Staff Product Security Engineer, Mattermost

$150-240k

React
AWS
Docker
Kubernetes
React Native
JavaScript
Linux
Go
Electron
Senior and Expert level
Remote in Canada, Germany, Spain, UK, US

More information about location

Mattermost

Software development collaboration platform

Job no longer available

Mattermost

Software development collaboration platform

101-200 employees

B2BEnterpriseInternal toolsProductivityCommunicationDevOps

Job no longer available

$150-240k

React
AWS
Docker
Kubernetes
React Native
JavaScript
Linux
Go
Electron
Senior and Expert level
Remote in Canada, Germany, Spain, UK, US

More information about location

101-200 employees

B2BEnterpriseInternal toolsProductivityCommunicationDevOps

Company mission

Mattermost’s mission is to make the world safer and more productive by developing and delivering secure, open source collaboration software that is trusted, flexible and offers fast time-to-value.

Role

Who you are

  • Deep understanding of web application security and secure development practices
  • Deep understanding with common security libraries, security controls, and common security flaws
  • Experience building and shipping software fulfilling federal and DoD requirements
  • Experience with Threat Modeling applications
  • Experience with static/dynamic analysis, and common exploit tools and methods
  • Experience in one or more programming languages, ideally Go or Javascript
  • Excellent written and verbal communication skills, including prior experience on public speaking engagements or published research
  • Demonstrable teamwork skills and resourcefulness

Desirable

  • Experience working in open source communities
  • Experience running a bug bounty program
  • Certifications in the domain of penetration testing or application security (e.g. OSCP, OSWE, GWAPT, …)
  • Experience with Electron, React or React Native
  • Experience with Linux / AWS
  • Experience with Kubernetes / Docker
  • Participation in Bug Bounties, CTFs or similar activities

What the job involves

  • Mattermost is seeking a result-driven and analytical Staff Product Security Engineer to help ensure the security of our product and services across the company
  • As part of our Security team you will work closely with a globally distributed team to support in all the different aspects of the software development life cycle
  • You will be responsible for the implementation of additional application security tooling and/or processes across the company and coordinate with relevant stakeholders, gather requirements, and lead the implementation
  • Support the application vulnerability management and mitigation approaches
  • Engage in threat modeling and design reviews of in-house developed software components
  • Conduct application security reviews through manual code review or static/dynamic code analysis
  • Educate technical teams on DoD security requirements/architecture and support R&D fulfilling federal compliance requirements, e.g. FIPS
  • Provide security guidance and training to internal development teams
  • Promote the Mattermost brand and build awareness through blog posts and public speaking on security subjects
  • Validate ideas and share insights with Product Management/Marketing on product direction and industry trends for security audiences

Otta's take

Theo Margolius headshot

Theo Margolius

COO of Otta

Internal collaboration tools that foster virtual working have never been in higher demand. The shift to virtual working environments have changed remote working forever. Mattermost's key product is well-positioned to meet this surge in demand: it is essentially a collaboration platform which offers secure messaging across web, desktop and native mobile devices.

It runs as a server install in your own data centre and can be accessed remotely or locked down so that it only runs internally. That’s a major benefit for any company that needs to comply with industry regulations. Hospitals, law firms, and even government agencies will be drawn to the enterprise-level security features that make the platform nearly impossible to access over the public Internet. This is what sets Mattermost apart from other collaboration platforms like Slack, Zoom and Microsoft Teams.

Currently, Mattermost is powering messaging and collaboration for companies like Samsung, Daimler, SAP and Cigna. With solid foundations and a big prospective customer base, therefore, Mattermost is well set to achieve big things.

Insights

Top investors

Few candidates hear
back within 2 weeks

-24% employee growth in 12 months

Company

Funding (2 rounds)

Jun 2019

$50m

SERIES B

Feb 2019

$20m

SERIES A

Total funding: $70m

Company benefits

  • Fully remote work
  • Office setup fund
  • Coworking space stipend
  • Global and regional team meetups
  • Growth fund
  • Unlimited vacation
  • Family and Friends Days
  • Async weeks
  • Open Source Fridays
  • Community hackathons and events
  • Health benefits 🇺🇸
  • 401(k) 🇺🇸
  • Health benefits 🇨🇦
  • Pension 🇬🇧

Company values

  • Customer Obsession
  • Ownership
  • High-Impact
  • Self-Awareness
  • Earn Trust

Company HQ

Downtown North, Palo Alto, CA

Additional info

  • Remote team members must be available between 8am and 1pm California time (GMT-8)

Founders

Ian previously founded SpinPunch Inc, an award-winning online video game company, and was VP Product at Flickme, a movie streaming startup.

He was previously CTO & co-founder at Temple AI and Pricini.com. He also has experience in Software Development at Microsoft and VerticalNet.

Share this job

View 10 more jobs at Mattermost