Staff Application Security Engineer
ThumbtackRemote, United States$250k – $323kPosted 4 March 2026
Job Description
<div class="content-intro"><h2><strong data-stringify-type="bold">Thumbtack helps millions of people confidently care for their homes.</strong></h2>
<p>Thumbtack is the one app you need to take care of and improve your home — from personalized guidance to AI tools and a best-in-class hiring experience. Every day in every county of the U.S., people turn to Thumbtack to complete urgent repairs, seasonal maintenance and bigger improvements. We help homeowners know which projects to do, when to do them and who to hire from our growing community of 300,000 local service businesses. If making an impact inspires you, join us. Imagine what we’ll build together.</p></div><h2><strong>About the Cybersecurity team</strong></h2>
<p>The Security Engineering team at Thumbtack is focused on enabling innovation at scale by making the secure path the easiest path. We believe strong security is not a blocker to velocity, but a force multiplier when it is designed into systems, platforms, and developer workflows from the start.</p>
<p>We partner closely with Product, Engineering, Platform, and Data teams to shape system design, guide architectural decisions, and evolve Thumbtack’s security posture as the company scales. Through collaboration, automation, and thoughtful tradeoffs, we help ensure Thumbtack can ship fast, innovate boldly, and maintain customer trust.</p>
<h2><strong>Challenge</strong></h2>
<p>As Thumbtack scales and increasingly incorporates AI-powered features into our products and internal systems, security must evolve without slowing innovation. The number of services, deployment patterns, and data flows continues to grow, and traditional approaches that rely heavily on manual reviews or after-the-fact controls do not scale to meet this need.</p>
<p>Instead, the challenge is to design security into the system itself. This means building secure defaults, paved paths, and reusable building blocks that product and engineering teams can adopt with minimal friction. By embedding security directly into architectures, tooling, and infrastructure, we reduce cognitive load on engineers and enable teams to move quickly and confidently while meaningfully lowering risk.</p>
<h2><strong>What you'll do </strong></h2>
<ul>
<li>Own the long-term technical direction for application security across Thumbtack. Build prioritized roadmaps and drive remediation of systemic security risks across the application stack. </li>
<li>Lead large, cross-functional security initiatives from problem definition through delivery.</li>
<li>Design secure-by-default architectures, standards, and paved paths for engineering teams. Design and implement shared security tooling, libraries, patterns, and services that enable engineering to ship quickly and safely. Embed security into CI/CD pipelines, cloud infrastructure, and developer workflows.</li>
<li>Partner with engineering and product leaders to prioritize security investments based on risk, impact, and business goals. </li>
<li>Lead application security design reviews, architectural discussions, and threat modeling for critical systems. Contribute code, reviews, and designs to address complex or novel security risks.</li>
<li>Mentor engineers and raise the overall security bar through guidance and example.</li>
<li>Support security incident response and drive learning through post-incident analysis.</li>
</ul>
<h2><strong>In order to be successful, you must bring</strong></h2>
<ul>
<li>8+ years of experience in software engineering and application security, including a strong understanding of secure coding practices and application security frameworks.</li>
<li>Deep expertise in secure system design and architecture as well as modern application security tools, patterns, and practices (e.g. threat modeling, secure design patterns, authentication and authorization, secrets management, vulnerability discovery and remediation workflows).</li>
<li>Proven track record leading large, cross-functional technical initiativ ... (truncated, view full listing at source)
Apply Now
Direct link to company career page
More jobs at Thumbtack
See all →More Express jobs
See all →Senior Partner Sales Manager- East
New Relic · Albany, New York, USA; Boston, Massachusetts, USA; Jersey City, New Jersey, USA; New York City, New York, USA
Senior Solutions Architect
New Relic · Buenos Aires, Argentina
Account Executive - Enterprise Sales (Greenfield)
New Relic · Sacramento, California, USA; San Francisco, California, USA; San Jose, California, USA; Sunnyvale, California, USA
Senior Technical Success Manager
New Relic · Arlington, Virginia, USA; Atlanta, Georgia, USA; Charlotte, North Carolina, USA; New York City, New York, USA