Avatar for Webflow

All-in-one web design platform

Platform Security Engineer

Apply now
Webflow is a visual web development platform that empowers non-coders to create incredible experiences for the web. 

We’re looking for a Platform Security Engineer to join the Systems and Infrastructure team to help us secure our next-generation web publishing platform. Work with our team of talented engineers to protect our customers and ensure best security practices are being followed. As the first security engineer hire, you will help define what security looks like at Webflow and will be able to have a very large impact in a growing team by providing technical guidance on software design from a security perspective. You will support our cloud infrastructure by developing tools, building services, and providing consultative services to our engineering teams. You will also work closely with developers to diagnose, document, and remediate application security vulnerabilities  as well as educate and mentor engineers as they build and maintain existing services. This is a full-time position located in San Francisco or remote within the US.

As a Platform Security Engineer, you’ll … 

* Work on new product security features to help make our platform more secure and support our customer’s security needs
* Help us achieve and maintain security compliance and certification
* Help build, manage, and maintain an AWS architecture that meets accepted best practices for security, reliability, and maintainability 
* Conduct threat modeling tied to security services
* Take a leadership role in driving security initiatives at Webflow
* Establish, advocate, and enforce security policies and best practices among our team members.
* Lead efforts to keep our customers' data and company assets safe.
* Collaborate with colleagues across a variety of teams to architect & ship projects securely
* Investigate security-related reports from customers and security researchers, own our bug bounty program, and help prioritize remediation efforts
* Understand offensive techniques/tactics and be able to prioritize mitigation techniques or technologies accordingly.
* Work on a highly technical platform that empowers hundreds of thousands of people, and serves millions of page views an hour

That said, these role responsibilities are just the start! At Webflow, we encouraged you to contribute wherever your interests take you — and shape your role accordingly. 

And this isn’t just a philosophical bent: we actually give you 4 hours a week (10% of the work week) to tackle passion projects directly related to Webflow. 

About you 

You’ll thrive as Security Engineer if you:

* are an experienced software engineer, preferably a generalist or a specialist with an interest in all aspects of security
* have a solid understanding of OSI model, TCP/IP, HTTP and TLS
* experience supporting and maintaining Node.js applications and APIs
* prefer automating work over manual processes - we love automation and would love you to build your own tools for automating processes
* have extensive experience working in an AWS environment
* have some familiarity with many of the tools we use: Kubernetes, Docker, Terraform, node.js, mongodb
* are able to make pragmatic security decisions, understanding the tradeoffs between alternative approaches.
* are very comfortable behind a linux terminal
* comfortable with using Git

However, even if you don’t meet 100% of the above qualifications, you should still seriously consider applying. Studies show that meeting just 50% of a role’s requirements puts you in the running. 

About us 

At Webflow, we believe that our success will not only be defined by what we do — but by how and why we do it. So, here is the Webflow “why” and our “how”: 

Our dual missions — one for the world, one for us

1. For the world: To empower everyone to create for the web and spark an unprecedented wave of digital innovation.
2. For ourselves: Lead fulfilling, impactful lives.

Our core behaviors (webflow.com/jobs#core-behaviors) (how we act)

1. Start with customers
2. Practice extraordinary kindness
3. Be radically candid
4. Move uncomfortably fast
5. Just fix it
6. Lead by serving others
7. Dream big

Our commitments to you 

* We’ll pay you! This is a full-time, salaried position that includes equity
* We’ll invest in your physical and mental well-being with health, dental, and vision benefits and a monthly stipend for health and wellness expenses 
* We’ll pay you to take a vacation … seriously. We’ll give you a $1,000 bonus for taking your first vacation with us that is more than 5 days 
* We offer flexible parental leave for moms and dads
* We provide remote employees with the equipment they need to create a great remote work environment 
* We will offer you the support you need to help you grow as an impactful Platform Security Engineer and a healthy human being 

Ready to apply?

If you share our values and our enthusiasm for empowering the world, we’d love to hear from you!

Note: You'll need valid U.S. work authorization to join us.


At Webflow, we care about the physical and mental well-being of all team members. We cover health, dental, and vision benefits for you and your dependents (and an HRA to cover out of pocket costs.)

Competitive parental leave

We offer flexible parental leave for moms and dads. Plus, we offer remote and work from home flexibility — so you can be wherever you need to for your little ones.

Paid time off

In addition to 4+ weeks of paid time off, we’ll also pay you to take a vacation … seriously. We’ll give you a $1,000 bonus for taking your first vacation with us that is more than 5 days. Plus, we celebrate you with birthday time off!

Health and wellness stipend

We care about your mental and physical well-being — so we provide $200 a month to help you meet your health and wellness goals.

Complimentary coaching services

We offer every Webflower coaching services through Bravely — whenever you need them.

Annual learning budget

Enjoy a $1,000 annual extended learning budget — for anything you want to learn!

Company retreats

We host a yearly team offsite and company retreat to allow everyone on our team to connect and reflect. Previous team retreat locations include Lisbon and Cancun.

Shiny new gear

All team members receive a shiny new Macbook of their choice and monitor(s) as needed.

10% time program

Webflow allows its employees to use up to 10 percent of their work week at Webflow to pursue special projects.

Plus other great perks!

These are just a few of the benefits and perks for Webflow employees — check out webflow.com/jobs to learn more about all of the perks we offer.

Webflow at a glance

All-in-one web design platform

Webflow focuses on SaaS, Web Design, Web Development, and Web CMS. Their company has offices in San Francisco. They have a mid-size team that's between 51-200 employees. To date, Webflow has raised $1.5M of funding; their latest round was closed on March 2014.

You can view their website at https://webflow.com/ or find them on Twitter, Facebook, LinkedIn, and Product Hunt.

Similar jobs to Platform Security Engineer at Webflow

Avatar for Wyndow
Power hotels to automatically deliver a highly-curated guest experience within their brand
Avatar for Docbot
Docbot develops real-time AI-driven assistance for colonoscopy
Avatar for Loom.ai
Real-time 3D Avatars for AR, Collaboration & Conversational AI
Avatar for Forward
Primary care done differently. tele-health and digitally driven health solutions
Avatar for Juni Learning
Bringing the best computer science instruction to every student's screen