1 день назад
Security Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (AI) (Identity, Cloud Security, and Agentic Automation): Owning identity, GCP cloud security, vulnerability management, incident response, and AI security for a security intelligence platform with an accent on automation and agentic workflows. Focus on securing non-human identities and AI tooling, building detection and response capabilities, and reducing operational toil through Slack-native security automation.
Location: Remote
Company
provides real-time Internet intelligence and threat insights by mapping the internet and monitoring external attack surfaces.
What you will do
- Own identity and access management, including joiner-mover-leaver workflows, standing-access reduction, and non-human identity management.
- Harden and continuously improve the GCP-first cloud environment through IAM, organization policies, workload identity, network segmentation, secrets management, and posture monitoring.
- Lead vulnerability management through asset coverage, risk-based prioritization, remediation partnerships, service-level objectives, and actionable reporting.
- Build detection coverage, participate in security escalation, lead high-severity incident response, conduct post-incident reviews, and maintain exercised runbooks and tabletop exercises.
- Secure AI systems and agentic workflows, including MCP servers, tool permissions, secrets, data flows, prompt-injection boundaries, and AI tooling reviews.
- Build Slack-native security automation for alert triage, evidence collection, access reviews, phishing response, posture drift detection, requests, and approvals.
Requirements
- 5+ years of experience in security engineering, with substantial depth in at least two areas: identity and access management, cloud security, vulnerability management, or detection and response.
- Hands-on experience with SSO, SAML, OIDC, MFA, conditional access, device trust, and identity lifecycle automation.
- Experience securing cloud-first or cloud-native environments; GCP is preferred, with strong AWS or Azure experience also considered.
- Ability to build security tooling and API integrations using Python, Go, or similar languages.
- Experience as a primary responder or lead during high-severity incidents, including post-incident analysis.
- Hands-on experience with LLMs or agent frameworks, familiarity with a prescriptive control framework, and strong written communication for an asynchronous Slack-based environment.
Nice to have
- Deep GCP expertise, including organization policies, VPC Service Controls, workload identity federation, and custom organization constraints.
- Experience securing or building agentic systems, MCP servers, or AI-enabled products.
- Detection engineering, SIEM, data-pipeline, or security metrics experience.
- Experience with CMMC, FedRAMP, SOC 2, ISO 27001, ISO 42001, or GDPR in engineering contexts.
- Relevant certifications, open-source contributions, published research, tooling, advisories, or conference talks.
Culture & Benefits
- Senior, high-ownership role on a small security team.
- Lean-team environment requiring independent prioritization, sound judgment, and end-to-end ownership.
- Security operations centered on Slack, self-service workflows, and automation instead of manual documentation.
- Offer recipients complete identity verification through CLEAR as part of the hiring process.
Hiring process
- Offer recipients complete identity verification through CLEAR.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →