Staff Security Engineer, Proactive Security
WFA Digital Insight
As demand for cloud security specialists continues to soar, with a reported 25% increase in 2025, DoorDash is looking for a seasoned Staff Security Engineer to bolster its proactive security team. This role stands out for its focus on scalable and reliable delivery networks, and candidates should be prepared to demonstrate their expertise in AWS, Python, and security engineering. With the rise of remote work, companies like DoorDash are prioritizing security, making this a critical hire. Before applying, candidates should be aware of the need for strong problem-solving skills and the ability to communicate complex security concepts to cross-functional teams.
Job Description
About the Role
The Staff Security Engineer will play a pivotal role in DoorDash's proactive security team, leading threat modeling, hardening, and operation of security services within the Product and Cloud Security domains. This is a US or Canada remote position, reporting directly to the Manager of the Security Engineering team. As part of an inclusive and collaborative global team, the successful candidate will help build 'paved paths' to ensure a safe, reliable, and resilient delivery network.The security engineering team is responsible for designing, implementing, and maintaining the security infrastructure that powers DoorDash's multi-sided marketplace of consumers, merchants, and drivers. The team's mission is to build the world's most trusted on-demand logistics engine for delivery, and the Staff Security Engineer will be instrumental in achieving this goal.
What You Will Do
- Threat model, design, harden, and operationalize Product and Cloud Security services and controls at DoorDash scale
- Define, document, and implement security standards, guidelines, and procedures to design and implement automated security controls and remediation tools
- Partner cross-functionally with Core Infrastructure, Product Engineering, Legal, Security teams, and Vendor Partners to build 'paved paths' that provide actionable feedback to embed secure design practices into the product and infrastructure development process
- Lead the technical direction and roadmap execution for assigned areas of ownership
- Build and maintain high Operational Excellence to ensure services operate with excellence, rigor, and durable standards to minimize downtime
- Participate in on-call rotation and promptly respond to on-call events with urgency and rigor
- Manage the lifecycle of product and cloud security vulnerabilities, from identification, triage, and drive remediation, reporting, and metrics
- Influence and enable the secure and responsible adoption of LLMs and AI tools
- Mentor and coach earlier career engineers, setting high standards for Operational Excellence and Security Engineering
What We Are Looking For
- 8+ years of experience as a security engineer in product or infrastructure security, with deep hands-on AWS expertise across identity, IAM, SSO, and infrastructure hardening
- Experience with GCP is a plus
- Production-quality automation and tooling skills, with hands-on AI experimentation applied to cloud security problems
- Proficiency in Python or other languages like Golang, and strong experience with IaC tooling like Terraform
- Experience driving foundational improvements to a company's infrastructure security posture and breadth across security and infrastructure in large production environments
- Deep understanding of OWASP Top 10, distributed systems security, and design, with the ability to analyze code, architecture, and designs from a security perspective
Nice to Have
- Experience with CI/CD pipelines for automated control enforcement
- Knowledge of security and compliance frameworks, such as NIST or SOC 2
- Experience with security orchestration, automation, and response tools
Benefits and Perks
- Competitive salary and benefits package
- Opportunity to work with a talented team of security professionals
- Flexible and remote work arrangements
- Professional development and growth opportunities
- Access to the latest security tools and technologies
- Recognition and rewards for outstanding performance
How to Stand Out
- When applying, be sure to highlight your hands-on experience with AWS, Python, and security engineering, and provide specific examples of your accomplishments in these areas.
- Use your resume and cover letter to demonstrate your understanding of security concepts, such as OWASP Top 10 and distributed systems security.
- Prepare to discuss your experience with threat modeling, security services, and operational excellence during the interview process.
- Be ready to provide examples of how you've driven foundational improvements to a company's infrastructure security posture and breadth across security and infrastructure.
- Research DoorDash's company culture and values, and be prepared to discuss how your skills and experience align with the company's mission and goals.
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.