Principal Security Architect, Snyk

Salary not provided
AWS
GCP
Azure
Expert level
Boston
Snyk

Developer security platform

Job no longer available

Snyk

Developer security platform

1001+ employees

B2BSecurityEnterpriseInternal toolsSaaSCyber Security

Job no longer available

Salary not provided
AWS
GCP
Azure
Expert level
Boston

1001+ employees

B2BSecurityEnterpriseInternal toolsSaaSCyber Security

Company mission

To empower businesses to develop fast and stay secure.

Role

Who you are

  • Strong Security Expertise: A deep understanding of software security, including familiarity with common vulnerabilities, threat vectors, and best practices
  • SaaS Security Knowledge: Specific knowledge of security challenges and solutions in the SaaS environment, including authentication, authorization, data encryption, and secure communication
  • Security Frameworks and Tools: Knowledge of security tools, frameworks, and methodologies such as OWASP, NIST, CIS, and relevant security-related software and services to effectively protect Snyk's systems & services
  • Cloud Security: Familiarity with cloud security concepts, including secure configuration, identity and access management, and data protection in cloud environments like AWS, Azure, or GCP
  • Communication and Collaboration: Excellent communication and collaboration skills to work closely with cross-functional teams, articulate security risks, and promote a security-conscious culture throughout the organization
  • Incident Response and Risk Management: Proficiency in developing and implementing incident response plans, risk assessments, and security policies to effectively mitigate threats and manage security incidents
  • Compliance Knowledge: Understanding of relevant industry and regulatory compliance standards (e.g., GDPR, HIPAA, SOC 2) to ensure Snyk's products and services can meet legal and industry-specific security requirements
  • Continuous Learning: The ability to stay up-to-date with emerging security threats and trends through continuous learning, certifications, and participation in the security community
  • Problem-Solving Skills: Strong analytical and problem-solving capabilities to assess complex security issues and propose effective solutions
  • Leadership and Project Management: The ability to lead security initiatives, manage projects, and coordinate with stakeholders to ensure the successful implementation of security measures
  • Ethical Hacking and Penetration Testing: Knowledge of ethical hacking techniques and penetration testing to identify vulnerabilities and assess the effectiveness of security controls
  • Critical Thinking: A capacity for critical thinking and an ability to assess the broader impact of security decisions on the organization
  • Documentation Skills: You are the best at documenting security policies, procedures, and guidelines to ensure consistency and compliance across the organization
  • Magnanimous: Be a magnet for those wanting to learn and grow their maturity in security and architecture. You should be the most approachable person in the company

Desirable

  • Have experience working within the DevSecOps industry

What the job involves

  • This role will report directly to the Chief Information Security Officer
  • Providing technical leadership to help devise & refine security strategies for Snyk, ensuring that they align with the evolving threat landscape and industry best practices
  • Taking ownership of security design and strategy for the broader organization and ensure alignment to overarching business goals
  • Continuously assessing security risks within our development and operational processes, identifying vulnerabilities and proactively guide the teams towards mitigating them to safeguard our products and customer data
  • Establishing technical architecture principles; host and conduct in-depth architecture reviews of systems to ensure they meet stringent security standards and requirements, and recommend enhancements where necessary
  • Ensuring Snyk stay current with the latest security tools and technologies, evaluating their applicability and integrating them into our security processes to enhance our security posture
  • Collaborating cross-functionally with teams, including developers, engineers, product managers, business leaders, executives, and customers fostering a security-aware culture within and outside of the Snyk
  • Engaging with senior leadership in the company to drive security initiatives forward as they align with our business goals

Otta's take

Xav Kearney headshot

Xav Kearney

CTO of Otta

Open source software is a highly lucrative market and is growing fast. However, open source components can come with vulnerabilities, and so their widespread use in apps becomes a liability to a company’s cybersecurity. Snyk has built a way to detect when those apps or components are compromised.

