At a Glance
- Tasks: Design and build security systems to protect users and infrastructure.
- Company: Join Hover, a cutting-edge tech company transforming property interactions.
- Benefits: Enjoy competitive salary, unlimited PTO, and comprehensive health coverage.
- Other info: Collaborative culture with strong focus on professional growth and learning.
- Why this job: Make a real impact on security while working with innovative technologies.
- Qualifications: 5+ years in software engineering and 3+ years in security-focused roles.
Hover helps people design, improve, and protect the properties they love. With proprietary AI built on over a decade of real property data, Hover answers age-old questions like “What will it look like?” and “What will it cost?” Homeowners, contractors, and insurance professionals rely on Hover to get fully measured, accurate, and interactive 3D models of any property — all from a smartphone scan in minutes. At Hover, we’re driven by curiosity, purpose, and a shared commitment to serving our customers, communities, and each other. We believe the best ideas come from diverse perspectives and are proud to cultivate an inclusive, high-performance culture that inspires growth, accountability, and excellence.
As a Security Software Engineer, you will build foundational security systems that protect our users and infrastructure. You will design and implement robust, scalable security services, acting as a primary partner for engineering teams to build secure-by-design solutions into our platform. You will take ownership of core functions such as authentication (login, MFA), identity management (SCIM, RBAC), secret management, and more. Your work will be crucial in maintaining and hardening compliance (e.g., SOC 2) and protecting sensitive data across our organization.
The Infrastructure and Security team at Hover ensures the scalability, reliability, and security of our platform, empowering engineers to build and deploy applications faster, safer, and with greater stability. This collaborative team is composed of engineers with expertise in cloud infrastructure, security, automation, and CI/CD best practices. We handle everything from Kubernetes environments and cloud architecture to securing user authentication and automating vulnerability detection. Our mission is to make the best path the easiest path by providing robust automation, consistent patterns, and secure-by-design principles.
You will contribute by:
- Security Service Development: Design and build core security services (e.g., permissions management, secrets orchestration, secure MLOps). Develop secure-by-default libraries and frameworks that empower other engineering teams to write secure code.
- Security Infrastructure Automation: Enhance our CI/CD pipeline with automated self-serve security controls (e.g. SAST, supply chain security controls).
- Architecture & Code Review: Conduct secure code and architecture reviews, enforce secure-by-design principles, and lead threat modeling.
- System Hardening: Build and maintain resilient cloud infrastructure. Implement network isolation, automated vulnerability detection, and defense-in-depth strategies to harden our production environment.
- Compliance & Process: Run security incident response, document risks, and support audits.
- Collaboration & Education: Advise teams on security best practices, identify and solve for developer security friction points, and bring security awareness to engineering.
Your background includes:
- 5+ years of hands-on software engineering experience.
- 3+ years of hands-on security-focused engineering experience.
- Proficient in at least one programming language (Ruby, TypeScript, Python, C++, etc.) and willingness to ramp up in others.
- Experience building scalable security systems (e.g., secret management, service authorization, data encryption) in a production environment.
- Experience with threat modeling, security design reviews, or security incident response.
- Experience integrating security directly into the software development lifecycle (SDLC).
- Meticulous attention to detail; able to be the final checkpoint on security decisions.
- Excellent communication and collaboration skills for cross-team interactions.
- Ability to mentor and train engineers on secure development processes.
- A proactive approach to continuous learning and staying current with emerging security trends.
Benefits:
- Compensation: Competitive salary and meaningful equity in a fast-growing company.
- Healthcare: Comprehensive medical, dental, and vision coverage for you and dependents.
- Paid Time Off: Unlimited and flexible vacation policy.
- Paid Family Leave: We support work/life balance and offer generous paid parental and new child bonding leave.
- Mandatory Self-Care Days: A day set aside each month to allow employees to recharge.
- Remote Wellbeing Resources: We provide recurring fitness classes, meditation/mindfulness tools, virtual therapy, and family planning assistance.
- Learning: We encourage continued education and will help cover the cost of management training, conferences, workshops, or certifications.
Hybrid roles at Hover: Hover has Hubs in San Francisco and New York City, where we expect that all employees living within a 50-mile radius of our offices will come into their local Hover office at least three times a week to build rapport and foster organic connection. At this time, Hover is not considering fully remote roles.
The US base salary range for this full-time position is $165,000 - $239,000 annually. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all applicable US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training.
Senior Security Software Engineer in York employer: Hover
At Hover, we pride ourselves on being an exceptional employer that fosters a culture of collaboration, innovation, and continuous learning. Our commitment to employee growth is reflected in our comprehensive benefits, including unlimited paid time off, generous parental leave, and support for ongoing education. Located in vibrant hubs like San Francisco and New York City, we offer a dynamic work environment where diverse perspectives are valued, ensuring that every team member can contribute meaningfully to our mission of redefining property interaction.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Security Software Engineer in York
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Hover, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Hover
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Hover. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Senior Security Software Engineer in York
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Hover insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Hover that you’re committed to staying ahead in the game.
How to prepare for a job interview at Hover
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Hover to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Hover.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.