Назад
Company hidden
3 дня назад

Lead Security Engineer (AI)

200 000 - 300 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Security Engineer (AI/Financial Services): Building a repeatable security operating system for AI agents used in regulated financial services with an accent on compliance operations, IAM/PAM, security testing, vulnerability management, and incident response. Focus on writing production-quality security automation, investigating suspicious access, testing AI and payment boundaries, and producing auditable evidence for SOC 2, PCI, and bank security requirements.

Location: San Francisco, United States; on-site. The team typically works four days per week in person, beginning at 8:00 AM.

Salary: $200,000–$300,000 per year, plus equity.

Company

hirify.global builds AI agents for regulated financial services, automating loan servicing, compliance, collections, recovery, insurance claims, and disputes for banks, captives, and specialty lenders.

What you will do

  • Build and operate security procedures for SOC 2, PCI, enterprise questionnaires, and bank-specific security requirements.
  • Lead security testing across cloud, IAM, application, payment, and AI boundaries, including recordings, transcripts, logs, tools, storage, and model providers.
  • Strengthen IAM/PAM controls, investigate access anomalies, and manage network and vulnerability scanning through remediation, retesting, or approved exceptions.
  • Create incident runbooks, useful detections, and reliable handoffs between security and service teams.
  • Automate security controls and evidence collection through tested connectors, asset reconciliation, obligation tracking, and claim-review workflows.
  • Own security outcomes end to end, ship weekly, and communicate risk, coverage, and tradeoffs to leadership.

Requirements

  • Software engineering background with the ability to write production-quality code and tested tooling.
  • Hands-on experience securing cloud infrastructure and identity and access systems, including IAM/PAM and suspicious-access investigations.
  • Experience operating SOC 2, PCI, or bank security controls and producing audit evidence.
  • Experience leading SOC 2 or PCI audits with external auditors.
  • Experience with detection engineering, incident response, or vulnerability management.
  • Clear technical writing and experience partnering with engineering teams in regulated financial services, payment data, or consumer-data environments.

Nice to have

  • Experience or interest in threat modeling AI systems, LLM tool use, or data flows through model providers.

Culture & Benefits

  • In-person collaboration in San Francisco with a fast-paced, high-ownership working style.
  • Typical schedule of around 60 hours per week, beginning at 8:00 AM.
  • Medical, dental, and vision coverage for full-time employees.
  • 401(k) and catered lunches.
  • Reserved support from infrastructure, IT, and People Operations for the dedicated security function.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →