Remote job
Senior Staff Security Engineer
Job details
About this role
Role overview
A senior technical leader is needed to shape and advance enterprise-wide security strategy spanning application, AI, cloud, identity, and edge domains. The position blends hands-on engineering with architectural influence, partnering closely with product teams to embed security into complex modern systems including LLM-integrated products and agentic workflows.
Responsibilities
- Define and drive the secure architecture strategy across product and enterprise environments, including on-premises, cloud, and containerless setups, establishing patterns and guardrails that other engineers build on - Lead threat modeling reviews for the most complex services and AI systems, covering LLM-integrated products, agentic workflows, and model supply chains - Shape the organization's approach to AI security, including model pipelines, data and trust boundaries, third-party model integrations, and emerging AI attack surfaces - Contribute production code to product features and internal security tooling as a hands-on engineering partner - Serve as the technical escalation point across AppSec, cloud, identity, CI/CD, and AI domains, providing efficient security input across multiple product teams simultaneously - Drive security coding programs supporting immutable, version-controlled environments through infrastructure as code and detection-as-code initiatives - Mentor senior and staff engineers and represent security in cross-functional and executive-level architecture discussions, translating technical risk into business impact - Participate in an on-call rotation providing 24/7 incident support and acting as escalation lead for complex incidents
Requirements
- 12+ years in security engineering or a related field, including 6+ years of hands-on software engineering - Strong proficiency developing and reviewing code in Python, Java, or Go - Deep application security expertise, including secure SDLC integration, SAST/DAST/IAST tooling, manual code review, and API security - Demonstrated experience securing AI systems, including LLM application security, prompt injection defenses, data governance, secure agentic tool use, and emerging AI-specific threats - Demonstrated expertise implementing AWS security services (CloudTrail, GuardDuty, CloudWatch, Security Hub) at scale across multi-account environments - Hands-on WAF platform experience (Cloudflare, Akamai, Fastly, AWS WAF, or equivalent), including custom rule development - Infrastructure as code experience with Terraform or Ansible, including secure module patterns and policy-as-code guardrails - Experience with identity protocols such as OAuth, SAML, and OpenID Connect, and designing identity architecture across multiple products - Deep understanding of secure CI/CD pipeline design and hardening against supply chain and pipeline compromise - Track record of influencing security strategy and roadmap at an organizational level
Nice to have
- Relevant certifications such as OSCP, OSWE, OSCE, or CISSP - Interview process may include in-person or multi-day immersive components depending on role and location, with travel details confirmed during scheduling
Benefits and work setup
- Full-time employment with base compensation plus bonus; salary range $167,000–$275,000 USD, subject to geographic zone and final offer details - Comprehensive benefits package described in detail on the company's benefits site