Supabase is the Postgres development platform, built by developers for developers. We provide a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are deeply integrated and designed for growth.
About the Role
Supabase serves millions of developers on a shared, multi-tenant platform. At that scale, abuse is not an edge case — it is a continuous operational reality. Credential stuffing, free-tier compute abuse, API scraping, malicious project provisioning, and exfiltration attempts occur every day. We need someone who treats detection and response as a craft, and who can close the loop between signal, triage, and automated remediation.
You will work directly with our Anti-Abuse Lead and embed with Platform Security and Product Security to build and operate the systems that protect Supabase and its customers from abuse at scale. This role sits inside the security org but operates at the intersection of security engineering, data analysis, and platform operations.
This role provides follow-the-sun coverage alongside our existing Anti-Abuse and Platform Security team members. It is fully remote, with a strong preference for candidates based in APAC or the West Coast of the Americas.
What You’ll Own
Abuse Detection & Signal Triage
Monitor Signals: Monitor inbound abuse signals across platform telemetry, HackerOne reports, support queues, and internal alerting pipelines.
Triage End-to-End: Triage abuse cases end-to-end, assessing severity and blast radius, classifying actor types, and routing to the correct response track.
Queue Ownership: Own the abuse case queue with clear SLAs to ensure no active threats age out without a definitive decision.
Pattern Recognition: Identify complex patterns across distinct cases that point toward coordinated campaigns or emerging attack techniques.
Incident Response & Remediation
Lead Incidents: Lead response efforts for active abuse incidents, coordinating closely with Platform and Infrastructure teams to execute containment actions and drive remediation to closure.
Communications: Write clear, timely communications to affected users and internal stakeholders throughout the lifecycle of an incident.
Postmortems: Conduct thorough post-incident reviews, feeding findings back into detection rules, runbooks, and platform controls.
Runbook Maintenance: Maintain and improve incident runbooks to ensure response execution is consistent, scalable, and reproducible across time zones.
Detection Engineering & Automation
Tune Logic: Build and tune detection logic against platform telemetry and Supabase-native data sources, including Postgres query patterns, Edge Function invocations, auth anomalies, and storage abuse.
Reduce Toil: Automate repetitive triage and response actions to aggressively reduce manual toil, increase response speed, and improve consistency.
Platform Architecture: Contribute to the Anti-Abuse Platform architecture, optimizing the blocklist schema, the remediation action ladder (L1–L4), and enforcement pipelines.
Metrics & Fidelity: Instrument metrics for detection coverage and alert fidelity, closely tracking false positive rates, detection latency, and remediation time.
Tooling & Platform Improvement
Toolchain Operations: Maintain and improve the abuse operations toolchain, including case management systems, escalation workflows, and engineering reporting dashboards.
Proactive Security: Partner with Core Engineering to design and implement platform-layer controls that eliminate abuse vectors by design rather than by reactive response.
Enterprise Support: Support Supabase for Platforms (SfP) customers by operationalizing the centralized Anti-Abuse platform for enterprise-grade use cases.
You Might Be a Good Fit If You
Have 3+ years of experience in a security operations, trust & safety, or abuse-focused engineering role at a cloud-native product or platform company.
Possess hands-on experience with detection logic, including writing rules, tuning thresholds, and reducing noise in high-volume, highly complex signal environments.
Demonstrate a proven ability to run incident response end-to-end (triage, containment, communication, and postmortems).
Are proficient in SQL and a scripting language (Python heavily preferred) for log analysis, pattern detection, and building automation workflows.
Are deeply familiar with abuse actor techniques, such as credential stuffing, account takeover (ATO), compute abuse, exfiltration, and spam/phishing infrastructure.
Thrive operating async-first in a globally distributed team — you write clearly, default to explicit documentation, and close loops without needing reminders.
Nice to Have
Experience with Postgres, PostgREST, or Supabase platform internals.
Prior work building, scaling, or operating a multi-tenant abuse detection or trust & safety platform.
Familiarity with threat intelligence feeds and IOC enrichment pipelines.
Exposure to modern SIEM tooling (Scanner.dev, Splunk, Datadog, or similar).
Experience triaging and managing HackerOne or Bugcrowd reports at volume.
Working knowledge of SOC 2, ISO 27001, or similar compliance frameworks.
What We’re Not Looking For
A ticket-closer who doesn't own outcomes. We care about resolved, thoroughly mitigated issues, not just triaged tickets.
A pure analyst who doesn’t write code. Automation is a first-class expectation at this level; you must be able to script your way out of manual work.
