Remote job
Lead Security Engineer / DevSecOps
Job details
About this role
Role overview Set the technical direction of a DevSecOps function focused on cloud, Kubernetes, and modern AI/LLM workloads. The lead establishes and practices secure-by-default patterns, secures delivery pipelines, and builds detection capabilities that address emerging threats including those unique to AI systems.
Responsibilities - Define and evolve the security architecture and standards for cloud and Kubernetes environments, embedding secure-by-default patterns. - Harden build and delivery pipelines against supply-chain, secret-leakage, and configuration threats. - Lead detection engineering efforts: design, tune, and validate signals across endpoints, cloud, and identity surfaces. - Threaten novel patterns — assess and mitigate risks specific to AI/LLM systems such as prompt injection, model abuse, and data exposure. - Mentor engineers, run security reviews and design discussions, and act as the highest technical escalation point.
Requirements - Extensive hands-on security engineering experience, ideally including responsibility for cloud-native and CI/CD environments. - Deep knowledge of Kubernetes, container, and cloud security primitives. - Practical experience with detection engineering, vulnerability management, and incident response. - Familiarity with threat modeling, secure design reviews, and pipeline security tooling. - Track record of influencing engineering teams and raising the security bar without blocking delivery.
Nice to have - Hands-on work securing AI/LLM systems, retrieval pipelines, or model-serving infrastructure. - Relevant industry certifications or equivalent demonstrated expertise.