Software Engineer, Server Security
Listed on 2025-12-02
-
Software Development
Software Engineer, Cloud Engineer - Software, DevOps
Location: New York
Mongo
DB’s mission is to empower innovators to create, transform, and disrupt industries by unleashing the power of software and data. We enable organizations of all sizes to easily build, scale, and run modern applications by helping them modernize legacy workloads, embrace innovation, and unleash AI. Our industry-leading developer data platform, Mongo
DB Atlas, is the only globally distributed, multi-cloud database and is available in more than 115 regions across AWS, Google Cloud, and Microsoft Azure. Atlas allows customers to build and run applications anywhere—on premises, or across cloud providers. With offices worldwide and over 175,000 new developers signing up to use Mongo
DB every month, it’s no wonder that leading organizations, like Samsung and Toyota, trust Mongo
DB to build next-generation, AI-powered applications.
Mongo
DB is seeking highly technical candidates for a role on the Server Security team as a Staff Software Engineer. Server Security is a development focused group within the engineering organization. The Server Security team builds features in the core Mongo
DB Server that enable database users to secure their data, such as TLS and X.509 certificate management, at-rest data encryption, authentication and authorization systems, and the new Queryable Encryption offering. Our team operates close to the bottom of the stack, and has a lot of influence over the safety and robustness of our open source database and a growing ecosystem of cloud services and client applications.
In this role, you'll be a leader in continually improving our security posture by owning features and tools that support this mission. In addition, you'll have the opportunity to lead security investigations into some of the most challenging and complex areas of our codebase, collaborating with software engineers across the organization.
An ideal candidate has experience writing secure, high quality application code, can communicate complex technical concepts well, and has great diagnostic intuition as it applies to security in complex distributed architectures.
This role can be based out of the New York Office or remote, working East Coast hours.
What you’ll do- Design and lead complex projects to improve our security posture
- Implement, test, and support new features related to cryptography, security engineering, and compliance assurance, in a large feature-rich C++ codebase
- Assist fellow engineers in, and be an advocate for, writing secure, well-reasoned and high-quality features
- Collaborate with other teams in engineering, cloud services, support, consulting, training, and marketing to coordinate feature rollouts and changes
- 10+ years of experience in software development, with a focus on security
- Ability to diagnose thorny technical issues central to databases: distributed systems, data replication, query optimization, data storage, OS internals, concurrency and scheduling, networking, etc
- Expertise in common network security protocols, fundamental cryptographic principles, and related technologies: e.g., TLS, Private/Public Key Cryptography, PKI, Hashing, CRLs, token-based auth, etc
- Experience supporting production environments, and/or working directly with end-users to investigate and diagnose highly technical security issues
- Ability to:
- Read and understand the intent of code and stack traces in many languages, especially C++
- Stand for code quality and software design best practices
- Quickly grok and clearly synthesize implications of system behavior
- Excellent communication skills (both written and verbal) as you will be working with users from all over the world with very diverse backgrounds, as well as with a highly technical engineering team
- You have completed your first Pull Request
- You demonstrate a thorough understanding of our existing architecture
- You are a productive contributor to select components of the Server Security codebase
- You are identifying opportunities for improvement of security and/or code quality within the codebase
- You are providing security-focused reviews of pull requests and design proposals from other Mongo
DB server engineers
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).