About the job
Timezone Preference: GMT-5 through GMT+1
About the Role
The Wikimedia Foundation is seeking a skilled Senior Software Engineer to become a part of our Product Safety and Integrity team. In this pivotal role, you will be responsible for developing innovative security features that safeguard Wikipedia and our other platforms. This position demands hands-on engineering expertise, collaborating closely with fellow engineers and product managers to design and implement functionalities that not only protect our users but also ensure the resilience of our platform against various cyber threats.
You are an experienced software engineer with a track record in building security features for large-scale systems. You comprehend the critical importance of testing and documentation, and you are aware of the common challenges associated with developing secure web applications. Your enthusiasm for the Wikimedia Foundation's mission is evident, and you appreciate our commitment to transparency, as our work impacts thousands of editors globally every day.
In this role, you will primarily engage with our MediaWiki platform, which underpins Wikipedia. As one of the top 10 websites globally, we adhere to rigorous performance standards while tackling new security challenges such as integrating modern authentication technologies, detecting and mitigating platform abuse by bots, and proactively enhancing our security architecture to defend against emerging threats.
Key Responsibilities:
- Designing, developing, and delivering security features with a strong focus on safety and security.
- Collaborating with other engineering teams to ensure safe and compliant architectural and implementation decisions.
- Leading through example in code reviews, decision-making, and fostering a culture of transparency, empathy, and teamwork.
- Developing, reviewing, and deploying security features crafted by both the Foundation and community members.
- Conducting internal and external security and privacy assessments.
- Managing maintenance and addressing technical debt in security-critical components.
- Providing support during application security and privacy incidents.
