jobloom

JobLoom finds jobs directly from company career sites before many job boards, then routes you into detailed role pages like this one.

security

Posted 2 days ago

Senior Security Engineer II

at Braze

Chicago, United StatesHybrid

Responsibilities

  • Define the cloud security standards, guardrails, and reference architectures that Infrastructure, SRE, and Product Engineering build on — turning point-in-time fixes into durable, org-wide patterns
  • Lead cross-functional security initiatives end to end — scope, timeline, stakeholders, and delivery — guiding technical debates to a decision and owning the result
  • Mentor and uplevel other security and platform engineers through pairing, design review, and feedback; act as a force multiplier and the go-to technical resource for cloud security
  • Represent cloud security in architecture and design forums, translating complex attack paths and risk into clear, actionable guidance engineers will actually adopt
  • Own threat modeling as a discipline for new cloud technologies, services, and patterns adopted across Engineering — making it a repeatable, scalable practice rather than a one-off exercise
  • Drive control-plane and IAM security strategy across AWS and GCP, including relationships with external identity providers, RBAC models, and least privilege at scale
  • Advance our detection strategy: design high-signal detections and SIEM rules (with our SIEM Management function) and own detection coverage for cloud threats end to end
  • Own and optimize security tooling such as CrowdStrike (EDR/CSPM/IR), Tenable, and native cloud security services, and lead our vulnerability management workflow — scanning, triage, prioritization, and remediation — for cloud assets
  • Own the security of our self-managed Kubernetes environments — control plane, nodes, workload isolation, admission control, run-time security, and the CI/CD supply chain feeding them
  • Set the standards for Infrastructure-as-Code and pipeline security (Terraform preferred): design and harden IaC and CI/CD automation so security is built into how we ship
  • Establish best practices for patch management, base-image hardening, and version management across containerized and VM-based environments
  • Lead the security of large-scale, distributed systems and self-managed data stores (e.g., MongoDB), accounting for their real-world operational and security implications WHO YOU ARE

Requirements

  • Braze is a modern, cloud-first SaaS company running entirely on cloud-native infrastructure — large-scale, distributed systems spanning AWS, GCP, and self-managed Kubernetes, backed by self-managed data stores such as MongoDB.
  • You'll go especially deep across three areas — secure architecture and threat modeling, detection engineering and incident response, and Kubernetes and platform security — and you'll shape how Braze does cloud security across Engineering.
  • Partner with Infrastructure, SRE, and Product Engineering to design secure-by-default cloud architectures and build practical, scalable controls across AWS, GCP, and self-managed systems
  • Serve as a senior incident responder and cloud-forensics lead for cloud and run-time security investigations across AWS and GCP — and codify what you learn into standard IR playbooks and preventative controls
  • Kubernetes & platform security:
  • Hands-on, not theoretical: AWS as primary cloud, working GCP, self-managed Kubernetes
  • You read and write code (Python, TF)
  • Built on a foundation of composable intelligence, BrazeAI™ allows marketers to combine and activate AI agents, models, and features at every touchpoint throughout the Braze Customer Engagement Platform for smarter, faster, and more meaningful customer engagement.
  • Braze is also proudly certified as a Great Place to Work® in the U.S., the UK, Australia, and Singapore.
  • OUR AI-POWERED BRAZE RECRUITMENT PROCESS
  • To help our recruitment teams focus on what matters most — the person behind each application — we use AI-assisted tools at certain stages of our recruitment process.
  • This includes using AI to analyze the experience, skills and
  • We also use AI for administrative support, like scheduling and recording interviews and summarizing interview notes.
  • Depending on where you are located, you may have the right to request further information about how AI is used in our recruitment process, to opt out of AI-assisted review, to request a manual review of any decision made or to contest a decision.

Experience

  • Several years owning cloud security in production — on-call for it, not adjacent to it

Benefits

  • We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a global scale while striving for greater equity and opportunity – inside and outside our organization.
  • For candidates based in the United States, the pay range for this position at the start of employment is expected to be between $149,000 and $235,000/year with an expected On Target Earnings (OTE) between $166,000 and $261,000/year (including bonus or commission).
  • In addition to cash compensation, this role qualifies for a comprehensive Total Rewards package that includes equity grants of restricted stock (RSUs) so that you will own a piece of our company. WHAT WE OFFER Braze
  • Competitive compensation that may include equity
  • Flexible paid time off
  • Comprehensive benefit plans covering medical, dental, vision, life, and disability
  • benefits and equal paid parental leave
  • Professional development supported by formal career pathing, learning platforms, and a yearly learning stipend
  • Opportunities to give back to your community, including an annual company-wide Volunteer Week and donation matching
  • experience – regardless of age, color, disability, gender identity, marital status, maternity, national origin, pregnancy, race, religion, sex, sexual orientation, or status as a protected veteran.

Additional details

  • At Braze, we have found our people. We’re a genuinely approachable, exceptionally kind, and intensely passionate crew.
  • To flourish here, you must be prepared to set a high bar for yourself and those around you.
  • There is always a way to contribute: Acting with autonomy, having accountability and being open to new perspectives are essential to our continued success.
  • Our deep curiosity to learn and our eagerness to share diverse passions with others gives us balance and injects a one-of-a-kind vibrancy into our culture.
  • If you are driven to solve exhilarating challenges and have a bias toward action in the face of change, you will be empowered to make a real impact here, with a sharp and passionate team at your back.
  • If Braze sounds like a place where you can thrive, we can’t wait to meet you.
  • We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior individual contributor and technical leader for cloud security.
  • This is a step up from our Senior Cloud Security Engineer role.
  • Where a Senior engineer executes and improves our cloud security controls, a Senior Cloud Security Engineer II sets the technical direction: you define the standards and reference patterns other engineers build on, lead cross-team security initiatives end to end, take on the ambiguous problems that don't yet have a playbook (and write the playbook), and raise the bar for the whole team through mentorship and review.
  • This is a pure IC role; you lead through technical depth and influence rather than direct people management. WHAT YOU'LL DO

Find more real-time jobs on JobLoom.