Senior Security Engineer
First security engineer to own application security, compliance programs (SOC 2, ISO 27001), and enterprise customer security reviews for an AI-native social commerce platform.
What You'll Be Doing
- Own the security of our deployed applications, including threat modeling, secure design reviews, and finding and fixing vulnerabilities across our services and AI infrastructure
- Lead new compliance initiatives (SOC 2, and frameworks like ISO 27001, GDPR, and CCPA as we scale), establishing the controls, policies, and evidence to back them
- Own the security side of the sales cycle: complete customer security questionnaires, support enterprise security reviews, and act as our expert in vendor assessments
- Build and run our vulnerability management, secrets management, identity and access, and security monitoring practices
- Manage third-party risk and our penetration-testing program
What We're Looking For
- 5+ years in security engineering, application/product security, or a related role at a software company
- Strong application and cloud security fundamentals; able to reason about the security of real production systems and AI workloads, not just policy
- Hands-on experience leading or operating a compliance program (SOC 2, ISO 27001, or similar) end to end
- Solid programming skills to build security tooling and automation, and to work credibly alongside engineers
- Comfortable operating in fast-moving startup environments with high ownership and autonomy
Bonus Points
- Experience establishing a security and compliance function at an early-stage or rapidly scaling SaaS company
- Familiarity with AWS, Pulumi, Postgres, ClickHouse, Turbopuffer, or Temporal
What We Offer
- Competitive compensation and early equity
- Health, vision, and dental benefits plus 401(k) match
- Clear career growth opportunities as the company scales
- Free lunch in the heart of University Ave. in Palo Alto
- Deep exposure to cutting-edge AI tooling and the opportunity to shape how brands use it
- A collaborative, ambitious team defining a new category of AI-native marketing infrastructure
Member of Technical Staff, Trust & Safety Engineer
Trust & Safety Engineer building red teaming systems, content moderation infrastructure, and safety tooling for generative AI models. Requires 3+ years software engineering experience with Python/TypeScript and comfort across the stack from model evals to AWS/GCP infrastructure.
Security Engineer, Corporate Security
Hands-on Corporate Security Engineer to own and improve technical controls across identity, endpoints, SaaS, and workforce infrastructure. Build scalable automation and partner with IT, Infrastructure, GRC, and Detection & Response.
Senior Manager, Technology Risk
Lead second-line technology and information security risk oversight for a de novo national bank, establishing the 2LOD technology risk framework and providing independent oversight of IT, cybersecurity, and cloud infrastructure.