The company works with developers, who are now commonly the owners of application security. It integrates into existing developer workflows, compatible with the likes of GitHub, Bitbucket and GitLab, as well as CI/CD. Snyk also varies its approach with enterprises depending on their security needs, working on-premises, via the cloud or a hybrid. This puts the company in a strong position to target all enterprises as customers. In this, Snyk has already been successful - it has hundreds of customers, including Google and Salesforce.

Valued at $8.5bn back in 2021, Snyk has lately been focused on growth and platform improvement. It is not alone in the space, with competitors including SonarQube and Veracode, but has nonetheless remained one of the largest market players; raising funds in 2023 that come alongside an integration with ServiceNow, to further bolster the value of its offerings.

Insights

Rocket List 2021
Top investors

Some candidates hear
back within 2 weeks

32% female employees

-21% employee growth in 12 months

Company

Employee endorsements

Intelligent people

"Some of the smartest people I have ever worked with and people are always willing to help, so this impacts you directly. Hugely experienced..."

Funding (last 2 of 11 rounds)

Jan 2023

$25m

LATE VC

Dec 2022

$196.5m

SERIES G

Total funding: $1.6bn

Company benefits

  • Flexible working hours
  • Work-from home allowances & in-office perks
  • Time off for learning and self development
  • Health benefits, employee assistance plans, and annual wellness allowance with unlimited one-on-one wellness coaching sessions
  • Generous vacation and wellness time off, and country-specific holidays
  • 100% paid parental leave for all caregivers
  • Country-specific life insurance, disability benefits, and retirement/pension programs
  • Mobile phone and education allowances
  • Snyk Impact - Build a more inclusive tech industry and help us power a more sustainable and secure world with Snyk Impact programs

Company values

  • Care deeply - We create positive change: We lead with empathy for our customers, partners, and Snykers globally to evolve our customers’ organizations, as well as communities in which we live and work.
  • One team - We rely on each other: We extend beyond geographical and departmental limits, fostering collaboration, inclusion, and transparency in the ways we work and support each other.
  • Customer Centric - We drive business impact: We build security solutions, adapting quickly to market changes to provide an outstanding customer experience, leading to adoption and high satisfaction.
  • Forward Thinking - We shape the future: We are driven by our ambition to inspire trust and lead the industry, surpassing limits to build unparalleled technology.

Company HQ

Financial District, Boston, MA

Founders

Guy Podjarny

(President and Chairman of the Board)

Founded Blaze (optimising websites) and was acquired by Akamai 2 years later. Guy then was CTO for Akamai for 4 years.

Previously Director of Technology at Supercom (provider of digital identity solutions).

Salary benchmarks

We don't have enough data yet to provide salary benchmarks for this role.

Submit your salary to help other candidates with crowdsourced salary estimates.

Diversity & Inclusion at Snyk

  • At Snyk, we're on a mission to make the digital world a safer place and we believe that a safer world starts with one that reflects all of us. From our global team at Snyk to our customers and partners around the world, we're building a company that celebrates our differences and leverages them as our strength. Snyk's core values secure our deeply connected culture, and help us to foster a safe, and inclusive company where everyone belongs.
  • Snyk Resource Groups (SRGs) are Snyker-led groups whose purpose is to foster a community-focused, inclusive workplace where all employees feel like they belong. Through strategic programming, community building, networking events, and professional development opportunities, SRGs are the catalyst of Snyk’s inclusion, equity, and diversity efforts.. To date, we have six SRGs: Accessibility@Snyk, Asian@Snyk, Black@Snyk, Mosaic@Snyk, Queer@Snyk, SnykHER. Learn more about our SRG missions at: https://snyk.io/careers/
  • We envision a more inclusive industry powering a more sustainable and secure digital world. Our focus on addressing problems for our social and environmental stakeholders positively impacts society and builds momentum for the entire Snyk community. Learn more at: https://snyk.io/about/snyk-impact/

Share this job

View 24 more jobs at Snyk