Later
Later

Senior Security Engineer

engineeringfull-timeBoston, MA; Chicago, Illinois, United States; Los Angeles, California, United States; New York, New York, United States; Remote; San Francisco, California, United States; Toronto, Ontario, Canada; Vancouver, British Columbia, Canada; Vancouver, Washington, United States
SALARY
Not listed
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
general
Apply for this position
✦ AutoApply Let us apply to roles like this on your behalf.
Learn more

About the role

About this position

We're looking for a Senior Security Engineer to strengthen Later's company-wide security posture through hands-on engineering, thoughtful collaboration, and pragmatic standards. This role blends deep security expertise with strong software engineering skills, with a focus on application security, cloud and infrastructure security, secure development practices, vulnerability management, compliance enablement, and security improvements across our corporate systems and business operations. You'll partner closely with teams across Engineering, Infrastructure, Product, IT, Legal, People, Finance, and other business functions to embed security into Later's systems, tools, workflows, and operating practices. A core focus of this role is helping Later mature its security capabilities in support of SOC 2 and other compliance expectations through practical controls, automation, evidence-ready processes, and clear guidance that works across the company. This role is ideal for a senior security practitioner who thinks like a defender, builds like a software engineer, and leads through influence across both technical and non-technical teams.

What you'll be doing

Company-Wide Security Strategy & Compliance

  • Assess and continuously improve Later's overall security posture across applications, infrastructure, cloud environments, corporate systems, vendor tooling, and business workflows.
  • Define and implement scalable security standards, best practices, and guardrails that support SOC 2 readiness through practical, automated, and auditable solutions.
  • Partner with Engineering, Infrastructure, IT, Product, Legal, People, Finance, and business leaders to align security priorities with company goals, risk reduction, and delivery timelines.
  • Translate SOC 2 and related compliance requirements into sustainable technical and operational controls, procedures, and evidence collection practices.
  • Identify security gaps across the company, prioritize remediation efforts, and help teams make pragmatic, risk-based decisions.
  • Support company-wide security awareness, secure operating practices, and adoption of security controls across business teams.

Technical Execution

  • Build and maintain internal security tools, automation, and services that support secure development, compliance workflows, vulnerability management, corporate security operations, and operational visibility.
  • Design and implement security controls within CI/CD pipelines, including secure build and deploy patterns, security scanning, dependency management, container scanning, and secret management.
  • Support application security efforts, including secure design reviews, threat modeling, code
✦ Let us apply for you
We find roles like this and apply on your behalf. Cover letter written for each one. Plans from $15/mo. Cancel anytime.
Get AutoApply
Apply now