A compliance-first mindset that mistakes rigid documentation for actual, real-world risk reduction.
What We Offer
Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
About the Team
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
~400 team members
60+ countries
20+ languages spoken
Over $1B raised (including our $500M Series F)
540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
ABOUT SUPABASE
Supabase is an open source Firebase alternative. We give developers a Postgres database, authentication, instant APIs, edge functions, and real-time subscriptions — all in one platform. We are building the infrastructure layer for the next generation of applications.
Corporate IT at Supabase reports into the Security organization. Identity and endpoint hygiene are treated as security controls, not administrative overhead. You will work with a small, senior team with direct access to engineering leadership and a mandate to automate everything.
ABOUT THE ROLE
You will work directly with our IDM/MDM Lead to own the day-to-day operations of our identity and endpoint stack — Okta, Slack, Iru (MDM), and the integrations that tie them together. This role is equal parts identity management and endpoint operations, with a strong expectation that you automate what you repeat and document what you automate.
This role provides follow-the-sun IT and identity coverage alongside our IDM/MDM Lead on the West Coast. Fully remote, with a strong preference for candidates based in EST or APAC.
WHAT YOU’LL OWN
IDENTITY & ACCESS MANAGEMENT
- Administer Okta day-to-day: user provisioning, group management, SSO application configuration, and MFA policy enforcement.
- Own joiner-mover-leaver (JML) workflows — ensure access is granted on day one, adjusted on role change, and fully revoked on departure with no manual gaps.
- Maintain and improve Okta lifecycle automation, reducing manual provisioning toil and closing the window between HR events and access changes.
- Audit access regularly: identify stale accounts, over-provisioned roles, and orphaned app assignments before they become incidents.
- Support FIDO2/WebAuthn and YubiKey deployment for privileged access across the organization.
ENDPOINT MANAGEMENT & MDM
- Administer Iru (formerly Kandji) MDM for macOS fleet: device enrollment, configuration profiles, compliance baselines, and policy enforcement.
- Ensure all managed endpoints meet security baselines — disk encryption, screen lock, patch cadence, and EDR agent deployment.
- Support onboarding hardware logistics: device procurement, enrollment, and first-day readiness across global time zones.
- Identify and track unmanaged or out-of-compliance devices; drive remediation and escalate persistent non-compliance.
- Maintain MDM configuration as code where possible — changes should be reviewable, versioned, and reversible.
SAAS & COLLABORATION PLATFORM OPERATIONS
- Administer Slack workspace: channel governance, app integration reviews, guest access management, and enterprise grid operations.
- Manage the corporate SaaS portfolio — own app provisioning, license tracking, and access reviews for tools like Google Workspace, Zoom, Notion, and others.
- Review and approve new SaaS integration requests against security and data handling standards before deployment.
- Maintain an accurate inventory of corporate applications, their owners, access scope, and data classification.
AUTOMATION & PROCESS IMPROVEMENT
- Identify repetitive IT tasks and eliminate them through automation — scripting, workflow tooling, or Okta lifecycle rules.
- Write and maintain runbooks for all core IT operations so coverage is consistent across time zones and not dependent on any single person.
- Contribute to IT metrics: onboarding time-to-access, offboarding completion rate, MDM compliance percentage, and access review cadence.
- Partner with the Security Engineering team to close gaps surfaced by compliance audits (SOC 2, ISO 27001) that touch identity and endpoint controls.
YOU MIGHT BE A GOOD FIT IF YOU HAVE
- 2–4 years in a corporate IT, IT operations, or identity administration role at a cloud-native or SaaS company.
- Hands-on Okta administration experience: SSO, MFA, lifecycle management, and group/policy configuration.
- Experience with a modern MDM platform (Kandji/Iru, Jamf, or equivalent) managing a macOS-first fleet.
- Working knowledge of JML processes — you understand why a 24-hour offboarding window is a security risk, not just an IT inconvenience.
- Comfortable with scripting or automation (Bash, Python, or similar) to reduce manual toil.
- Async-first communicator: you document decisions, write clear runbooks, and don’t let tasks die in DMs.
NICE TO HAVE
- Experience with FIDO2/WebAuthn deployment or hardware security key programs (YubiKey 5 series).
- Familiarity with Slack enterprise grid administration including app governance and Connect channel management.
- Exposure to SOC 2 or ISO 27001 evidence collection for identity and endpoint controls.
- Experience managing IT operations across APAC and Americas time zones simultaneously.
- Familiarity with Google Workspace admin, including directory sync and group-based provisioning.
- Prior work in a security-adjacent IT role where identity hygiene and access control were first-class concerns.
