Temporal

Temporal

Temporal provides an open source durable execution platform that enables developers to create resilient applications capable of maintaining successful operations despite failures, network issues, and other disruptions.

Internet Software & Services
51-250
Founded 2019
$128M raised

Description

  • Collaborate with product and engineering teams to integrate security into the design and architecture of cloud infrastructure across AWS, GCP, Azure, and other clouds.
  • Secure core platform components, including the workflow engine, task queue architecture, and worker execution model.
  • Conduct threat modeling and risk assessments to identify vulnerabilities and attack vectors across the multi-cloud environment.
  • Secure the gRPC communication layer, including mTLS certificate management, service mesh configuration, and API authentication.
  • Manage cloud security posture using tools such as Wiz, including misconfiguration detection, compliance monitoring, and remediation.
  • Translate cloud security standards such as CSA Cloud Controls Matrix and CIS Benchmarks into actionable internal policy.
  • Partner with infrastructure and software engineering teams to enable secure shipping across the organization.
  • Participate in the on-call rotation.
  • Help shape how AI is used responsibly in infrastructure and engineering processes.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent experience.
  • 5+ years of experience in cloud security or a related role.
  • Experience partnering with engineering teams on infrastructure access and security posture.
  • Kubernetes security posture management and auditing experience, including workload hardening, RBAC design, and admission control.
  • Experience with multi-tenant security architecture, including data plane isolation, control plane hardening, and cross-tenant data leakage prevention.
  • Strong opinions on the use of AI in security assessments, threat models, penetration testing, and related workflows.
  • Deep understanding of application architecture and design principles, with the ability to identify vulnerabilities across multiple programming languages.
  • Experience with secrets management at scale, such as HashiCorp Vault or AWS Secrets Manager, and payload encryption patterns such as codec servers.
  • Proficiency in Go and familiarity with Python; Go is Temporal's primary server and SDK language.
  • Strong command of gRPC security, mTLS, and service mesh architectures such as Istio and Envoy.
  • Excellent communication skills and the ability to explain complex security concepts to non-technical stakeholders.
  • Experience with Temporal, Cadence, or similar workflow orchestration platforms, including workflow history, replay semantics, and scheduling internals (nice to have).
  • FedRAMP, SOC 2 Type II, or ISO 27001 experience, especially in cloud-native SaaS environments (nice to have).
  • Experience with open source automation or automation projects (nice to have).
  • Additional expertise in AppSec, CorpSec, or GRC (nice to have).
  • Security conference talks or published research (nice to have).

Benefits

  • Estimated base pay of $225,000 - $275,000, depending on qualifications and location.
  • Eligible to participate in Temporal's equity plan.
  • Unlimited PTO, plus 12 holidays and 2 floating holidays for U.S. employees.
  • 100% employer-paid medical, dental, and vision premiums for U.S. employees.
  • AD&D, short-term disability, long-term disability, and life insurance options.
  • Empower 401(k) plan.
  • Learning and development, professional memberships, lifestyle spending, in-home office setup, WFH meals, and internet stipend perks.
  • Calm app access for mental wellness, plus international employee perks that vary by country.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Lead Traveling Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Traveling Security Technician for UT Government to install, service, test, and inspect access control and IP camera systems for customers across the U.S.

5 hours, 54 minutes ago

Identity Management Engineer / Architect (R-00197)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is seeking an Identity Management Engineer / Architect to design and operate a secure enterprise identity platform across on-premises, cloud, SaaS, and hybrid environments in support of Zero Trust and regulated government use cases.

Active Directory Cybersecurity DevSecOps OAuth OpenID Connect PowerShell Python SAML Terraform
5 hours, 54 minutes ago

Staff Vulnerability Management Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Vulnerability Management Engineer to lead its AI-driven open source vulnerability disclosure and coordination efforts across internal teams, maintainers, and industry stakeholders.

Go Java JavaScript Penetration Testing Python
5 hours, 54 minutes ago

PKI / Certificate Management Engineer (R-00198)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is hiring a PKI / Certificate Management Engineer to design and operate enterprise certificate infrastructure across cloud, government, and hybrid environments.

Encryption Linux TLS
5 hours, 54 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers