BitGo
Security Application Engineer
San Francisco, California, United States$200k–$245kmidAdded 2 days ago
About this role
BitGo seeks a Senior Application Security Engineer to lead product security strategy for their digital asset platform. You'll build end-to-end security programs, integrate automated controls into development pipelines, and secure cloud infrastructure serving thousands of institutions in the crypto and fintech space. The role requires full-time onsite presence in San Francisco.
What you'll do
- Lead threat modeling and security architecture reviews across product teams
- Integrate SAST, DAST, and vulnerability management tools into CI/CD pipelines
- Design secure AWS infrastructure using Terraform and Kubernetes with encryption and key management systems
- Oversee bug bounties, incident response, and penetration testing programs
- Implement AI/ML security controls including input validation and LLM guardrails
- Architect defenses against sophisticated and nation-state-level threats
What they're looking for
- Application security and secure-by-design architecture
- Cloud security (AWS, Kubernetes, container security)
- CI/CD pipeline automation and DevSecOps
- Encryption, key management systems (KMS), and data protection
- Python or Java and distributed systems engineering
- AI/ML security and compliance (SOC 2 Type II, GDPR)
- Threat modeling and penetration testing
- Blockchain and Web3 security
Benefits
- Base salary $200,000–$245,000 plus equity and annual bonus
- 100% company-paid health insurance for employee, partner, and dependents
- Up to 4% 401(k) match and paid parental leave
- Free commuter/parking pass near BART and Muni; complimentary meals
- Equipment and furniture tailored to your needs
- Collaborative startup environment
Opens the official application on the employer’s site. No login required.