Job Specifications
Teamwork makes the stream work.
Roku is changing how the world watches TV
Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.
From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.
About The Team
The Roku trust engineering team is a close knit group of professionals with a passion for information security. Our mission is to protect our customers, partners, devices, services, infrastructure, and data. We work collaboratively, sharing insights and expertise to stay ahead of the curve. Join us, and you’ll be part of a dynamic team that thrives on challenges and celebrates victories together.
About The Role
As a Senior Security Engineer on the Trust Cloud team, your role involves evaluating, architecting, designing, and implementing end-to-end security controls to impact the global user base. A key focus is on developing automated, scalable security solutions to enhance efficiency and protect Roku. This position requires a broad breadth of security expertise across all disciplines of security, including networking, DevSecOps, security tooling implementation, policy and procedure, risk evaluation, etc.
What You Will Be Doing
Conducting enterprise, network, and application level security reviews.
Conducting threat modelling for infrastructure, platform, and application initiatives.
Planning and overseeing execution of security initiatives and projects
Partnering with infrastructure, platform, and application teams to embed security into application architectures and deployment workflows as part of a robust Secure Software Development Lifecycle (SSDLC).
Improving IAM policies, network configurations, DNS security, and cloud resource management practices.
Designing and implementing integrations with third-party security platforms to automate vulnerability management, secure secret handling, and cloud posture monitoring, ensuring findings are actionable and seamlessly integrated into engineering workflows.
Responding to security incidents to triage, contain, remediate, and report.
Leveraging AI to accelerate your learning and enhance your work products.
Driving security initiatives end-to-end — from identifying risks to delivering solutions — with high autonomy in a fast-moving environment.
Automating vulnerability detection, misconfiguration checks, and compliance validation across cloud and containerised environments.
Creating reusable security automation modules, templates, and patterns for engineering teams to adopt.
We're Excited If You Have
Experience doing security consulting and have balanced experience doing hands on implementation
Experience supporting/leading DevSecOps initiatives and assisting teams in utilising and onboarding onto DSO platforms
Designing, building, operating, and maintaining DSO platforms through IaC
Offensive cyber operations such as application, system, and network level penetration testing
Software Engineering experience with at least one general purpose programming language (ex. Python, Golang, C, Rust, etc.)
Developed and/or implemented data tagging, data catalogs, or other data protection related activities
Experience designing and administering enterprise identity and access management solutions at scale (ex: AD, EntraID, Okta, etc)
Experience securely running and operating web applications, web services, and service-oriented architecture in production environments.
A proven track record of deploying and operating Kubernetes clusters in production.
Experience deploying and operating infrastructure in multiple cloud providers (AWS, GCP, Azure)
Fleet administration of Linux workstations and servers
Defensive cyber operations such as operating a SEIM, managing a SOC, or leading cyber investigations
Benefits
Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all loca
About the Company
With the #1 platform for streaming television in the U.S., Roku wants to revolutionize the way the world watches TV.
Our Roku-branded TVs, Roku TV models, Smart Home system, streaming players, audio equipment, and the purpose-built operating system that powers it all can turn any home into a home theater, with seamless integration of hardware and software. Our commitment to our users extends to our brand studio, which creates innovative Roku Originals exclusively for The Roku Channel, a free channel that reaches approximat...
Know more