AppSec Jobs
← Back to all jobs

Cribl

Staff AI Security Engineer

United StatesWebsite

Full details on LinkedIn

The complete job description, requirements, and application details are available on the original posting.


About Cribl

Cribl is a San Francisco-based company founded in 2018 that specializes in a vendor-agnostic Data Engine for IT and Security. The company enables enterprises to collect, process, route, search, and store telemetry data, including logs, metrics, and traces, from any source to any destination across cloud, on-premises, or hybrid environments. Cribl's mission is to unlock the full value of IT and Security data by providing choice, control, and flexibility to meet evolving data needs. Cribl offers a suite of products designed for IT and Security telemetry. Key offerings include Cribl Stream, which serves as a telemetry pipeline for ingesting and processing data; Cribl Edge, an intelligent agent for edge-based data collection; Cribl Search, a federated search solution for querying data in various formats; and Cribl Lake, a turnkey data lake for storing data in open formats. The company emphasizes reducing storage costs, enhancing operational efficiency, and eliminating vendor lock-in, making it a valuable partner for Fortune 1000 companies worldwide.

Industry

information technology & services

Employees

1,100

367 engineers

Revenue

$200M

Website

Visit →

Security at Cribl

Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.

3 Intel Signals

Security Philosophy

  • Cribl views building secure products as part of its 'engineering identity.' Their philosophy emphasizes deep integration, where security tooling and processes are embedded into every architecture review, pull request, and release.
  • They follow a risk-based approach where every engineering epic includes tasks for rapid risk assessment and threat modeling, prioritizing the resolution of vulnerabilities as a top engineering goal.

Security Team

Cribl's security team is led by Matthew Kelly, who oversees legal affairs, security, and IT. Rory McEntee serves as the Product Security Leader. While the exact team size is not publicly disclosed, the company maintains a centralized security function that includes roles such as Senior Security Operations Engineer. The team is described as providing 'valuable insights in a non-intrusive manner.'

Key Initiatives

  • Key initiatives include a Security Champions program where designated engineers act as liaisons between Product Security and Engineering.
  • Cribl practices 'Shift Left' by integrating SAST into code repositories and pull requests.
  • Their vulnerability management includes a private bug bounty program with Bugcrowd and a public Vulnerability Disclosure Program.
  • Recent efforts include integrating Cribl Cloud with AppOmni for SaaS telemetry data.

Preparing for an AppSec interview?

Get the weekly briefing 2,000+ security pros trust.