WHAT WE’RE NOT LOOKING FOR
- A ticket-taker who waits for requests. We expect you to proactively find and close gaps — stale accounts, unmanaged devices, ungoverned app integrations.
- Someone who treats IT and security as separate disciplines. Every identity and endpoint decision here is a security decision.
- A process follower who can’t write automation. If you’re doing the same task manually for the third time, that’s a bug.
WHAT WE OFFER
- Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
- ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
- Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
- Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
- Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
- Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
- Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
ABOUT THE TEAM
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
- ~400 team members
- 60+ countries
- 20+ languages spoken
- Over $1B raised (including our $500M Series F)
- 540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
ABOUT SUPABASE
Supabase is the Postgres development platform, built by developers for developers. We provide a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are deeply integrated and designed for growth.
ABOUT THE ROLE
Supabase serves millions of developers on a shared, multi-tenant platform. At that scale, abuse is not an edge case — it is a continuous operational reality. Credential stuffing, free-tier compute abuse, API scraping, malicious project provisioning, and exfiltration attempts occur every day. We need someone who treats detection and response as a craft, and who can close the loop between signal, triage, and automated remediation.
You will work directly with our Anti-Abuse Lead and embed with Platform Security and Product Security to build and operate the systems that protect Supabase and its customers from abuse at scale. This role sits inside the security org but operates at the intersection of security engineering, data analysis, and platform operations.
This role provides follow-the-sun coverage alongside our existing Anti-Abuse and Platform Security team members. It is fully remote, with a strong preference for candidates based in APAC or the West Coast of the Americas.
WHAT YOU’LL OWN
ABUSE DETECTION & SIGNAL TRIAGE
- Monitor Signals: Monitor inbound abuse signals across platform telemetry, HackerOne reports, support queues, and internal alerting pipelines.
- Triage End-to-End: Triage abuse cases end-to-end, assessing severity and blast radius, classifying actor types, and routing to the correct response track.
- Queue Ownership: Own the abuse case queue with clear SLAs to ensure no active threats age out without a definitive decision.
- Pattern Recognition: Identify complex patterns across distinct cases that point toward coordinated campaigns or emerging attack techniques.
INCIDENT RESPONSE & REMEDIATION
- Lead Incidents: Lead response efforts for active abuse incidents, coordinating closely with Platform and Infrastructure teams to execute containment actions and drive remediation to closure.
- Communications: Write clear, timely communications to affected users and internal stakeholders throughout the lifecycle of an incident.
- Postmortems: Conduct thorough post-incident reviews, feeding findings back into detection rules, runbooks, and platform controls.
- Runbook Maintenance: Maintain and improve incident runbooks to ensure response execution is consistent, scalable, and reproducible across time zones.
DETECTION ENGINEERING & AUTOMATION
- Tune Logic: Build and tune detection logic against platform telemetry and Supabase-native data sources, including Postgres query patterns, Edge Function invocations, auth anomalies, and storage abuse.
- Reduce Toil: Automate repetitive triage and response actions to aggressively reduce manual toil, increase response speed, and improve consistency.
- Platform Architecture: Contribute to the Anti-Abuse Platform architecture, optimizing the blocklist schema, the remediation action ladder (L1–L4), and enforcement pipelines.
- Metrics & Fidelity: Instrument metrics for detection coverage and alert fidelity, closely tracking false positive rates, detection latency, and remediation time.
TOOLING & PLATFORM IMPROVEMENT
- Toolchain Operations: Maintain and improve the abuse operations toolchain, including case management systems, escalation workflows, and engineering reporting dashboards.
- Proactive Security: Partner with Core Engineering to design and implement platform-layer controls that eliminate abuse vectors by design rather than by reactive response.
- Enterprise Support: Support Supabase for Platforms (SfP) customers by operationalizing the centralized Anti-Abuse platform for enterprise-grade use cases.
YOU MIGHT BE A GOOD FIT IF YOU
- Have 3+ years of experience in a security operations, trust & safety, or abuse-focused engineering role at a cloud-native product or platform company.
- Possess hands-on experience with detection logic, including writing rules, tuning thresholds, and reducing noise in high-volume, highly complex signal environments.
- Demonstrate a proven ability to run incident response end-to-end (triage, containment, communication, and postmortems).
- Are proficient in SQL and a scripting language (Python heavily preferred) for log analysis, pattern detection, and building automation workflows.
- Are deeply familiar with abuse actor techniques, such as credential stuffing, account takeover (ATO), compute abuse, exfiltration, and spam/phishing infrastructure.
