Cutshort logo
StepSecurity
StepSecurity cover picture
Founded :
2021
Type :
Product
Size :
0-20
Stage :
Raised funding
About


StepSecurity is dedicated to enhancing CI/CD security by providing solutions to prevent pipeline attacks. Founded by seasoned security professionals with experience at Microsoft, Uber, and Plaid, StepSecurity addresses the security gaps highlighted by major breaches like SolarWinds and Codecov.


Founders:

- Varun Sharma: CEO & Co-Founder, formerly at Microsoft.

- Ashish Kurmi: CTO & Co-Founder, with experience at Plaid, Uber, and Microsoft.


Advisors:

- Sekhar Sarrukai, David Cross, Gagan Gulati, Jordan Harband, Ram Shankar Siva Kumar.


Investors:

StepSecurity is backed by leading VCs and notable angel investors, including Anmol Malhotra (Coinbase), Ash Devata (GreyNoise), and David Cross (Rain Capital).


Funding raised: $3M - Seed Funding


For more detailed information, visit - https://www.stepsecurity.io/team

Read more
Tech stack
skill iconGo Programming (Golang)
skill iconAmazon Web Services (AWS)
skill iconNodeJS (Node.js)
Candid answers by the company
What does the company do?
What is the location preference of jobs?

StepSecurity provides a comprehensive security platform for GitHub Actions

Product showcase
StepSecurity's logo
StepSecurity
Visit
StepSecurity Platform Secures All Three Layers of GitHub Actions Go beyond the limited pipeline as code checks offered by other security vendors
Read more
Photos
Company featured pictures
Company featured pictures
Company social profiles
bloglinkedin

Jobs at StepSecurity

StepSecurity
at StepSecurity
2 candid answers
1 product
Nikita Sinha
Posted by Nikita Sinha
Remote only
2 - 5 yrs
Upto ₹35L / yr (Varies
)
skill iconNodeJS (Node.js)
TypeScript

About StepSecurity:

StepSecurity is a US-based cybersecurity startup focused on building the best Continuous Integration (CI) / Continuous Deployment (CD) security platform. With 30+ years of combined industry experience, our founders have built cybersecurity functions at companies like Microsoft, Uber, and Plaid. We are well-funded by Tier 1 VCs with deep expertise in cybersecurity and SaaS. Industry leaders like Google, Microsoft, AWS, and DataDog trust our platform to secure their CI/CD pipelines. Based in Seattle, Washington, we embrace a remote-first culture with flexible remote working opportunities. We take pride in our open-source contributions and a collaborative team environment. 


Why Join StepSecurity? 

  • High Impact: Be part of a startup where your work directly impacts developers worldwide, including teams at leading organizations. 
  • Innovative Work: You'll be building a cutting-edge CI/CD cybersecurity product used by thousands of developers globally. 
  • Growth Opportunity: As an early team member, you’ll influence the company's technical direction and growth trajectory. 
  • Open-Source Focus: Contribute to the open-source ecosystem while shaping the security standards of CI/CD pipelines



Role Description:

We seek full-time founding engineers with a background in NodeJS and Typescript to build and maintain our CI/CD security platform’s backend systems and components (GitHub Actions). This high-impact role involves setting best practices and owning engineering processes, with contributions used by thousands of developers globally. You will primarily help StepSecurity build a large marketplace of StepSecurity Maintained Actions. All StepSecurity Maintained Actions are open-source, and you will mainly be making open-source contributions. 


Responsibilities:

- Onboard new Maintained Actions. 

- Maintain existing Maintained Actions to make sure that they are free of known vulnerabilities. 

- Implement mature engineering processes to manage a large number of StepSecurity Maintained Actions.   

- Architect and implement GitHub Actions CI/CD components. 

- Deliver features incrementally in quick iterations. 

- Write clean, efficient, and maintainable code following industry best practices. 

- Conduct code reviews and provide constructive feedback. 

- Troubleshoot and debug complex software issues promptly. 

 

Qualifications: 

- 2 to 5 years of enterprise hands-on backend experience. 

- Proficiency in NodeJS & TypeScript. 

- Experience in other languages such as Golang and Python is a plus. 

- Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field. 

- Solid understanding of software development principles, design patterns, and best practices. 

- Strong collaborative and problem-solving skills. 

- Self-motivated, creative thinker with a drive for continuous improvement. 

- Experience in a startup or high-impact, outcome-driven environment. 

Read more
StepSecurity
at StepSecurity
2 candid answers
1 product
Reshika Mendiratta
Posted by Reshika Mendiratta
Remote only
2yrs+
Best in industry
Technical Writing
CI/CD
DevOps
Cyber Security

About the Company:

StepSecurity provides an industry-leading CI/CD security platform, trusted by over 4,000 open-source repositories, including those from Google, Microsoft, Amazon, and DataDog. Several enterprise customers also rely on StepSecurity to secure their CI/CD pipelines and infrastructure.


About the Role:

A key part of this role is to reach all relevant security and DevOps engineers and make them aware of StepSecurity and our value prop. Creating in depth tutorials on using the product (which can be fairly technical) and writing blogs about different aspects of CI/CD security will be few of the key things you will be working on. For context, checkout our current blogs here https://www.stepsecurity.io/blogs  

 

We believe creating content which people care about is fundamentally about telling good stories. Stories of what we stand for as a company, where StepSecurity stands as a product, how users can benefit from it, how we build the product. Everything is a story waiting to be told. 


What Will You Be Doing?

  • Collaborate with the founders to build a content strategy supporting both open-source and enterprise StepSecurity customers.
  • Create blog articles/tutorials covering product features and usage.
  • Develop SEO-optimized content to capture Google traffic.
  • Maintain StepSecurity’s technical documentation: https://docs.stepsecurity.io/
  • Update READMEs for StepSecurity’s open-source repositories.
  • Create video tutorials or documentation addressing common user issues.
  • Organize and drive StepSecurity webinars.
  • Identify content gaps and produce material to address them.
  • Draft conference proposals.
  • Work closely with founders to boost engagement with open-source and enterprise customers.

Possible Content Types

  • Blog posts
  • Technical documentation
  • Case studies on how our current users are utilizing StepSecurity
  • Tutorials to explain how users can achieve specific use cases


Who Would Be a Good Fit?

  • 2+ years working as a Software developer or security engineer and has interest in explaining deep technical concepts in simple language. 
  • Hands-on experience using and developing content for Dev tools or enterprise cybersecurity products. 
  • Knowledge of CI/CD, security, and DevOps are required. 
  • Passion for technical marketing, dev advocacy or product management 
  • A flair for writing and growth mindset 


About the Interview

Our process involves a short initial exploratory chat, followed by 2 to 3 interviews/discussions. The aim is for both sides to learn more about each other. The process includes:

  • A written assignment where you will be asked to write a tutorial on a technical topic.
  • A discussion over a call with the founders.
Read more
StepSecurity
at StepSecurity
2 candid answers
1 product
Ashish Kurmi
Posted by Ashish Kurmi
icon

The recruiter has not been active on this job recently. You may apply but please expect a delayed response.

Remote only
2 - 5 yrs
₹12L - ₹18L / yr
Marketing analytics
Marketing
B2B Marketing
Marketing Strategy

About the Role

StepSecurity is a pioneering cybersecurity startup focused on securing CI/CD pipelines. Our mission is to help developers safeguard their software supply chains by offering robust security solutions tailored to modern development practices.

In a short span, StepSecurity has garnered significant traction within the developer community, making strides in enhancing the security of CI/CD pipelines globally.


About the Role

This role is integral to amplifying StepSecurity's presence among enterprises and conveying our unique value proposition. The creation and distribution of compelling content across channels frequented by technical and economic buyers are paramount.

We believe that impactful content stems from compelling storytelling. Stories about our company's mission, the evolution of StepSecurity, user benefits, and product development are all narratives waiting to be shared.

The primary responsibility of this role is to extract these stories from our team and present them in an engaging manner to our audience. Ensuring that the content resonates with developers and reaches them through the right channels is crucial.

Why Us?

  • Opportunity to work with a leading cybersecurity startup.
  • Engage with a passionate community and evangelize a transformative product.
  • Supported by prominent VCs and industry leaders.
  • Fully remote work environment with no office constraints.

What Will You Be Doing

  • Identify content gaps and create targeted content to fill them. Potential content types include website content, blog posts, YouTube videos, email newsletters, social media posts, case studies, and tutorials.
  • Discover the best channels to reach developers and generate interest through strategic content creation.
  • Develop and implement strategies to drive community engagement and product usage growth.
  • Disseminate content across relevant forums and communities.

Who Would Be a Good Fit

  • 2+ years of experience in product marketing/growth roles. Ideal experience range: 2-5 years.
  • Familiarity with tools and terminologies used by developers.
  • A background in software engineering is a significant advantage.
  • Strong writing skills and a growth-oriented mindset.
  • Ability to explain complex technical concepts in a simple, engaging manner.
  • We value entrepreneurial spirit. If you have experience as a startup founder or are between ventures, we encourage you to apply.

Who May Not Be a Good Fit

  • Candidates who are fresh out of college.
  • Those lacking experience with developer-focused products.
  • Professionals with only B2C growth/marketing experience.
Read more
Did not find a job you were looking for?
icon
Search for relevant jobs from 10000+ companies such as Google, Amazon & Uber actively hiring on Cutshort.
companies logo
companies logo
companies logo
companies logo
companies logo

Similar companies

sequretek it solutions pvt ltd cover picture
sequretek it solutions pvt ltd's logo

sequretek it solutions pvt ltd

https://www.sequretek.com
Founded
2013
Type
Services
Size
Stage
Profitable

About the company

Enterprise business veterans Anand Naik and Pankit Desai experienced the complexities of enterprise cybersecurity and saw the frustrations of CxOs as they devoted increasing amounts of time and resources to combat escalating threats. They envisioned a future where enterprise networks are streamlined, secure, and simple. Anand and Pankit co-founded Sequretek in 2013 to Simplify Security and provide enterprise leaders peace of mind while managing their organizational assets and brand. This vision drives the design, development, and deployment of every innovation that comes out of Sequretek. Sequretek’s AI- and ML-driven technologies ensure that companies are armed against all threats, known and unknown; and drive down the cost of ownership. A key tenet of our approach is enhanced visibility into the enterprise: you cannot secure what you cannot see. Improved visibility in the cloud means precise, actionable intelligence as well as more efficient and proactive management of resources - the best competitive edge enterprises require in today’s marketplace. With most of our communications and transactions becoming digital, it is critical that our information be protected and secured. The fact is that adversaries are constantly looking for gaps in our security defenses. An intrusion into anyone's device in a network can lead to a full-scale cyberattack that can threaten the very existence of a company. We help companies strategically plan their systems and networks against cyber threats.

Jobs

1

Astra Security cover picture
Astra Security's logo

Astra Security

https://www.getastra.com/
Founded
2017
Type
Product
Size
20-100
Stage
Profitable

About the company

Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to DevSecOps with Astra's CI/CD integrations.


Astra is loved by 650+ companies across the globe. In 2023 Astra uncovered 2 million+ vulnerabilities for its customers, saving customers $69M+ in potential losses due to security vulnerabilities. 


We've been awarded by the President of France Mr. François Hollande at the La French Tech program and Prime Minister of India Shri Narendra Modi at the Global Conference on Cyber Security. Loom, MamaEarth, Muthoot Finance, Canara Robeco, ScripBox etc. are a few of Astra’s customers.


More details right here: https://www.getastra.com/team-and-culture

 

Jobs

7

Security Innovation (India) cover picture
Security Innovation (India)'s logo

Security Innovation (India)

http://www.securityinnovation.com
Founded
2003
Type
Products & Services
Size
100-1000
Stage
Profitable

About the company

Security Innovation is a leader in application security training and software security assessments to top organizations worldwide.

There is a reason we have a 4.9/5 rating on Glassdoor. We take care of our clients, but also take care of our employees.
  • Comprehensive health insurance coverage provided
  • Work-life balance – we mean it.
  • Professional Development budget for conferences, classes, certifications, or other learning opportunities
  • Flexible work environment
  • Free coffee, snacks, beverages, among other office treats

Jobs

1

Safe Security cover picture
Safe Security's logo

Safe Security

https://www.lucideus.com
Founded
2012
Type
Product
Size
Stage
Raised funding

About the company

Incubated out of IIT Bombay and backed by John Chambers (Chairman Emeritus, Cisco) Lucideus is a pure play enterprise cybersecurity company. It provides Cyber risk assessment services and platforms to multiple Fortune 500 companies and governments across the globe. Lucideus was Co-founded by Saket Modi, Vidit Baxi & Rahul Tyagi. Headquartered in New Delhi, India with offices in Palo Alto, Boston, Mumbai & Bangalore

Jobs

4

WeSecureApp cover picture
WeSecureApp's logo

WeSecureApp

http://www.wesecureapp.com
Founded
2016
Type
Products & Services
Size
100-1000
Stage
Profitable

About the company

Simplifying Enterprise Security! We specialize in establishing a secure eco-system for your enterprise in congruence with all the stakeholders to meet compliance. Explore Our Work Penetration Testing is a combination of Engineering & ArtA hybrid approach for deeper and broader […]

Jobs

3

56 Secure cover picture
56 Secure's logo

56 Secure

http://www.56secure.com
Founded
2020
Type
Product
Size
20-100
Stage
Raised funding

About the company

At 56 Secure, we're pioneering the future of safety and security across India by providing the first and only connected security platform. Our mission is to enhance security for commercial properties, gated communities, and enterprises through innovative, AI-driven solutions. Based in Bangalore, we've strategically expanded our reach, implementing over 5000 AI Cameras across the city. Our robust surveillance network is backed by a robust team of 1000+ PSARA certified security agents, providing a foundation for unparalleled safety. Our technology, tailored for enterprises, integrates real-time threat detection, quick response services, and comprehensive safety measures. Designed for a variety of settings, from commercial hubs to residential communities, our AI-driven systems enhance security operations, providing critical insights for optimizing efficiency, managing risks, and enabling swift incident response. Join us as we redefine security and build safer communities together. Specialities: AI Security Cameras, Rapid Response Solutions, Comprehensive Security Services, and Community Safety Initiatives.

Jobs

0

Cyberium Inc cover picture
Cyberium Inc's logo

Cyberium Inc

http://www.fastbuilder.ai
Founded
2019
Type
Products & Services
Size
20-100
Stage
Profitable

About the company

🌐🚀 Welcome to Cyberium, the knowledge hub for businesses. We generate product and operations knowledge graphs for various knowledge driven tasks like AI, lowcode, generative AI, compliance and data fabric. For safeguarding of AI knowledge graphs are a commendable tool which features high level accuracy at 1/100th of training cost. Through K-graphs, we provide fast, detailed, and rapid access to scalable compliance, planning, and automation. Whether you're building or integrating a solution or planning a new development, the knowledge graphs are the new way of reaching goals faster. Our mission is to democratize access to technology, ensuring that every idea can be converted into reality. We believe that everyone should have access to information and the tools to drive their ideas forward. With the help of AI and NLP, we make complex planning tasks easy as a breeze. Just enter your product story, and we'll create a plan, reference architecture, and copilot prompts to execute projects with AI. Join us in lowering the entry barrier of digitization and innovation! #Cyberium #BusinessApps #AI #Innovation 🤖💡 Cyberium, Inc. offers a vast database of over 2 million AI-matched product stories and copilots in the cyber space, providing deep insights into how business software systems are structured to achieve specific goals. The company's service aids in the selection of long-lasting, high-performing products, saving time and resources on vendor selection and evaluations, and ensuring industry-specific compliance and regulations are met.

Jobs

0

Safe Security cover picture
Safe Security's logo

Safe Security

https://www.safe.security
Founded
2012
Type
Product
Size
100-500
Stage
Raised funding

About the company

With SAFE - a cyber risk quantification platform for enterprises you can start predicting cyber breaches instead of detecting them passively.

Jobs

0

Secureworks cover picture
Secureworks's logo

Secureworks

http://www.secureworks.com
Founded
1999
Type
Product
Size
1000-5000
Stage
Profitable

About the company

Secureworks® (NASDAQ: SCWX), a global cybersecurity leader, enables customers and partners to outpace and outmaneuver adversaries with more precision, so they can rapidly adapt and respond to market forces to meet their business needs. With a unique combination of cloud-native, SaaS security platform and intelligence-driven security solutions, informed by 20+ years of threat intelligence and research, no other security platform is grounded and informed with this much real-world experience.

Jobs

0

Appsecure Security cover picture
Appsecure Security's logo

Appsecure Security

https://appsecure.security
Founded
2016
Type
Products & Services
Size
0-20
Stage
Profitable

About the company

AppSecure is an offensive cybersecurity company, works with businesses across the world to protect their data, reputation, and brand.

Jobs

Want to work at StepSecurity?
StepSecurity's logo
Why apply via Cutshort?
Connect with actual hiring teams and get their fast response. No spam.
Find more jobs