Technical Lead Security Automation, Information Security

  • Full-time

Company Description

Square builds common business tools in unconventional ways so more people can start, run, and grow their businesses. When Square started, it was difficult and expensive (or just plain impossible) for some businesses to take credit cards. Square made credit card payments possible for all by turning a mobile phone into a credit card reader. Since then Square has been building an entire business toolkit of both hardware and software products including Square Capital, Square Terminal, Square Payroll, and more. We’re working to find new and better ways to help businesses succeed on their own terms—and we’re looking for people like you to help shape tomorrow at Square.

Job Description

Square's Security culture is focused on allowing our engineering teams to build secure products. We achieve this by building, and operating state-of-the-art  security alongside our product and infrastructure teams. The Square Security team works with other teams at Square to build world-class products for both customers and employees. Our ultimate goal is to ensure that every experience with Square is simple, secure, and safe.

We are looking for a Security Automation Lead to shape the way we automate security services across the organization. We are looking for an innovative security champion to solve complex security problems and develop a security automation framework. 

You will: 

  • Work closely with other architects, developers and operators to achieve a security solution
  • Be hands-on and an essential part of the engineering team for a product security automation framework development, evangelism, and maintenance
  • Need to be a self-starter, of new technologies and have experience in product security such as secure application design, static code analysis and web/mobile application vulnerabilities.
  • Integrate security capabilities with other security pillars including identity access management, data protection, network security and application security
  • Advise leadership on Security issues, systems, processes, products, and services

Qualifications

You have: 

  • 10+ years experience in a commercial environment using server-side modern programming languages - e.g Node.js/JavaScript, Python, Golang
  • 5+ years experience managing Linux applications within a cloud environment (we are currently on AWS but may be adding additional platforms soon)
  • 7+ years experience in specializing in security in a technical operations, devops, or SRE team role
  • 3+ years relational database experience - specific tech not important, but concepts are
  • 3+ years of experience with writing, running and managing containers and container orchestration systems
  • 3+ years experience with writing automation tools, and/or working with Infrastructure as Code
  • 3+ years managing high traffic, geographically distributed, highly available, production web applications 

 
Technologies we teach:

  • Java & Go
  • HSMs
  • AWS/GCP/Square-owned datacenter
  • SPIFFE
  • Service Mesh, Envoy
  • Lambda, Kubernetes, Docker

Additional Information

At Square, we value diversity and always treat all employees and job applicants based on merit, qualifications, competence, and talent. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the San Francisco Fair Chance Ordinance. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us by sending an email to assistance(at)squareup.com. We will treat your request as confidentially as possible. In your email, please include your name and preferred method of contact, and we will respond as soon as possible.

Perks

At Square, we want you to be well and thrive. Our global benefits package includes:
  • Healthcare coverage
  • Retirement Plans
  • Employee Stock Purchase Program
  • Wellness perks
  • Paid parental leave
  • Paid time off
  • Learning and Development resources
Privacy Policy