# Senior Software Engineer - Security Foundations
**Company:** [Snowflake](https://scaleengineer.com/companies/snowflake)
Join Snowflake's Anti-Abuse team as a Senior Software Engineer to design and scale foundational security capabilities protecting millions of customers across multi-cloud environments. This role focuses on building intelligent detection and prevention systems leveraging AI/ML to combat fraud, account takeover, data exfiltration, and emerging AI security threats at enterprise scale. You'll partner across security, engineering, and product teams to define security strategy while setting engineering standards for scalable security architecture within a fast-growing organization.
**Role:** Security Engineer
**Seniority:** Senior
**Locations:** US-WA-Bellevue
**Salary:** 200000–287500 USD
[Apply](https://jobs.ashbyhq.com/snowflake/1c90dd70-ffa8-4a50-844d-00a3e8726bd3)
Canonical: https://scaleengineer.com/jobs/snowflake/senior-software-engineer-security-foundations-1c90dd70
---
## Responsibilities

- Design and Scale Security-by-Default Capabilities: Design, build, and operationalize security-by-default capabilities that protect Snowflake's platform across complex multi-cloud environments (AWS, GCP, Azure). Establish architectural patterns that ensure security is a foundational property rather than an afterthought, enabling engineers across the organization to build secure systems by default.
- Develop Intelligent Threat Detection and Response Platforms: Build AI/ML-powered security platforms and services that implement sophisticated risk scoring algorithms to identify, prioritize, and respond to security threats and policy violations in real-time. Design systems capable of handling Snowflake's hyper-growth scale while maintaining detection accuracy and reducing false positives.
- Build Real-Time Detection and Prevention Systems: Develop adaptive enforcement mechanisms and granular policy control systems to defend against account compromise, AI abuse vectors, and data exfiltration attempts. Implement behavioral analysis and anomaly detection to catch sophisticated attack patterns while minimizing user friction.
- Create Security Intelligence and Monitoring Capabilities: Build observability and intelligence systems that detect suspicious account and user activity patterns, generate actionable insights for security teams, and enable rapid incident response. Design dashboards and alerting mechanisms that provide visibility into security posture across all customer environments.
- Cross-Functional Security Leadership and Strategy: Partner across Security, Engineering, and Product teams to define comprehensive security strategy, influence product architecture decisions, and champion adoption of secure engineering practices throughout the organization. Serve as a technical authority on security foundations and emerging threats.
- Set Engineering Excellence Standards: Raise the engineering bar across the Security Foundations organization by establishing standards for system design, code quality, operational excellence, scalability, and maintainability. Mentor junior engineers and drive engineering culture around security as a critical product feature.

## Requirements

### education

- {"name":"Bachelor's Degree in Computer Science or Related Field","description":"Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or equivalent technical discipline. Advanced degree (Master's or PhD) is a strong bonus."}

### technical

- {"name":"Multi-Language Proficiency","description":"Demonstrated mastery of JavaScript, Java, Python, C, C++, or Go with proven ability to write production-quality code. Strong emphasis on Python and/or Go for security-focused backend systems."}
- {"name":"Data Pipeline and Detection Development","description":"Proficiency in Python, SQL, or similar languages for designing and implementing detection logic, data pipelines, and security intelligence systems. Experience building ETL workflows for large-scale security data processing."}
- {"name":"Cloud Infrastructure Experience","description":"Hands-on experience architecting and deploying services across major cloud providers (AWS, GCP, Azure) with understanding of cloud-native security considerations, multi-tenancy patterns, and cross-cloud operational challenges."}
- {"name":"Security Architecture Knowledge","description":"Deep understanding of security primitives including static and dynamic analysis, authentication and access management (IAM), cryptography fundamentals, DDoS mitigation strategies, and vulnerability scanning. Knowledge of secure software development lifecycle (SDLC) practices."}
- {"name":"Distributed Systems Design","description":"Ability to design and build scalable, resilient systems that operate reliably at enterprise scale. Experience with microservices architecture, event-driven systems, and eventual consistency patterns required."}

### experience

- {"name":"5+ Years Software Development Experience","description":"Minimum 5 years of professional software development experience building production systems. Demonstrated ability to take projects from design through implementation, testing, deployment, and operational maintenance."}
- {"name":"Security-Focused Development Track Record","description":"Track record of designing, testing, and maintaining software solutions with security as a primary concern. Experience either in security-specific roles or security-critical features within platform teams."}
- {"name":"Technical Leadership and Project Ownership","description":"Proven ability to lead complex projects independently, set technical direction, make architectural decisions, and drive projects to completion. Experience mentoring junior engineers and raising technical standards within teams."}
- {"name":"Bonus: Security Domain Expertise","description":"Prior experience with security engineering, fraud detection, account security, or adversarial threat analysis. Background in building systems that defend against sophisticated, evolving attack patterns."}

