Company
Hightouch
Annual salary
$220k – $320k/yr
Location
Remote
Listed
152d ago
- Experience:
- 6+ years
- Workplace:
- Remote (US & Canada), offices in SF, NY, and Austin
- Visa:
- Visa sponsorship available
- Equity:
- Competitive Equity
Remote. Visa sponsorship available.
Send us your LinkedIn and CV. If your experience fits, we'll introduce you to the recruiter filling this role.
Apply for a referral →The recruiter emails you before anything happens and may suggest other jobs that suit you better.
About this Role
AbouttheRole
This is our first dedicated security hire, and it's a rare chance to define the function from the ground up. You'll own Hightouch's application security posture end-to-end. We have strong engineering fundamentals and a solid foundation; now you'll shape what security looks like here as we scale from 70 to 140+ engineers.
This is a hands-on, high-autonomy role. You'll spend most of your time in the codebase, not in meetings. You’ll be solving hard problems at the intersection of security and distributed systems:
Multi-tenantisolation on a system running ~1M data syncs per day and ingesting 100K+ events/sec
Sub-tenant access control - for multi-team and multi-brand use cases, requiring differentiated access to configuration and data
Securityarchitecture - Build and refine our frameworks for compute isolation and perform threat modeling and hardening of new products
Internet-facing APIs - Our high-throughput, internet-facing architecture services customer data at scale. You’ll improve our rate limiting, abuse detection, and granularity of access control
Multi-Region and Multi-Cloud - Supporting our multi-region and multi-cloud backend, including extending it to launch Hightouch on in new regions to support data residency requirements of our global customer base
You'll own your roadmap. We're not looking for someone to run a checklist, we're looking for someone who can look at our architecture, identify the highest-leverage problems, and go fix them.
AboutYou
You’ve been an early security hire at a SaaS company before and moved the needle on how they approach security. You can read application code, threat model a distributed system, and ship production fixes. You have significant distributed systems expertise so that you can understand and influence what is being built by the product teams and influence from a place of trust.
Experience that's relevant:
Being an early security hire (first 1-3) at a SaaS or data infrastructure company
Securing multi-tenant platforms: tenant isolation, authorization models, etc
Cloud security on systems that span more than one cloud and operate against customer-owned accounts
Design and build of data infrastructure as an early engineer, not just a user. You helped secure it from early design or during major redesigns. You understand how it scales and how it’s secured
Privacy-adjacent security (PII handling, data residency, GDPR/CCPA technical controls)
We don't care about certifications. We care about what you've built.
Frequently Asked Questions
How do I apply for the Lead Application Security Engineer (Remote) role at Hightouch? +
Use the Apply for a referral button on this page to send us your LinkedIn and CV. If your experience fits, we'll introduce you to the recruiter filling this role. They'll email you to check you're interested, then put you forward for this job or others that suit you better. It's free.
What does this Hightouch role pay? +
The listing gives $220k – $320k/yr.
Is this role remote? +
Yes, the listing is remote. Remote (US & Canada), offices in SF, NY, and Austin. Visa sponsorship available.
Related Roles
Browse all startup roles
Salaried roles at startups, AI companies and established businesses, all filled by referral. One application covers every role.
View all startup roles →