[All remote jobs](https://jobicy.com/jobs.md)Open role[![Figma logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/10/WRILS-201016160957-035844.png)](https://jobicy.com/company/figma.md)Remote opportunity at[Figma](https://jobicy.com/company/figma.md)

# Security Engineer

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/figma.md)Share18 Aug 2026Published39Listing views2Application actions17 Sep 2026Apply before  Opportunity details

## About this role.

AI SummaryFigma is hiring a full-time, remote-first Security Engineer for US hubs or remote work within the United States. The role may support AI Security, Platform Security, Product Security, or Anti-Abuse, with responsibilities spanning security assessments, secure solution development, reviews, vulnerability triage, and incident response. Candidates need at least five years of security or software engineering experience, strong threat-modeling or systems-design judgment, coding proficiency, and cross-functional communication skills. Relevant specialization in application, cloud, corporate, IAM, or data-access security is preferred.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

4/5EasyHard

### Pace & Pressure

4/5RelaxedFast-paced

### Autonomy Level

4/5GuidedFull ownership

### Communication Load

5/5IndependentCollaborative

AI insightThis is a senior-level security engineering role requiring at least five years of engineering experience, strong threat-modeling judgment, and hands-on software development ability. The breadth of potential focus areas—AI, cloud/platform, product security, and anti-abuse—raises the technical and domain complexity.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianHighly competitive$264,500US market range$170k–$270k0$297k

AI insightThe posting explicitly discloses an Annual Base Salary Range of $153,000–$376,000 USD. The offer midpoint is $264,500 USD per year. A reasonable US market base-salary range for a senior Security Engineer is approximately $170,000–$270,000 USD annually; the posted maximum may reflect higher leveling, specialized scope, and location-based compensation.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Security Engineering](https://jobicy.com/jobs?search_keywords=Security%20Engineering.md)[Application Security](https://jobicy.com/jobs?search_keywords=Application%20Security.md)[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[Threat Modeling](https://jobicy.com/jobs?search_keywords=Threat%20Modeling.md)[Secure Code Review](https://jobicy.com/jobs?search_keywords=Secure%20Code%20Review.md)[Vulnerability Management](https://jobicy.com/jobs?search_keywords=Vulnerability%20Management.md)[Incident Response](https://jobicy.com/jobs?search_keywords=Incident%20Response.md)[Penetration Testing](https://jobicy.com/jobs?search_keywords=Penetration%20Testing.md)[Identity and Access Management](https://jobicy.com/jobs?search_keywords=Identity%20and%20Access%20Management.md)[Python or General-Purpose Programming](https://jobicy.com/jobs?search_keywords=Python%20or%20General-Purpose%20Programming.md)

Cover letter sampleDear Hiring Team,

I am excited to apply for the Security Engineer role at Figma. With experience building and assessing secure software and infrastructure, I can contribute practical threat modeling, code-review, vulnerability-management, and incident-response capabilities across product, platform, AI, or anti-abuse initiatives.

I am particularly drawn to Figma’s emphasis on systemic risk reduction and close partnership with engineering teams. I bring strong technical judgment, clear stakeholder communication, and a pragmatic approach to prioritizing security controls that enable teams to ship safely.

I would welcome the opportunity to help strengthen Figma’s products and platforms while continuing to grow with a collaborative security organization.

Copy   Sample interview questionsHow do you approach threat modeling for a new product or infrastructure design?I begin by defining the system boundaries, assets, trust relationships, and intended user flows. I identify realistic threats using a structured framework, assess likelihood and impact, then prioritize mitigations based on risk reduction, implementation cost, and operational ownership; I document accepted risks and revisit them as the design changes.

Describe how you would triage and manage a critical security vulnerability.

I validate the finding, determine exploitability and affected scope, and assess business impact before assigning severity. I work with the owning team on a practical remediation plan, provide secure implementation guidance, set timelines based on risk, and verify the fix through retesting or monitoring.

