Full-Time

Application Security Engineer

EasyPost

EasyPost

201-500 employees

Provides multi-carrier shipping APIs for logistics

Compensation Overview

$150k - $173k/yr

+ Equity + Monthly stipend

Remote in USA

Remote

Category
IT & Security (1)
Required Skills
Rust
Microsoft Azure
Python
Ruby
Threat modeling
Infrastructure as Code (IaC)
AWS
Go
Risk Management
DevOps
Linux/Unix
Google Cloud Platform
Requirements
  • Bachelor's degree in computer science, management information systems, or related field.
  • 5+ years of related experience, master’s degree and 3+ years of related experience, or equivalent related work experience.
  • Ability to code proficiently in at least two of the following programming languages: Python, Ruby, Go, and Rust.
  • Ability to design systems that are simple to understand, maintainable, scalable, and resilient.
  • Prior experience securing large-scale web applications and/or Application Programming Interfaces (APIs), including performing security design reviews, vulnerability assessments, and building testing strategies for logic flaws.
  • The ability to understand and communicate concepts around threat modeling and risk management, including to both technical and non-technical stakeholders.
  • Proven history of building strong partnerships with Engineering and Product teams to deliver world-class products and features.
  • Working knowledge of several compliance and regulatory frameworks (SOC2, ISO 27001, SOX/ITGC, HIPAA, GDPR, CCPA, etc…).
  • Experience in assessing risk and selecting key objectives during the vendor management lifecycle for software, hardware, cloud, and software-as-a-service vendors.
  • Deep knowledge of how to build and maintain mixed computing environments (Linux, Windows, Mac OS, and mobile devices).
  • Past experience with migrating applications and services to public cloud providers (AWS, GCP, Azure, etc…)
  • Core Competencies Required: Knowledge and Application.
  • Core Competencies Required: Complexity & Problem Solving.
  • Core Competencies Required: Collaboration & Interaction.
Responsibilities
  • Lead Security Architecture: Design, build, and maintain scalable security systems and infrastructure that align with the organization's evolving business goals.
  • Embed Security by Design: Partner with cross-functional teams to integrate security and privacy controls into the product lifecycle, from project inception to final delivery.
  • Scale Security Operations: Build automated systems and programs that allow security at EasyPost to scale efficiently in both breadth and depth of coverage.
  • Drive DevSecOps Adoption: Champion "shift-left" methodologies, utilizing Infrastructure-as-Code and CI/CD design patterns to move security feedback to the earliest phases of development.
  • Product Innovation: Architect and build competitive customer-facing security features that support business growth and appeal to security-conscious markets.
  • Intelligent Notifications: maintain high-fidelity alerting/notification infrastructure that delivers timely, relevant, and actionable intelligence to internal staff and customers.
  • Enablement & Education: Create self-service documentation, training materials, and knowledge base resources that empower developers to write safer code and increase productivity.
  • M&A Integration: Collaborate directly with M&A entities to assess risks, integrate products, and unify diverse environments under our security standards.

EasyPost provides shipping APIs that let businesses integrate parcel shipping and logistics into their own systems, enabling rate comparison, label printing, tracking, and insurance across multiple carriers from one platform. Companies connect to the API, request quotes from carriers like USPS, UPS, FedEx, and DHL, and process labels and tracking through a single integration; pricing includes a free tier and usage-based charges, plus optional insurance and data-driven optimization tools. Unlike some competitors, EasyPost combines multi-carrier access with a straightforward API and added services, while offering a generous free tier that appeals to small businesses and scales for large enterprises. The goal is to help businesses streamline shipping, cut costs, and ensure reliable delivery through easy-to-integrate, data-informed shipping capabilities.

Company Size

201-500

Company Stage

Series B

Total Funding

$37.6M

Headquarters

San Francisco, California

Founded

2012

Simplify Jobs

Simplify's Take

What believers are saying

  • ShipBae integration on April 21, 2026, unlocks USPS GDE rates without commitments.
  • Forge white-label enables B2B platforms to deploy shipping in minutes.
  • FedEx Platform Account and DHL eCommerce expand carrier discounts.

What critics are saying

  • ShipBae commoditizes USPS rates, eroding EasyPost margins in 6-12 months.
  • FedEx Platform Account bypasses EasyPost for direct API access in 12 months.
  • Free tier locks zero-revenue users, causing negative economics in 12-24 months.

What makes EasyPost unique

  • EasyPost API integrates 100+ carriers including USPS, UPS, FedEx, DHL.
  • EasyPost automates rating, labels, tracking, insurance via single platform.
  • EasyPost scales from SMBs to enterprises with self-serve tools.

Help us improve and share your feedback! Did you find this helpful?

Your Connections

People at EasyPost who can refer or advise you

Benefits

Medical, dental, vision plans

Flexible time-off

Stock option opportunities

401(k) match

Cross-functional learning

Monthly virtual events

Growth & Insights and Company News

Headcount

6 month growth

↑ 0%

1 year growth

↑ 0%

2 year growth

↑ 1%
The Transport Data
Apr 2nd, 2025
EasyPost Unveils Forge: A Powerful White-Label Shipping Solution for B2B Platforms

EasyPost, the software innovator powering shipping for thousands of businesses, announces the launch of Forge - a next-generation white-label solution that enables B2B platforms to launch end-to-end shipping capabilities in minutes, not months.

01Net Italy
Sep 11th, 2024
EasyPost Announces New International Shipping Solutions with DHL eCommerce

EasyPost announces new international shipping solutions with DHL eCommerce.

Maropost Ventures
Mar 5th, 2024
Easy Post - Maropost Ventures

EasyPost was founded in 2012 as the first RESTful API for shipping. EasyPost has thousands of customers shipping millions of packages each month. Our customers range in size from public companies to SMBs. We offer a Shipping API that solves complex logistics problems for online merchants, enabling the delivery of an online shopping experience that... Read more

RetailWire
Aug 17th, 2023
EasyPost and FedEx Launch FedEx Platform Account

EasyPost, a leading multi-carrier shipping API provider, has joined forces with FedEx to introduce the FedEx Platform Account program.

Machintel Media Private Limited
May 23rd, 2023
EasyPost Announces Gold Partnership with Manhattan Associates

EasyPost, a leading provider of enterprise class multi-carrier shipping solutions, today announced its Gold Partnership with Manhattan Associates, a global leader in supply chain commerce solutions.