- Thrive operating async-first in a globally distributed team — you write clearly, default to explicit documentation, and close loops without needing reminders.
NICE TO HAVE
- Experience with Postgres, PostgREST, or Supabase platform internals.
- Prior work building, scaling, or operating a multi-tenant abuse detection or trust & safety platform.
- Familiarity with threat intelligence feeds and IOC enrichment pipelines.
- Exposure to modern SIEM tooling (Scanner.dev http://Scanner.dev, Splunk, Datadog, or similar).
- Experience triaging and managing HackerOne or Bugcrowd reports at volume.
- Working knowledge of SOC 2, ISO 27001, or similar compliance frameworks.
WHAT WE’RE NOT LOOKING FOR
- A ticket-closer who doesn't own outcomes. We care about resolved, thoroughly mitigated issues, not just triaged tickets.
- A pure analyst who doesn’t write code. Automation is a first-class expectation at this level; you must be able to script your way out of manual work.
- A compliance-first mindset that mistakes rigid documentation for actual, real-world risk reduction.
WHAT WE OFFER
- Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
- ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
- Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
- Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
- Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
- Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
- Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
ABOUT THE TEAM
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
- ~400 team members
- 60+ countries
- 20+ languages spoken
- Over $1B raised (including our $500M Series F)
- 540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
Supabase is the open-source Postgres development platform that 7M+ developers and thousands of enterprises depend on every day. We provide a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are deeply integrated and designed for growth.
ABOUT THE ROLE
We’re hiring a Product Manager to own the platform primitives every Supabase product runs on, including internal features like compute https://supabase.com/docs/guides/platform/compute-add-ons, disks https://supabase.com/docs/guides/platform/database-size, networking, and the API gateway, and external features like read replicas https://supabase.com/docs/guides/platform/read-replicas, custom domains https://supabase.com/docs/guides/platform/custom-domains, PrivateLink https://supabase.com/docs/guides/platform/privatelink, and Bring Your Own Cloud.
WHAT YOU'LL BE RESPONSIBLE FOR:
- Talk to customers across the full spectrum. Indie developers running a single nano project, fast-growing startups whose costs are dominated by compute and disk, enterprises walking through a network-architecture review, and partners building on top of Supabase. Find the real blockers and bring them back to the roadmap.
- Own the problem statement and requirements behind every platform bet. Capture the customer evidence behind each decision, name the cost, capacity, and reliability constraints, and give the team a target it can hit.
- Decide what gets built, what gets deferred, and what gets cut. Every quarter you're choosing between enterprise unlocks blocking deals, reliability and cost wins for the long tail of projects, and net-new capabilities that change what Supabase can run. Set the priorities and defend them.
- Define how each launch is measured before it ships. Set the metric, agree on the threshold, and track it after launch. Know whether a feature moved enterprise deal velocity, project economics, or platform reliability. Use that to sharpen the next call.
- Keep engineering, design, and leadership aligned. The platform touches every other Supabase product, every region, and every customer tier. Write the roadmap, surface dependencies before they become blockers, and keep decisions moving.
YOU MIGHT BE A GOOD FIT IF YOU:
- Have 7+ years of product management experience on developer tools, or an ex-founder with strong product instincts. You're technical enough to dive in: read an architecture doc, follow a design discussion, ask the right questions.
- Have shipped cloud infrastructure as a product. You've owned at least one of compute, networking, storage, or multi-region/multi-tenant systems at a cloud, infra, or PaaS company. You understand the tradeoffs well enough to judge them: instance sizing and capacity, disk and storage economics, scale-to-zero vs. always-on, single-tenant vs. shared, the gap between "works in one region" and "works in twenty." Familiarity with how enterprises buy infrastructure (PrivateLink, BYOC, procurement) is a bonus.
- Are biased toward speed. You'd rather ship something imperfect and learn than spend another sprint refining a spec.
- Build with what you own. You run real workloads on the products you own: standing up a read replica, putting a custom domain in front of a project, terminating traffic through PrivateLink, deploying onto BYOC.
- Use AI to move faster. You use AI tools to cut the slow parts so more time goes to judgment calls.
- Work async by default. You make decisions in writing and move threads forward without meetings.
WHAT WE OFFER
- Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
- ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
- Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
- Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
- Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
- Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
- Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
ABOUT THE TEAM
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
- ~400 team members
- 60+ countries
- 20+ languages spoken
- Over $1B raised (including our $500M Series F)
- 540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
ABOUT THE ROLE
We’re looking for a Product Security Engineer to join our team and help strengthen how security is built into Supabase’s products, platform, and engineering workflows as we continue to scale. You’ll work closely with software engineers, infrastructure teams, and technical leadership, helping us proactively reduce risk earlier in the development lifecycle and ship securely by default.
