Staff Security Engineer

1 Month ago • 7 Years + • Cyber Security • $138,000 PA - $217,000 PA

Job Summary

Job Description

The Staff Security Engineer will be responsible for designing and architecting security controls and risk reduction activities across all Mozilla product, service, and support departments. This includes assessing security risks, analyzing software and system design for vulnerabilities, and building tooling to automate processes. The role involves collaborating with teams, ensuring the integrity of Mozilla’s enterprise and products, and contributing to a more secure internet. Responsibilities include leading enterprise security control design, conducting risk assessments, collaborating on security strategy, coordinating incident response, and ensuring compliance with security standards and regulations. The engineer will also be involved in technology assessment, training, and reporting.
Must have:
  • 7+ years in security consulting or architecture.
  • Experience with Identity and Access Management.
  • Experience with Mobile Device/Application Management.
  • Experience with Data Loss Prevention.
  • Experience with Endpoint Detection and Response.
Perks:
  • Generous performance-based bonus plans.
  • Rich medical, dental, and vision coverage.
  • Generous retirement contributions.
  • Quarterly company wellness days.
  • Country specific holidays plus birthday off.
  • One-time home office stipend.
  • Annual professional development budget.
  • Quarterly well-being stipend.
  • Considerable paid parental leave.
  • Employee referral bonus program.

Job Details

To learn the Hiring Ranges for this position, please select your location from the Apply Now dropdown menu.

To learn more about our Hiring Range System, please click this link.

Why Mozilla?

Mozilla Corporation is the non-profit-backed technology company that has shaped the internet for the better over the last 25 years. We make pioneering brands like Firefox, the privacy-minded web browser, and Pocket, a service for keeping up with the best content online. Now, with more than 225 million people around the world using our products each month, we’re shaping the next 25 years of technology and helping to reclaim an internet built for people, not companies. Our work focuses on diverse areas including AI, social media, security and more. And we’re doing this while never losing our focus on our core mission – to make the internet better for people.

The Mozilla Corporation is wholly owned by the non-profit 501(c) Mozilla Foundation. This means we aren’t beholden to any shareholders — only to our mission. Along with thousands of volunteer contributors and collaborators all over the world, Mozillians design, build and distribute open-source software that enables people to enjoy the internet on their terms.

About this Team and Role

Mozilla is looking for a staff security engineer to assist with the design and architecture of security controls and risk reduction activities across all Mozilla product, service and support departments. To achieve these you will need:

  • experience assessing security risks, presenting security topics to technical and nontechnical teams.
  • Ability to analyze software and system design to identify security vulnerabilities using knowledge of state of the art vulnerabilities and attack techniques.
  • technical expertise and experience with designing and building tooling to scale and automate processes your influence and impact.
  • outstanding interpersonal skills to partner with teams across the organization and support them in reducing their risk.

Most importantly, you will assist the team responsible for ensuring the integrity of Mozilla’s enterprise and products and for keeping Mozilla’s users safe, within a company dedicated to building a more secure internet.

What You’ll Do
  • Lead enterprise security control design and architecture across Mozilla SaaS applications and enterprise security tooling
  • Conduct risk assessments and security reviews for SaaS and custom-developed applications and services
  • Collaborate with security leadership on security strategy and prioritization of security projects
  • Coordinate with Security Incident Response Team on incident retrospectives and follow up on security remediation
  • Security Strategy and Governance
  • Develop and implement cybersecurity strategies, policies, and frameworks aligned with organizational goals and regulatory requirements.
  • Conduct periodic corporate risk assessments and recommend measures to address identified vulnerabilities.
  • Internal Consulting
  • Act as a subject matter expert for internal teams, providing guidance on securing SaaS applications, infrastructure hardening, and data protection.
  • Review and approve security controls in project designs and deployments.
  • Regulatory Compliance
  • Ensure compliance with Mozilla security standards, such as NIST, GDPR, and other relevant regulations.
  • Support audits, certifications, and assessments.
  • Technology Assessment
  • Evaluate and recommend new security technologies, tools, and methodologies to strengthen the organization's cybersecurity posture.
  • Collaborate with IT and business units to assess and integrate security solutions.
  • Training and Awareness
  • Assist in development or acquisition of training sessions for employees to enhance cybersecurity awareness across the organization.
  • Provide mentorship to junior cybersecurity staff.
  • Reporting and Communication
  • Provide detailed reports and dashboards on the organization's security status to senior leadership.
  • Communicate complex technical information to non-technical stakeholders effectively.
What You’ll Bring
  • 7+ years of demonstrated ability in a security consulting or architecture role
  • Practical experience with the following technologies:
  • Identity and Access Management
  • Mobile Device / Application Management
  • Data Loss Prevention
  • Endpoint Detection and Response
  • Practical experience securing SaaS applications such as but not limited to: Google Workspace, Box, Slack, Workday, Jira and Confluence)
  • Experience securing cloud technologies such as Google Cloud, Amazon Web Services and Azure.
  • Strong written and verbal skills; ability to work effectively with diverse company partners.
  • Real-world experience in software development and/or engineering operations; B.S. in technology focused fields is helpful.
Competencies
  • Ownership and Accountability
  • Autonomy
  • High Level of Integrity
  • Clear Communication
  • Creative Problem Solver
  • Passionate about Security
What you’ll get:
  • Generous performance-based bonus plans to all eligible employees - we share in our success as one team
  • Rich medical, dental, and vision coverage
  • Generous retirement contributions with 100% immediate vesting (regardless of whether you contribute)
  • Quarterly all-company wellness days where everyone takes a pause together
  • Country specific holidays plus a day off for your birthday
  • One-time home office stipend
  • Annual professional development budget
  • Quarterly well-being stipend
  • Considerable paid parental leave
  • Employee referral bonus program
  • Other benefits (life/AD&D, disability, EAP, etc. varies by country)
About Mozilla

When you work at Mozilla, you give yourself a chance to make a difference in the lives of web users everywhere. And you give us a chance to make a difference in your life every single day. Join us to work on the web as the platform and help create more opportunity and innovation for everyone online. We’re not a normal tech company. The things we create prioritize people and their privacy over profits. We exist to make the internet a healthier, happier place for everyone.

Commitment to diversity, equity and inclusion

Mozilla believes in the value of diverse creative practices and forms of knowledge, and knows diversity, equity and inclusion are crucial to and enrich the company’s core mission. We encourage applications from everyone, including members of all equity-seeking communities, such as (but not limited to) women, racialized and Indigenous persons, persons with disabilities, persons of all sexual orientations, gender identities and expressions.

We will ensure that qualified individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment, as appropriate. Please contact us at hiringaccommodation@mozilla.com to request accommodation.

We are an equal opportunity employer. We do not discriminate on the basis of race (including hairstyle and texture), religion (including religious grooming and dress practices), gender, gender identity, gender expression, color, national origin, pregnancy, ancestry, domestic partner status, disability, sexual orientation, age, genetic predisposition, medical condition, marital status, citizenship status, military or veteran status, or any other basis covered by applicable laws. Mozilla will not tolerate discrimination or harassment based on any of these characteristics or any other unlawful behavior, conduct, or purpose.

 

Group: C

#LI-REMOTE 

ReqID: R2766

Similar Jobs

Temporal Technologies - Staff Solutions Architect - New Logo

Temporal Technologies

New York, United States (On-Site)
1 Month ago
adictiz - Project Manager

adictiz

Lille, Hauts-de-France, France (On-Site)
1 Month ago
Revenera - Staff Security Operations Engineer

Revenera

Bengaluru, Karnataka, India (Remote)
1 Month ago
USE Insider - IFRS Revenue Reporting Manager

USE Insider

Istanbul, İstanbul, Türkiye (Hybrid)
7 Months ago
Nagarro - Senior Cloud Consultant

Nagarro

Germany (Remote)
2 Months ago
Cadence - Senior Cybersecurity Engineer

Cadence

San Jose, California, United States (On-Site)
1 Month ago
Jane Street - Cybersecurity - Senior Incident Responder and Forensic Investigator

Jane Street

New York, United States (On-Site)
1 Month ago
PwC - Financial Sector Cyber Security Senior Manager

PwC

Amsterdam, North Holland, Netherlands (On-Site)
5 Months ago
Crowd Strick - Security Engineer, Observability

Crowd Strick

Bucharest, Bucharest, Romania (Remote)
1 Month ago
Eqvilent - Information Security Engineer

Eqvilent

(Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Genies.io - Lead Security & Safety Engineer

Genies.io

Los Angeles, California, United States (On-Site)
1 Month ago
Salesforce - Specialist Account Executive - Platform & Security (SMB Accounts) - Spanish Speaking

Salesforce

State Of São Paulo, Brazil (On-Site)
3 Weeks ago
Bazaar Voice - Staff Software Engineer - Full Stack, R6542

Bazaar Voice

Bengaluru, Karnataka, India (Hybrid)
8 Months ago
Daxko - Senior Engineer II - Java Full Stack

Daxko

Noida, Uttar Pradesh, India (Hybrid)
2 Months ago
Crowd Strick - Sr. Software Engineer - Cloud/Python

Crowd Strick

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
3 Weeks ago
USE Insider - Account Director - Mexico

USE Insider

Mexico City, Mexico (Hybrid)
5 Months ago
Cubic corporation - Software Architect

Cubic corporation

Hyderabad, Telangana, India (On-Site)
1 Week ago
Highspot - Sr. Product Manager, Search and AI

Highspot

Hyderabad, Telangana, India (Hybrid)
2 Months ago
Reveal - Infrastructure Engineer

Reveal

Amsterdam, North Holland, Netherlands (On-Site)
7 Months ago
USE Insider - VP of Growth - Mexico & Colombia

USE Insider

Mexico City, Mexico (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in United States

Dungarvin - Direct Support Professional (DSP) / Caregiver

Dungarvin

Bristol, Connecticut, United States (On-Site)
3 Weeks ago
Apple - AMR Geo Marketer, Apple Ads

Apple

Cupertino, California, United States (On-Site)
6 Days ago
Toast - Technical Zuora Revenue Analyst

Toast

United States (Remote)
1 Week ago
Valeo - APU Quality Engineer

Valeo

Reno, Nevada, United States (On-Site)
1 Month ago
zoox - System Verification & Validation Engineer, Platform Safety Assurance

zoox

Foster City, California, United States (Hybrid)
4 Days ago
AGS - American Gaming Systems - PR and Communications Manager

AGS - American Gaming Systems

Nevada, United States (On-Site)
5 Months ago
JMA - Technician II, Sheet Metal Fabricator

JMA

Liverpool, New York, United States (On-Site)
8 Months ago
Normalyze - Lead DevOps Engineer - Enterprise Cybersecurity - SaaS - Bay Area, CA

Normalyze

California, United States (Remote)
8 Months ago
eBay - Software Engineer, Search Ranking

eBay

San Jose, California, United States (Hybrid)
2 Weeks ago
FICO - Senior Software Engineer (C++, DevOps)

FICO

United States (Remote)
1 Week ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

NVIDIA - Senior Python Software Engineer, Security

NVIDIA

Bengaluru, Karnataka, India (Hybrid)
2 Months ago
Take-Two Interactive - Sr. Information Security Engineer

Take-Two Interactive

New York, United States (On-Site)
3 Weeks ago
FICO - Cyber Security Engineer II (Vulnerability Management/ Qualys)

FICO

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Cineplex - Lead Security Engineer

Cineplex

State Of São Paulo, Brazil (On-Site)
1 Month ago
Capgemini - Network Security Engineer

Capgemini

Gurugram, Haryana, India (On-Site)
1 Month ago
Assystems - Security Analyst / Incident Responder L2/L3

Assystems

Gurugram, Haryana, India (On-Site)
7 Months ago
Cadence - Senior Cybersecurity Engineer

Cadence

San Jose, California, United States (On-Site)
1 Month ago
Corsair gaming - Sr. IT Information Security Manager

Corsair gaming

Duluth, Georgia, United States (On-Site)
2 Weeks ago
Opendoor - Staff Software Engineer - Application Security (SAST, DAST, IAST)

Opendoor

Kraków, Lesser Poland Voivodeship, Poland (Hybrid)
1 Month ago
Rackspace Technology - Senior Network Security Engineer

Rackspace Technology

Riyadh, Riyadh Province, Saudi Arabia (On-Site)
5 Days ago

Get notifed when new similar jobs are uploaded