Skip to main content
1Password
1Password

Senior Security Engineer, Vulnerability Management

RemoteUnited States, Canada only
Published
Role
Security
Experience
Senior
Employment
Full-time
Company size
Enterprise
$153k–$214k/yr
Check eligibility

Open to US, CA only. Set where you work from to check your eligibility.

No BS summary

Senior security engineer with 5+ years in IT or engineering with a security focus, for a remote US/Canada role. Needs hands-on product security incident response, coordinated vulnerability disclosure, public security communications, coding for forensics/automation, and AI/ML-enabled security workflow experience.

Optional skills

CVSSEPSSSBOMsSOC 2ISO 27001

What you'll do

  • Lead end-to-end response to product security incidents from discovery, triage, remediation, and disclosure
  • Own and evolve 1Password's PSIRT function including incident classification frameworks, severity models, escalation paths, and response playbooks
  • Drive coordinated vulnerability disclosure processes with the bug bounty program and external security researchers
  • Coordinate Product Security, Engineering, Legal, Communications, and Customer Success during active security incidents
  • Lead post-incident reviews and turn findings into systemic improvements
  • Develop and maintain incident response tooling, automation, and reporting to reduce detection and response time
  • Contribute to customer-facing security advisories, CVE disclosures, and public incident communications
  • Evaluate and integrate AI-powered tooling and workflows for incident detection and response
  • Mentor other engineers and help mature product security and incident response capabilities
  • Serve on an on-call rotation with out-of-business-hours coverage
  • Actively build incident response tooling with AI

What they require

  • 5+ years of career experience in IT or Engineering with a security focus
  • Hands-on experience leading or participating in security incident response, ideally in a product or SaaS company context
  • Experience with coordinated vulnerability disclosure and managing relationships with external security researchers
  • Strong judgment under pressure during time-sensitive situations with incomplete information
  • Experience building or formalizing incident response capabilities from the ground up, including playbooks, runbooks, severity frameworks, and escalation processes
  • Experience drafting or contributing to customer security advisories, CVEs, or public-facing incident communications
  • Strong communication skills across engineers, executives, and customers
  • Comfort reading and writing code to support forensic analysis, automation, and tooling
  • Adaptable and resilient in fast-paced environments with shifting priorities
  • Experience leveraging AI/ML capabilities to accelerate security workflows, automate repetitive tasks, or improve detection and response
  • Proven builder of AI-enabled automation or workflows with measurable impact
  • Systems thinking about how automation changes downstream workflows
  • Background check required for successful applicants

Benefits

  • Health benefits
  • Dental benefits
  • 401k for USA-based roles
  • RRSP for Canada-based roles
  • Generous paid time off
  • Equity grant
  • Incentive programs where applicable
  • Maternity and parental leave top-up programs
  • RSU program for most employees
  • Retirement matching program
  • Free 1Password account
  • Paid volunteer days
  • Peer-to-peer recognition through Bonusly
  • Remote-first work environment

1Password provides identity security and trusted access solutions for people, AI agents, and machine workloads. Its Unified Access platform is built to discover, secure, and audit access, including credential brokering for AI agents and machine workloads.

CybersecurityEnterprise1password.com

What people say about this company

3.2/ 5

Details

Apply routeDom
$153k–$214k/yr