LiveKit Logo

LiveKit

Staff Security Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
135K-300K Annually
Senior level
Remote
Hiring Remotely in United States
135K-300K Annually
Senior level
Lead security across applications, services, infrastructure, and developer workflows. Identify, assess, and mitigate risks; run secure code reviews, threat modeling, and architecture discussions; build automation and tooling to prevent issues; harden authentication and access control; investigate incidents and manage disclosures; partner with engineering teams to design secure-by-default APIs and deployments.
The summary above was generated by AI
About LiveKit

LiveKit is building the infrastructure layer for the agentic era of computing. Our platform gives developers everything they need to build, test, deploy, scale, and observe AI agents in production. Founded in 2021, LiveKit powers voice and agentic AI applications for OpenAI, Salesforce, Spotify, Meta, and tens of thousands of other developers, collectively facilitating billions of calls each year.

About This Role

This isn't one of those roles where "security" means running scans or writing policies that gather dust. We're looking for a real engineer — someone who thinks like a builder and a breaker. Someone who gets deep into the stack, whether it's an API endpoint, a container image, or a browser sandbox. You know how things are supposed to work — and what happens when they don't.

While some security professionals lean toward policy, compliance, or audits (and we value that too), we're after someone who wants to write code, secure systems, dig into strange bugs, and harden the platform from top to bottom. This is not a role for pointing out what needs to be done. It's for someone who's ready to do it.

You'll Thrive Here If You:
  • think like both a builder and a breaker, and understand security from first principles

  • can analyze systems for weaknesses — whether they're in business logic, configuration, or code

  • translate security concerns into engineering action without being the "no" person

  • are an excellent communicator who can document and evangelize best practices across the org

  • stay current with security research, tooling, and threats — and put that knowledge into action

What You'll Do
  • Own security across the stack — applications, services, infrastructure, and developer workflows

  • Proactively identify, assess, and mitigate risks in both infrastructure and application codebases

  • Lead secure code reviews, architecture discussions, and threat modeling sessions

  • Build tooling and automations that help prevent security issues before they reach production

  • Harden authentication and access control across internal and external surfaces

  • Partner closely with engineers across teams to design secure-by-default APIs, workflows, and deployments

  • Investigate vulnerabilities, respond to security incidents, and manage disclosure processes when needed

Who You Are
  • 6+ years of experience as a software engineer with a strong interest in security engineering

  • You've led or heavily contributed to security engineering efforts across applications, infrastructure, or both

  • Experienced with threat modeling, secure coding practices, and vulnerability management

  • Worked with CI/CD systems, cloud platforms (AWS, GCP, etc.), and containerized environments

  • You've responded to real-world security incidents, led postmortems, or driven remediation efforts

Nice to Have
  • Experience with security reviews of WebRTC, media pipelines, or real-time systems

  • Contributions to open-source security tooling or research

  • Hands-on experience with static and dynamic analysis tools, fuzzing, or sandboxing

  • You've built (or tried to build) something with LiveKit

Our Commitment to You
  • An opportunity to build something truly impactful to the world

  • Contribute to open source alongside world-class engineers

  • Competitive salary and equity package

  • Health, dental, and vision benefits

  • Flexible vacation policy

LiveKit is an equal opportunity employer and does not discriminate on the basis of any characteristic protected by applicable law. If you require a reasonable accommodation during the application or interview process, please contact [email protected].

Similar Jobs

Yesterday
Remote
United States
169K-211K Annually
Senior level
169K-211K Annually
Senior level
Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Lead design and implementation of secure global network infrastructure. Architect security standards, conduct threat modeling and network assessments, build security automation and tooling, integrate controls with SDN/BGP/MPLS platforms, support incident response, and mentor engineering teams to maintain resilient, observable network security posture.
Top Skills: AristaBgpBgp-LuCienaCloudflareCoreroDnsElkFirewallGitGoGrafanaIs-IsJuniperLacpLinuxMplsNetwork Intrusion DetectionOspfPrometheusPythonSdnVrrp
4 Days Ago
Remote or Hybrid
120K-145K Annually
Senior level
120K-145K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Build and scale enterprise application security capabilities: design automations, integrations, developer tooling, golden paths, and secure AI guardrails. Secure code, dependencies, containers, IaC, CI/CD, and software supply chains; improve vulnerability triage, remediation, telemetry, and platform integrations while mentoring engineers and partnering with cloud and platform teams.
Top Skills: APIsCheckmarxCi/CdCi/Cd SystemsCnappContainer SecurityContainersCspmGitGithub Advanced SecurityInfrastructure As CodeKubernetesPythonSastSbomScaSecrets DetectionSnykVeracodeWiz Code
12 Days Ago
Remote or Hybrid
2 Locations
170K-205K Annually
Senior level
170K-205K Annually
Senior level
Artificial Intelligence • Cloud • Information Technology • Security • Software • Cybersecurity • Data Privacy
Lead cloud and identity security across Snyk's multi-cloud estate (AWS/GCP). Own cloud IAM and least-privilege, CSPM/CNAPP posture, detection and prevention, Kubernetes and enterprise IdP security. Build preventative IaC guardrails, AI/agent automation for remediation and investigations, secure AI adoption and model pipelines, and mentor engineers while participating in on-call rotations and incident response.
Top Skills: Admission ControlAgent FrameworksAWSCi/CdCnappCspmDdos ProtectionGCPGoIdpInfrastructure As CodeKubernetesLlm ApisMcp ServersPythonSecrets ManagementSIEMTerraformWafWorkload Identity Federation

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account