This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
At Mozilla, we believe the internet is a global public resource—open and accessible to all. As a Staff Security Engineer, you'll protect that vision by building, breaking, and hardening products that put people’s privacy and safety first. We are looking for a security practitioner to reduce risk in applications, and ensure our products live up to Mozilla’s dedication to privacy and a joyful Internet. This position is remote-friendly and open to most locations in the US and Canada.
Job Responsibility:
Safeguard millions of users by embedding security into Firefox, Mozilla VPN, and other mission-critical products
Ensure software products are secure by embedding security into the full Software Development Life Cycle (SDLC)
Anticipate, prioritize and mitigate risks through proactive threat modeling, security assessments, security testing, and automation
Perform security code reviews
Lead penetration testing on web, mobile, and embedded applications, then guide remediation efforts
Develop and maintain automated security tests within CI/CD pipelines to catch vulnerabilities early
Partner with engineers to integrate security throughout the software development lifecycle—not as an afterthought, but as a core design principle. Provide security guidance, develop secure solutions, and facilitate secure releases
Help define and enforce security policies and provide security guidance to development teams
Help shape Mozilla's security culture through collaboration, guidance, and education
Requirements:
5+ years of relevant hands-on experience in product and application security
5+ years of experience and proficiency in secure coding practices, application security testing (SAST, DAST), threat modeling, and vulnerability assessment
Experience in one or more languages like Python, Go, Java, or JavaScript, required for automation and code review
Familiarity with security tools like Burp Suite, Nessus, and tools for CI/CD automation
Strong communication, collaboration, and problem-solving skills, with the ability to influence and guide cross-functional teams
Nice to have:
Formal credentials are great, but real-world experience, curiosity, passion and a builder’s mindset matter more
What we offer:
Generous performance-based bonus plans to all eligible employees - we share in our success as one team
Rich medical, dental, and vision coverage
Generous retirement contributions with 100% immediate vesting (regardless of whether you contribute)
Quarterly all-company wellness days where everyone takes a pause together
Country specific holidays plus a day off for your birthday
One-time home office stipend
Annual professional development budget
Quarterly well-being stipend
Considerable paid parental leave
Employee referral bonus program
Other benefits (life/AD&D, disability, EAP, etc. - varies by country)
Flexible work environment (majority of Mozillians work remotely)
Industry-leading paid parental leave (up to 26 weeks of fully paid leave for childbearing parents and up to 12 weeks for non-childbearing parents)
Reimbursement for professional development (up to $3,000/year)
A work setup including the latest hardware and software of your choice
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.