EngineerJobs.io
← Back to all jobs

Job Description

Samsara offers a flexible, employee-led remote model with opportunities to grow in a hyper-growth environment. In this role, you will shape application security and vulnerability management programs across cloud, internal systems, and firmware/IoT, helping reduce risk while enabling engineering teams to move faster with clearer guidance. This Staff Application Security Engineering position is remote for candidates residing in the US and based in Dallas, TX.

Base salary is USD 165,200 - 295,000 per yearly. Samsara also provides performance-based bonus/variable pay and equity (for eligible roles), plus above-market total compensation.

Responsibilities

  • Own the ongoing strategy, operation, and continuous improvement of vulnerability management and other core application security programs, defining what the processes should be.
  • Drive down mean time to remediate (MTTR) across the vulnerability backlog as SLAs tighten.
  • Build and champion automation and tooling to scale vulnerability detection and response across cloud, firmware/IoT, and corporate systems.
  • Set technical and architectural direction by translating leadership priorities into an execution plan for the team.
  • Drive remediation by establishing trust with engineering teams and providing clear, actionable guidance, partnering with technical program management on reporting.
  • Mentor engineers on secure design and remediation practices, and serve as a technical voice when priorities are unclear.
  • Communicate risk and remediation tradeoffs to engineering leadership in practical terms, without owning the relationship end to end.
  • Participate in security incident investigations involving high-profile vulnerabilities and assess potential impact on Samsara infrastructure.
  • Be regularly on call to support critical vulnerability response.
  • Champion and embed Samsara cultural principles: Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, and Win as a Team.

Requirements

  • 10+ years of relevant experience as a cloud engineer or security engineer, including hands-on vulnerability management across a broad, multi-product enterprise environment.
  • Proficiency in Go, Python, and JavaScript.
  • Proven ability to independently set technical and architectural direction for a security program and drive remediation across multiple surfaces without direct authority over fixing teams.
  • Significant experience with modern vulnerability management tooling (e.g., Wiz, Semgrep) and deep familiarity with CVSS and EPSS.
  • Strong AWS cloud services background.
  • Deep understanding of SAST, DAST, and SCA.
  • Hands-on use of AI/LLM tooling in security workflows (triage, detection logic, and remediation drafting), along with credibility explaining how AI changes the threat landscape and available tooling.

Technologies

  • Go, Python, JavaScript
  • Wiz, Semgrep
  • CVSS, EPSS
  • AWS
  • Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA)
  • AI/LLM tooling, AI copilots/agents
  • C/C++, Tines, AWS Lambda, CI/CD pipelines
  • FedRAMP

Benefits

  • Flexible, employee-led remote model
  • Professional development stipend
  • Comprehensive health and parental leave plans
  • Base salary, performance-based bonus/variable pay, and equity (for eligible roles)
  • Above-market total compensation for eligible roles

Additional Ways to Be Successful

  • Experience with C/C++ related to firmware and embedded systems
  • Background at a cloud-native, AI-forward company building agentic or AI-driven products
  • Experience with security automation platforms (e.g., Tines) and AWS Lambda
  • Experience integrating vulnerability management into CI/CD with a “shift-left” mindset
  • Experience spanning SaaS, firmware, and corporate IT security programs
  • Experience managing vulnerabilities within a FedRAMP-certified environment
  • Experience building or wiring up AI copilots/agents for security workflows (e.g., automated triage and remediation drafting)

Flexible Working

  • Samsara embraces a flexible working model that caters to the needs of its teams.
  • Offices are open for in-person work, and remote work is supported where it aligns with operational requirements.
  • For certain roles, being near an office or within a specific geographic area may be important for collaboration and alignment with service regions.
  • Offers are contingent on an individual’s ability to secure and maintain the legal right to work at the company and in the specified work location, if applicable.

Belonging at Samsara

  • Samsara welcomes everyone regardless of background and provides consideration for employment without regard to protected characteristics.
  • Samsara depends on the unique approaches of team members to solve complex problems.

Accommodations

Samsara is committed to ensuring equal opportunity for qualified persons with disabilities. If you require reasonable accommodations during the recruiting process, email [email protected] or click here.

Our Commitment to Authenticity

Samsara uses Tofu, a fraud detection tool, to validate the authenticity of applications and protect against identity fraud.

Fraudulent Employment Offers

  • Samsara is aware of scams involving fake job interviews and offers.
  • Samsara does not charge fees to applicants at any stage of the hiring process.
  • Official communication about your application will only come from emails ending in @samsara.com, @us-greenhouse-mail.io, or @mail3.guide.co.

Similar Jobs