Software Engineer, Security

Lyft, San Francisco, CA

Lyft is your friend with a car, whenever you need one

Our drivers and passengers entrust Lyft with their personal information and travel details to get where they're going, and expect us to keep that data safe. Lyft's security team leads efforts across the company to ensure our systems are secure and worthy of our users' trust.

The security team designs and builds out Lyft's security architecture, consults with other teams as they build and launch new products and features, and responds to incidents that occur. We're software engineers first, we believe in scaling security through engineering and automation, and we ship frequently. Our work spans the entire company and takes place at all levels of the stack, from infrastructure to web application security, as well as mobile apps and IT.

We're looking for an engineer who's excited about growing and improving security at Lyft by building systems, advising other teams, and promoting security throughout the company. You'll play a part in shaping the future of security at Lyft, and your work will have significant impact and visibility.

If you want to learn more about the kinds of things we’ve built, check out our open-source secret management service for AWS users at https://lyft.github.io/confidant.

About you:

  • You're a software engineer, and have solid experience with a high level programming language. Bonus points for experience with C and shell scripts.
  • You have experience with (or a deep interest in) computer security, ideally in both attacking and defending web applications.
  • When facing a problem that's poorly defined or outside of your expertise, you can quickly learn what you need to dig in, make sense of the problem, and start working towards a solution.
  • You're a great communicator, and can advocate for your proposals while also empathizing with your teammates' goals and priorities.
  • You understand that security work must be prioritized because all teams have finite resources. You have good judgment and a sense of when to compromise and when to hold your ground.

In addition, our ideal candidate has experience with a subset of:

  • Teaching your coworkers about security best practices.
  • Amazon Web Services (AWS) or another cloud infrastructure provider.
  • Running multi-tier or distributed web applications at scale.
  • Developing or attacking mobile apps on Android or iOS.
  • Computer network security or major computer networking protocols (e.g. TCP/IP, HTTP, TLS, DNS).
  • OS security or running fleets of Linux or OS X systems.
  • Reverse engineering, malware analysis, or digital forensics.
  • Data analysis, machine learning, or anomaly detection.
  • Data classification or data privacy protection.Cryptography, PKI, or key distribution.
Lyft is an EEO employer that actively pursues and hires a diverse workforce, and pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

About Lyft

Wherever you’re headed, count on Lyft for rides in minutes. The Lyft app matches you with local drivers at the tap of a button. Just request and go.

Ride by ride, we’re changing the way our world works.

Want to learn more about Lyft? Visit Lyft's website.