Security Operations Engineer

12 Minutes ago • 2 Years + • Cyber Security • $177,700 PA - $240,400 PA

Job Summary

Job Description

Join Duolingo as a Security Operations Engineer to safeguard systems, employee and learner data, and services across the rapidly-growing language learning platform. With over 900 employees and millions of daily active users, your expertise will be critical in maintaining high security standards, enhancing infrastructure security, and ensuring compliance. You will investigate incidents, coordinate vulnerability disclosures, partner with engineering teams, advise on vendor security, and design automation for security operations.
Must have:
  • Investigate and respond to security incidents, abuse/spam reports, and suspicious activity in cloud environments (AWS and beyond)
  • Coordinate with external vulnerability disclosure platforms (e.g., HackerOne) to triage, assess, and route reports for remediation
  • Partner with engineering teams to properly manage secrets, harden authentication flows, and improve secure coding practices
  • Advise on third‑party tool/vendor security reviews and approve or reject requests based on risk assessment
  • Maintain and improve internal security documentation, policies, and developer guidance
  • Collaborate with product and infrastructure teams to conduct security reviews of technical specifications and provide input on secure design considerations
  • Proactively identify and mitigate risks in cloud and application environments
  • Design and implement automation to detect, contain, and remediate common security incidents, reducing manual effort and response time
  • Use AI‑driven tooling to classify, prioritize, and summarize incoming security reports for faster triage
  • Develop automated workflows for credential rotation, policy enforcement, and compliance checks
  • Experience deploying, managing, and troubleshooting security scanning tools
  • Familiarity with Linux system administration, automation, and proven experience with one or more programming or scripting languages
  • A desire to learn more about security and develop the foundational building blocks of the program
  • Strong collaboration, emotional intelligence, and communication skills
  • A Bachelor’s degree in Computer Science, Engineering or related technical field
  • 2+ years working on collaborative development teams
  • Experience in product, application, or cloud security
  • Ability to work in/relocate to New York, NY
Good to have:
  • Familiarity with containerization runtimes (Docker, rkt)
  • Experience securing a large infrastructure on AWS
  • Threat modeling experience across various architectures and understand how to align those with business goals
  • Demonstrable experience in designing and managing multi-account cloud environments
  • Experience communicating sophisticated technical requirements to audiences of variable technical sophistication
  • Experience working in Terraform, developing modules and creating secure by default configurations
  • Familiarity with security scanning tools such as SemGrep, Nuclei, Trufflehog, and Checkov
Perks:
  • Equity compensation
  • World-class benefits
  • Holistic well-being benefits

Job Details

Our mission at Duolingo is to develop the best education in the world and make it universally available. It’s a big mission, and that’s where you come in!

At Duolingo, you’ll join a team that cares about finding innovative solutions to complex technical problems, running countless experiments (300+ at a time!) with our massive user base to make data-driven decisions, and educating our users and employees alike. You’ll have limitless learning opportunities, mentorship and collaboration with world-class minds, and a variety of projects with large scopes — while doing work that’s both fun and meaningful.

Join our life-changing mission to develop education for our half a billion (and growing!) learners around the world.

---

About the role

Join Duolingo as a Security Operations Engineer and play a pivotal role in safeguarding our systems, employees, learner data, and services across our rapidly-growing language learning platform. With over 900 employees and over 45 million daily active users (DAUs) and over 120 million monthly active users (MAUs), your expertise will be critical in maintaining the highest security standards, while continuously enhancing our infrastructure security and ensuring compliance.

You will...

  • Investigate and respond to security incidents, abuse/spam reports, and suspicious activity in our cloud environments (AWS and beyond)
  • Coordinate with external vulnerability disclosure platforms (e.g., HackerOne) to triage, assess, and route reports for remediation
  • Partner with engineering teams properly manage secrets, harden authentication flows, and improve secure coding practices
  • Advise on third‑party tool/vendor security reviews and approve or reject requests based on risk assessment
  • Maintain and improve internal security documentation, policies, and developer guidance
  • Collaborate with product and infrastructure teams to conduct security reviews of technical specifications and provides input on secure design considerations
  • Proactively identify and mitigate risks in our cloud and application environments
  • Design and implement automation to detect, contain, and remediate common security incidents, reducing manual effort and response time
  • Use AI‑driven tooling to classify, prioritize, and summarize incoming security reports for faster triage
  • Develop automated workflows for credential rotation, policy enforcement, and compliance checks

You have...

