Overview
As a Senior Security Engineer, you will partner with leadership and cross-functional teams to manage security risks in production AI systems. You’ll lead security operations across CI/CD and cloud-native environments, and weave secure practices into the software lifecycle. You’ll drive bug bounty activities, security reviews, and threat modeling while evaluating and scaling security tools. Your role blends hands-on engineering with influencing security decisions to preserve speed and agility. Join a mission-driven team shaping secure AI experiences for developers and enterprises.
Pay / Benefits
- Open and inclusive culture
- Health and dental benefits with mental health budget
- Parental leave top-up up to 6 months
- Remote-friendly with global offices and co-working stipend
- Weekly lunch stipend and in-office meals
- 6 weeks of vacation (30 working days)
Responsibilities
- Lead security operation functions (vulnerability management, SAST, DAST, detection engineering, incident response) in CI/CD and cloud-native environments
- Integrate security into the software development lifecycle across products
- Collaborate with product and development teams to ensure secure delivery without sacrificing agility
- Drive bug bounty programs, application security reviews, and threat modeling including code and dynamic testing
- Assess and integrate security tools (open-source vs vendor) to automate and scale processes
- Gather and analyze security metrics to address issues with cross-team dependencies
- Be a problem solver who empathizes with developers and builds innovative, practical solutions
Key requirements
- 5+ years in Application/Product Security or Security Operations with emphasis on security tool onboarding and optimization
- Knowledge of vulnerability management, network security, cloud security concepts, and industry best practices
- Ability to operate effectively with ambiguity and make informed decisions with limited data
- Willingness to balance build vs. buy decisions and review available tools
- Solid understanding of secure engineering best practices and communicating with technical and non-technical audiences
- Deep technical knowledge of common security vulnerabilities, risks, countermeasures, and compensating controls
- Hands-on security engineer mindset with interest in automating controls
- Empathetic to developer concerns
- Flexible and constructive problem-solving approach
- Ability to communicate risk and solutions to diverse audiences
- Vulnerability management
- SAST
- DAST
…