## Skills

### required

- {"name":"Python","description":"Production-level proficiency in Python for building security detection systems, data pipelines, and analysis tools"}
- {"name":"SQL","description":"Strong SQL skills for querying large security datasets, building detection queries, and optimizing data analysis"}
- {"name":"Cloud Architecture (AWS/GCP/Azure)","description":"Practical experience designing and operating services across multiple cloud providers with understanding of cloud security models"}
- {"name":"Backend Development","description":"Solid foundation in backend/server-side development with experience building APIs, services, and distributed systems"}
- {"name":"System Design and Architecture","description":"Ability to design scalable, maintainable systems that operate reliably at scale with appropriate trade-offs"}
- {"name":"Security Fundamentals","description":"Core understanding of authentication, access control, cryptography, threat modeling, and common attack vectors"}

### preferred

- {"name":"Go Programming","description":"Experience with Go for building high-performance backend systems and services"}
- {"name":"Machine Learning and Anomaly Detection","description":"Experience building ML models for threat detection, fraud detection, or anomaly detection in security contexts"}
- {"name":"Advanced Security Primitives","description":"Hands-on experience with static analysis tools, dynamic analysis frameworks, DDoS mitigation systems, or security scanning infrastructure"}
- {"name":"Incident Response and Threat Intelligence","description":"Background in security incident response, threat intelligence analysis, or adversarial engineering"}
- {"name":"Data Platform Engineering","description":"Experience building data lakes, analytics platforms, or big data systems that enable security analytics at scale"}
- {"name":"Cross-Functional Communication","description":"Strong communication and collaboration skills for working effectively with security, product, and engineering teams"}

## Tech stack

### tools

- {"name":"Container Orchestration (Kubernetes)","description":"Experience deploying and managing containerized security services across multi-cloud environments"}
- {"name":"CI/CD Platforms","description":"Experience with automated testing, deployment, and security scanning in continuous integration pipelines"}
- {"name":"Observability Tools (Datadog, New Relic, etc.)","description":"Monitoring, logging, and tracing tools for maintaining visibility into security system health and performance"}
- {"name":"Cloud Provider Tools (AWS Security Hub, GCP Security Command Center)","description":"Native security tools and dashboards from major cloud providers for threat detection and compliance"}

### others

- {"name":"Threat Modeling and Risk Assessment","description":"Methodologies and approaches for identifying security risks, designing threat models, and prioritizing mitigations"}
- {"name":"OWASP and Security Standards","description":"Familiarity with OWASP Top 10, CWE, and industry security standards and best practices"}
- {"name":"Security Event Analysis","description":"Techniques for analyzing security logs, detecting attack patterns, and correlating security signals"}

### databases

- {"name":"Data Warehouses (Snowflake, BigQuery, Redshift)","description":"Large-scale data warehousing platforms for storing and analyzing security events and threat intelligence"}
- {"name":"Time-Series Databases","description":"Specialized databases for tracking security metrics, behavioral baselines, and temporal threat patterns"}
- {"name":"NoSQL/Document Stores","description":"Flexible data stores for security event metadata, policy configurations, and threat intelligence"}

### languages

- {"name":"Python","description":"Primary language for building security detections, data pipeline orchestration, and threat analysis systems"}
- {"name":"Go","description":"Preferred for high-performance backend services, real-time processing systems, and cloud-native applications"}
- {"name":"Java","description":"Suitable for building scalable backend systems and integrating with enterprise security platforms"}
- {"name":"SQL","description":"Essential for security data analysis, detection rule development, and querying large security datasets"}

### frameworks

- {"name":"Cloud-Native Frameworks","description":"Frameworks and patterns for building microservices, serverless functions, and containerized applications"}
- {"name":"ML/AI Frameworks","description":"ML frameworks for building threat detection models, risk scoring algorithms, and behavioral analysis systems"}
- {"name":"API Frameworks","description":"REST and gRPC frameworks for building scalable security service APIs and event streaming systems"}

## Benefits

### benefits

- {"name":"Comprehensive Health Coverage","description":"Medical, dental, and vision insurance with competitive employer contributions for you and your family"}
- {"name":"Retirement Planning","description":"401(k) plan with company matching to support long-term financial security"}
- {"name":"Equity and Stock Options","description":"Competitive equity grants and stock option packages that align your success with company growth"}
- {"name":"Paid Time Off","description":"Generous paid vacation, sick leave, and parental leave policies supporting work-life balance"}
- {"name":"Professional Development","description":"Learning and development budgets, conference attendance, and technical training opportunities"}
- {"name":"Security Clearance Support","description":"Support and resources for obtaining relevant security certifications and clearances if applicable"}
- {"name":"Workplace Flexibility","description":"Flexible work arrangements and collaborative office environments supporting diverse work styles"}
- {"name":"Employee Wellness Programs","description":"Mental health resources, wellness initiatives, and fitness benefits promoting holistic employee wellbeing"}

