DigitalOcean · 1 day ago
Staff Security Software Engineer
DigitalOcean is a cutting-edge technology company focused on simplifying cloud and AI. They are seeking a Staff Security Software Engineer to design and develop security capabilities at scale, ensuring the safety of their cloud services and preventing abuse on their platform.
Cloud ComputingDevOpsSaaSVirtualizationWeb Hosting
Responsibilities
Design, develop, and deploy resilient services and tooling that provide security capabilities at scale, primarily in Go, with some work in Javascript and Python
Research and design automated approaches to detecting and actioning abuse and misuse of DigitalOcean products and services
Work with product and engineering teams to design and implement secure architectures
Design and build internal tools that enable our Security Operations Center to do more, faster
Measure the efficacy of our services and tools, using logs, metrics, and audit records, to drive reporting and decision-making, leading to iterative and transformative security improvements as DigitalOcean scales
Qualification
Required
8+ years of hands-on experience in software engineering projects, ideally with a security focus, in a complex, high-scale SaaS or IaaS environment
Expert in writing robust code with good test coverage and demonstrated success in delivering projects
Understanding of cloud-native services and infrastructure provisioning (e.g. compute, storage, networking)
Deep familiarity with cloud services & infrastructure—compute, storage, network, managed services—and related abuse tactics, including DDoS, spamming, phishing, cryptomining, and bot networks
Strong analytical and reporting skills, with proficiency in SQL and data warehouse querying (e.g., Snowflake, Redshift, BigQuery)
A customer-first mindset—you aim to maximize abuse prevention while avoiding false-positives that could impact high-value customers
Excellent communication and documentation skills; you can clearly articulate patterns, mitigation strategies, and tradeoffs to both technical and non-technical stakeholders
Record of partnering with internal engineering teams and non-technical stakeholders to gather requirements and tackle security problems across an entire stack with empathy and creativity
High integrity, strong judgment, and a track record of working independently on high-impact investigations and policy decisions
Preferred
Experience with microservice architectures, asynchronous and event-driven processing, and synchronous gRPC/HTTP-based requests
Experience in building secure by default services and applications
Familiarity with technologies such as gRPC, Docker, Elasticsearch, Prometheus/VictoriaMetrics, Kubernetes, and GitHub Actions
Experience with Looker, Snowflake, dbt, and Airflow
Benefits
Reimbursement for relevant conferences, training, and education
Access to LinkedIn Learning's 10,000+ courses
Employee Assistance Program
Local Employee Meetups
Flexible time off policy
Bonus in addition to base salary
Equity compensation to eligible employees
Equity grants upon hire
Option to participate in our Employee Stock Purchase Program
Company
DigitalOcean
DigitalOcean provides a cloud platform to deploy, manage, and scale applications of any size.
H1B Sponsorship
DigitalOcean has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (30)
2024 (8)
2023 (9)
2022 (22)
2021 (11)
2020 (2)
Funding
Current Stage
Public CompanyTotal Funding
$1.92BKey Investors
Global Secure InvestAccess IndustriesKeyBanc Capital Markets
2025-08-12Post Ipo Debt· $625M
2025-05-05Post Ipo Debt· $800M
2021-09-13Post Ipo Equity· $34.91M
Recent News
2026-01-22
2026-01-21
2026-01-20
Company data provided by crunchbase