Security Engineer
Warp New York, New York, United States · $230K–$290K/yr
Software Development · 51-200 employees
About the role
You will own the technical direction of product and application security, designing and building security-critical features directly within the codebase. Additionally, you will lead incident response efforts and establish secure-by-default architectures to scale security across the engineering organization.
What they look for
Requirements
Candidates must have 5+ years of software engineering experience with a strong background in product or application security. You should possess deep knowledge of security fundamentals and the ability to translate complex security risks into pragmatic engineering solutions.
Benefits
Full description
Warp: We're Building the Platform for Agentic Development
Warp began with the vision of reimagining one of the fundamental dev tools — the terminal — to make it more usable and powerful for all developers. As AI has advanced, Warp has evolved beyond its terminal roots into a full agentic development environment: a workbench for dispatching agents to code, deploy, and debug production software.
Today, we have two products: Warp, the agentic development environment born out of the terminal, and Oz, our orchestration platform for running hundreds of cloud agents in parallel. With both products, we’re creating the scaffolding for developers to build their own workflows for working with agents.
In Warp, seamlessly switch between running commands, launching agents, and iterating on code with agents— eliminating the need to jump between a terminal and an IDE. It all works with our built-in SOTA agent or top agents like Claude Code, Codex, Gemini CLI, and OpenCode. In Oz, build custom agents that are triggered programmatically, tracked centrally, and are shared across full teams to run agents across organizations without compromising security or reliability. Continue cloud agent runs that were triggered by Oz locally in Warp or on the web with one click.
With over 750k active developers at companies including Docker, Ramp, Peloton, and over half of the Fortune 500 and revenue that grew over 44x last year, Warp is one of the fastest-growing startups in the AI development space.
Our mission has remained the same even as AI has advanced: to empower developers to ship better software more quickly, freeing them to focus on the creative and rewarding aspects of their work. If you want to help define what development looks like in the agentic era at a company where your work reaches hundreds of thousands of engineers every day, we'd love to have you.
The Role
This is a rare opportunity to join Warp at a pivotal moment in our growth, and become the first dedicated member of our product security function. As our first Product Security Engineer, you'll own the technical direction of product and application security at Warp—helping us build secure products, make the right security investments for enterprise customers, and respond effectively when product-security issues arise.
You'll operate as both a security expert and a product engineer. We expect roughly half of your time to involve hands-on software engineering: designing and building security features, improving security architecture, and creating systems that make it easier for every engineer at Warp to build securely.
Responsibilities
- Shape Warp's product security strategy, identifying the highest-leverage security risks and opportunities as our product and enterprise business grow.
- Design and build security-critical product capabilities, working directly in the codebase alongside product engineers.
- Make security scalable across engineering through secure-by-default architecture, reusable systems and tooling, threat modeling, and pragmatic guidance—not by becoming a gatekeeper for every change.
- Serve as Warp's product-security expert with customers, partnering with Product, Sales, and engineering leadership to understand enterprise requirements and communicate our security posture credibly.
- Lead application-security incident response, from assessing vulnerabilities and coordinating mitigations through customer communication and systemic follow-up.
- Develop Warp's approach to emerging AI and agent security risks, including areas like permissions, credentials, untrusted code execution, data boundaries, and isolation.
Must Have
- 5+ years of software engineering experience, including meaningful experience in product security, application security, or software security - ideally in a fast-paced startup environment.
- Strong software engineering fundamentals and the ability to personally design, build, and ship production systems. This is not primarily a security-review or advisory role.
- Deep knowledge of application-security fundamentals including authentication and authorization, data protection, vulnerability classes, threat modeling, secure architecture, and incident response.
- Strong product judgment: you can translate security risks and customer requirements into pragmatic product and engineering decisions rather than treating security as an end in itself.
- Strong organizational skills and an exceptional eye for detail; you catch things before they become problems.
- Clear, thoughtful communicator who can adjust tone for candidates, interviewers, and leadership alike.
- Comfortable with ambiguity and change - you default to figuring it out, not waiting to be told.
Nice to Have
- Experience as an early security hire or member of a small product-security team, particularly at a developer-tool or enterprise SaaS company.
- Experience working directly with enterprise customers, sales engineers, or customer security teams on security architecture and requirements.
- Experience securing AI or agentic systems, particularly around untrusted code execution, sandboxing/isolation, secrets and credentials, permissions, or access to customer data.
- Experience building security-related product features or developer-facing security systems, rather than exclusively internal security tooling.
- Experience leading response to significant application vulnerabilities or security incidents.
Salary Transparency
Total compensation at Warp consists of two parts: 1) a competitive base salary, and 2) meaningful equity.
When we find the right person, we try to put our best foot forward with an offer that excites you. The budgeted compensation range for this role is targeted at $230 to $290k. Final total compensation depends on experience and expertise.
In addition to salary, all employees receive further compensation in the form of equity in the company. This is a meaningful stock option grant with a four-year vesting period and one-year cliff. Your equity is where most of the significant upside potential is. Comparing startup equity is always a bit tricky, so we’re happy to walk you through different valuation scenarios at the offer stage in order to help paint a clearer picture of the upside.
Final total compensation is determined by multiple factors including your experience and expertise and may vary from the amounts listed above.
About Warp
We are a company run by product-first builders, building a core product for all developers. We are committed to understanding our users deeply. We will ultimately build the best product and business if that team includes developers and designers from a wide range of backgrounds. The early team comes from Google, Dropbox, Gem, LinkedIn, and Facebook. We are looking for passionate individuals to join us and help bring Warp to the world.
We value honesty, humility, and pragmatism, and our core product principle is focusing on the user. If you’re interested in learning more about our company values and the culture of our engineering team, please take a look at our internal 'How We Work' guide.
We’re very fortunate to be backed by a great group of venture capital firms. In August 2023, we announced a $50M Series B funding round ($73M total raised), led by Sequoia Capital. Our other investors include Google Ventures, Neo, and Box Group. We are also backed by a network of passionate angels, including Dylan Field (Co-Founder and CEO, Figma), Elad Gil (early investor in Airbnb, Pinterest, Stripe, and Square), Jeff Weiner (Executive Chairman and Ex-CEO, LinkedIn), Marc Benioff (Founder and CEO, Salesforce), and Sam Altman (Co-Founder & CEO, OpenAI).
The Product
Here's our latest demo showing some of our current features…
Similar roles
-
Lead Security Engineer, GRC
Anduril Industries Boston, Massachusetts, United States · $166K–$253K/yr
-
Information Security Engineer (R14207)
Oportun Mexico
-
Principal Application Security Specialist
Global Relay Vancouver, British Columbia, Canada · CA$125K–CA$160K/yr
-
HSM & PKI Security Engineer
CCDS Dammam, Eastern Province, Saudi Arabia
-
Product Security Engineer
YipitData (Alternative) United States · $180K/yr
-
Product Security Engineer
YipitData United States · $180K/yr