Remote job
Remote confirmedSecurity Engineer
PostHog
Key points from the posting
- Tech stack
- WizSemgrepSIEM
- Seniority:
- Senior
Read out of the job posting automatically
Our assessment
- Our reading of the full posting text confirms it: fully remote.
- The posting states no salary. Comparable roles in our index (71 postings): median 5,834 euros per month, middle range 4,587 to 6,875 euros.
- 5 more open roles from this employer in our index. 5 of them fully remote.
This section only: calculated automatically by nomado24, from our own job index and our own reading of the posting text. Not stated by the employer.
Job description
ABOUT POSTHOG
We equip every developer to build successful products https://posthog.com/handbook/why-does-posthog-exist.
We started with open-source product analytics, launched out of Y Combinator's W20 cohort https://posthog.com/handbook/story.
We've since shipped more than a dozen products https://posthog.com/products, including a built-in data warehouse https://posthog.com/docs/data-warehouse, a customer data platform https://posthog.com/docs/cdp, and Max AI https://posthog.com/max, an AI-powered analyst that answers product questions, helps users find useful session recordings, and writes custom SQL queries.
Next on the roadmap are messaging, customer analytics, ai task creation and coding based on customer data, logs and support analytics.
Our values https://posthog.com/handbook/values are not a poster on the wall full of aspiration. They’ve come from how we really work, day in day out.
PostHog is open source https://posthog.com/docs/self-host product led, and a default alive https://paulgraham.com/aord.html company that is well funded.
THINGS WE CARE ABOUT
- Transparency: Everyone can read about our roadmap, how we pay (or even let go of) people, our strategy, and how we work, in our public company handbook https://posthog.com/handbook. Internally, we share revenue, notes and slides from board meetings, and fundraising plans, so everyone has the context they need to make good decisions.
- Autonomy: We don’t tell anyone what to do. Everyone chooses what to work on next based on what's going to have the biggest impact on our customers, and what they find interesting and motivating to work on. Engineers lead product teams https://posthog.com/handbook/wide-company and make product decisions https://posthog.com/handbook/which-products. Teams are flexible and easy to change when needed.
- Shipping fast: Why not now? https://posthog.com/handbook/values#why-not-now We want to build a lot of products; we can't do that shipping at a normal pace. We've built the company around small teams – autonomous, highly-efficient groups of cracked engineers https://posthog.com/founders/cracked-manifesto who can outship much larger companies because they own their products end-to-end.
- Time for building: Nothing gets shipped in a meeting. We're a natively remote company. We default to async communication – PRs > Issues > Slack. Tuesdays and Thursdays are meeting-free days https://posthog.com/handbook/company/culture#were-on-the-makers-schedule, and we prioritize heads down building time over perfect coordination. This will be the most productive job you've ever had.
- Ambition: We want to solve big problems. We strongly believe that aiming for the best possible upside, and sometimes missing, is better than never trying. We're optimistic about what's possible and our ability to get there.
- Being weird: Weird means redesigning an already world-class website for the 5th time. It means shipping literally every product that relates to customer data. It means building an objectively unnecessary developer toy https://posthog.com/deskhog with dubious shareholder value. Doing weird stuff is a competitive advantage. And it's fun.
WHO WE'RE LOOKING FOR
We are looking for an expert security generalist to assist with all things security at PostHog. Someone equally adept (and interested!) in building secure libraries, writing semgrep rules, hardening cloud deployments, improving network observability, and leading incident response.
Someone to take the reins of our security operations, build out our detection pipelines, and ensure that when something goes bump in the night, we have the observability to know exactly what happened.
We're a team that's building internal security products and agents - things like agents to automatically triage wiz alerts, automatically review pull requests, automatically assign vulnerability findings to the owning product team.
In this role you’ll:
- Build from Scratch: You aren't maintaining someone else's legacy SIEM. You are shaping the security team, culture and tooling for a high-growth, open-source company.
- Zero Bureaucracy: We hate meetings. We don't have "Security Committees." You have the autonomy to make changes and move fast.
- Transparency: We work in the open. You’ll be able to see (and contribute to) how we handled past incidents, like this NPM package compromise https://www.google.com/search?q=https://github.com/PostHog/posthog/issues/example.
- Direct Impact: Your work directly protects the data of thousands of customers. When you improve our security posture, the whole company (and our community) feels it.
WHAT YOU'LL BE DOING
- Triage and Tune: You’ll own our Wiz alerts. You’ll be responsible for turning "noise" into "actionable findings" and ensuring we aren't just staring at a dashboard of issues that don't actually matter. We already get relatively few alerts, and we’d like to even further reduce that to just the ones that matter.
- …
This role is provided by an external source. Applications are handled on the source website.
