Latest Security Engineering jobs
Job results
Lead and build Anthropic's CBRN-E & Advanced Weapons threat intelligence team. Investigate and disrupt AI misuse for chemical, biological, radiological, nuclear, explosives, and novel weapons development; manage investigators, engage government partners, and inform AI safety strategies. Requires deep biosecurity/weapons expertise, team leadership, and LLM knowledge.
Build and drive design of core identity infrastructure including authentication (SSO, MFA, SAML/OAuth/OIDC), authorization (ReBAC/ABAC/RBAC with OpenFGA/Authzed), and governance for compliance at an AI data platform powering leading LLMs. Requires 5+ years in identity/infrastructure engineering with distributed systems and cloud expertise.
The foundational security hire will own security architecture, threat modeling, infrastructure and AI-specific defenses, incident response, and compliance for a frontier AI platform. The role requires 5+ years in security engineering plus expertise in cloud, Kubernetes, distributed systems, Python, and Rust or another systems language.
Senior Security Engineer partnering with product and engineering teams to design and implement secure features, build AI-native/agentic security tooling, create developer guardrails, and handle security operations at a mental healthcare platform company. Requires 5+ years in security/software engineering, strong technical depth, and excitement about AI in security.
Lead public sector compliance and Security Risk Management A&A programs for Scale's AI infrastructure products. Own FedRAMP, DoD IL4/5/6, NIST, CMMC, and RMF controls, gap analysis, evidence collection, POAMs, and external audits while partnering cross-functionally with engineering, security, and legal teams.
Architect endpoint security posture for macOS, Windows, and mobile fleets at Ramp. Build MDM policies as code with Terraform/GitOps, automate patching and software distribution, mine telemetry for detections, and shape security for an agentic AI future. Requires deep macOS/MDM experience and strong IaC skills.
GRC Engineer building automated compliance solutions, AI governance frameworks, and audit-ready infrastructure at Cloudflare. Requires 5+ years experience, IaC/PaC expertise (Terraform, OPA), Python/Go scripting, and full-stack web development skills.
Staff Security Software Engineer leading architecture, standards, and development of AI security tooling, threat detection, and red-teaming platforms at Databricks. Requires 7-10 years security engineering experience, expert Python skills, and deep AI/ML security expertise.
IT Security Engineer responsible for designing, implementing, and maintaining enterprise security infrastructure including firewalls, SIEM monitoring, vulnerability management, IAM, and compliance. Requires 5+ years IT security experience, strong networking and cloud knowledge.
Hardens and secures the OS layer for Anthropic's AI infrastructure, designing kernel-level protections, runtime enforcement, attestation, and isolation for large-scale model training environments. Requires deep Linux kernel expertise, C/systems programming, and OS security experience.
The Senior AI Security Engineer will secure internal LLM, agent, MCP connector, and AI integration environments through threat modeling, controls engineering, red teaming, governance, and compliance evidence. Requires 5+ years of security engineering experience, hands-on AI/ML depth, Python, AWS security, and familiarity with AI risk frameworks.
Threat Detection Researcher developing detections and tools to protect customers from cloud, AI, and malware threats. Requires 6+ years in security/threat research, deep OS internals knowledge (Windows/Linux/macOS), Python proficiency, and cloud familiarity.
Senior Privacy Engineer building and operating privacy-by-design systems, APIs, and controls for data governance, minimization, and ML pipelines at an AI lending platform. Requires 5+ years software engineering experience and background in privacy/security domains.
Senior IAM Engineer designing, implementing, and optimizing enterprise identity and access management solutions across on-prem, cloud, and SaaS. Lead federation, LCM, RBAC, PAM, and automation with Terraform while serving as the primary SME for security and engineering teams.
Build and improve detection alerts, automation, logging pipelines, and internal tooling to identify and respond to security threats at Pinterest. Requires strong incident response, SIEM, threat hunting, and scripting skills in cloud environments, plus demonstrated responsible use of AI.
