Senior Security Engineer
Senior Security Engineer building and scaling security platforms, AI/LLM security controls, detections-as-code, and automation across cloud and SaaS environments. Requires 5+ years hands-on security engineering experience and strong Python/cloud skills.
What You’ll Do
Security Engineering
- Design, build, and maintain security platforms, services, APIs, automation, and internal tooling.
- Develop solutions that streamline Cloud vulnerability management, Network Security, Detection engineering, Incident response, access governance, and security operations.
- Use software engineering principles to build detections-as-code, security workflows, internal platforms, and scalable security services.
- Leverage AI extensively to accelerate investigations, automate workflows, improve decision making, and reduce operational overhead.
AI & LLM Security
- Design and implement security controls for AI applications, LLM-powered services, agents, and AI development workflows.
- Build guardrails and security tooling to identify and mitigate risks such as prompt injection, data leakage, model misuse, excessive permissions, insecure plugins, and unsafe AI interactions.
- Develop monitoring, detection, and response capabilities for AI systems and AI-generated content.
- Partner with product and engineering teams to securely enable AI innovation across the organization.
Identity & SaaS Security
- Build and maintain detections-as-code across cloud, identity, endpoint, SaaS, and application environments.
- Design and implement security controls across SaaS platforms, workforce identities, privileged access, and machine identities.
- Partner with engineering teams to implement secure-by-design architectures and security best practices.
- Perform architecture reviews and threat modeling for cloud services, AI-enabled applications, APIs, and infrastructure changes.
Security Innovation & Automation
- Continuously identify opportunities to leverage AI, automation, and modern engineering practices to solve security challenges.
- Develop custom security tools, dashboards, APIs, services, and integrations.
- Evaluate emerging technologies and drive adoption where they provide measurable security and operational value.
What We’re Looking For
Required Qualifications
- 5+ years of hands-on experience in Security Engineering or related cybersecurity roles.
- Bachelor or Masters in Computer Science, Cyber Security or similar.
- Strong software engineering mindset with demonstrated experience building production-grade tools, automation, and security platforms.
- Proven ability to build versus buy whenever practical and create scalable internal solutions.
- Strong proficiency in Python or similar languages, with experience building tools, using open source, APIs, automation, and cloud-native services.
- Strong understanding of cloud architecture, identity systems, networking, operating systems, and modern security principles.
- Experience leveraging AI to transform security operations and engineering workflows.
- Hands-on experience securing AWS, Azure, or GCP environments.
- Experience with SIEM, EDR, WAF, Network Security, Cloud security, SaaS security, IAM, and Security monitoring technologies.
- Strong analytical, communication, and problem-solving skills.
Preferred Qualifications
- Experience building internal security products, platforms, and developer-focused security tooling.
- Strong understanding of AI/LLM technologies, AI security risks, and secure AI development practices.
- Knowledge of Zero Trust, modern identity architectures, and cloud-native security controls.
- CISSP, CCSP, GCIH, GCFA, or equivalent certifications.
Compensation & Benefits
- Base salary range: $175k - $220k annually.
- Eligible for stock options and comprehensive benefits package.
- Equity, generous health benefits, flexible time off, paid bonding time, 401k, commuter and FSA benefits, lunch program.
Senior Privacy Engineer
Lead privacy engineering projects protecting user data across search, browser, and AI features. Own major privacy components, participate in audits, and mentor engineers using Go, Node.js, Python, or Perl.
Product Security Engineer
Product Security Engineer embedding into engineering workflows to conduct architecture reviews, threat modeling, and penetration testing coordination while serving as GCP security SME. Requires 5-7 years experience and strong GCP and Python skills.
Senior Product Security Engineer II
Senior security engineer focused on offensive security testing, penetration testing, and scaling security practices across Instacart's product suite. Requires 7+ years in security engineering or pentesting with experience in mobile, cloud, or AI security.
Senior Security Engineer, GRC
Senior GRC engineer owning customer security questionnaires, compliance automation, risk assessments, and policy management across SOC 2, ISO 27001, and HIPAA. Requires 8+ years experience, scripting skills, and strong customer-facing communication.