Staff Security Engineer

Uber

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
San Francisco, CASeattle, WASunnyvale, CA
Posted
4 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $185k
$131k most similar roles pay here $234k

This listing doesn't post a salary. Most similar roles pay $151,493–$219,068.

Based on 240 similar postings.

Employer

About Uber

Uber Technologies, Inc. is the world’s largest, San Francisco-based mobile technology platform facilitating on-demand ride-hailing, food delivery (Uber Eats), and freight transportation across approximately 70 countries.

Uber currently has 25 open roles on FindRole.

Most-posted roles

View all roles at Uber

At a glance

TL;DR · Staff Security Engineer

As a Staff Security Engineer on the Offensive Security team, you will proactively identify and reduce risk across critical services and emerging technologies. You will perform hands-on penetration testing of applications, APIs, infrastructure, and AI agents to uncover exploitable vulnerabilities and complex attack paths. Your role involves conducting security design reviews and threat modeling for agentic systems while building AI-powered automation to scale these assessments across a hybrid cloud and distributed systems environment. You will collaborate with engineering teams to translate technical findings into systemic improvements and actionable guidance. The position requires expertise in vulnerability discovery, risk assessment, and offensive security methodologies. Key skills include experience with LLMs, automation frameworks, and securing microservices. You will solve complex security challenges by navigating design trade-offs to strengthen the overall posture of products and services.

What does a Security Engineer earn in California?

Median $209900 from 30 postings across 15 companies.

See salary data

What you'll do

  • Perform hands-on penetration testing on critical services, applications, APIs, infrastructure, and AI agents.
  • Conduct security design reviews and threat modeling for AI agents and agentic systems.
  • Build AI-powered automation to scale security design reviews, threat modeling, and vulnerability validation.
  • Analyze engineering proposals to identify flaws in cloud, infrastructure, application, and data layers.
  • Translate technical security findings into actionable guidance for both technical and non-technical stakeholders.
  • Partner with engineering teams to implement systemic improvements that eliminate entire classes of vulnerabilities.
  • Provide corrective guidance on complex design trade-offs to improve the overall security posture of products.

What we're looking for

  • 7+ years of professional experience in security engineering, threat detection, or client platform engineering.
  • Demonstrated ability to independently analyze complex, large-scale system designs and drive technical solutions across multiple services.
  • Deep knowledge of threat modeling, vulnerability discovery, risk assessment, and offensive security methodologies in production environments.
  • Extensive experience assessing the security of cloud-native services, microservices, distributed systems, and APIs.
  • Proven ability to lead complex security assessments and influence engineering teams to implement improvements.
  • Experience applying AI/LLMs, agents, or automation frameworks to security testing and vulnerability discovery.
  • Hands-on experience conducting penetration testing of complex applications, services, APIs, and infrastructure.
  • Master’s degree or PhD in a technical field and 10+ years of experience in cybersecurity leadership (preferred); advanced expertise in AI/ML for security (preferred).

More like this

Similar roles

Staff Security Engineer

Uber

San Francisco, CA 5 days ago
AI ML Python Go Ruby Hybrid-Cloud Threat Modeling Incident Response Query Optimization Technical Writing Cybersecurity, Compliance
8+ yrs exp Hybrid

Senior Staff Security Engineer

Uber

San Francisco, CA 6 days ago
SASE ZTNA DDoS Mitigation Bot Defense Go Java C++ AWS GCP OCI Kubernetes Docker Kafka Apache Flink L3/L4/L7 Firewalls Network Segmentation Distributed Systems AI/ML NIST CSF ISO 27001 SOC 2
10+ yrs exp

Staff Application Security Engineer

Brex

Remote 39 days ago $240,000–$300,000
Application Security AI Security LLM Gateways AWS Kubernetes Python Go Kotlin gRPC GraphQL Microservices Threat Modeling Offensive Security Container Security
8+ yrs exp Remote

Staff Security Engineer

Micron Technology

Boise, ID 38 days ago
DLP Data Classification Azure AWS GCP Python PowerShell Splunk SIEM SOAR Machine Learning UiPath Copilot Studio SharePoint Regex SaaS Automation
5+ yrs exp

Staff Security Engineer

Intuit

Mountain View, CA 23 days ago $207,000–$280,000
Security Engineering IAM Kubernetes Terraform CI/CD Golang Java AWS Google Cloud Platform Azure PKI Cryptography Vault DevSecOps SRE Network Security Vulnerability Management Serverless Configuration Management
10+ yrs exp

Staff Corporate Security Engineer

GitLab

Remote (Canada) 35 days ago $168,000–$238,000
Terraform Infrastructure-as-Code GitOps Python Go Bash PowerShell Jamf Pro FleetDM Okta Google Workspace LDAP macOS iOS Windows Linux Git Security Operations
Remote