Staff Cloud Security Engineer

San Francisco, CA

Full Time Senior-level / Expert
Lyft logo


Become a driver and make money giving rides, or get a Lyft ride in minutes. Improving people's lives with the world's best transportation.

View all employer listings

Apply now Apply later

At Lyft, our mission is to improve people’s lives with the world’s best transportation. To do this, we start with our own community by creating an open, inclusive, and diverse organization.

Lyft connects people to transportation to change the way we live and get around our communities. Lyft’s engineering team is growing rapidly, and we are looking for Software Engineers with a passion in Security to help us scale. Come be part of the Security team at Lyft focused on enabling and empowering engineering teams to deliver secure services at scale.

Our drivers and passengers entrust Lyft with their personal information and travel details to get where they're going and expect us to keep that data safe. Lyft's security team leads efforts across the company to ensure our systems are secure and worthy of our users' trust.

The security team designs and builds Lyft's security architecture, consults with other teams as they build and launch new products and features, proactively plans for the unexpected, and responds to incidents that occur. Our work affects the entire company and takes place at all levels of the stack, from infrastructure to web application security, as well as mobile apps, IT, and autonomous vehicles. We try to approach security from a software engineering standpoint. We believe in scaling security through automation and tooling and we ship frequently. Check out our blog posts at to learn more about some of the things we’ve built.

The Cloud Security team’s mission is to improve Lyft’s maturity and protect our employees, partners, and intellectual property by architecting and executing on a comprehensive security model relative to our cloud infrastructure.

We are seeking a Staff Security Engineer to join our new Cloud Security team! As a Staff Security Engineer, you’ll help us build this team and deliver on high impact objectives. This role will drive security reviews, implement detections, remediate findings, implement and enforce least privilege, separation of development environments, secure design, operation, and configuration of our multi-cloud and container environments.

  • Establish and execute a roadmap for secure cloud architecture
  • Write readable, efficient, and maintainable code
  • Design security protocols to secure Cloud infrastructure and Kubernetes at scale
  • Lead large projects from inception to implementation
  • Unblock, support and communicate with internal partners to achieve results
  • Partner with teams across Lyft on organizational security initiatives
  • Design and implement cloud security solutions for monitoring, vulnerability remediation, and attack surface analysis and risk reduction
  • Collaborate with engineering organizations to build inherently secure cloud architecture solutions
  • Able to exercise sound judgment and thrive in ambiguous situations
  • 6+ years of relevant industry experience
  • Experience with modern programing languages (e.g., Python, Java, Go) and distributed systems
  • Deep expertise with one or more major cloud service providers like Amazon Web Services (AWS), Google Cloud(GCP), Oracle Cloud, etc
  • Expertise in cloud service architecture and cloud security concepts
  • Experience with Kubernetes and container security
  • Familiarity with securing and hardening Linux hosts
  • Able to write clear, scalable and clear design documentation
  • Great medical, dental, and vision insurance options
  • Mental health benefits
  • In addition to 12 observed holidays, salaried team members have unlimited paid time off, hourly team members have 15 days paid time off
  • 401(k) plan to help save for your future
  • 18 weeks of paid parental leave. Biological, adoptive, and foster parents are all eligible
  • Pre-tax commuter benefits
  • Lyft Pink - Lyft team members get an exclusive opportunity to test new benefits of our Ridership Program

Lyft is an equal opportunity/affirmative action employer committed to an inclusive and diverse workplace. All qualified applicants will receive consideration for employment  without regards to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status or any other basis prohibited by law. We also consider qualified applicants with criminal histories consistent with applicable federal, state and local law. 

Until further notice, Lyft employees working in the United States and Canada in any capacity (on a daily or hybrid schedule or as a visitor) are required to provide proof of full vaccination against COVID-19. Employees are considered fully vaccinated two weeks after completion of the entire recommended series of vaccination (usually one or two doses) with a vaccine authorized to prevent COVID-19 by the federal Food and Drug Administration (FDA), including by way of an emergency use authorization. Lyft will maintain records associated with your vaccination history in a way that is compliant with all relevant Federal, state and local laws. Exceptions to this requirement are employees who require religious or medical exemption as approved through Lyft's accommodations process.

Job region(s): North America
Job stats:  3  0  0
  • Share this job via
  • or

Explore more Information Security career opportunities