Senior Security Engineer
Our Mission
SPAN develops products that accelerate the rapid adoption of renewable energy in the home. The flagship SPAN Smart Panel is the first true evolution for the traditional home electric panel, harnessing enhanced technology for metering, monitoring, and control. We reinvented the electrical panel for smarter homes. SPAN tracks every last electron for maximum efficiency, total visibility, and real savings. An expanded product suite of intelligent, integrated solutions radically lowers the cost and complexity of energy upgrades–including solar, batteries and EVs–empowering homeowners to be active, resilient and informed players in the energy market.
The Role
We are looking for a hands-on Senior Security Engineer as part of our Security & IT team at SPAN. You will be responsible for building out SPAN’s security program and architecting, developing and deploying security tools and technologies to protect SPAN's platform and backend infrastructure. You will get exposure and contribute to the broader systems and cloud infrastructure initiatives here at SPAN as well
Responsibilities include:
Develop the secure SDLC process at SPAN and perform static security code analysis (SAST) of SPAN's code base on a regular basis and provide relevant recommendations to SPAN's developers.
Perform dynamic application security testing (DAST) using open source and commercial tools before applications are deployed in production.
Perform threat modeling on existing and upcoming feature sets in the SPAN applications so that appropriate security controls can be built from the ground up.
Own the vulnerability assessment and patch triage process to support ongoing vulnerability and patch management at SPAN and provide recommendations for identified vulnerabilities
Build robust Identity and Access Management posture
Ensure that our production platform in AWS has been hardened as per industry standards e.g. CIS benchmarks
Ensure all AWS security best practices have been implemented in the production platform
Deploy and own Security Incident and Event Management (SIEM) solution at SPAN
Automate security controls using scripting to the extent that it requires minimal human interaction
About you
Bachelor’s Degree in Computer Science, Information Assurance, Cyber Security, or related field of study
5+ years in a security engineering or operations role
Strong knowledge of applied cryptography, TLS/SSL, web authentication protocols such as OAuth/SAML
Understanding of web application weaknesses and defenses
Experience in using scripting languages e.g. Python, Perl, PHP, Ruby to automate tasks and manipulate data
Experience with developing threat models (STRIDE, DREAD, etc.)
Hands on experience with AWS Security best practices
Experience with key management tools like KMS, Hashicorp Vault
Comfortable with vulnerability scanning tools like Qualys, Nessus, etc.
Experience with SIEM tools like Splunk, Sumo Logic etc.
The U.S. base salary range for this position is $149,000 - $204,000 plus benefits, equity and variable compensation for Sales-related roles. This range represents SPAN’s good faith estimate of competitively-priced salary for the role based on national, real-time industry data from companies of a similar growth stage. This range reflects minimum and maximum new hire salaries for the role in San Francisco county. Within the range, individual pay is determined by location and individual factors including relevant skills, experience and education or training. This range correlates to the relative level of the candidate we believe we need for the role and may require an adjustment for candidates of a different level.
Your recruiter can share more about the specific salary range for the location this role is based during the hiring process.
Life at SPAN
SPAN embraces diversity and equal opportunity in a serious way. We are committed to building a team that represents a variety of backgrounds, perspectives, and skills.
Headquartered in San Francisco’s vibrant SoMa neighborhood, we are an eclectic group of creative thinkers who value open communication, teamwork, and a ‘make it happen’ approach to addressing complex challenges.
Our CEO, Arch Rao—former head of the Tesla Powerwall team—fosters an energetic and collaborative environment, with a strong emphasis on maintaining work-life-balance across the organization.
We’re hiring talented individuals who are driven by success and are passionate about shaping the future of renewable energy. If that sounds like you, we’d love for you to consider joining the rapidly growing team at SPAN.
The Perks:
⚡ Competitive compensation + equity grants at a well-funded, venture-backed company
⚡ Comprehensive benefits (including medical; dental, vision, life and disability insurance)
⚡ Comfortable, sunny office space located near BART and Caltrain public transit
⚡ Strong focus on teambuilding and company culture (events, meet-ups, clubs)
⚡ Flexible hours and unlimited PTO
Our Mission & Values:
At SPAN, we believe that powering your home with clean energy should be a simple and delightful experience that is at its essence human-centered and technology-forward.
Our core values include:
Making home energy more accessible, intuitive, and convenient.
Enabling homes and vehicles to be powered by the sun.
Building resilient homes with reliable power.
All-electric everything.
A more flexible & distributed grid.
Interested in joining our team? Submit an application today and we’ll be in touch with next steps!