The opportunity
WorkOS builds modern developer tools and APIs that make it easy for companies to become Enterprise Ready. Our platform powers authentication, identity, authorization, and other critical infrastructure that developers need to securely scale their products to large organizations.
What you'll do
Risk-focused and pragmatic. You excel at identifying and reasoning about: security risk in real-world contexts. You prioritize ruthlessly, always asking: what's the most effective way to reduce risk right now and in the long term?
A builder who can break things. You're comfortable reading and writing code,: and you have a passion for deeply understanding the products you secure. You think like an attacker to find subtle, high impact vulnerabilities and like a defender to design pragmatic, effective mitigations.
A strong partner to engineering. You build trust with engineers by: understanding their priorities, making security frictionless, and finding ways to make the secure path, the easiest path.
Excited about AI. You're embracing AI and automation to scale security and reduce toil.
Curious and humble. You ask the basic questions, enjoy untangling complex: systems, and bring others along with you.
Lead secure design efforts. Partner with engineering teams on secure design: and code reviews. Identify and prioritize risks early in the product lifecycle.
What they're looking for
- Build secure by default systems. Develop paved paths that systemically reduce: risk and make secure development the easiest path for engineers.
- Perform offensive security testing. Conduct penetration tests and code audits: on new and existing products from an adversarial lens.
- Improve our security tooling. Integrate and improve our static analysis,: supply chain security, and vulnerability management capabilities across engineering pipelines.
- Operate our responsible disclosure program. Run and improve our program by: furthering automation, validating submissions, and coordinating remediation.