  • Experience deploying, managing, and troubleshooting security scanning tools
  • Familiarity with Linux system administration, automation, and proven experience with one or more programming or scripting languages
  • A desire to learn more about security and develop the foundational building blocks of the program
  • Strong collaboration, emotional intelligence, and communication skills
  • A Bachelor’s degree in Computer Science, Engineering or related technical field
  • 2+ years working on collaborative development teams
  • Experience in product, application, or cloud security
  • Ability to work in/relocate to New York, NY

Exceptional candidates will have...

  • Familiarity with containerization runtimes (Docker, rkt)
  • Experience securing a large infrastructure on AWS
  • Threat modeling experience across various architectures and understand how to align those with business goals
  • Demonstrable experience in designing and managing multi-account cloud environments
  • Experience communicating sophisticated technical requirements to audiences of variable technical sophistication
  • Experience working in Terraform, developing modules and creating secure by default configurations
  • Familiarity with security scanning tools such as SemGrep, Nuclei, Trufflehog, and Checkov

---

Take a peek at how we care for our employees' holistic well-being with our benefits here.

We will do everything we can within reason to make sure that your interview takes place in an environment that fairly and accurately assesses your skills. If you need assistance or accommodation, please contact accommodations@duolingo.com.

Duolingo is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

By applying for this position your data will be processed as per the Duolingo Applicant Privacy Notice.

Sign up for job alerts here.

We post a multi-level salary range for all of our roles.

This is not inclusive of the rest of our awesome portfolio that includes equity compensation and world-class benefits. Our salary ranges are the same for all US locations. Your recruiter can share more details about the range for a specific level during the hiring process. The actual salary within the range is determined by many factors including but not limited to, skills, experience, education, and internal equity.

Salary Range:

$177,700—$240,400 USD

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in New York, New York, United States

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Cyber Security Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Duolingo is the world’s most popular way to learn a language. Our mission is to develop the best education in the world and make it universally available.


Founded in 2011 by Luis von Ahn and Severin Hacker, Duolingo is the most downloaded education app in the history of the App Store and in 2019 became the top-grossing education app worldwide. The app has been awarded Apple's iPhone App of the Year and Android's Best of the Best.


Learning a new language used to be expensive; we believe it should be free. Over 1.2 billion people are learning a second language and most of them are learning English to improve their lives.


Learning a new language is hard; we believe it can be fun. We use bite-sized lessons that feel like playing a game to keep our learners motivated. 


With over 500 million learners we have unprecedented data insights on how people learn. Our teams of language learning scientists, machine learning engineers, and AI experts use this data to constantly improve our effectiveness. We’re building a future in which the highest-quality education is accessible to all. 


Duolingo has raised US $138 million from investors including Union Square Ventures, Capital G (formerly Google Capital), NewView Capital, Kleiner Perkins Caufield & Byers, Drive Capital, Ashton Kutcher and Tim Ferriss.


Duolingo has been named to: BuiltIn's Best Places to Work (2023), Fast Company Best Workplaces for Innovators (2022), Fast Company 10 Most Innovative Education Company (2022), Best Machine Learning Startups for by Glassdoor (2020), Forbes' "Next Billion Dollar Startups" (2019), CNBC's Disruptor 50 (2018, 2019), Fortune's "Change the World" list (2019), TIME Magazine's Genius Companies (2018), Fast Company's "Most Innovative Companies" (2017, 2018, 2020), Inc.'s "Best Places to Work" (2018), Entrepreneur's "Top Company Cultures" (2018).

New York, New York, United States (On-Site)

New York, New York, United States (On-Site)

New York, New York, United States (On-Site)

New York, New York, United States (On-Site)

Pittsburgh, Pennsylvania, United States (On-Site)

Pittsburgh, Pennsylvania, United States (On-Site)

New York, New York, United States (On-Site)

New York, New York, United States (On-Site)

Detroit, Michigan, United States (On-Site)

New York, New York, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Duolingo

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug
Contact Us
hello@outscal.com
Made in INDIA 💛💙