logo

View all jobs

Staff Security Advocate (Remote)

US, Remote
 

Compensation: $147,500 – $199,500

About the Mission

We’re building world-class software security tools and making them accessible to everyone. This means creating program-analysis solutions that are open, easy to adopt, powerful, and fast—while fostering a team that cares deeply about both security and great developer experiences. We value honesty, respect, and a diverse community of builders. Our work is used as a critical safeguard by leading engineering teams.

About the Role

This role sits at the intersection of application security, developer enablement, community building, and technical advocacy. As a Security Advocate, you will help teams understand secure coding, guide them through impactful product onboarding experiences, and inspire community champions who can amplify best practices at scale. You’ll combine technical credibility with education, content creation, and hands-on engagement.

The role is remote-friendly with periodic travel.
Formal pedigree is far less important than curiosity, technical depth, and a passion for learning—so apply even if you don’t match every requirement.


What You’ll Do

Security Research & Thought Leadership

  • Partner with security researchers to explore emerging vulnerability trends and convert complex findings into clear, actionable insights.
  • Publish original research, proof-of-concepts, and in-depth analysis for both security and developer audiences.
  • Build credibility as a trusted security voice through continuous investigation and knowledge-sharing.

Content Creation

  • Communicate security issues and solutions through compelling narratives, demos, and real-world examples.
  • Address education gaps across developer and security communities.
  • Produce impactful content: conference talks, technical blogs, video walkthroughs, tutorials, and short-form engagement across forums and social channels.

Community Building & Advocacy

  • Engage authentically with practitioners across AppSec, DevSecOps, and software engineering communities.
  • Lead workshops, training sessions, and hands-on labs that demonstrate practical vulnerabilities and remediation techniques.
  • Build relationships with industry influencers and collaborate to expand reach.
  • Share best practices cross-functionally to empower internal teams.

Product Feedback & User Insights

  • Represent the voice of the user—surfacing pain points, unmet needs, and opportunities for improvement.
  • Partner with engineering and product teams on beta testing and UX feedback, helping shape future capabilities.

You’re a Strong Fit If You Have

Technical Security Expertise

  • 8+ years of hands-on experience identifying and remediating vulnerabilities across web apps, cloud environments, and APIs.
  • Demonstrated security research contributions (e.g., CVEs, advisories, published write-ups).
  • Deep understanding of OWASP Top 10, secure coding, common vulnerability classes, and modern AppSec testing methodologies (SAST, DAST, IAST).

Software Development & Tooling

  • Strong programming skills in multiple languages (e.g., Python, JavaScript, Java, Go).
  • Familiarity with CI/CD pipelines, containers, infrastructure-as-code, cloud platforms, and modern developer workflows.
  • Experience leveraging or experimenting with generative AI in engineering/security workflows.

Communication & Advocacy Skills

  • Ability to explain highly technical concepts in clear, accessible terms tied to business or user impact.
  • Strong written and verbal communication, with a portfolio of technical content.
  • Public-speaking experience at conferences, meetups, or other technical events.
  • Community-building experience—online engagement, organizing groups, or contributing to developer/security ecosystems.
  • Comfort engaging everyone from interns to CTOs with empathy and clarity.
  • Prior experience in developer relations, advocacy, evangelism, or similar public-facing roles is a plus.


 

Share This Job

Powered by