This role is ideal for someone who thrives in async, fast-paced environments and is excited about building developer tools that scale to millions. Success in this role means improving the security posture of the product without becoming a blocker to speed, autonomy, or builder velocity.
WHAT YOU’LL OWN
In this role, you’ll:
- Identify and close gaps across application security, secure design review, and vulnerability management.
- Conduct threat modeling, secure design reviews, and code reviews to identify practical remediation paths.
- Partner closely with engineering teams to provide product-focused security expertise and shape a modern security program.
- Mature how we think about security in a developer-first environment, balancing pragmatism with strong technical judgment.
- Distinguish between theoretical risk and material business risk to prioritize security efforts effectively.
- Improve security posture through scalable mechanisms like tooling, automation, secure defaults, and developer-friendly guardrails.
- Support security incident response by helping triage, investigate, and coordinate remediation for product and platform security issues.
- Participate in security on-call rotations, helping respond to urgent security events with clear judgment and calm execution.
- Help manage and mature our bug bounty and vulnerability disclosure processes, including triage, validation, prioritization, and coordination with engineering teams.
YOU MIGHT BE A GOOD FIT IF YOU
- Have strong experience in product security, application security, or security engineering.
- Are comfortable working with cloud-native, developer tools, SaaS, platform, or infrastructure products.
- Communicate clearly across both technical and non-technical audiences, especially in a written, asynchronous environment.
- Are energized by solving real-world problems for developers and navigating ambiguity while moving quickly.
- Possess a deep understanding of application security fundamentals, including auth, session management, APIs, and secrets handling.
- Have experience with vulnerability triage, bug bounty programs, responsible disclosure, or security incident response.
- Are comfortable participating in potential security on-call rotation and can balance urgency, risk, and practical remediation.
- Have experience with or interest in Postgres, Kubernetes, or building security guardrails that enable rather than enforce.
WHAT WE OFFER
- Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
- ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
- Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
- Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
- Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
- Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
- Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
ABOUT THE TEAM
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
- ~400 team members
- 60+ countries
- 20+ languages spoken
- Over $1B raised (including our $500M Series F)
- 540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
Supabase is the Postgres development platform, built by developers for developers. We provide a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are deeply integrated and designed for growth.
About the Role
We’re looking for a People Business Partner to join our People Team and help support our remote GTM organizations as the company continues to scale in size, complexity, and commercial maturity. You’ll work closely with GTM leaders and teams, helping us bring a thoughtful people lens to how teams scale, how leaders lead, and how we maintain a high-trust, high-accountability culture in a fast-moving remote environment.
This role is ideal for someone who thrives in async, fast-paced environments and is excited about building developer tools that scale to millions.
What You’ll Be Responsible For
In this role, you’ll:
Partner with functional and executive leadership to navigate org design, performance, and day to day people decisions.
Coach managers and leaders to improve support, consistency, and judgment across their teams.
Maintain and champion a high-trust, high-accountability culture within a globally distributed environment.
Scale people practices and programs thoughtfully without overbuilding unnecessary or heavy handed processes.
Collaborate cross functionally with Recruiting, People Ops, Legal, and Finance to ensure alignment on GTM and Engineering organization initiatives.
Manage employee relations and team health proactively to ensure the GTM and Engineering organizations remain healthy, effective, and world-class.
You Might Be a Good Fit If You
Have 5–10+ years of experience as a People Business Partner in high growth tech environments, specifically supporting distributed GTM teams.
Are comfortable working in remote first or globally distributed environments and operating asynchronously.
Communicate clearly across both technical and non-technical audiences, with strong instincts for written communication.
Have experience in org design, performance management, and coaching senior leaders without being heavy handed.
Are energized by solving real world problems and making sound decisions in ambiguous, fast moving environments.
Are comfortable navigating and operating in remote first, open-source operating cultures, and have experience in self-serve, commercial, and enterprise motions.
What We Offer
Fully Remote
We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
ESOP
Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
Tech Allowance
Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
Health Benefits
Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.
Annual Off-Sites
Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.
Flexible Work
We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.
Professional Development
Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.
About the Team
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
~400 team members
60+ countries
20+ languages spoken
Over $1B raised (including our $500M Series F)
540,000+ community members
We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.
Listed by Supabase for a position based in the United States. Employers on this board attest they are hiring domestically.
Select a role
The full posting opens here — pay, setting and the full description, without leaving the list.