Назад
9 часов назад

Security Engineer (AI)

150 000 - 225 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (AI) (Linux/Ansible/Docker): Building and automating security controls across bare-metal Linux infrastructure, AWS services, containerized workloads, and CI/CD pipelines with an accent on host hardening, vulnerability management, detection, and compliance evidence. Focus on securing software supply chains, automating SOC 2, PCI DSS, and ISO 27001 controls, and applying AI tooling to security engineering and incident response.

Location: Remote within the United States

Base salary: $150,000–$225,000 annually for most U.S. locations; $165,000–$245,000 for San Francisco, Seattle, and New York City. Equity, bonus, and a 10% annual bonus may also be offered.

Company

Deepgram provides voice AI infrastructure, including speech-to-text, text-to-speech, and voice agent APIs and deployment options for enterprises and developers.

What you will do

  • Build and maintain security controls across bare-metal Linux infrastructure and AWS, including access management, segmentation, encryption, secrets, logging, detection, and vulnerability management.
  • Automate host hardening and configuration management with Ansible across hundreds of Linux hosts, and secure Docker images, registries, runtimes, and secrets.
  • Own vulnerability, patch, penetration testing, log review, access review, and incident response programs from discovery through remediation and verification.
  • Automate technical evidence collection for SOC 2, PCI DSS, and ISO 27001 audits and provide technical input for customer security reviews and self-hosted deployments.
  • Harden GitHub Actions and the software supply chain through dependency and secret scanning, action pinning, SBOMs, artifact signing, and least-privilege OIDC.
  • Apply AI and agentic tools to triage, evidence gathering, code review, detection engineering, and securing internal AI usage.

Requirements

  • Production experience in security engineering or infrastructure engineering with a security focus.
  • Deep Linux expertise, including hardening and debugging physical hosts, access controls, SSH, systemd, kernels, packages, and host firewalls.
  • Fleet-scale Ansible experience, strong Python and/or Go scripting, and solid shell skills.
  • Hands-on experience securing Docker containers, GitHub, and GitHub Actions workflows and supply chains.
  • Experience owning vulnerability and patch management, third-party penetration tests, and technical evidence for at least one ISO 27001, PCI DSS, or SOC 2 audit.
  • Comfort using AI coding and agentic tools while understanding prompt injection, secret leakage, and supply chain risks.

Nice to have

  • Datacenter or colocation security, network segmentation, IPMI/BMC, and physical or vendor controls.
  • Detection engineering or SIEM/HIDS ownership with tools such as Wazuh, OSSEC, or Elastic.
  • HashiCorp Vault, AWS security, Terraform, Kubernetes security, offensive security, secure SDLC, GPU infrastructure, ML platforms, or multi-tenant inference experience.
  • OSCP, GIAC, CISSP, or AWS Security Specialty certification.

Culture & Benefits

  • High-trust, fast-moving engineering environment where controls are delivered as reproducible code and generate their own audit evidence.
  • AI-first operating model with continuous experimentation and practical use of advanced AI tools.
  • Remote work within the United States.
  • Equity and bonus opportunities, including a 10% annual bonus.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →