Full-Time

Senior Software Security Engineer

Posted on 7/3/2024

Wikimedia Foundation

Wikimedia Foundation

501-1,000 employees

Operates Wikipedia and free knowledge projects

Compensation Overview

$105.3k - $163.6k/yr

Senior

Remote in USA + 2 more

More locations: Remote in Canada | Remote in UK

The Wikimedia Foundation is a remote-first organization and is currently able to hire in the following countries: Australia, Austria, Bangladesh, Belgium, Brazil, Canada, Colombia, Costa Rica, Croatia, Czech Republic, Denmark, Egypt, Estonia, Finland, France, Germany, Ghana, Greece, India, Indonesia, Ireland, Israel, Italy, Kenya, Mexico, Netherlands, Nigeria, Peru, Poland, Singapore, South Africa, Spain, Sweden, Switzerland, Uganda, United Arab Emirates, United Kingdom, United States of America, and Uruguay.

Category
Cybersecurity
IT & Security
Required Skills
PHP
JavaScript
Linux/Unix
Requirements
  • Strong software engineering experience with a focus on security
  • Ability to work effectively in a modern, object-oriented PHP code-base
  • Experience developing client-side JavaScript
  • Experience in developing secure software or security-related product features
  • A strong interest in working with a talented security team and learning more specialist security skills such as exploiting and mitigating application-level vulnerabilities
  • Patience in explaining security issues and their implications on privacy and risk to non-technical audiences
  • Sensitivity to the security challenges faced by participants in a large, international project
  • Experience using Linux at the command line for tasks related to web application development and deployment
  • Ability to maintain focus when working remotely
Responsibilities
  • Help design and build MediaWiki security capabilities
  • Review and deploy security features developed by the Foundation and community members
  • Work with other development teams to ensure that they make safe architectural and implementation choices
  • Perform security maintenance and address technical debt in security-critical components
  • Provide support for application security incidents and operations
Desired Qualifications
  • Experience working on anti-abuse mechanisms such as CAPTCHA and bot detection
  • Previous experience building security countermeasures against attacks on technologies at the web, backend and database level
  • Experience finding and fixing security bugs and reviewing code for security gaps
  • A working knowledge of threat modeling and secure design patterns

The Wikimedia Foundation operates Wikipedia and other free knowledge projects, aiming to create a world where everyone can freely access and share knowledge. It provides a platform for users to read, contribute, and share content, while also supporting the volunteer communities that help maintain these projects. The foundation is funded through donations from individuals and institutions, emphasizing its nonprofit status. Unlike many other organizations, it focuses on making knowledge accessible to all without charge, advocating for policies that support free knowledge initiatives.

Company Size

501-1,000

Company Stage

Grant

Total Funding

$150M

Headquarters

San Francisco, California

Founded

2003

Simplify Jobs

Simplify's Take

What believers are saying

  • The NeMo Retriever technology reduces Wikipedia's data processing time significantly.
  • Wikimedia Enterprise introduces a new revenue model, enhancing financial sustainability.
  • The Kaggle beta dataset fosters AI innovation while reducing server strain.

What critics are saying

  • Reliance on Google for Wikimedia Enterprise poses financial vulnerability.
  • Potential abuse by coordinated actors could lead to regulatory challenges.
  • AI bots scraping data strain Wikipedia's infrastructure, risking operational costs.

What makes Wikimedia Foundation unique

  • Wikimedia Foundation operates the world's largest free knowledge platform, Wikipedia.
  • It offers a unique commercial service, Wikimedia Enterprise, for mass data access.
  • The Foundation collaborates with diverse partners, like Nvidia and Armedangels, for innovation.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Company News

Andina Link Virtual Expo
May 21st, 2025
Wikipedia under siege: artificial intelligence threatens its sustainability

The Wikimedia Foundation has launched Wikimedia Enterprise, a commercial service for businesses that require mass access to their data, but so far only Google has agreed to pay for this service.

Dezeen
May 19th, 2025
Wikipedia's streetwear collection translates "the power of facts into a visual language"

German fashion brand Armedangels has teamed up with the Wikimedia Foundation to launch a clothing collection in the lead-up to Wikipedia's 25th birthday.

Lexology
May 8th, 2025
Wikimedia launches Online Safety Act judicial review

Wikimedia launches Online Safety Act judicial review.

Jewish Review
May 2nd, 2025
23 Congressional Members Express Concern to Wikimedia Foundation Over "Potential Abuse of Wikipedia by Coordinated Actors"

23 congressional members express concern to Wikimedia Foundation over "potential abuse of Wikipedia by coordinated actors"

GetCoAI
Apr 21st, 2025
Wikipedia blocks AI scrapers to reduce server strain

The big picture: The Wikimedia Foundation has launched a beta dataset through Kaggle containing structured Wikipedia content in English and French, designed specifically for AI developers to use instead of scraping the live site.

INACTIVE