Senior Software Engineer, Security
Nectar Social · Palo Alto, California
- Location
- Palo Alto, California, United States
- Workplace
- Hybrid
- Employment
- Full time
- Level
- Senior
- Posted
- 3 months ago
About this role
About Us
We're living through a fundamental shift in how people discover, evaluate, and purchase products. The next generation doesn't respond to traditional marketing -- they build relationships with brands through authentic social interactions, seek recommendations from communities they trust, and expect personalized experiences that feel human, not corporate.
At Nectar Social, we're building the AI-native social operating system that enables this new era of commerce. We believe every social interaction should deepen the relationship between brands and their communities while creating genuine value for both sides.
Founded by ex-Meta product and engineering leaders, we've raised over $30M in total capital from investors including GV and True Ventures. We work with brands like Oura Health, Caraway, e.l.f. Cosmetics, Kosas, OLIPOP, and many more. We're building the future of social commerce -- where community, conversation, and commerce converge.
The Role
We're looking for a Senior Software Security Engineer to own security across our enterprise SaaS platform -- from the design of our deployed applications to the compliance programs that earn the trust of large brands. We handle sensitive social and customer data at scale, and our customers expect enterprise-grade security and rigorous proof of it.
As the first Security engineer, you'll have outsized ownership. You'll secure the products we ship, lead the compliance initiatives that unlock enterprise deals, and build the security foundations the rest of the engineering team relies on as we grow.
What You'll Be Doing
Own the security of our deployed applications, including threat modeling, secure design reviews, and finding and fixing vulnerabilities across our services and AI infrastructure
Lead new compliance initiatives (SOC 2, and frameworks like ISO 27001, GDPR, and CCPA as we scale), establishing the controls, policies, and evidence to back them
Own the security side of the sales cycle: complete customer security questionnaires, support enterprise security reviews, and act as our expert in vendor assessments
Build and run our vulnerability management, secrets management, identity and access, and security monitoring practices
Manage third-party risk and our penetration-testing program
What We're Looking For
5+ years in security engineering, application/product security, or a related role at a software company
Strong application and cloud security fundamentals; able to reason about the security of real production systems and AI workloads, not just policy
Hands-on experience leading or operating a compliance program (SOC 2, ISO 27001, or similar) end to end
Solid programming skills to build security tooling and automation, and to work credibly alongside engineers
Comfortable operating in fast-moving startup environments with high ownership and autonomy
Bonus Points
Experience establishing a security and compliance function at an early-stage or rapidly scaling SaaS company
Familiarity with AWS, Pulumi, Postgres, ClickHouse, Turbopuffer, or Temporal
What We Offer
Competitive compensation and early equity
Health, vision, and dental benefits + 401(k) match
Hybrid work schedule (4 days in office) with 3 flex remote days per quarter (available after 3 months)
Comprehensive stipends: $1,000/month housing stipend for living near the office, $50/month mobile stipend, $50/month internet stipend for remote employees, and commuter benefits (train stipend or Palo Alto parking permit reimbursement)
Free lunch in the heart of University Ave. in Palo Alto
As published by Nectar Social. Applications are handled on their site.
Skills this posting mentions
About Nectar Social
Nectar Social is an agentic community management and social listening platform for the world's leading businesses.
All 28 openings at Nectar SocialOne click, then it is written
Apply to Nectar Social with a resume written for this role.
Queue Senior Software Engineer, Security and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Nectar Social’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at Nectar Social
See all- 6 weeks ago
- 6 weeks ago
- 7 weeks ago
- 8 weeks ago
- 8 weeks ago
- 8 weeks ago
Similar roles elsewhere
See more- Today
- 5 days ago
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board Nectar Social publishes. Refolk is not the employer and does not handle their hiring. Applications go to Nectar Social directly.