Senior Application Security Engineer embedded with product and engineering teams at Monarch, a personal finance platform. Conduct AppSec reviews, SAST/DAST, vulnerability management, and AI security for LLM features on Django/Python stack. Requires 5+ years in security engineering with Python and web security expertise.
Lead incident response as senior commander and escalation lead for AI compute infrastructure. Build and manage 24/7 IR team and on-call program from scratch, handling cross-domain (cyber/physical/OT) incidents with executive, legal, and regulatory communications.
Mid-level GRC Engineer building automation and tooling to scale compliance for SOC 2, ISO 27001, and SOX. Hands-on role combining scripting, audit coordination, risk management, and cross-functional partnership with engineering teams.
This product-focused security role operates an AI-driven DAST agent, develops cloud-native detection and attack logic, validates complex findings, and researches emerging threats. It requires at least two years of application security or penetration-testing experience plus strong cloud, web, scripting, and security-tool expertise.
Lead MNTN's security operations including threat detection, incident response, vulnerability management, and cloud security. Build and mature the security program in a cloud-first SaaS environment while partnering with engineering, leadership, and compliance teams.
Build and scale Mercor's novel identity and access management infrastructure across thousands of Slack workspaces and HR systems for a 100k+ expert network. Requires strong product engineering, large-scale distributed systems experience, and security-minded design instincts.
Senior Software Engineer building critical Identity & Access Management features and AI security capabilities (agent workflows, authentication, authorization, RBAC) for Snowflake's cloud data platform. Requires 7+ years building large-scale distributed systems, IAM expertise, and strong CS fundamentals.
Owns security architecture and enforcement across Linux, cloud, Kubernetes, CI/CD, and AI infrastructure. The role requires 5+ years of security engineering experience, strong identity and access expertise, and hands-on knowledge of Terraform, SIEM, containers, and cloud-native security.
Hands-on product security engineer responsible for encryption, key management, customer data protection, tenant isolation, threat modeling, and secure delivery practices. Requires 4+ years building security-critical production systems and strong Python and TypeScript/Node.js skills.
Build and manage secure identity infrastructure including authentication (SSO, MFA, SAML/OAuth/OIDC) and authorization (ReBAC, RBAC, ABAC) systems for AI data platforms. Requires 4+ years in infrastructure/identity engineering with hands-on authorization frameworks like OpenFGA/Authzed and IaC tools.
Second Security Engineer at Nooks.ai, securing an AI-native sales platform and its AI agents. Own threat modeling, secure SDLC, cloud hardening, compliance (SOC 2), and novel AI security challenges (guardrails, prompt injection). Requires 4-5+ years in infosec with strong app/cloud security fundamentals; startup experience preferred.
Principal Security Engineer responsible for setting the bar for software security excellence at Block. Defines multi-year technical strategy, leads development of high-leverage security solutions and infrastructure across business units, drives Secure by Design culture, and mentors InfoSec teams. Requires 10+ years shipping production software with 5+ years scaling security practices.
Senior Security Engineer owning risk identification, threat modeling, vulnerability management, and secure architecture projects. Partners with engineering to build security culture and tools while minimizing operational friction. Requires independent ownership, software development experience, and strong collaboration skills.
Secures and hardens Addepar’s multi-account AWS environments, enforcing data locality, identity, networking, and infrastructure-as-code controls. The role requires deep AWS security, Terraform, Python, networking, Kubernetes, CI/CD, and policy-as-code expertise.
The Incident Responder investigates cloud attacks, performs proactive threat hunting, and supports customers during incident response engagements. The role requires at least five years of cybersecurity experience, strong cloud security knowledge, and familiarity with Kubernetes, major cloud providers, and Windows and Linux internals.
Principal Engineer on Cloudflare's Cloudforce One threat operations team. Architect and build large-scale distributed systems for threat detection, intelligence, and abuse mitigation across the global network, Kubernetes, and edge platforms. Requires 15+ years cybersecurity and 10+ years distributed systems experience.
