Overview
Staff Offensive Security Engineer in Samsara’s Application Security team, leading application security and vulnerability management programs end-to-end.
What you'll do
- Lead strategy, operation, and continuous improvement of the vulnerability management program.
- Drive down mean time to remediate (MTTR) across the vulnerability backlog as SLAs tighten.
- Build and champion automation and tooling to scale vulnerability detection and response across cloud, firmware/IoT, and corporate systems.
- Set technical and architectural direction for the program and translate priorities into an execution plan.
- Provide clear, actionable remediation guidance to engineering teams and partner on reporting.
- Mentor engineers on secure design and remediation practices.
- Participate in security incident investigations and be regularly on call for critical vulnerability response.
What you'll need
- 10+ years of relevant experience as a cloud engineer or security engineer, including hands-on vulnerability management.
- Proficiency in Go, Python, and JavaScript.
- Experience independently setting technical and architectural direction for a security program.
- Significant experience with vulnerability management tooling (e.g., Wiz, Semgrep) and scoring frameworks (CVSS, EPSS).
- Strong AWS cloud services background.
- Deep understanding of SAST, DAST, and SCA.
- Hands-on use of AI/LLM tooling in security workflow (triage, detection logic, remediation drafting).
Details
- Remote position open to candidates residing in the UK.
- Must be based in central or eastern timezones.
- Annual base salary range: £138,800–£173,500 GBP.
Read the full description and apply on the company’s own careers page.