Назад
Company hidden
22 часа назад

Staff Security Engineer (Product Security)

230 000 - 275 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Staff Security Engineer (Product Security): Securing a global autonomous logistics system involving robotics, cloud software, and AI-assisted workflows with an accent on reducing real-world risk in production systems. Focus on building a pragmatic secure SDLC, hardening cloud infrastructure, and implementing guardrails for agentic AI tools.

Location: Hybrid onsite role based in South San Francisco, California, USA

Salary: $230,000 - $275,000

Company

hirify.global is the world’s largest autonomous drone delivery service, providing critical medical supplies and retail goods globally.

What you will do

  • Own security outcomes for critical application and cloud ecosystems by shipping controls rather than just policy.
  • Partner with engineering teams on secure architecture, threat modeling, and design reviews for reliable services.
  • Scale a pragmatic secure SDLC including CI/CD hardening, supply-chain controls, and secrets management.
  • Improve end-to-end cloud security posture covering IAM, least privilege, network trust, and runtime detection.
  • Drive vulnerability management through triage, exploitability analysis, and remediation partnerships.
  • Secure AI-assisted engineering workflows by defining safe patterns for LLM tools and preventing agentic overreach.

Requirements

  • 8+ years of experience in designing and operating security controls for large-scale production systems.
  • Hands-on ability to write and ship code in Python, Go, or similar languages.
  • Practical experience securing microservice architectures and modern cloud stacks (Kubernetes, IAM, CI/CD).
  • Ability to operate as a technical leader who can persuade, teach, and unblock teams without formal authority.
  • Familiarity with LLM security failure modes such as prompt injection and insecure output handling.
  • Must be based in or able to work hybrid onsite at the South San Francisco HQ.

Nice to have

  • Experience spanning web apps, cloud infra, and embedded/robotics/autonomy domains.
  • Track record of building developer-friendly security platforms and PKI.
  • Experience as a security evangelist, enabling good behavior through tools and defaults.
  • Knowledge of designing guardrails for internal AI/agent usage in high-safety environments.

Culture & Benefits

  • High-ownership environment with significant influence over how the security function scales.
  • Mission-driven work with a direct, meaningful impact on global healthcare and logistics.
  • Comprehensive benefits including medical, dental, and vision insurance.
  • Total compensation package including equity, performance bonuses, and overtime pay.
  • Inclusive culture that values diversity and encourages applications from underrepresented groups.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →