Skip to content

Open nowPosted 14 days ago

Staff Security Engineer - Engineer

Uber165 open roles

Pay
$232,000 – $258,000 a year
Where
San Francisco, CA, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowStaff Security Engineer - EngineerUber · San Francisco, CA, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Uber's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Uber postings stay open a median of 35 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 33.9%30 days
This job: posted 14 days ago

Uber median: 35 days open

The posting

Job Description

About the role and team

Engineering at Uber means building for real-world impact under real-world constraints. The problems are complex, the systems are massive, and the pace is fast. You’ll need to make smart decisions with imperfect information — and own them. If you think in systems, stay calm under pressure, and care about building things that actually work — this is where you’ll grow.

As a Staff Security Engineer, you will safeguard user-facing products by leveraging AI and ML to identify evolving threats. You will architect and scale industry-leading solutions while navigating the "messy" reality of heterogeneous data and shifting adversary behaviors. This role is for a technical leader who can stay steady during high-stakes incident investigations and move with urgency to build proactive security frameworks.

What you’ll do

  • Architect and scale sophisticated security services and frameworks designed to neutralize evolving threats across Uber's global ecosystem.
  • Navigate high-stakes incident investigations by performing in-depth threat analysis and driving root cause analysis across complex, hybrid-cloud environments.
  • Innovate and write high-quality, modular code to automate detection logic and scale response capabilities using Python, Go, or Ruby.
  • Champion engineering excellence by establishing standards for detection rules, query optimization, and technical documentation within the organization.
  • Collaborate across disciplines—including Network Ops, Incident Response, and Product—to influence security posture without direct authority.
  • Own the transition from research to production by experimenting with new AI/ML techniques to continuously enhance our cyber defense capabilities.

Basic Qualifications

  • 8+ years of professional experience in security engineering, threat detection, or client platform engineering.
  • Demonstrated expertise in designing, building, and tuning detection systems (rules, anomaly models, correlation logic) across log, network, and endpoint telemetry, with a track record of improving detection coverage and signal fidelity while reducing false-positive burden on responders.
  • Proven ability to solve strategically important problems by providing concrete technical input into code and systems across multiple teams.
  • Demonstrated experience leading cross-functional security and privacy projects through all stages: inception, requirement gathering, threat modeling, and global operations.
  • Expertise in defining standards for security/privacy, testing, monitoring, and alerting systems, while leading teams to execute against them.
  • Ability to direct incident management as a high-level escalation point for other engineers, identifying and adopting best practices in incident response across teams.
  • Demonstrated skill in making complex engineering and risk tradeoffs (e.g., Security/Privacy vs. Velocity, Buy vs. Build) with an understanding of short and long-term implications.
  • Proven track record of technical writing and review, including ERDs, developer documentation, and post-mortems that meet business and compliance goals.
  • Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related technical field.

Preferred Qualifications

  • Master’s degree or PhD in a technical field and 10+ years of experience in a cybersecurity leadership or staff-level role.
  • Deep knowledge of Cybersecurity, Compliance, and Privacy, with experience chaining vulnerabilities and quantifying risks.
  • Experience collaborating with EMs, TPMs, and PMs on prioritization, headcount planning, and technical evaluation of team members.
  • Advanced expertise in leveraging AI/ML for security use cases and building device attestation or trust tooling at a global scale.
  • Strategic relationship builder: Proven ability to leverage collaborative relationships with legal, product, and engineering stakeholders to build trust and accomplish work.

Responsibilities

For San Francisco, CA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.

You will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.

About Us

Ready to Ride?

This isn't the kind of place where you follow a playbook — it's where you help write one. If you're driven by impact, energized by challenge, and ready to shape how the world moves — we'd love to hear from you.

You may be eligible for bonuses, equity, and other compensation, as well as a range of benefits. Explore our benefits.

Offices remain key to collaboration and Uber's culture. Unless approved for full remote work, employees must spend at least 50% of their time in-office. Some roles, like those at greenlight hubs, require full-time in-office presence. Ask your Recruiter for details about this role's requirements.

Uber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Uber's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Uber's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Uber's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.