{"schemaVersion":"jobsearcher.job.v1","id":"8832f6dccee384dcc2440e43","url":"https://jobsearcher.com/jobs/8832f6dccee384dcc2440e43","canonicalUrl":"https://jobsearcher.com/jobs/8832f6dccee384dcc2440e43","title":"Staff Software Engineer - App & Cloud Security","description":"Job Type: Full-Time\nAbout WithCoverage:\nWithCoverage replaces the traditional insurance brokerage with AI-supercharged risk management designed for the modern economy.\nWe partner with hundreds of high-growth, category-defining companies, including GoPuff, Eight Sleep, Bombas, Chomps, and Blank Street Coffee. Our clients span iconic consumer brands, hospitality leaders, GCs, advanced manufacturers, and next-generation defense contractors. They operate in complex risk environments and need a partner that can move at their speed.\nInstead of a fragmented, manual brokerage stack, we have built a new category: elite risk advisors operating on top of proprietary technology. Our in-house Agency Management System gives our team and AI agents full visibility into policies, exposures, claims, billing, and commissions. This platform enables deep automation, better decisions, and a fundamentally higher standard of service.\nWithCoverage was founded by JD Ross (co-founder of Opendoor) and Max Brenner (Bain, Compound). We have raised over $43M from leading investors including Sequoia, 8VC, Khosla Ventures and Crystal Venture Partners.\nOur ambition is not to build a better brokerage. It is to redefine how risk is managed across the economy.\nWhy join us:\nGrow faster – We’re scaling quickly, giving you significant opportunities to learn, lead, and shape your career and the company's future.\nWork that matters – We protect the world’s most innovative brands: consumer icons, hospitality leaders, next-gen defense contractors, and US manufacturers.\nRedefine an industry – Insurance is one of the largest, slowest-moving markets. We rewrite the playbook with proprietary technology, automation, and AI.\nFinancial rewards – We hire the best and invest in you. That means competitive comp, meaningful equity, and excellent benefits. We believe strongly in internal promotion and lay out a plan for everyone's career growth.\nAbout The Role:\nStaff Software Engineer - App & Cloud Security\nWe are open to a wide range of levels for this role.\nAs a Staff Software Engineer - App & Cloud Security, your primary responsibility will be to secure every layer of WithCoverage: our products, production code, AWS infrastructure, AI systems, corporate technology, networks, and physical environment. You’ll help build our security architecture from the ground up while operating at startup speed.\nThis is a hands-on engineering role. You won’t simply identify vulnerabilities or produce policies. You’ll write the code, Terraform, guardrails, detections, and internal tools that fix problems at their source. You’ll establish foundations such as RBAC, ABAC, tenant isolation, least-privilege access, secure networking, defense-in-depth, auditability, and incident response.\nYou’ll also lead the technical work required to prepare WithCoverage for SOC 2, HIPAA, and related customer requirements. You’ll turn controls into continuously monitored systems, automate evidence collection, and make our security posture observable. Security here should increase our velocity, not create bureaucracy.\nWhat You’ll Do\nEstablish and evolve cloud security capabilities across AWS, covering account organization, identity and access frameworks, network separation, and protected communication between services.\nDevelop and maintain Terraform-driven security architecture – build reusable modules, paved roads, and automated guardrails that let engineers ship securely without waiting on a security approval process.\nCreate and manage scalable cloud identity solutions encompassing workload identities, service accounts, role-based access, role assumption, and access across environments.\nAutomate security processes throughout CI/CD pipelines and cloud platforms to minimize manual effort and lower operational exposure.\nOversee the protection of production Kubernetes and container environments, including cluster hardening, RBAC, workload identity, container image assurance, and runtime safeguards.\nAutomate security and compliance. Translate SOC 2, HIPAA, and customer requirements into technical controls. Automate evidence collection, access reviews, vulnerability detection, configuration monitoring, remediation, incident response, and recovery.\nSecure the company end to end. Protect our AI agents, sensitive client data, production systems, endpoints, corporate identities, office network, physical access, and vendors. Address AI-specific risks such as prompt injection, excessive tool permissions, data leakage, and unsafe autonomous actions.