SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Security Engineer

Roofr - Remote - Remote - posted 2026-09-15

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Roofr is a CRM platform for the roofing and home services industry, combining aerial roof measurements, digital sales proposals, payments, material ordering, and business management into a single platform. The company has strong financials and is at an exciting growth stage. As Senior Security Engineer, you will report to the VP of Engineering and work closely with the CTO and DevOps team as part of Roofr's security guild. You'll own the design and hardening of security infrastructure across cloud environments, including network segmentation, firewalls, IDS/IPS, VPNs, WAF, and endpoint detection and response (EDR). You'll lead vulnerability management end-to-end: running assessments and authenticated scans, triaging and prioritizing by exploitability and blast radius, and driving remediation SLAs with engineering teams. Key responsibilities include building and tuning detection content (SIEM/SOAR rules, alerting logic) against real attack techniques, acting as incident commander for security incidents (containment, eradication, forensics, post-incident review), and threat-modeling new features and infrastructure changes before they ship. You'll own IAM hygiene and cloud security posture across production AWS accounts, write and maintain security policies and standards as living controls, and own Roofr's compliance program end-to-end (NIST CSF 2.0, SOC 2, CCPA/CPRA mapping, audits, evidence management). You'll also run tabletop exercises and incident playbook drills, and push secure-by-design practices into engineering workflows through threat modeling in design reviews and security requirements in the SDLC. This is a hands-on individual contributor role where you'll be the primary security voice, making decisions and owning them. You'll translate technical risk into business terms leadership can act on, remain calm and decisive under incident pressure, and build processes that don't yet exist. The role is designed for someone who wants to stay deeply technical and hands-on, building the security foundation directly rather than leading from the side. REQUIREMENTS: - Bachelor's degree in computer science, IT, cybersecurity, or equivalent hands-on experience - 5-8+ years in security engineering, incident response, or related infrastructure roles, including time as primary or senior responder on real incidents - Deep network security fundamentals: firewalls, VPNs, routing/segmentation, network boundaries, TLS, DNS, and how attackers abuse them - Hands-on cloud security in AWS: IAM policy design, VPC architecture, KMS/secrets management, CloudTrail/GuardDuty or equivalent - Real incident response experience: triage, containment, forensics, root cause analysis (not just theory) - Working knowledge of SIEM/SOAR tooling, writing detection logic (Python/Bash), and building custom tooling - Fluency in compliance frameworks: NIST CSF 2.0, SOC 2, CCPA/CPRA, and translating controls into actionable policy - Strong software engineering foundation: comfortable reading and writing real application code (not just scripts) to dig into codebases directly - Certifications are a strong plus: CISSP, OSCP, GCIH, or CEH BONUS: - Experience using AI/LLM tooling for threat intelligence (alert triage, detection summarization, hunting workflows) - Familiarity with GDPR - Experience with PHP/Laravel - Comfortable with Postgres

Similar roles