{"schemaVersion":"jobsearcher.job.v1","id":"fa1a88606fe7ede2d35576d3","url":"https://jobsearcher.com/jobs/fa1a88606fe7ede2d35576d3","canonicalUrl":"https://jobsearcher.com/jobs/fa1a88606fe7ede2d35576d3","title":"Tech Lead (DevSecOps)","description":"Engineering at Blinq\r\nWe're hiring a Tech Lead / DevSecOps Engineer, a security-first engineer who is also a strong backend engineer in our Node.js / TypeScript stack.\r\nYou'll set the technical direction for how we build securely, harden our cloud environment, own our security incident detection and response, and lead the work that takes our security posture (and compliance) to the next level. This is a high-trust, high-autonomy role with room to shape how security and infrastructure work as we scale.\r\nWhat you'll do\r\nLead design and delivery across our Node.js / TypeScript backend and platform, balancing security and platform work with the product-adjacent building that keeps us shipping\r\nOwn and harden our GCP, Cloudflare, and Firebase infrastructure - IAM, networking, secrets management, and infrastructure-as-code (Pulumi TypeScript & Terraform)\r\nEmbed security into the SDLC: threat modeling, secure code review, and CI/CD security guardrails (SAST/DAST, dependency scanning)\r\nRun vulnerability management end to end - triage, remediation, coordinating external penetration tests, and enhance our vulnerability disclosure programme\r\nOwn detection, logging, and incident response, including endpoint detection & response (EDR) and security monitoring in Datadog\r\nLead anti-phishing, spam, and platform-abuse detection and prevention\r\nDrive identity and access governance - SSO, OAuth, and IAM audits and improvements\r\nDrive our SOC 2 / ISO 27001 and privacy (GDPR) efforts, turning compliance requirements into pragmatic engineering controls\r\nSet technical standards and mentor engineers, raising the bar for how the whole team builds and ships securely\r\nWhat you'll bring\r\nTech Lead–level experience as a strong backend engineer with a security focus, ideally in Node.js / TypeScript\r\nSolid application/product security fundamentals - OWASP, secure design, code review, API security\r\nHands-on cloud experience (GCP ideal; Cloudflare/Firebase a plus) and infrastructure-as-code (Pulumi in TypeScript; Terraform or similar experience translates well)\r\nDetection & response depth - EDR, security monitoring / SIEM, and incident response. Hands-on experience with Datadog is highly desirable.\r\nFamiliarity with security tooling (SAST/DAST, Snyk/Dependabot/Renovate, secrets scanning, secrets management) and vulnerability management\r\nIdentity / auth depth - OAuth, SSO, and end-user authentication\r\nExposure to SOC 2, ISO 27001, or GDPR/privacy in a SaaS environment. Compliance automation (e.g. Vanta) a plus\r\nA pragmatic, build-first mindset - comfortable owning ambiguity and setting direction in a scaling startup\r\nStrong communication and the ability to lead and mentor without heavy process\r\nNice to have\r\nPrior experience as an early or first security hire at a startup\r\nDevSecOps / CI-CD security tooling and automation\r\nDetection & incident response experience\r\nIdentity/auth depth (OAuth, SSO)\r\nEndpoint security / MDM exposure (e.g. Iru)\r\nWhat you get\r\nEquity and ownership. We're building something massive and we want you to share in the upside. Genuinely.\r\nCompetitive salary and a real growth path. As Blinq grows, your role and compensation grow with it.\r\nTime to switch off. 20 days of annual leave plus a flexible policy for everything life throws at you beyond that.\r\nGood times, often. Team lunches, padel, games nights, Barry's sessions. We like hanging out and it shows.\r\nRegular catered lunch at some of our offices, plus an always-stocked snack bar.