Staff Security Engineer

Livekit
North America +2 more
Remote

Who this role is best for

Strong fit for hands-on engineers who build and break systems, with deep expertise in application and infrastructure security.

Best fit for

  • Candidates with 6+ years of software engineering experience and a track record in security engineering across applications and infrastructure
    — “6+ years of experience as a software engineer with a strong interest in security engineering
  • Individuals who have led or heavily contributed to security engineering initiatives in complex environments
    — “You've led or heavily contributed to security engineering efforts across applications, infrastructure, or both
  • Engineers with experience in cloud platforms, CI/CD, and containerized environments
    — “Worked with CI/CD systems, cloud platforms (AWS, GCP, etc.), and containerized environments

Things to consider

  • The role requires a hands-on approach, not just policy or compliance work
    — “This isn't one of those roles where 'security' means running scans or writing policies that gather dust
  • Candidates must be ready to engage in proactive risk assessment and mitigation
    — “Proactively identify, assess, and mitigate risks in both infrastructure and application codebases

How to stand out

  • Emphasize experience in secure code reviews and threat modeling in your resume and interviews
    — “Lead secure code reviews, architecture discussions, and threat modeling sessions
  • Highlight contributions to security tooling or open-source projects related to security
    — “Contributions to open-source security tooling or research
  • Showcase your ability to translate security concerns into engineering solutions
    — “Translate security concerns into engineering action without being the 'no' person
  • Demonstrate your ability to harden authentication and access control mechanisms
    — “Harden authentication and access control across internal and external surfaces
  • Include experience with real-time systems or WebRTC if applicable
    — “Experience with security reviews of WebRTC, media pipelines, or real-time systems
Pace · SteadyCollaboration · MediumAutonomy · MediumDecision Impact · Team

Derived from job-description analysis by Serendipath's career intelligence engine.

Skills & requirements

Required

AWS

About the role

Original posting from Livekit via Ashby

ABOUT LIVEKIT

LiveKit is building the infrastructure layer for the agentic era of computing. Our platform gives developers everything they need to build, test, deploy, scale, and observe AI agents in production. Founded in 2021, LiveKit powers voice and agentic AI applications for OpenAI, Salesforce, Spotify, Meta, and tens of thousands of other developers, collectively facilitating billions of calls each year.

ABOUT THIS ROLE

This isn't one of those roles where "security" means running scans or writing policies that gather dust. We're looking for a real engineer — someone who thinks like a builder and a breaker. Someone who gets deep into the stack, whether it's an API endpoint, a container image, or a browser sandbox. You know how things are supposed to work — and what happens when they don't.

While some security professionals lean toward policy, compliance, or audits (and we value that too), we're after someone who wants to write code, secure systems, dig into strange bugs, and harden the platform from top to bottom. This is not a role for pointing out what needs to be done. It's for someone who's ready to do it.

YOU'LL THRIVE HERE IF YOU:

  • think like both a builder and a breaker, and understand security from first principles
  • can analyze systems for weaknesses — whether they're in business logic, configuration, or code
  • translate security concerns into engineering action without being the "no" person
  • are an excellent communicator who can document and evangelize best practices across the org
  • stay current with security research, tooling, and threats — and put that knowledge into action

WHAT YOU'LL DO

  • Own security across the stack — applications, services, infrastructure, and developer workflows
  • Proactively identify, assess, and mitigate risks in both infrastructure and application codebases
  • Lead secure code reviews, architecture discussions, and threat modeling sessions
  • Build tooling and automations that help prevent security issues before they reach production
  • Harden authentication and access control across internal and external surfaces
  • Partner closely with engineers across teams to design secure-by-default APIs, workflows, and deployments
  • Investigate vulnerabilities, respond to security incidents, and manage disclosure processes when needed

WHO YOU ARE

  • 6+ years of experience as a software engineer with a strong interest in security engineering
  • You've led or heavily contributed to security engineering efforts across applications, infrastructure, or both
  • Experienced with threat modeling, secure coding practices, and vulnerability management
  • Worked with CI/CD systems, cloud platforms (AWS, GCP, etc.), and containerized environments
  • You've responded to real-world security incidents, led postmortems, or driven remediation efforts

NICE TO HAVE

  • Experience with security reviews of WebRTC, media pipelines, or real-time systems
  • Contributions to open-source security tooling or research
  • Hands-on experience with static and dynamic analysis tools, fuzzing, or sandboxing
  • You've built (or tried to build) something with LiveKit

OUR COMMITMENT TO YOU

  • An opportunity to build something truly impactful to the world
  • Contribute to open source alongside world-class engineers
  • Competitive salary and equity package
  • Health, dental, and vision benefits
  • Flexible vacation policy

LiveKit is an equal opportunity employer and does not discriminate on the basis of any characteristic protected by applicable law. If you require a reasonable accommodation during the application or interview process, please contact recruiting@livekit.io.

Source: Livekit careers (Ashby)

Similar roles