SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Samsara (NYSE: IOT) is the Connected Operations Cloud platform, enabling organizations in agriculture, construction, field services, transportation, and manufacturing to harness IoT data for actionable insights. The company processes 25+ trillion data points annually across thousands of connected devices.
As a Staff Offensive Security Engineer, you will drive the overarching technical direction for Samsara's application security and vulnerability management programs. This is a high-visibility individual contributor role where you influence a broad surface area while retaining flexibility to dive deep into critical domain focus areas as security priorities evolve.
Key responsibilities include:
- Lead strategy, operation, and continuous improvement of Samsara's vulnerability management program and core application security initiatives—defining processes rather than just executing existing ones
- Own and drive down mean time to remediate (MTTR) across the vulnerability backlog as SLAs tighten
- Build and champion automation and tooling that scales vulnerability detection and response across cloud, firmware/IoT, and corporate systems
- Set technical and architectural direction for the program, translating leadership's strategic priorities into concrete execution plans
- Drive remediation by building trust with engineering teams and providing clear, actionable guidance
- Mentor and level up other engineers on secure design and remediation practices; be a technical voice teams consult when priorities are unclear
- Communicate risk and remediation tradeoffs to engineering leadership in actionable terms
- Participate in security incident investigations involving high-profile vulnerabilities
- Be regularly on call to support critical vulnerability response
- Champion and embed Samsara's cultural principles as the company scales globally
Minimum requirements: 10+ years of relevant experience as a cloud engineer or security engineer, including hands-on vulnerability management across a broad technology stack.