What security controls would you prioritize for an AI platform handling sensitive internal data?

I would use layered controls: strong authentication and authorization, least-privilege service identities, isolation of sensitive data and model tooling, audit logging, and safeguards against prompt injection or data exfiltration. I would also build security reviews and adversarial testing into the AI development lifecycle.

How do you influence product or engineering teams when a security recommendation creates delivery friction?

I explain the risk in terms of concrete user, business, and engineering impact rather than abstract security requirements. I present options with trade-offs, collaborate on a proportionate control, and ensure the final decision has a clear owner and documented rationale.

How would you contribute during a security incident response?

During an incident, I first focus on containment, evidence preservation, and establishing a reliable timeline. I communicate status and decisions clearly, coordinate eradication and recovery with relevant teams, and lead a blameless post-incident review that produces measurable follow-up actions.

Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you’re brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If you’re excited to shape the future of design and collaboration, join us!

As a Security Engineer you will identify and drive impactful projects to improve the security of Figma’s product, platform, and IT systems. We are hiring for multiple teams within Security Engineering: AI Security, Platform Security, Product Security, and Anti-Abuse. This is a remote first role.

You will partner closely with teams across the company and focus on systemic security improvements and risk reduction. You will also participate in operational security responsibilities like security reviews, consulting, vulnerability triage, and security incident response.

Examples of what you may work on across teams:

AI Security

* Perform technical security assessments, code audits, and design reviews for new AI infrastructure, platforms, and products.
* Design and develop technical solutions to secure AI models, tooling, debugging workflows, and data pipelines.
* Advocate for secure practices across Figma’s AI infrastructure, platforms, and data systems.
* Build the next generation of internal AI-powered access insights and security tooling.
* Help run penetration testing and offensive security exercises against Figma’s AI infrastructure, platforms, and products.

Platform Security

* Perform technical security assessments, code audits, and design reviews for changes to Figma’s cloud and corporate infrastructure.
* Design and develop solutions to prevent or mitigate cloud and corporate security risks.
* Advocate for secure practices within Figma’s cloud and corporate infrastructure.
* Build platforms and tooling to detect and respond to infrastructure and corporate security threats.

Product Security

* Perform technical security assessments, code audits, and design reviews for new product features.
* Design and develop solutions to prevent or mitigate product security vulnerabilities.
* Advocate for secure development practices across Figma’s products and services.
* Help run penetration testing, offensive security exercises, and support our bug bounty program.
* Help respond to product security incidents.

Anti-Abuse

* Design and build technical systems to prevent spam, fraud, and abuse.
* Partner closely with product teams to identify and address potential abuse vectors.
* Develop new signals and improve the use of existing signals to detect abusive behavior.
* Help respond to spam, fraud, and abuse incidents.

This is a full-time role that can be held from one of our US hubs or remotely in the United States.

We’d love to hear from you if you have:

* 5+ years of proven engineering experience working in either a Security Engineering or a Software Engineering role. In the case of the latter, some security experience is preferred.
* Strong security judgment in threat modeling and risk prioritization and/or strong technical judgment in designing and building maintainable, scalable systems.
* Proficiency in at least one general-purpose coding language.
* Strong communication and interpersonal skills, with demonstrated experience collaborating across functions.

### While not required, it’s an added plus if you also have:

* Subject matter expertise in Application Security, Cloud Security, Corporate Security, Data Access Governance, and/or IAM (Identity and Access Management).
* Demonstrated ability to make hard prioritization decisions in security controls.

At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

#LI-Remote

Pay Transparency Disclosure

Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location.

Figma offers equity to employees, as well as a competitive package of additional benefits, including health, dental, and vision coverage; retirement benefits with company contributions; parental leave and reproductive or family planning support; mental health and wellness benefits; and paid time off. Figma provides paid sick leave, holidays, and other leave benefits in compliance with applicable federal, state, and local laws, including the requirements of the Washington Minimum Wage Act and related regulations. Exempt employees are eligible for employer‑provided paid flexible PTO in addition to flexible paid sick leave. PTO is subject to manager approval. Additional benefits may include company recharge days, cell phone and home internet reimbursements, and a number of lifestyle spending accounts. Figma also offers sales incentive compensation for most sales roles and an annual bonus plan for eligible non-sales roles. All compensation and benefits are subject to applicable plan terms and may be modified by Figma at any time, consistent with applicable law.

Annual Base Salary Range:

$153,000—$376,000 USD

At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an [equal opportunity workplace](https://www.eeoc.gov/sites/default/files/2022-10/EEOC_KnowYourRights_screen_reader_10_20.pdf) – we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.

We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to [accommodations-ext@figma.com](mailto:accommodations-ext@figma.com). These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.

Examples of accommodations include but are not limited to:

* Holding interviews in an accessible location
* Enabling closed captioning on video conferencing
* Ensuring all written communication be compatible with screen readers
* Changing the mode or format of interviews

To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.

By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with [Figma’s Candidate Privacy Notice](https://www.figma.com/legal/candidate-privacy-notice/).

Show more

[Apply now >](https://jobicy.com/jobs/151026-security-engineer.md)

*

![Upload CV](data:image/svg+xml;base64,PHN2ZyB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciIHdpZHRoPSI2NSIgaGVpZ2h0PSI2NSIgZmlsbD0ibm9uZSIgeG1sbnM6dj0iaHR0cHM6Ly92ZWN0YS5pby9uYW5vIj48ZyBjbGlwLXBhdGg9InVybCgjQSkiPjxwYXRoIGQ9Ik0wIDBINjVWNjVIMFYwWiIgZmlsbD0iIzAyOWFlYiIvPjxnIGZpbGw9IiNmZmYiIHN0cm9rZT0iI2ZmZiIgc3Ryb2tlLXdpZHRoPSIyIj48cGF0aCBkPSJNMzMuMDQ5IDE1LjQ1NGExLjQzIDEuNDMgMCAwIDAtMi4wOTcgMGwtNy41NzkgOC4xNDdhMS4zOCAxLjM4IDAgMCAwIC4wOSAxLjk3MyAxLjQ0IDEuNDQgMCAwIDAgMi4wMDgtLjA4OGw1LjEwOS01LjQ5MnYyMC42MWExLjQxIDEuNDEgMCAwIDAgMS40MjEgMS4zOTdjLjc4NSAwIDEuNDIxLS42MjUgMS40MjEtMS4zOTd2LTIwLjYxbDUuMTA5IDUuNDkyYTEuNDQgMS40NCAwIDAgMCAyLjAwOC4wODggMS4zOCAxLjM4IDAgMCAwIC4wOS0xLjk3M2wtNy41NzktOC4xNDZ6TTE2Ljc2OSAzOC40YzAtLjc3My0uNjItMS40LTEuMzg1LTEuNFMxNCAzNy42MjcgMTQgMzguNHYuMTAybC4yMTUgNi4yMjljLjIyMyAxLjY4LjcwMSAzLjA5NSAxLjgxMyA0LjIxOHMyLjUxIDEuNjA3IDQuMTcyIDEuODMzYzEuNi4yMTggMy42MzYuMjE4IDYuMTYuMjE4aDExLjI4bDYuMTYtLjIxOGMxLjY2Mi0uMjI2IDMuMDYxLS43MDkgNC4xNzItMS44MzNzMS41ODktMi41MzggMS44MTMtNC4yMThDNTAgNDMuMTEzIDUwIDQxLjA1NSA1MCAzOC41MDNWMzguNGMwLS43NzMtLjYyLTEuNC0xLjM4NS0xLjRzLTEuMzg1LjYyNy0xLjM4NSAxLjRsLS4xOSA1Ljk1OGMtLjE4MiAxLjM3LS41MTUgMi4wOTUtMS4wMjYgMi42MTJzLTEuMjI4Ljg1My0yLjU4MyAxLjAzOGMtMS4zOTUuMTktMy4yNDMuMTkzLTUuODkzLjE5M0gyNi40NjJjLTIuNjUgMC00LjQ5OC0uMDAzLTUuODkzLS4xOTMtMS4zNTUtLjE4NC0yLjA3Mi0uNTIxLTIuNTgzLTEuMDM4cy0uODQ0LTEuMjQyLTEuMDI2LTIuNjEyYy0uMTg3LTEuNDEtLjE5MS0zLjI3OS0uMTkxLTUuOTU4eiIvPjwvZz48L2c+PGRlZnM+PGNsaXBQYXRoIGlkPSJBIj48cGF0aCBmaWxsPSIjZmZmIiBkPSJNMCAwaDY1djY1SDB6Ii8+PC9jbGlwUGF0aD48L2RlZnM+PC9zdmc+)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![Clickhouse logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/6394b9a0-221.png)
Clickhouse  Aug 18

