About the job
Timezone preference: GMT-5 through GMT+1
Position Overview
The Wikimedia Foundation is seeking a talented and experienced Senior Software Engineer specializing in Security and Privacy to join our Product Safety and Integrity team. In this pivotal role, you will be instrumental in developing innovative security features that safeguard Wikipedia and our wider projects. This is a hands-on engineering position where you will collaborate closely with a skilled team of engineers and product managers to design and implement cutting-edge features that enhance user safety and ensure the platform's resilience against potential threats.
As a seasoned software engineer, you bring substantial experience in building security features for large-scale systems. You recognize the critical importance of rigorous testing and comprehensive documentation, while being well-acquainted with the common challenges encountered in the development of secure web applications. Your passion aligns with the mission of the Wikimedia Foundation, where transparency is paramount, and your contributions will impact thousands of editors daily.
Your primary focus will be on our MediaWiki platform, the backbone of Wikipedia. As one of the top ten websites globally, we maintain high-performance standards while addressing modern security challenges, including the integration of advanced authentication technologies, detecting and mitigating bot-related platform abuse, and enhancing our security architecture against emerging threats.
Key Responsibilities:
- Design, develop, and deploy security features with a strong emphasis on safety and compliance.
- Collaborate with other engineering teams to ensure secure and compliant architectural and implementation choices.
- Champion best practices in code reviews, decision-making, and fostering a culture of transparency, empathy, and collaboration.
- Oversee the development, review, and deployment of security features contributed by both the Foundation and community members.
- Conduct internal and external reviews focusing on security and privacy.
- Manage maintenance tasks and address technical debt in security-critical components.
- Provide expert support for application security and privacy incidents.
Qualifications:
We prioritize mindset and potential over a rigid checklist of experiences. Ideal candidates will possess the following:
- 5+ years of software engineering experience, preferably with a focus on security or privacy.
- Proficiency in modern web applications, primarily utilizing PHP and JavaScript.
- Strong understanding of security principles and practices.
- Ability to work effectively in a collaborative environment.
- Experience with security-related technologies and best practices.
