Назад
Company hidden
19 часов назад

Senior Product Security Engineer (AI)

152 000 - 224 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Product Security Engineer (AI): Building and optimizing security controls for a high-scale consumer platform with an accent on AI-native development and secure defaults. Focus on securing agentic workflows, conducting architectural design reviews across mobile and backend systems, and operationalizing ASPM tooling.

Location: Remote (Must be based in the US)

Salary: $152,000 – $224,000

Company

hirify.global is a remote-first company providing location-sharing and safety services for families and loved ones worldwide.

What you will do

  • Conduct security architecture reviews for mobile (iOS/Android), backend (Java, Python, PHP), and data pipelines.
  • Operationalize and tune ASPM tooling (Cycode) to unify SAST, SCA, and secret scanning into actionable signals.
  • Build security-as-code patterns and pre-approved libraries to ensure the secure path is the default path.
  • Drive SLA-based remediation workflows and develop metrics to translate security posture for executive leadership.
  • Partner on design reviews for AI-powered features, focusing on model access controls and agentic workflows.

Requirements

  • 5+ years of experience in application security, product security, or DevSecOps.
  • Proven track record of conducting threat models and security architecture reviews across mobile, cloud (AWS/GCP), and backend services.
  • Practical experience securing AI/ML systems, including RAG architectures and prompt pipelines.
  • Working knowledge of ASPM platforms and security tooling (SAST, SCA, container scanning).
  • Solid grounding in secure development practices (OWASP Top 10, OWASP LLM Top 10).
  • Must be based in the US.

Nice to have

  • Experience with multi-agent orchestration frameworks and their identity/authorization challenges.
  • Background in consumer technology or privacy-sensitive domains.
  • Experience securing location-based services or products involving data from minors.
  • Certifications such as CISSP, OSCP, or GWAPT.

Culture & Benefits

  • 100% company-paid medical, dental, vision, life, and disability insurance.
  • 401(k) plan with company matching program.
  • Flexible PTO and synchronized company-wide shutdowns in winter and summer.
  • Reimbursement and support for equipment and tools for a productive remote environment.
  • L&D programs and a Mental Wellness Program.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →