Senior Security Engineer, Platform Security

1 week, 1 day ago
Full-time
Senior
Cybersecurity
Block

Block

Block is a company that consists of Square, Cash App, Spiral, TIDAL, TBD, and foundational teams. They are focused on economic empowerment by creating tools to expand access to the economy. Square helps sellers run and grow businesses, Cash App redefin...

Capital Markets
10K-50K
Founded 2009

Description

  • Architect and evolve cloud security guardrails across Block’s cloud environments.
  • Design and implement SCPs, GCP org policies, and IAM controls.
  • Build automation to discover, measure, and contextualize security issues.
  • Develop integrations with CSPM and DSPM tools and internal platforms to surface and prioritize findings.
  • Own the cloud security exception lifecycle, including tooling and processes for requests, review, and tracking.
  • Partner with platform teams to eliminate categories of cloud security risk.
  • Deliver cloud security assurance by remediating misconfigurations and sensitive data exposures.
  • Develop risk-based prioritization pipelines and dashboards for leadership visibility into security posture trends.
  • Respond to and triage cloud security alerts, including on-call support and investigations.
  • Produce durable software that scales across a multi-cloud footprint.

Requirements

  • 5+ years of experience as a software engineer or security engineer.
  • 4+ years of experience securing infrastructure on AWS and/or GCP at scale.
  • Deep experience with Infrastructure-as-Code, including Terraform and securing Terraform pipelines.
  • Experience with SCPs, GCP org policies, and organizational-scale guardrails.
  • Experience with CSPM tools such as Wiz and familiarity with DSPM concepts.
  • Strong understanding of AWS and GCP IAM, including roles, service accounts, permission boundaries, and org-level constraints.
  • Experience maturing the cloud security posture of large, complex, multi-account or multi-project environments.
  • Demonstrated ability to deliver complex, multi-faceted projects from concept to launch.
  • Demonstrated fluency with AI-assisted development tools such as Claude Code, Cursor, or GitHub Copilot in production work.
  • Preferred: experience with Kubernetes security in EKS or GKE.
  • Preferred: familiarity with BI and data exploration tools such as Looker and Snowflake.
  • Preferred: experience building or operating security exception or risk acceptance workflows at scale.
  • Preferred: familiarity with cloud networking and network segmentation strategies.
  • Preferred: ability to communicate effectively cross-functionally with non-security or non-engineering audiences.
  • Preferred: experience supporting multi-business-unit organizations with varying compliance and regulatory requirements.

Benefits

  • Competitive pay with a zone-based U.S. salary range of $185,200 to $326,800 USD, depending on location.
  • Remote work options.
  • Medical insurance.
  • Flexible time off.
  • Retirement savings plans.
  • Modern family planning support.
  • Inclusive interview experience with reasonable accommodations for disabled applicants.
  • Equal opportunity employer with fair chance consideration for applicants with arrest or conviction records.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
9 hours, 24 minutes ago

AI Security Architect (REMOTE - United States)

EnableComp 251-1K Insurance

EnableComp is seeking a remote AI Security Architect to secure and govern its AI and machine learning initiatives within its healthcare revenue cycle management environment.

Azure Cybersecurity HIPAA LLM Machine Learning
9 hours, 39 minutes ago

Senior Infrastructure Security Engineer

Dropbox 1K-5K Internet Software & Services

Dropbox is hiring a Security Engineer to secure its AI and agentic infrastructure while helping protect products and users across cloud and on-prem environments.

Bash CI/CD CrowdStrike Go Java Kubernetes Linux LLM Node.js OAuth OpenID Connect OWASP Python Ruby Rust SIEM
9 hours, 39 minutes ago

Staff, Security Engineer

Fullscript 251-1K Health Care Providers & Services

Fullscript is hiring a Staff Security Engineer to lead hands-on security engineering across its healthcare technology platform, shaping secure product development and protecting systems that support practitioners and patients.

AWS GitHub GitLab GraphQL JavaScript Node.js Penetration Testing Ruby on Rails
10 hours, 9 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers