation and benefits are subject to change and may be modified in the future.

Annual Base Salary Range (SF/NY Hub):
$168,000$350,000 USD

We will work to ensure individuals with disabilities are provided reasonable accommodation to participate in the interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please let your recruiter know if you require accommodation.


About Figma

Dylan Field and Evan Wallace co-founded Figma in 2012 with the vision of building tools for designers in the browser. Their goal was to create the first design tool that combined the accessibility of the Web with the functionality of a native app. Today Figma is a platform with tools and spaces to support the entire product development process—idea to design to build—and has simplified collaboration for companies like Microsoft, Uber, and The New York Times to name a few.

At Figma, we celebrate and support our differences. We know employing a team rich in diverse backgrounds, experiences, and opinions allows our employees, products, and community to flourish. Figma is an equal opportunity workplace—we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national orientation, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.

By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with the applicable candidate section of Figma's Privacy Policy

Tags: Application security Audits AWS Cloud Computer Science Incident response JavaScript Linux Offensive security Privacy Risk management SaaS Security assessment UNIX Vulnerabilities

Perks/benefits: Career development Cell phone stipend Competitive pay Equity Health care Home office stipend Parental leave Transparency Wellness

Region: North America
Country: United States
Job stats:  17  3  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.