Senior Software Engineer, Software Supply Chain Security

  • San Francisco, CA
  • Employees can work remotely
  • Full-time
  • Alternate Location: Seattle, United States

Company Description

Square builds common business tools in unconventional ways so more people can start, run, and grow their businesses. When Square started, it was difficult and expensive (or just plain impossible) for some businesses to take credit cards. Square made credit card payments possible for all by turning a mobile phone into a credit card reader. Since then Square has been building an entire business toolkit of both hardware and software products including Square Capital, Square Terminal, Square Payroll, and more. We’re working to find new and better ways to help businesses succeed on their own terms—and we’re looking for people like you to help shape tomorrow at Square.

Job Description

Square’s Security culture is focused on helping our engineering teams to build and ship secure products. We achieve this by building, and operating state-of-the-art security alongside our product and infrastructure teams.

The Software Supply Chain Security team, within Infrastructure Security, is focused on ensuring that the code Square ships is as secure as possible. We blend third-party tooling with in-house systems to improve the security of many types of code including backend, frontend, infrastructure, and mobile.

You will: 

  • Build and design systems that secure the entirety of Square's software supply chain.

  • Build and integrate systems detecting third-party vulnerabilities in libraries, OS and container components, etc.

  • Integrate with our Github, CI/CD, and build attestation systems.

  • Partner effectively with Square's infrastructure teams and other security teams.

  • Collaborate with developers across Square to ensure our systems are embedded in their workflows.

  • Learn about security and apply that knowledge towards real-world problems.


You have: 

  • 8+ years of industry experience as a programer, developer, SWE, or similar job roles.

  • A strong interest in security and growing your career in the direction of InfoSec (prior experience in InfoSec not required).

  • Experience with DevOps, infrastructure code, and similar is helpful but not required. 


Technologies we use and teach:

  • Ruby & Java

  • Linux, Docker, etc

  • Kubernetes

  • Terraform

  • AWS

Additional Information

At Square, we value diversity and always treat all employees and job applicants based on merit, qualifications, competence, and talent. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the San Francisco Fair Chance Ordinance. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us by sending an email to assistance(at) We will treat your request as confidentially as possible. In your email, please include your name and preferred method of contact, and we will respond as soon as possible.


At Square, we want you to be well and thrive. Our global benefits package includes:
  • Healthcare coverage
  • Retirement Plans
  • Employee Stock Purchase Program
  • Wellness perks
  • Paid parental leave
  • Paid time off
  • Learning and Development resources