What are the responsibilities and job description for the Software Engineer position at Zip?
This is an exciting new opportunity for a Security Software Engineer at Zip!About ZipFounded in 2020, Zip was created to solve a longstanding challenge with a purpose-built platform that delivers a seamless, consumer-grade user experience. In just a few years, Zip pioneered the procurement orchestration category and became the leading solution in this $50B TAM market. Today, top companies such as Instacart, Anthropic, Sephora, Discover, Reddit, and Lyft rely on Zip to manage billions in spend.Zip's team is rapidly growing, composed of professionals who have previously contributed to category-defining companies like Airbnb, Meta, Salesforce, Databricks, Apple, Google, and Ramp. Backed by $370 million in funding from Y Combinator, BOND, DST Global, and CRV, and with a $2.2 billion valuation, Zip is focused on pushing technological boundaries, expanding into global markets, and delivering significant value to its customers.The RoleZip’s security team is dedicated to protecting customer data with industry-leading security measures. The Security Software Engineer will play a key role in designing and implementing security solutions, spanning customer-facing security features to critical infrastructure protections. This position offers the opportunity to tackle complex technical and product challenges in a fast-paced environment. While mentorship and guidance are readily available, the ideal candidate will demonstrate the ability to independently scope and resolve intricate technical issues.ResponsibilitiesDevelop security-enhancing features within Zip’s products, such as multi-region authentication, account takeover detection, and universal audit trails.Design and implement defensive strategies to detect and mitigate security threats within Zip’s infrastructure.Build tools and processes that empower developers to securely ship new features.Conduct security reviews, threat modeling, table-top exercises, and bug bounty triages.Lead incident response efforts, perform in-depth investigations, and effectively communicate findings to internal and external stakeholders.QualificationsA minimum of 1 to 2 years of experience in security or software engineering, with hands-on software development experience.Prior experience in enterprise SaaS and / or fintech is preferred.Familiarity with cloud technologies, including AWS, Kubernetes, and Infrastructure as Code.Strong understanding of security best practices, threat models, and frameworks such as the OWASP Top 10, NIST CSF, and SLSA framework.Exposure to compliance and regulatory standards, including SOC 2, ISO 27001, and GDPR.CompensationThe salary range for this role is $130,000 - $170,000, with compensation determined by factors such as location, relevant experience, education, and specialized skills.Perks and BenefitsZip is committed to providing an environment where employees can thrive. Benefits include : Start-up equityComprehensive health, vision and dental coverageCatered lunches and dinners for San Francisco-based employeesCommuter benefitsTeam-building events and happy hoursFlexible PTOApple equipment and a home office budget401(k) planJoin ZipZip seeks individuals who take ownership, communicate openly, and embrace an underdog mindset while driving innovation at scale. Candidates from all backgrounds are encouraged to apply, even if their experience does not perfectly align with the listed qualifications. Zip is committed to fostering a diverse and inclusive workplace where everyone—regardless of age, religion, ethnicity, gender, sexual orientation, and more—feels valued and included.
Salary : $130,000 - $170,000