600,580open jobs
28,220companies
85,699added this week
Browse all
Salary
$105k – $241k per year (Estimated)
Location
Remote (EU, United Kingdom)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
PostHog is a product analytics company headquartered in San Francisco, California, and founded in 2020 by James Hawkins and Tim Glaser. The company builds an open source platform combining product analytics, session replay, feature flags, A/B testing, surveys, and error tracking that teams can self-host or run on its cloud. It went through Y Combinator, operates as a fully remote organisation, and publishes its internal handbook and pricing openly.

About PostHog

We equip every developer to build successful products.

We started with open-source product analytics, launched out of Y Combinator's W20 cohort.

We've since shipped more than a dozen products, including a built-in data warehouse, a customer data platform, and Max AI, an AI-powered analyst that answers product questions, helps users find useful session recordings, and writes custom SQL queries.

Next on the roadmap are messaging, customer analytics, ai task creation and coding based on customer data, logs and support analytics.

Our values are not a poster on the wall full of aspiration. They’ve come from how we really work, day in day out.

PostHog is open source product led, and a default alive company that is well funded.

Things we care about

  • Transparency: Everyone can read about our roadmap, how we pay (or even let go of) people, our strategy, and how we work, in ourpublic company handbook. Internally, we share revenue, notes and slides from board meetings, and fundraising plans, so everyone has the context they need to make good decisions.

  • Autonomy: We don’t tell anyone what to do. Everyone chooses what to work on next based on what's going to have the biggest impact on our customers, and what they find interesting and motivating to work on.Engineers lead product teams andmake product decisions. Teams are flexible and easy to change when needed.

  • Shipping fast:Why not now? We want to build a lot of products; we can't do that shipping at a normal pace. We've built the company around small teams - autonomous, highly-efficient groups ofcracked engineers who can outship much larger companies because they own their products end-to-end.

  • Time for building: Nothing gets shipped in a meeting. We're a natively remote company. We default to async communication - PRs > Issues > Slack. Tuesdays and Thursdays aremeeting-free days, and we prioritize heads down building time over perfect coordination. This will be the most productive job you've ever had.

  • Ambition: We want to solve big problems. We strongly believe that aiming for the best possible upside, and sometimes missing, is better than never trying. We're optimistic about what's possible and our ability to get there.

  • Being weird: Weird means redesigning an already world-class website for the 5th time. It means shipping literally every product that relates to customer data. It means building anobjectively unnecessary developer toy with dubious shareholder value. Doing weird stuff is a competitive advantage. And it's fun.

Who we're looking for

We are looking for an expert security generalist to assist with all things security at PostHog. Someone equally adept (and interested!) in building secure libraries, writing semgrep rules, hardening cloud deployments, improving network observability, and leading incident response.

Someone to take the reins of our security operations, build out our detection pipelines, and ensure that when something goes bump in the night, we have the observability to know exactly what happened.

We're a team that's building internal security products and agents - things like agents to automatically triage wiz alerts, automatically review pull requests, automatically assign vulnerability findings to the owning product team.

In this role you’ll:

  • Build from Scratch: You aren't maintaining someone else's legacy SIEM. You are shaping the security team, culture and tooling for a high-growth, open-source company.

  • Zero Bureaucracy: We hate meetings. We don't have "Security Committees." You have the autonomy to make changes and move fast.

  • Transparency: We work in the open. You’ll be able to see (and contribute to) how we handled past incidents, like thisNPM package compromise.

  • Direct Impact: Your work directly protects the data of thousands of customers. When you improve our security posture, the whole company (and our community) feels it.

What you'll be doing

  • Triage and Tune: You’ll own our Wiz alerts. You’ll be responsible for turning "noise" into "actionable findings" and ensuring we aren't just staring at a dashboard of issues that don't actually matter. We already get relatively few alerts, and we’d like to even further reduce that to just the ones that matter.

  • Incident detection, response: You’ll lead the charge on security incidents. Whether it’s a compromised NPM package or a suspicious IAM pattern, you’ll help coordinate the response and lead the post-mortem. You’ll also help build our IR runbooks.

  • Build Observability: You’ll build detection pipelines, and close our network-based observability gaps. We want to be able to trace network requests and suspicious activity all the way back to specific code paths.

  • Threat Hunting: You’ll proactively hunt for threats in our AWS environment. You won't just wait for an alert; you'll define what "good" looks like and build the telemetry to prove it.

  • The VDP: You’ll support our Vulnerability Disclosure Program, triaging reports from researchers and eventually transitioning us toward a formal bug bounty program.

  • Enable the Team: You’ll support our product squads with threat modeling and secure design reviews. We don't do "Security says no", we do "Security says 'here is how to do this safely.'"

