Want to help us help others? We’re hiring!
GoFundMe is the world’s most powerful community for good, dedicated to helping people help each other. By uniting individuals and nonprofits in one place, GoFundMe makes it easy and safe for people to ask for help and support causes—for themselves and each other. Together, our community has raised more than $40 billion since 2010.
Join us! The GoFundMe team is searching for our next Senior Security Engineerto help build a secure platform for giving. We are looking for a generalist within this specialty to swarm with as a team. Candidates considered for this role will be located remotely but are expected to overlap with Pacific Time.
Already part of our team? We ask that internal candidates apply via the internal job board to ensure your application is reviewed appropriately.
The Job
- Partner with engineering teams to improve security through consultation, education, tooling, and process improvements.
- Throughout the Secure Development Lifecycle, perform targeted code reviews and security assessments when investigating high-risk designs, vulnerabilities, or security-sensitive features.
- Help evaluate emerging AI technologies and development practices, helping engineering teams adopt them securely through practical guidance, guardrails, and risk assessments.
- Notice recurring security challenges and contribute to scalable solutions that reduce risk across the organization.
- Help handle application vulnerability reports received through third-party sources. Review, prioritize, and work with the relevant engineering teams to remediate them.
- Command incidents and facilitate post-mortem investigations.
- Participate in on-call rotation and take your turn shouldering operational toil for the team.
You
- Demonstrate growing judgement skills.
- Dedicated to delivering work in security while setting high expectations for our users and coworkers.
- Demonstrate an inclusive mindset and enjoy working with people from a wide range of backgrounds and experiences.
- 3+ years contributing to secure outcomes with engineering teams.
- Experience with OWASP Top 10 and other industry standards.
- Experience with application security and security testing.
- Experience in secure code review, including basic skills in one or more of PHP, Python, Kotlin, JavaScript, and TypeScript.
- Excellent written and verbal communication skills.
Why you’ll love it here
- Make an Impact : Be part of a mission-driven organization making a positive difference in millions of lives every year.
- Innovative Environment : Work with a diverse, passionate, and talented team in a fast-paced, forward-thinking atmosphere.
- Collaborative Team : Join a fun and collaborative team that works hard and celebrates succe