## Compensation

- **max:** 250000
- **min:** 180000
- **currency:** USD
- **stockOptions:** true

## Interview process

### steps

- {"name":"Application Review and Initial Screen","description":"Recruiting team reviews your resume, background, and qualifications. Selected candidates will participate in a brief screening call to discuss experience, interests, and role fit."}
- {"name":"Technical Screening","description":"Participate in a focused technical conversation or coding assessment evaluating core competencies in system design, security concepts, and coding ability in your preferred language."}
- {"name":"System Design Interview","description":"Comprehensive interview assessing your ability to design scalable, secure systems. Expect discussion of architecture trade-offs, threat modeling, and operational considerations for building security systems at scale."}
- {"name":"Security Domain Deep Dive","description":"Technical interview with security engineering experts exploring your security domain knowledge, experience with threat detection, defensive strategies, and familiarity with security primitives."}
- {"name":"Cross-Functional Collaboration Assessment","description":"Conversation with product or engineering leadership to assess your communication skills, ability to influence technical decisions, and experience working across teams to drive security initiatives."}
- {"name":"Leadership and Culture Alignment","description":"Final round with senior engineering leadership discussing your approach to mentorship, engineering excellence standards, and alignment with Snowflake's culture of innovation and ownership."}

## Full description
At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done.

We are hiring a Senior Software Engineer for our Anti-Abuse team within Security Foundations. This team is responsible for protecting Snowflake and our customers from abuse on the Snowflake platform — building foundational security primitives across a complex multi-cloud environment to combat fraud, account takeovers, data exfiltration, and AI security threats at the scale of Snowflake’s hyper-growth.

## AS A SENIOR SOFTWARE ENGINEER, SECURITY FOUNDATIONS AT SNOWFLAKE, YOU WILL:

* Design, build, and scale security-by-default capabilities that protect Snowflake products across a complex multi-cloud environment
* Develop intelligent security platforms and services that leverage AI/ML and risk scoring to identify, prioritize, and respond to security threats and policy violations
* Build real-time detection and prevention systems to defend against account compromise, AI abuse, and data exfiltration through adaptive enforcement and granular policy controls
* Create security intelligence and monitoring capabilities that detect suspicious account & user activity, generate actionable insights, and enable timely response
* Partner across Security, Engineering, and Product teams to define security strategy, influence product design, and drive adoption of secure engineering practices
* Raise the engineering bar by setting standards for system design, code quality, operational excellence, and scalable security architecture within the Security Foundations organization

## OUR IDEAL SENIOR SOFTWARE ENGINEER, SECURITY FOUNDATIONS WILL HAVE:

* Bachelor's degree in Computer Science or a related technical field, or equivalent practical experience
* 5+ years of experience in software development with one or more of the following: JavaScript, Java, Python, C, C++, or Go
* Proficiency in Python, SQL, or a similar language for building detections and data pipelines
* Experience designing, testing, and maintaining software solutions with a security focus
* A track record of leading projects independently and setting technical direction

## BONUS POINTS FOR THE FOLLOWING:

* Master's degree or PhD in Computer Science or a related technical field
* Experience working with infrastructure across major cloud providers (AWS, GCP, Azure)
* Hands-on experience with security primitives including static analysis, dynamic analysis, authentication and access management, DDoS mitigation, or security scanning
* Background in secure software development lifecycle (SDLC) practices
* Strong interpersonal and communication skills for cross-functional partnerships

## WHY JOIN OUR ANTI-ABUSE TEAM AT SNOWFLAKE?

The Anti-Abuse team sits at the intersection of security engineering and platform scale — you’ll be building foundational capabilities that protect millions of customers across every cloud, rather than maintaining legacy point solutions. You’ll have real influence over the roadmap and the opportunity to work on some of the hardest adversarial engineering challenges in the industry: fraud, account takeover, data exfiltration, and emerging AI security threats.

Our culture is built on ownership and collaboration. Every engineer has an equal opportunity to innovate, drive impact, and grow. If you’re energized by working at the frontier of security and data — where “get it done” means building things that last — this is where you want to be.

Snowflake is growing fast, and we’re scaling our team to help enable and accelerate our growth. We are looking for people who share our values, challenge ordinary thinking, and push the pace of innovation while building a future for themselves and Snowflake.

How do you want to make your impact?

For jobs located in the United States, please visit the job posting on the Snowflake Careers Site for salary and benefits information: [careers.snowflake.com](http://careers.snowflake.com)
