# Senior Security Engineer

**Company:** [Orkes](https://hotfix.jobs/companies/orkes)
**Location:** Santa Clara, CA
**Role:** Security Engineering
**Salary:** $180k – $240k/yr
**Experience:** 7+ years
**Skills:** AWS, Azure, GCP, IAM, RBAC, Kubernetes, Kms, Java, Python, TypeScript, SAST, DAST, Sca, Threat Modeling, Tenant Isolation
**Posted:** 2026-08-03

> Build and own security architecture, guardrails, and roadmap for a multi-cloud AI workflow platform and customer-hosted deployments. The role requires 7+ years of experience, strong production coding ability, cloud and authorization expertise, and experience with security testing, audits, and threat modeling.

## Job Description

## Responsibilities
- Build the security foundation for agentic workflow development and enterprise AI-agent interactions.
- Own the security roadmap for the multi-cloud control plane and customer-hosted deployments.
- Architect security guardrails, including IAM, RBAC, secure agent-tool integration, and tenant isolation.
- Ship production fixes and platform guardrails using Java, Python, or TypeScript.
- Translate the threat landscape into a prioritized security program.
- Serve as the first responder for penetration testing, security audits, and CVEs.
- Design RBAC and authorization systems across product and platform.
- Establish security testing and analysis in CI/CD using SAST, DAST, and SCA.
- Threat-model real systems and translate findings into strategy.
- Apply AI-coding practices that prescribe implementation details and avoid delegating judgment calls to AI.

## Requirements
- 7+ years of experience.
- Experience with multi-cloud security architecture across AWS, Azure, GCP, and self-hosted environments.
- Experience with IAM, network security, KMS, and tenant isolation.
- Experience shipping production security fixes and guardrails in Java, Python, or TypeScript.
- Experience owning security roadmaps and responding to penetration tests, audits, and CVEs.
- Experience designing RBAC and authorization systems.
- Experience implementing SAST, DAST, and SCA in CI/CD.
- Experience with threat modeling.

## Nice-to-haves
- OSCP or CKS certification.
- Kubernetes security experience.
- Compliance experience with SOC 2, ISO 27001, or FedRAMP.
- Detection engineering experience.
- Red-team experience.

## Compensation and Benefits
- Base salary: **$180,000–$240,000**, depending on experience and leveling.
- Generous equity.
- Medical, dental, and vision coverage.
- Flexible PTO.
- Personal development support.

## Similar jobs

- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Threat & Offensive Security](https://hotfix.jobs/jobs/9e88bf55-b93e-4acd-ae0b-a8850f2c805e) - Valon - Remote - $180k – $230k/yr
- [Senior Product Security Engineer](https://hotfix.jobs/jobs/ee4b6e89-8ca0-45e7-9cbf-da0994206d99) - Anyscale - $180k – $210k/yr
- [Compliance Manager](https://hotfix.jobs/jobs/90cc18a6-7467-4675-96aa-770c09c5a6ee) - Anyscale - San Francisco, CA - $180k – $230k/yr
- [Senior Application Security Engineer](https://hotfix.jobs/jobs/4bd73e3b-28a6-4dae-956a-f38222e41da3) - Siftstack - Marina Del Rey, CA - $180k – $230k/yr

**Apply:** https://hotfix.jobs/jobs/c8d8d6f5-336c-44db-81a6-f3dc9e5487c2
**Canonical:** https://hotfix.jobs/jobs/c8d8d6f5-336c-44db-81a6-f3dc9e5487c2