Klaviyo

Klaviyo

Klaviyo offers intelligent email marketing, SMS, and automation services for ecommerce businesses, empowering brands to personalize customer interactions and drive growth.

IT Services
1K-5K
Founded 2012

Description

  • Partner across Engineering, IT, and Security teams to secure the lifecycle of critical corporate SaaS applications from procurement through offboarding.
  • Design and operate identity and access management controls across corporate SaaS platforms, including JIT access, privilege management, and SSO/SCIM integrations.
  • Mature and expand the company’s Zero Trust network architecture by establishing web gateways and defining secure access policies.
  • Design, prototype, iterate on, and responsibly review AI-generated security solutions and artifacts.
  • Manage and improve Cloudflare WAF policies and other perimeter security controls.
  • Expand endpoint security strategy and tooling to improve visibility, threat coverage, and response capability across the fleet.
  • Deliver complex, multi-team security projects from requirements gathering through production release.
  • Establish design patterns, standards, and technical direction for the team while mentoring other engineers.
  • Decompose technical problems into actionable workstreams and drive execution across multiple teams.

Requirements

  • 7+ years of experience in security or infrastructure engineering roles.
  • Demonstrated ownership of enterprise security domains such as SaaS security, IAM, Zero Trust, endpoint security, or cloud-delivered security services.
  • AI-first approach to engineering, with the ability to design, refine, validate, and own AI-assisted work.
  • Hands-on experience writing policy-as-code, reviewing architecture, and debugging production issues.
  • Proficiency with Terraform and infrastructure-as-code in enterprise security environments.
  • Experience operating in AWS environments, including cloud security services, IAM policies, and secure architecture patterns.
  • Experience with enterprise identity providers such as Okta or AWS Cognito.
  • Experience with security tools such as Cloudflare, Wiz, and CrowdStrike.
  • Knowledge of secrets management, JIT access, SSO, SCIM, and privileged access workflows including SAML 2.0, OAuth, and OIDC.
  • Experience mentoring engineers and influencing team-wide technical standards.
  • Preferred experience with GCP or Azure environments.
  • Preferred experience with Spacelift for IaC orchestration.
  • Preferred experience with AI agent development or securing AI coding platforms such as Lovable, Vercel, or Cursor.
  • Up to 10% travel may be required.

Benefits

  • Base salary range of $175,200 to $262,800 USD for US locations.
  • Participation in the company’s annual cash bonus plan.
  • Equity compensation may be included.
  • Sign-on payments may be included.
  • Comprehensive health, welfare, and wellbeing benefits based on eligibility.
  • Support for responsible AI use and accommodations as needed.
  • Travel is coordinated in advance.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Head of Classified Infrastructure, Frontier Systems

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is seeking a senior security leader for its Frontier Systems team to shape and execute classified infrastructure and information security strategy for defense and intelligence programs.

Cybersecurity Penetration Testing
9 minutes ago

Staff Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Engineer to secure its OT and ICS environments and help design foundational defenses for advanced defense technology and factory systems.

Go Linux Python Rust
9 minutes ago

Senior Security Engineering Manager, Enterprise Security

Upstart 1K-5K Banks

Upstart is hiring a Senior Security Manager to lead enterprise security engineering efforts that reduce risk across corporate systems, cloud environments, and security operations.

AWS CI/CD Kubernetes SIEM
24 minutes ago

Security Engineer, Detection & Response - Monitoring & Triage

Block 10K-50K Capital Markets

Block is hiring a Detection and Response Team (DART) security engineer to lead monitoring, triage, and incident response across its endpoints, cloud, identity, SaaS, and product environments.

AWS DNS Kubernetes Linux macOS Network Security SQL
39 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers