Staff Offensive Security Engineer

SamsaraAustin, TX
$165,200 - $265,500Remote

About The Position

Samsara is seeking a Staff Application Security Engineer to drive the technical direction for their application security and vulnerability management programs. This is a high-visibility, remote role (US-based, excluding SF Bay Area, NYC Metro Area, and Washington D.C. Metro Area) open to candidates in the Central or Eastern time zones. The role involves protecting Samsara's extensive footprint across hardware, software, AI, and the physical world, processing over 25 trillion data points annually. The successful candidate will have the flexibility to focus on critical domain areas as security priorities evolve.

Requirements

  • 10+ years of relevant experience as a cloud engineer or security engineer, including hands-on vulnerability management across a broad, multi-product enterprise environment.
  • Proficiency in Go, Python, and JavaScript.
  • Demonstrated ability to independently set technical and architectural direction for a security program, and to drive remediation across a broad, multi-surface environment without direct authority.
  • Significant experience with modern vulnerability management tooling (e.g., Wiz, Semgrep) and deep familiarity with vulnerability scoring frameworks such as CVSS and EPSS.
  • Strong AWS cloud services background.
  • Deep understanding of Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA).
  • Hands-on use of AI/LLM tooling in your own security workflow — triage, detection logic, remediation drafting — plus credibility speaking to how AI is changing the threat landscape and the tooling available to address it.
  • Must be based in central or eastern timezones.

Nice To Haves

  • Experience with C/C++, relevant to firmware and embedded systems.
  • Background at a cloud-native, AI-forward company actively building agentic or AI-driven products.
  • Experience with security automation platforms (e.g., Tines) and serverless frameworks (e.g., AWS Lambda).
  • Experience integrating vulnerability management into modern CI/CD pipelines with a "shift-left" mentality.
  • Experience spanning SaaS, firmware, and corporate IT security programs.
  • Experience managing vulnerabilities within a FedRAMP-certified environment.
  • Experience building, extending, or wiring up AI copilots/agents for security workflows (e.g., automated triage, remediation drafting).

Responsibilities

  • Lead the ongoing strategy, operation, and continuous improvement of Samsara's vulnerability management program, along with other core application security programs.
  • Own and drive down mean time to remediate (MTTR) across the vulnerability backlog.
  • Build and champion automation and tooling that scale vulnerability detection and response across cloud, firmware/IoT, and corporate systems.
  • Set technical and architectural direction for the program, translating leadership's strategic priorities into a concrete execution plan for the team.
  • Drive remediation by building trust with engineering teams and providing clear, actionable guidance.
  • Mentor and level up other engineers on secure design and remediation practices.
  • Communicate risk and remediation tradeoffs to engineering leadership.
  • Participate in security incident investigations involving high-profile vulnerabilities.
  • Be regularly on call to support critical vulnerability response.
  • Champion, role model, and embed Samsara’s cultural principles.

Benefits

  • Performance-based bonus/variable pay
  • Equity (for eligible roles)
  • Flexible, employee-led remote model
  • Professional development stipend
  • Comprehensive health and parental leave plans
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service