\nMake security move at startup speed. Make pragmatic build-versus-buy decisions, using software and AI to avoid expensive enterprise products when a focused internal capability is safer and more economical.\nWho You Are\n7+ years of experience building or securing software and infrastructure in production environments. You are comfortable moving from identifying a risk to writing, deploying, and operating the solution yourself. You are mostly in code.\nYou have hands-on experience securing AWS environments and understand IAM, networking, Linux, containers, infrastructure as code, CI/CD, secrets management, encryption, logging, and vulnerability management.\nYou have built or substantially improved authentication, authorization, RBAC, ABAC, multi-tenant isolation, or other security-critical product infrastructure. Experience preparing for SOC 2 or HIPAA is strongly preferred.\nYou move quickly, exercise strong judgment, and know how to prioritize meaningful risks without introducing unnecessary processes. You communicate clearly with technical and non-technical teams and use AI to multiply your output.\nYou have spent 2+ years at the same company in a prior role, with demonstrated promotions, growth, or meaningful recognition.\nThis role is on-site in our New York office. The expected cash compensation range for this position at the start of employment is $200,000–$275,000/year. Actual compensation will be determined based on factors such as market location, job-related skills, experience, and qualifications. WithCoverage offers a comprehensive total rewards package for full-time employees, including equity grants and a robust suite of benefits.\nWhat We Offer:\nCompetitive compensation that includes equity\nComprehensive benefit plans for medical, dental, vision, life, and disability\nPre-tax accounts (FSA, HSAs, dependent care FSAs, commuter savings)\nHuman Interest: 401(k) provider\nTime Off: Flexible time off, sick leave, family and medical leave, major national holidays\nA curated in-office employee experience, designed to foster community, team connections, and innovation\nCollaborative, transparent, and fun culture","company":"Withcoverage","rawCompany":"withcoverage","city":"New York","state":"NY","isRemote":false,"isActive":false,"createdAt":"2026-08-08T13:13:05.076Z","occupations":[{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Staff Software Engineer - App & Cloud Security","description":"Job Type: Full-Time\nAbout WithCoverage:\nWithCoverage replaces the traditional insurance brokerage with AI-supercharged risk management designed for the modern economy.\nWe partner with hundreds of high-growth, category-defining companies, including GoPuff, Eight Sleep, Bombas, Chomps, and Blank Street Coffee. Our clients span iconic consumer brands, hospitality leaders, GCs, advanced manufacturers, and next-generation defense contractors. They operate in complex risk environments and need a partner that can move at their speed.\nInstead of a fragmented, manual brokerage stack, we have built a new category: elite risk advisors operating on top of proprietary technology. Our in-house Agency Management System gives our team and AI agents full visibility into policies, exposures, claims, billing, and commissions. This platform enables deep automation, better decisions, and a fundamentally higher standard of service.\nWithCoverage was founded by JD Ross (co-founder of Opendoor) and Max Brenner (Bain, Compound). We have raised over $43M from leading investors including Sequoia, 8VC, Khosla Ventures and Crystal Venture Partners.\nOur ambition is not to build a better brokerage. It is to redefine how risk is managed across the economy.\nWhy join us:\nGrow faster – We’re scaling quickly, giving you significant opportunities to learn, lead, and shape your career and the company's future.\nWork that matters – We protect the world’s most innovative brands: consumer icons, hospitality leaders, next-gen defense contractors, and US manufacturers.\nRedefine an industry – Insurance is one of the largest, slowest-moving markets. We rewrite the playbook with proprietary technology, automation, and AI.\nFinancial rewards – We hire the best and invest in you. That means competitive comp, meaningful equity, and excellent benefits. We believe strongly in internal promotion and lay out a plan for everyone's career growth.\nAbout The Role:\nStaff Software Engineer - App & Cloud Security\nWe are open to a wide range of levels for this role.\nAs a Staff Software Engineer - App & Cloud Security, your primary responsibility will be to secure every layer of WithCoverage: our products, production code, AWS infrastructure, AI systems, corporate technology, networks, and physical environment. You’ll help build our security architecture from the ground up while operating at startup speed.