SecOps/AppSec Engineer (Clojure Required)

Ladder
$109,000 - $144,000Remote

About The Position

Ladder is seeking a cybersecurity unicorn, a Security Engineer / Analyst with a rare blend of application security engineering and risk management maturity. This role will be the driving force behind the vulnerability management lifecycle, balancing day-to-day security operations with development-facing vulnerability management and compliance. The primary mission will be embedded within development lifecycles, taking ownership of application security vulnerability management for engineering teams. Due to the heavy use of Clojure in the backend infrastructure, the engineer will actively look at code and leverage functional programming experience to strengthen the shift-left security philosophy. Beyond AppSec, the role involves monitoring cloud infrastructure, responding to alerts, conducting security risk reviews, supporting compliance audits, and ensuring workspace security. The ideal candidate is well-rounded, can interact with all levels of management and external auditors, and operates effectively in a rapidly scaling, dynamic environment. They should be organized, self-motivated, possess excellent problem-solving and writing skills, and enjoy working with people in a challenging and fast-paced environment. This role offers the opportunity to drive innovation within the reporting function and help build out the accounting function. Ladder is not currently sponsoring or transferring OPT or H1-B visas.

Requirements

  • 4+ years of software engineering and/or cybersecurity experience.
  • Strong foundation in Computer Science, Cyber Security, or a related field.
  • Hands-on experience coding in Clojure and working within the JVM environment.
  • Comfortable reading functional code, understanding immutable data structures, and collaborating directly with backend engineers on code-level fixes.
  • Hands-on experience securing modern cloud infrastructures.
  • Experience working incident response.
  • Ability to thrive in dynamic environments and look for root causes of issues to design security frameworks that prevent entire classes of vulnerabilities.
  • Hold baseline certifications such as CompTIA Security+ or equivalents.

Nice To Haves

  • Advanced credential like the CISSP is highly preferred and considered a major plus.

Responsibilities

  • Partner directly with development teams to champion application security vulnerability management.
  • Triage vulnerabilities within a high-scale Clojure ecosystem and assist with remediation code fixes.
  • Configure, fine-tune, and monitor cloud security posture leveraging Security Operations tools (SIEM, SOAR, CSP, CNAPP) to detect and respond to threats in real time.
  • Conduct thorough Security Reviews and risk assessments on internal architecture, third-party vendors, and APIs to ensure alignment with corporate risk tolerance and compliance standards.
  • Maintain and optimize day-to-day corporate workspace security, ensuring identity access management, device compliance, and productivity tools are highly secure yet frictionless.
  • Act as a security advocate across teams.
  • Mentor engineers on secure coding practices.
  • Establish secure defaults.
  • Make practical risk decisions that scale with growth.

Benefits

  • Excellent medical, dental, and vision coverage
  • Flexible paid time off
  • Stock options
  • Rewarding 401k match program (up to 4%)
  • Ladder Fit Program (monthly stipend for wellness-related expenses)
  • Paid parental leave (ten weeks)
  • Work-from-home flexibility and support (one-time remote office stipend and monthly stipend for WFH costs)
  • Fun company-wide events
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service