Senior Security Engineer
Build and own security architecture, guardrails, and roadmap for a multi-cloud AI workflow platform and customer-hosted deployments. The role requires 7+ years of experience, strong production coding ability, cloud and authorization expertise, and experience with security testing, audits, and threat modeling.
About the job
Responsibilities
- Build the security foundation for agentic workflow development and enterprise AI-agent interactions.
- Own the security roadmap for the multi-cloud control plane and customer-hosted deployments.
- Architect security guardrails, including IAM, RBAC, secure agent-tool integration, and tenant isolation.
- Ship production fixes and platform guardrails using Java, Python, or TypeScript.
- Translate the threat landscape into a prioritized security program.
- Serve as the first responder for penetration testing, security audits, and CVEs.
- Design RBAC and authorization systems across product and platform.
- Establish security testing and analysis in CI/CD using SAST, DAST, and SCA.
- Threat-model real systems and translate findings into strategy.
- Apply AI-coding practices that prescribe implementation details and avoid delegating judgment calls to AI.
Requirements
- 7+ years of experience.
- Experience with multi-cloud security architecture across AWS, Azure, GCP, and self-hosted environments.
- Experience with IAM, network security, KMS, and tenant isolation.
- Experience shipping production security fixes and guardrails in Java, Python, or TypeScript.
- Experience owning security roadmaps and responding to penetration tests, audits, and CVEs.
- Experience designing RBAC and authorization systems.
- Experience implementing SAST, DAST, and SCA in CI/CD.
- Experience with threat modeling.
Nice-to-haves
- OSCP or CKS certification.
- Kubernetes security experience.
- Compliance experience with SOC 2, ISO 27001, or FedRAMP.
- Detection engineering experience.
- Red-team experience.
Compensation and Benefits
- Base salary: $180,000–$240,000, depending on experience and leveling.
- Generous equity.
- Medical, dental, and vision coverage.
- Flexible PTO.
- Personal development support.
Skills
AWS, Azure, GCP, IAM, RBAC, Kubernetes, Kms, Java, Python, TypeScript, SAST, DAST, Sca, Threat Modeling, Tenant Isolation
Similar jobs
Security Engineering jobsOwn and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.
Leads offensive security, threat intelligence, security testing, and incident response across applications, infrastructure, and networks. The role requires at least five years of relevant experience, cloud security expertise, AI and automation experience, and a bachelor's degree.
Own Anyscale’s secure software development lifecycle, partner with engineering on secure architecture and features, and lead vulnerability management and remediation. The role requires 8+ years of product or application security experience and strong hands-on secure-development expertise.
Own Anyscale’s compliance function end to end, leading SOC 2 and ISO 27001 programs, audit readiness, customer security diligence, and enterprise risk management. The role requires 7+ years in governance, risk, and compliance plus strong cloud and SaaS security-controls expertise.
The Senior Application Security Engineer will build secure-by-default software patterns, supply-chain controls, and developer-facing security tooling across a distributed systems platform. The role requires 5+ years of production software experience, strong application security expertise, and depth in Go or Rust.