Build and secure Doxel's internal developer platform on GCP. Own cloud security posture, embed security into CI/CD pipelines, and drive adoption of secure golden paths across engineering teams.
Staff Software Engineer on the IAM team designing, delivering, and supporting digital identity, authentication, and access systems. Requires 10+ years backend experience, deep IAM expertise, and proficiency in Go/Python/Java/TypeScript.
Hands-on security engineer building product security guardrails, tooling, and SDLC integrations for a multi-product HR/IT/Finance platform. Requires 5+ years in product security, fluency in Python/React/DRF, and experience leading cross-team vulnerability remediation.
Hands-on staff security engineer building guardrails, tooling, and automations to secure Rippling's web applications. Requires 10+ years in product security, fluency in Python/React/DRF, and experience embedding security into SDLC and CI/CD.
Senior security engineer building and maintaining identity, secrets, and cloud security systems for AI infrastructure. Requires 5+ years experience, strong Python/Go/Rust skills, and cloud security expertise.
Build and operate secure distributed systems for secrets/key management, PKI, and machine identity across Cloudflare's global network. Requires 8+ years experience in software development, distributed systems, and security implementation.
Lead security and compliance for an AI-native banking startup. Build security tooling, manage a team of appsec engineers, own compliance (SOC 2, ISO 27001), and secure AI agent workflows.
Product Security Engineer driving threat modeling, secure code review, open-source security, SDLC tooling, and bug bounty management for Vercel's web platform built on Next.js and Node.js. Requires 5+ years securing web products with strong JavaScript/Node.js and cloud security expertise.
Security Engineer building and hardening cloud-native security controls, infrastructure-as-code, and CI/CD pipelines for a scalable platform. Requires 8+ years in infrastructure/platform security and deep expertise in AWS/GCP and Kubernetes.
Lead end-to-end product security for consumer products, digital platform, and hardware devices. Drive threat modeling, penetration testing, PSIRT operations, and AI security guardrails in a regulated financial services environment.
Lead technical vision and architecture for Brex's Application Security team. Drive AI/ML security strategy, offensive testing, and secure product lifecycle across engineering orgs. Requires 8+ years in appsec with AI security expertise.
Senior Security Engineer partnering with Head of Security to build and scale security program for DeFi systems. Owns threat modeling, AppSec tooling, detection operations, vulnerability triage, and AI-driven automation across product, infrastructure, and operations.
Own IAM strategy and architecture across corporate and production environments. Migrate Okta to Terraform, enforce least-privilege access, and drive automation for provisioning and device management.
The Data Security Engineer will secure cloud infrastructure, Kubernetes workloads, data pipelines, identities, secrets, and software supply chains supporting AI research and a creator platform. The role requires hands-on experience with cloud security, infrastructure as code, CI/CD, incident response, and compliance.
Senior Software Engineer on the Core Cryptography team building and operating Tier-0 cryptographic infrastructure including MPC systems that secure 99% of customer assets. Requires 5+ years building highly available distributed systems and experience with applied cryptography, KMS/HSMs, and systems languages (Golang-heavy).
Develops and improves runtime security detection capabilities for cloud workloads, combining software engineering, threat research, infrastructure automation, and production debugging. Requires 5+ years of software engineering experience, cloud development expertise, and strong knowledge of operating-system internals and networking.
Design and implement secure network architectures across cloud, on-premise, and edge/IoT environments. Configure firewalls, VPNs, and manage security operations, incident response, and compliance initiatives.
Senior technical owner designing, building, and operating secure, reliable infrastructure-as-code platforms for identity, access, and shared services. Requires 10+ years of hands-on SRE experience in high-reliability on-prem/hybrid environments.
Leads hands-on security engineering for AI platforms, enterprise infrastructure, model-serving systems, customer workloads, and agentic automation. The role requires 10+ years of technical security experience, strong programming and cloud security skills, and expertise in identity, runtime protection, authorization, and AI security.