\nThis is a hands-on engineering role. You won’t simply identify vulnerabilities or produce policies. You’ll write the code, Terraform, guardrails, detections, and internal tools that fix problems at their source. You’ll establish foundations such as RBAC, ABAC, tenant isolation, least-privilege access, secure networking, defense-in-depth, auditability, and incident response.\nYou’ll also lead the technical work required to prepare WithCoverage for SOC 2, HIPAA, and related customer requirements. You’ll turn controls into continuously monitored systems, automate evidence collection, and make our security posture observable. Security here should increase our velocity, not create bureaucracy.\nWhat You’ll Do\nEstablish and evolve cloud security capabilities across AWS, covering account organization, identity and access frameworks, network separation, and protected communication between services.\nDevelop and maintain Terraform-driven security architecture – build reusable modules, paved roads, and automated guardrails that let engineers ship securely without waiting on a security approval process.\nCreate and manage scalable cloud identity solutions encompassing workload identities, service accounts, role-based access, role assumption, and access across environments.\nAutomate security processes throughout CI/CD pipelines and cloud platforms to minimize manual effort and lower operational exposure.\nOversee the protection of production Kubernetes and container environments, including cluster hardening, RBAC, workload identity, container image assurance, and runtime safeguards.\nAutomate security and compliance. Translate SOC 2, HIPAA, and customer requirements into technical controls. Automate evidence collection, access reviews, vulnerability detection, configuration monitoring, remediation, incident response, and recovery.\nSecure the company end to end. Protect our AI agents, sensitive client data, production systems, endpoints, corporate identities, office network, physical access, and vendors. Address AI-specific risks such as prompt injection, excessive tool permissions, data leakage, and unsafe autonomous actions.\nMake security move at startup speed. Make pragmatic build-versus-buy decisions, using software and AI to avoid expensive enterprise products when a focused internal capability is safer and more economical.\nWho You Are\n7+ years of experience building or securing software and infrastructure in production environments. You are comfortable moving from identifying a risk to writing, deploying, and operating the solution yourself. You are mostly in code.\nYou have hands-on experience securing AWS environments and understand IAM, networking, Linux, containers, infrastructure as code, CI/CD, secrets management, encryption, logging, and vulnerability management.\nYou have built or substantially improved authentication, authorization, RBAC, ABAC, multi-tenant isolation, or other security-critical product infrastructure. Experience preparing for SOC 2 or HIPAA is strongly preferred.\nYou move quickly, exercise strong judgment, and know how to prioritize meaningful risks without introducing unnecessary processes. You communicate clearly with technical and non-technical teams and use AI to multiply your output.\nYou have spent 2+ years at the same company in a prior role, with demonstrated promotions, growth, or meaningful recognition.\nThis role is on-site in our New York office. The expected cash compensation range for this position at the start of employment is $200,000–$275,000/year. Actual compensation will be determined based on factors such as market location, job-related skills, experience, and qualifications. WithCoverage offers a comprehensive total rewards package for full-time employees, including equity grants and a robust suite of benefits.\nWhat We Offer:\nCompetitive compensation that includes equity\nComprehensive benefit plans for medical, dental, vision, life, and disability\nPre-tax accounts (FSA, HSAs, dependent care FSAs, commuter savings)\nHuman Interest: 401(k) provider\nTime Off: Flexible time off, sick leave, family and medical leave, major national holidays\nA curated in-office employee experience, designed to foster community, team connections, and innovation\nCollaborative, transparent, and fun culture","datePosted":"2026-08-08T13:13:05.076Z","dateModified":"2026-08-08T13:13:05.076Z","hiringOrganization":{"@type":"Organization","name":"Withcoverage","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"New York","addressRegion":"NY","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"8832f6dccee384dcc2440e43"},"url":"https://jobsearcher.com/jobs/8832f6dccee384dcc2440e43"}}