Security Engineer
Overview
As Senior Security Engineer at MatX, you will own the security of software, build systems, and cloud infrastructure across a silicon-to-systems stack. You will shape our supply chain and build integrity program and bring an attacker’s perspective to harden our platforms. You’ll collaborate with software, compiler, ML, and silicon teams to translate threat findings into durable, scalable fixes. This role blends hands-on security work with practical engineering to embed security into our SDLC and CI/CD. You’ll drive secure-by-default design in a high-growth, innovative environment.
Compensation / Benefits4 weeks PTO + 12 holidaysremote work optionmedical, dental, vision insurancelife insurance and disability coverage401K with company contributionAI resources and internal tooling support
ResponsibilitiesOwn and grow supply chain and build integrity program (dependency provenance, artifact signing, SBOM, reproducible builds, CI/CD hardening).Apply adversarial perspective to systems via security assessments, reviews, and testing of infrastructure and developer platforms.Conduct vulnerability research and implement fixes and durable controls.Collaborate with software, compiler, ML, and silicon teams on threat modeling and design reviews to produce actionable engineering work.Harden cloud infrastructure (IAM, network segmentation, secrets management, IaC review, guardrails).Lead vulnerability management program (discovery, triage, remediation).Integrate security into SDLC with code scanning, dependency policy, pre-merge checks, secrets detection, and reusable templates.Develop automation and tooling to scale security efforts; build internal utilities and developer-facing tools.Protect highly sensitive IP and export-controlled data, coordinating with People, IT, and Legal.
Key requirements8+ years in security engineering with deep expertise in at least two areas (application/security, offensive security, cloud security, supply chain/build security, detection/response).Strong application security fundamentals: threat modeling, manual code review, CVE mitigations, SAST/DAST/SCA tooling experience.Hands-on offensive security experience (pentesting, red team, vulnerability research) with current-day attack paths.Proven software engineering skills; production-grade code (Go, Python, Rust, or similar) and ability to read other languages.Working knowledge of at least one major cloud provider (GCP/AWS/Azure) with IAM, network design, secrets management, and logging.Familiarity with supply chain/build integrity concepts (artifact signing, provenance/attestation, SBOM, CI/CD as attack surface).Track record of shipping fixes with development teams and influencing engineers.Comfort with ambiguity and breadth; ability to prioritize risk-reducing work and explain decisions to engineers and leadership.hands-on, pragmaticstrong collaboration with cross-functional teamsprioritization and risk-focused decision makingGo, Python, Rust or similar production languagesThreat modeling, secure code review, SAST/DAST/SCA toolingVulnerability research and penetration testing