In this role, you'll be a leader in continually improving our security posture by owning features and tools that support this mission. In addition, you'll have the opportunity to lead security investigations into some of the most challenging and complex areas of our codebase, collaborating with software engineers across the organization.
This role can be based out of the New York Office or remote, working East Coast hours.
What you’ll do- Implement, test, and support new features related to cryptography, security engineering, and compliance assurance, in a large feature-rich C++ codebase
- Assist fellow engineers in, and be an advocate for, writing secure, well-reasoned and high-quality features
- Collaborate with other teams in engineering, cloud services, support, consulting, training, and marketing to coordinate feature rollouts and changes
- Design and lead complex projects to improve our security postur
Ideally, you will have- 10+ years of experience in software development, with a focus on security
- Ability to diagnose thorny technical issues central to databases: distributed systems, data replication, query optimization, data storage, OS internals, concurrency and scheduling, networking, etc
- Expertise in common network security protocols, fundamental cryptographic principles, and related technologies: e.g., TLS, Private/Public Key Cryptography, PKI, Hashing, CRLs, token-based auth, etc
- Experience supporting production environments, and/or working directly with end-users to investigate and diagnose highly technical security issues
- Ability to:
- Read and understand the intent of code and stack traces in many languages, especially C++
- Stand for code quality and software design best practices
- Quickly grok and clearly synthesize implications of system behavior
- Excellent communication skills (both written and verbal) as you will be working with users from all over the world with very diverse backgrounds, as well as with a highly technical engineering team
In 1 week:- You have completed your first Pull Request
In 3 Months:- You demonstrate a thorough understanding of our existing architecture
- You are a productive contributor to select components of the Server Security codebase
- You are identifying opportunities for improvement of security and/or code quality within the codebase
- You are providing security-focused reviews of pull requests and design proposals from other MongoDB server engineers
In 6 Months:- You have made a substantial new addition to the security codebase
- You play an active role in defining and driving the short and long term roadmap of our product
- You mentor other members of the team on secure concepts and code quality
- You are acting as a representative of the team in inter-team discussions
- You can speak to holistic strengths and weaknesses in product capabilities
- You can lead the response to some escalations from our experienced Technical Services Team
In 12 Months:- You are running a large project to improve our security offerings
- You demonstrate a deep understanding of one or more Server Security components
- You are a deeply respected mentor for our team and all surrounding teams and advocate for and on behalf of the Server Security team