Staff Security Engineer, Product & Production Security

hr acuity United State
Remote
Apply
AI Summary

HR Acuity is seeking a Staff Security Engineer to lead product and production security efforts for their employee relations platform. This role involves designing and implementing security programs, conducting assessments, integrating security into the SDLC, and supporting compliance initiatives. The position requires a strong technical background in cloud security, application security, and a collaborative approach to embedding security across the organization.

Key Highlights
Lead product and production security efforts for a B2B Enterprise SaaS platform.
Design and implement a comprehensive application security program and integrate security into the SDLC.
Conduct security assessments, penetration tests, and lead incident response.
Support SOC2 and other compliance efforts, including customer security reviews.
Collaborate with engineering teams to embed security testing and best practices.
Technical Skills Required
Microsoft Azure Snyk Wiz CI/CD pipelines (Github, Github Actions) OWASP ASVS MASVS NIST MITRE ATT&CK Python PowerShell Java IDS/IPS Firewalls Antivirus Vulnerability scanners Forensic tools
Benefits & Perks
Salary range: $180,000 - $195,000
Discretionary annual bonus or commissions
Equity
Comprehensive benefits program (health, dental, vision)
FSA or HSA options
401(k) retirement plan with match
Paid leave (sickness, disability, parenthood)
#Allin Shares Program
Unlimited PTO
Company paid holidays, birthday day off, closed holiday weeks, half day summer Fridays, half day first Fridays
8 hours of volunteer time
Employee assistance program
Remote work environment

Job Description


At HR Acuity, we’re committed to building a secure, resilient platform that empowers our customers to manage employee relations with confidence. We’re hiring a Staff Security Engineer to lead our product and production security efforts—ensuring our cloud infrastructure and applications are protected, compliant, and continuously improving.

This role reports to the Director of DevOps and is 70% technical (focused on product and production security) and 30% compliance support. You’ll play a central role in shaping our security practices across the organization.

At HR Acuity®, we empower our team to #BeBold—embracing innovation and new challenges. With the right tools, we help you #WorkSmarter, fostering collaboration so we can all be #BetterTogether. If you're excited about being part our growth story, we’d love to chat!

About Us HR Acuity® is the leading provider of employee relations case management and investigation software. We help organizations standardize how workplace issues are reported, documented, and investigated. Our data-driven approach to managing workplace issues helps our clients and partners build trusted, inclusive cultures where employees feel safe.

This is an #All-in Zone. We are a fast-growing, innovative company where being #All-in is the norm. From our female founder CEO to every team member, we embrace a fully engaged mindset. We bring our best every day, fueled by passion for our mission and culture—and we expect the same from everyone who joins us.

At the same time, we are deeply committed to fostering an inclusive, diverse workplace where different perspectives are valued and respected. We believe in creating an environment where everyone can show up as their authentic selves and thrive. If this sounds like you, keep reading.

Click here to learn more about our values and benefits

What You’ll Do

    • Design and implement a comprehensive application security program—including policies, standards, and procedures—that reflects industry best practices.
    • Conduct regular security assessments and penetration tests to identify vulnerabilities and drive remediation.
    • Collaborate with engineering teams to integrate security into the software development lifecycle.
    • Lead initiatives to embed security testing throughout the Secure Software Development Lifecycle (SSDL) using Snyk.
    • Perform security code reviews and application-level testing.
    • Lead investigations and responses to security incidents and breaches.
    • Partner with GTM and Revenue teams to support customer security reviews and questionnaires.
    • Support SOC2 and other compliance efforts, ensuring audit readiness.
    • Document runbooks, best practices, and team initiatives using scalable, repeatable patterns.
    • Stay current on emerging threats, technologies, and frameworks to continuously improve our security posture.
    • Recommend and implement strategic enhancements to our security architecture.
    • Minimum of 5 years of experience in security engineering, with a focus on application and infrastructure security within a B2B Enterprise SaaS product.
    • Strong experience with Microsoft Azure cloud environments and native tooling
    • Strong grasp of network and web protocols (e.g., TCP/IP, HTTP/S, IPSEC).
    • Familiarity with CI/CD pipelines (Github, Github Actions)
    • Experience with tools like Snyk (SSDL) and Wiz (CSPM).
    • Experience with OWASP, ASVS, MASVS, and other relevant standards.
    • Hands-on experience with security technologies IDS/IPS, firewalls, antivirus, vulnerability scanners, forensic tools.
    • Knowledge of security frameworks like NIST and MITRE ATT&CK.
    • Proficiency in programming languages such as Python, PowerShell and Java.
    • Excellent analytical, problem-solving, and communication skills.
    • Security certifications such as CISSP, CISM, or OSCP are a plus.


    Compensation The pay range for this position is expected to be between $180,000 to $195,000 however, base pay offered may vary depending on multiple individualized, non-discriminatory factors, including market location, job-related knowledge, skills, and experience. The total compensation package for this position may also include other incentive compensation opportunities in the form of discretionary annual bonus or commissions, and equity. Additionally, full-time employees are eligible to participate in our comprehensive benefits program, including health and wellness benefits, 401(k) retirement plan, life and disability insurance coverages, and other benefits the Company may offer from time to time.

    Benefits
  • Stay healthy and happy with our comprehensive medical, dental and vision plans.
    • You can also choose from FSA or HSA options to suit your needs.
  • Save for your future with our 401K plan that matches your contributions.
  • Enjoy paid leave for various life events, such as sickness, disability, or parenthood.
  • Own a piece of the company with our #Allin Shares Program.

Perks

  • Take a break from work with our unlimited PTO policy to refresh and recharge.
  • Company paid holidays, birthday day off, closed 4th of July week and December holiday week, half day summer Fridays* and half day first Fridays*, and 8 hours of volunteer time.
  • Own a piece of the company with our #Allin Shares Program.
  • Earn extra cash by referring qualified candidates to join our team.
  • Access professional and personal support through our employee assistance program.
  • Work from anywhere with our remote work environment that fosters collaboration and creativity. *
  • Join a fun and energetic team that values your suggestions and new ideas.
  • Receive a competitive salary and meaningful opportunities for growth.


Learning and Development

  • Onboarding Learn the basics of your role, the company culture, and the expectations from your manager and team. Get familiar with the tools, systems, and processes that you will use in your daily work. Receive feedback and guidance from your mentor and peers.
  • Manager training Develop the skills and competencies to lead, motivate, and empower your team. Learn how to communicate effectively, delegate tasks, set goals, provide feedback, and resolve conflicts. Enhance your emotional intelligence, coaching, and mentoring abilities.
  • Leadership training Grow your leadership potential and influence within the organization. Learn how to inspire and align others with the company vision, mission, and values. Strengthen your strategic thinking, decision making, and problem-solving skills. Expand your network and collaboration with other leaders across functions and levels.
  • Industry training Stay updated on the latest trends, best practices, and innovations in the Employee Relations industry. Gain insights from experts and thought leaders in the field. Apply your learning to improve your performance, quality, and efficiency.
  • Based upon business needs

Subscribe our newsletter

New Things Will Always Update Regularly