Staff Security Engineer, Proactive Security

DoorDash · United States - Remote

About the Team

At DoorDash we’re building the industry’s most scalable and reliable delivery network to support our three-sided marketplace of consumers, merchants, and Dashers. Security is integral to the success of the business, as we secure the data and protect the privacy of our business and various stakeholders. The Product Security team is responsible for ensuring the security of DoorDash’s platform. You will be a part of our inclusive, collaborative team responsible for building a safe and reliable application platform.

About the Role

Our Security Engineering team is looking for a Staff Security Engineer, Proactive Security to lead planning, development, and execution on Product Security initiatives to secure DoorDash’s Dasher Logistics vertical. This role will own technical direction, vision and execution for your assigned vertical, partnering closely with our in-house Security Research and Mobile Security SMEs to drive long-term security improvements across our global Dasher Logistics infrastructure.

You will be a part of our inclusive, collaborative global team responsible for building “paved road” Security Product controls directly into our Dasher products to ensure a safe, secure and resilient delivery network. This is a US or Canada remote position reporting directly to the Engineering Manager, Proactive Security and ultimately to the Global Director, Proactive Security. 

You’re excited about this opportunity because you will…

  • Set and own strategic roadmaps for assigned security partner pod and work directly with product, engineering and security leaders to ship product security outcomes into DoorDash’s platform.
  • Prioritize customer experience, ergonomics and thoughtful security design to prevent an adverse impact to dashers from security flaws.
  • Go deep and become an expert in the Dasher Logistics engineering vertical, focusing on resolving classes of security vulnerabilities affecting the Dasher ecosystem. 
  • Partner cross-functionally with Core Infrastructure, Product Engineering, Legal, and Security Platform teams to build "paved paths" that provide actionable feedback to embed secure design practices.
  • Advise and mentor other security engineers to build and deploy security measures and services to secure DoorDash platform and its applications for assigned verticals.
  • Build solutions to address complex security challenges impacting DoorDash products, performing hands-on manual and automated code reviews to identify vulnerabilities in APIs, microservices, and mobile apps.
  • Conduct regular application security assessments and manage the lifecycle of application vulnerabilities, from identification to remediation, reporting, and metrics.
  • Integrate and manage security tools into the CI/CD process and develop tools and automated agentic harnesses for improving our Security efficiency.

We’re excited about you because…

  • 10+ years of experience as a Software Engineering archetype Product Security Engineer.
  • Experience working with Global teams managing a diverse portfolio of products and partnering with engineering, product, fraud, and others to secure diverse environments.
  • Experience providing technical leadership and guidance, and thinking strategically and analytically to solve problems with excellent communication, presentation, and stakeholder management skills.
  • Lead with a people-first approach, able to facilitate a conversation rather than dictate it, and is empathetic to divergent viewpoints.
  • Expert understanding of authorization and authentication framework and technologies, with hands-on experience building and deploying secured microservices.
  • Hands-on experience understanding, identifying, and fixing OWASP top 10 and similar vulnerabilities, with a strong interest in analyzing code, architecture, and design from a security perspective.
  • Well-versed in at least one object-oriented programming language (e.g., Java, Golang).
  • Experience with mobile security app hardening, application shielding, and threat modeling mobile APIs is a strong plus.
  • Breadth of technical experience across various application and product security areas running in large cloud native production environments.


We expect this position to be filled by 8/29/26.

Compensation

The successful candidate’s starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee’s work location. Ranges are market-dependent and may be modified in the future.

In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.

DoorDash cares about you and your overall well-being. That’s why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.

To learn more about our benefits, visit our careers page here.

See below for paid time off details:

  • For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
  • For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).
The national base pay range for this position within the United States, including Illinois and Colorado.
$193,800$285,000 USD

About DoorDash

At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started by enabling door-to-door delivery, and we are looking for team members who can help us go from a company that is known as the place you order food to a company that people turn to for any and all goods.

DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.

Our Commitment to Diversity and Inclusion

We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.

Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.

Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.

If you need any accommodations, please inform your recruiting contact upon initial connection.

Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only

We used Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provided Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023.  We resumed using Covey Scout for Inbound again on June 29, 2024, and ceased using Covey Scout for Inbound on April 30, 2026.

The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: https://getcovey.com/nyc-local-law-144.

Security pay context

Based on 1,629 disclosed Security salaries on RoleSuite, the role pays a median of $142K/year, with most offers between $114K and $180K (10th–90th percentile: $95K–$216K).

This posting lists $194K–$285K, above the $142K market median.

See the full Security salary breakdown →
Apply →