### [Security Specialist – EMEA (location flexible)](https://jobicy.com/jobs/150995-security-specialist-emea-location-flexible.md)

About ClickHouse Recognized on the 2025 Forbes Cloud 100 list, ClickHouse is one of the most innovative and fast-growing private cloud companies. With more than 4,000 customers and ARR that…

*
![Experian logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/09/dcc5b29a570bb19b9f5c3e150db2fdfe.jpg)
Experian  Aug 18

### [Cyber Defense Senior Analyst](https://jobicy.com/jobs/146651-cyber-defense-senior-analyst.md)

Company DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare,…

*
![Nebius logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/06/d90c0566-221.webp)
Nebius  Aug 18

### [Application Security Engineer](https://jobicy.com/jobs/146769-application-security-engineer-2.md)

About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from…

*
![Experian logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/09/dcc5b29a570bb19b9f5c3e150db2fdfe.jpg)
Experian  Aug 18

### [Cyber Defense Senior Analyst](https://jobicy.com/jobs/149401-cyber-defense-senior-analyst-2.md)

Company DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare,…

*
![Nebius logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/06/d90c0566-221.webp)
Nebius  Aug 17

### [Vulnerability Operation Center Lead](https://jobicy.com/jobs/149362-vulnerability-operation-center-lead.md)

About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from…

*
![Nebius logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/06/d90c0566-221.webp)
Nebius  Aug 17

### [Offensive Security Lead](https://jobicy.com/jobs/149365-offensive-security-lead.md)

About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from…

*
![Consensys logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/19bbacf3-221.jpeg)
Consensys  Aug 16

### [Senior Application Security Engineer](https://jobicy.com/jobs/150834-senior-application-security-engineer.md)

Consensys is the leading blockchain and web3 software company. Founded by Joe Lubin, CEO of Consensys and Co-Founder of Ethereum in 2014, Consensys has been at the forefront of innovation,…

*
![GitLab logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/12/WRILS-201207055737-109952.jpg)
GitLab  Aug 15

### [Senior Security Engineer, Security Incident Response Team (SIRT) – EMEA](https://jobicy.com/jobs/149309-senior-security-engineer-security-incident-response-team-sirt-emea.md)

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50…

*
![DoorDash logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/82fc4967-221-1.jpeg)
DoorDash  Aug 13

### [Enterprise Security Engineer](https://jobicy.com/jobs/145862-enterprise-security-engineer.md)

About the TeamEnterprise Security is the primary point of contact for employee-focused security across DoorDash, Wolt, and Deliveroo. We deliver secure-by-default systems, processes, and controls for everyone who works here,…

*
![Sporty Group logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8e6c246a-221.png)
Sporty Group  Aug 13

### [Identity & PAM Security Engineer](https://jobicy.com/jobs/146055-identity-pam-security-engineer.md)

About the roleThis team is responsible for the security, stability, and scalability of the company’s software systems and infrastructure. We monitor system performance, identify and mitigate risks, and ensure our…