\r\nJ-18808-Ljbffr","company":"Medium","rawCompany":"medium","city":"Seattle","state":"WA","isRemote":false,"isActive":false,"createdAt":"2026-07-16T01:47:42.512Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Tech Lead (DevSecOps)","description":"Engineering at Blinq\r\nWe're hiring a Tech Lead / DevSecOps Engineer, a security-first engineer who is also a strong backend engineer in our Node.js / TypeScript stack.\r\nYou'll set the technical direction for how we build securely, harden our cloud environment, own our security incident detection and response, and lead the work that takes our security posture (and compliance) to the next level. This is a high-trust, high-autonomy role with room to shape how security and infrastructure work as we scale.\r\nWhat you'll do\r\nLead design and delivery across our Node.js / TypeScript backend and platform, balancing security and platform work with the product-adjacent building that keeps us shipping\r\nOwn and harden our GCP, Cloudflare, and Firebase infrastructure - IAM, networking, secrets management, and infrastructure-as-code (Pulumi TypeScript & Terraform)\r\nEmbed security into the SDLC: threat modeling, secure code review, and CI/CD security guardrails (SAST/DAST, dependency scanning)\r\nRun vulnerability management end to end - triage, remediation, coordinating external penetration tests, and enhance our vulnerability disclosure programme\r\nOwn detection, logging, and incident response, including endpoint detection & response (EDR) and security monitoring in Datadog\r\nLead anti-phishing, spam, and platform-abuse detection and prevention\r\nDrive identity and access governance - SSO, OAuth, and IAM audits and improvements\r\nDrive our SOC 2 / ISO 27001 and privacy (GDPR) efforts, turning compliance requirements into pragmatic engineering controls\r\nSet technical standards and mentor engineers, raising the bar for how the whole team builds and ships securely\r\nWhat you'll bring\r\nTech Lead–level experience as a strong backend engineer with a security focus, ideally in Node.js / TypeScript\r\nSolid application/product security fundamentals - OWASP, secure design, code review, API security\r\nHands-on cloud experience (GCP ideal; Cloudflare/Firebase a plus) and infrastructure-as-code (Pulumi in TypeScript; Terraform or similar experience translates well)\r\nDetection & response depth - EDR, security monitoring / SIEM, and incident response. Hands-on experience with Datadog is highly desirable.\r\nFamiliarity with security tooling (SAST/DAST, Snyk/Dependabot/Renovate, secrets scanning, secrets management) and vulnerability management\r\nIdentity / auth depth - OAuth, SSO, and end-user authentication\r\nExposure to SOC 2, ISO 27001, or GDPR/privacy in a SaaS environment. Compliance automation (e.g. Vanta) a plus\r\nA pragmatic, build-first mindset - comfortable owning ambiguity and setting direction in a scaling startup\r\nStrong communication and the ability to lead and mentor without heavy process\r\nNice to have\r\nPrior experience as an early or first security hire at a startup\r\nDevSecOps / CI-CD security tooling and automation\r\nDetection & incident response experience\r\nIdentity/auth depth (OAuth, SSO)\r\nEndpoint security / MDM exposure (e.g. Iru)\r\nWhat you get\r\nEquity and ownership. We're building something massive and we want you to share in the upside. Genuinely.\r\nCompetitive salary and a real growth path. As Blinq grows, your role and compensation grow with it.\r\nTime to switch off. 20 days of annual leave plus a flexible policy for everything life throws at you beyond that.\r\nGood times, often. Team lunches, padel, games nights, Barry's sessions. We like hanging out and it shows.\r\nRegular catered lunch at some of our offices, plus an always-stocked snack bar.\r\nJ-18808-Ljbffr","datePosted":"2026-07-16T01:47:42.512Z","dateModified":"2026-07-16T01:47:42.512Z","hiringOrganization":{"@type":"Organization","name":"Medium","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Seattle","addressRegion":"WA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"fa1a88606fe7ede2d35576d3"},"url":"https://jobsearcher.com/jobs/fa1a88606fe7ede2d35576d3"}}