  • Help build our security culture: Our engineers trust the security team and view security as an enabler. You’ll be a crucial part of helping to continue this excellent (and uncommon) working relationship.

While this is not a Corporate security (MDM, endpoint, device trust) or Supply chain/CI-CD hardening role, in true PostHog style, there are opportunities to work on these as well

Requirements

  • Cloud Native: You have 3-5+ years of experience in security engineering with a heavy focus on AWS. You know your way around IAM, VPC logs, and CloudTrail like the back of your hand.

  • Detection Specialist: You’ve used CSPM/CNAPP tools (like Wiz or Prisma) and, more importantly, you know how to build detection pipelines that engineers actually trust.

  • Battle-Tested: You’ve led incident response before. You’re calm under pressure and know how to coordinate across teams to contain a threat.

  • High Autonomy: We don’t have a security SOC. You’ll be building this function from scratch, so you need to be comfortable deciding what’s important and executing on it without a manual.

  • Engineering skills: You bring strong engineering experience and next to digging into code to understand an exploit or a vulnerability, you can write code with the same proficiency as our product engineers.

  • Communication and attitude: As mentioned before we don't do "Security says no", we do "Security says 'here is how to do this safely.” This is crucial for us, we need people that want to enable engineers and work with them, not limit them.

We are committed to ensuring a fair and accessible interview process. If you need any accommodations or adjustments, please let us know.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
600,580 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$92k – $162k per year • Remote • Full-Time • 5+ years exp • United States • Germany • Finland • Denmark • Sweden
JavaScript
TypeScript
SQL
Ruby
C#
Ruby
Ruby on Rails
C#
.NET
Databases
PostgreSQL
Frontend
Vue.js
GraphQL
RxJS
Angular
NgRx
DevOps
Rest API
CI/CD
Git
AWS
Docker
Kubernetes
AWS Lambda
Amazon EC2
Amazon S3
Amazon ECS
Analytics
Power BI
ETL/ELT
SSIS
AWS Glue
Management
Jira
Agile
Scrum
Apply
$140k – $273k per year (Estimated) • In office • Full-Time • 7+ years exp • Bachelor's Degree • McLean
Python
Java
SQL
Scala
Databases
MySQL
MongoDB
Snowflake
Cassandra
Apache Kafka
Amazon Redshift
AI/ML
Hadoop
Spark
DevOps
GCP
Azure
AWS
Management
Agile
Apply
$209k – $239k per year • In office • Full-Time • 9+ years exp • Bachelor's Degree • Wilmington
Python
Java
SQL
Scala
Databases
MySQL
MongoDB
Snowflake
Cassandra
Apache Kafka
Amazon Redshift
AI/ML
Hadoop
Spark
DevOps
GCP
Azure
AWS
Management
Agile
Apply
$87k – $157k per year • Remote/Hybrid • Public Trust • Full-Time • 4+ years exp • Bachelor's Degree • Gaithersburg
Python
Java
C++
Databases
Apache Kafka
AI/ML
Claude Code
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Harbor
Management
Agile
Apply
$87k – $157k per year • Remote/Hybrid • Public Trust • Full-Time • 4+ years exp • Bachelor's Degree • United States
Python
Java
C++
Databases
Apache Kafka
AI/ML
Claude Code
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Harbor
Management
Agile
Apply
$116k – $238k per year (Estimated) • Remote • Full-Time
Go
SQL
Databases
ClickHouse
DuckDB
AI/ML
AI Agents
Management
Slack
Apply
$75k – $195k per year (Estimated) • Remote • Full-Time
Python
SQL
Databases
ClickHouse
AI/ML
AI Agents
DevOps
ZooKeeper
Terraform
Ansible
AWS
Kubernetes
Management
Slack
Apply
AI Research Engineer 25 days ago
$98k – $241k per year (Estimated) • Remote/Hybrid • Full-Time • PhD
Rust
SQL
AI/ML
CUDA Toolkit
Jupyter Notebook
AI Agents
Transformers
PyTorch
CUDA
Management
Slack
Apply
$83k – $228k per year (Estimated) • Remote • Full-Time
Go
JavaScript
Rust
SQL
Node JS
Databases
PostgreSQL
Redis
ClickHouse
Apache Kafka
AI/ML
AI Agents
DevOps
Amazon S3
Management
Slack
Apply
$84k – $214k per year (Estimated) • Remote • Full-Time
SQL
AI/ML
AI Agents
Analytics
A/B Testing
Management
Slack
Apply
See all jobs
This is one of many
600,580 more open roles from verified company boards, updated every day.