Klaviyo

Klaviyo

Klaviyo offers intelligent email marketing, SMS, and automation services for ecommerce businesses, empowering brands to personalize customer interactions and drive growth.

IT Services
1K-5K
Founded 2012

Description

  • Partner across Engineering, IT, and Security teams to drive the architecture and lifecycle of critical corporate SaaS applications from procurement to offboarding.
  • Design and operate identity and access management controls across corporate SaaS platforms, including JITA, privilege management, and SSO/SCIM integrations.
  • Mature and expand Klaviyo’s Zero Trust network architecture by establishing web gateways, defining secure access policies, and building modern corporate network security foundations.
  • Design, prototype, and iterate on security solutions using AI tools, while responsibly reviewing and deploying AI-generated artifacts.
  • Manage and continuously improve Cloudflare WAF policies and other perimeter security controls.
  • Expand and mature endpoint security strategy and tooling in partnership with IT, Detection, Response, and Security teams.
  • Deliver complex, multi-team security projects from requirements through production by decomposing problems into actionable workstreams.
  • Establish design patterns and technical standards, and mentor other engineers through hands-on technical leadership.

Requirements

  • 7+ years of experience in security or infrastructure engineering roles.
  • Demonstrated ownership of enterprise security domains such as SaaS security, IAM, Zero Trust, endpoint security, or cloud-delivered security services.
  • AI-first approach to engineering, with the ability to design, refine, validate, and own AI-assisted work.
  • Hands-on experience writing policy-as-code, reviewing architecture, and debugging production issues.
  • Proficiency with Terraform for infrastructure as code.
  • Experience operating in AWS environments, including cloud security services, IAM policies, and secure architecture patterns.
  • Experience with enterprise identity providers such as Okta or AWS Cognito.
  • Experience with enterprise security tools such as Cloudflare, Wiz, and CrowdStrike.
  • Knowledge of secrets management, JITA, SSO, SCIM, SAML 2.0, OAuth, and OIDC.
  • Experience mentoring engineers and influencing team-wide technical standards.
  • Nice to have: experience with GCP or Azure environments.
  • Nice to have: experience with Spacelift for IaC orchestration.
  • Nice to have: experience with AI agent development or securing AI coding platforms such as Lovable, Vercel, or Cursor.

Benefits

  • Base salary range of $175,200 to $262,800 USD for U.S. locations.
  • Participation in the annual cash bonus plan.
  • Equity may be included as part of total compensation.
  • Sign-on payments may be included.
  • Comprehensive health, welfare, and wellbeing benefits based on eligibility.
  • Up to 10% travel for onboarding, team meetings, client or partner work, and industry events.
  • Accommodations available as needed for responsible AI use during the interview process.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Network Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Engineer to build and operate defensive controls that protect its cloud, production, and corporate infrastructure supporting advanced defense technology products.

AWS AWS CDK Azure GCP Go Linux Network Security Python Rust Terraform
26 minutes ago

Senior Forward Deployed Engineer

Okta 5K-10K Professional Services

Okta is hiring a customer-facing technical builder to embed with strategic enterprise clients and implement secure AI agent identity solutions from prototype through production.

HIPAA OpenID Connect SAML SIEM
1 hour, 15 minutes ago

AWS Security Engineer

V4C.ai Internet Software & Services

V4C.ai is seeking an AWS Security Engineer to secure its AWS cloud infrastructure by designing controls, monitoring vulnerabilities, and responding to security incidents alongside cloud engineering and operations teams.

AWS Bash CloudFormation HIPAA Penetration Testing Python Terraform
2 hours, 11 minutes ago

Cyber Security Engineer (DLA JETS DLP)

Horizon Industries Limited is hiring a remote Cyber Security Engineer to support DLA Cybersecurity operations focused on incident response, cybersecurity content development, and protection of enterprise data, networks, and applications.

Blockchain Cybersecurity
3 hours, 21 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers