Summary:
We're growing our Security team to protect and enable Anaconda's platform as we scale from 50 million users toward the next phase of growth. You'll design and implement security controls, automation, and guardrails that reduce systemic risk while helping engineering teams ship faster. This role is about building secure-by-default systems through hands-on engineering, not enforcing checklists from the sidelines.
What You'll Do:
- Design and implement security controls across firewalls, IAM, endpoint detection and response, and secrets management in hybrid and multi-cloud environments
- Build security automation and tooling using Python, Go, and Bash, managing infrastructure as code with Terraform to scale security baselines and reduce manual toil
- Conduct vulnerability and threat management by triaging scanner output, investigating root causes, and driving risk reduction with clear operational guidance
- Perform code reviews and architecture assessments to identify security risks early and collaborate with engineering teams to design secure solutions
- Embed security into CI/CD pipelines through SAST, DAST, and dependency scanning, creating developer-friendly workflows that catch issues before production
- Respond to security incidents as an escalation point, performing forensic analysis and maintaining tested runbooks for calm, effective containment during critical events
- Partner with Legal, IT, Platform Engineering, and Developer Experience teams to translate security risks into business impacts and deliver controls that add velocity
- Develop secure-by-default templates, libraries, and tooling that make it easier for developers to do the right thing without friction
Your Impact Will Be Measured Through:
- Risk reduction velocity measured by mean time to remediate high-severity vulnerabilities and percentage of defects caught in development versus production
- Operational automation measured by reduction in false positive rates and percentage of security baselines managed through infrastructure as code
- Cross-functional partnership measured by adoption of secure-by-default templates and feedback from engineering teams on whether security adds or removes velocity
- Incident preparedness measured by runbook coverage and response effectiveness during critical risks or zero-day events
What You Need:
- 3+ years of hands-on experience in systems administration, DevOps, network engineering, or software development prior to or alongside security work
- Proficiency with cloud platforms including AWS, Azure, or GCP, and experience managing infrastructure as code using Terraform
- Experience writing scripts and automation in Python, Go, or Bash to integrate tools and reduce manual security tasks
- Working knowledge of core security disciplines including IAM, PKI, cryptography basics, network protocol analysis, and threat modeling frameworks
- Demonstrated ability to communicate technical security risks to non-security audiences and design workflows that respect developer experience
- Experience working in containerized environments with Docker or Kubernetes
- You embody our values of Clarity, Care and Candor
- You care deeply about fostering an environment where people of all backgrounds and experiences can flourish
What Will Make You Stand Out:
- You have offensive security experience through penetration testing, red teaming, bug bounty programs, or reverse engineering, and can think like an attacker to build better defenses
- You've worked with advanced container security tools such as Falco or eBPF, or implemented zero trust architecture and network isolation in production environments
- You bring a production engineering, SRE, or software engineering background with experience writing custom SAST or DAST rules, or managing SBOM and supply chain security
- You have specialized expertise in HSMs, hardware tokens like YubiKeys or FIDO2, applied cryptography, or identity provider integrations with platforms like Okta or Azure AD
- You've contributed to security culture through training programs, threat modeling workshops, CTF events, conference talks, or open-source security projects
- You've thrived in fast-paced startup environments where you balanced speed with thoughtful risk management
- Experience working in a fast-paced startup environment
- Experience working in an open-source, AI, or data science-oriented company
Why You'll Like Working Here:
- You'll thrive in a high-performance environment where results are recognized and rewarded
- Your work directly contributes to shaping the future of data science, machine learning, and AI in the enterprise.
- You'll work alongside a collaborative team that values diverse, thoughtful discussion, clarity and candor.
- You'll be supported by a culture that puts employees first - with flexible hours, a fully remote setup, and a genuine commitment to your wellbeing and growth.
The application deadline for this role is 12/01/2026; applicants will be reviewed on an ongoing basis until the role is filled.
The base salary range for this role is $120,000 - $185,000 for US-based team members, along with annual bonus potential, equity participation, and benefits.
Our salary ranges are determined by role, level, and location. Within the range, individual compensation is determined by various factors, including work location, job-related skills, experience, and relevant education or training. Your recruiter will provide more specific details on the salary range for your preferred location during the hiring process.
In addition to base salary, we offer a comprehensive benefits package that includes:
- Flexible Vacation Policy
- Medical, Dental, and Vision Insurance
- Short Term and Long Term Disability
- Paid Parental Leave
- Monthly Wellness Stipend
- Employee Assistance Program and Mental Health Resources
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Anaconda, Inc. (“We”, “Us”) are committed to protecting and respecting your privacy. This Privacy Notice sets out the basis on which the personal data collected from you, or that you provide to Us, will be processed by Us in connection with Our recruitment processes.
By clicking “Submit Application”, you acknowledge you have read our Privacy Policy and that Anaconda can retain your application data for up to 1-year, unless otherwise stated. For the purpose of the General Data Protection Regulation (“GDPR”) ”) and the version of the GDPR retained in UK law (the “UK GDPR”) the Data Controller is Vanessa Macilwaine.
Anaconda is an EEO/AA employer M/F/V/D.