Staff Software Engineer - Security & Privacy

Samsara Samsara · Enterprise · IN · Remote · Platform

Staff Software Engineer to join the Cloud Governance Platform team, building foundational platforms for governance, identity security, compliance, and software supply-chain protections across cloud infrastructure and developer environments. The role involves leading technical direction, defining roadmaps, driving compliance through engineering, owning software supply-chain security, and partnering with various teams to solve risk and governance challenges.

What you'd actually do

  1. Lead the technical direction and architecture of Samsara’s Cloud Governance Platform, spanning cloud IAM, security controls, compliance enforcement, and software supply-chain security.
  2. Define and own the roadmap and long-term vision for governance and security platforms across AWS and GCP.
  3. Drive compliance through engineering, translating regulatory frameworks into automated, continuously enforced controls.
  4. Own software supply-chain security initiatives, including SAST, DAST, and secure CI/CD patterns.
  5. Partner with Infrastructure, Security, Compliance, and Product Engineering to solve complex, cross-functional risk and governance challenges.

Skills

Required

  • 8+ years of software engineering experience, with significant experience building and operating cloud platforms at scale.
  • Deep hands-on expertise in cloud infrastructure (AWS, GCP, or similar).
  • Strong understanding of cloud security, IAM systems, threat models, and mitigations.
  • Proven track record of leading large technical initiatives with cross-team impact.
  • Experience designing and operating highly reliable, scalable distributed systems.
  • Strong communication skills and ability to influence without direct authority.

Nice to have

  • Experience building internal developer platforms or governance systems used across many teams.
  • Background in developer tools, infrastructure, or productivity engineering.
  • Experience with software supply-chain security practices and tooling.
  • Proficiency in Golang, Python, Terraform, or similar platform-focused technologies.
  • Strong judgment in balancing developer experience, platform adoption, and enforcement of security controls.

What the JD emphasized

  • cloud IAM guardrails
  • automated controls
  • scalable platform abstractions
  • regulatory frameworks into automated, continuously enforced controls
  • SAST, DAST, and secure CI/CD patterns