Sr. Security Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Security Engineer (AI): Building and scaling the entire security function from the ground up for an AI platform with an accent on cloud infrastructure security, compliance, and data protection. Focus on architecting secure-by-default systems, driving SOC 2/ISO 27001 certification, and securing physical hardware deployments in customer environments.
Location: Hybrid (New York, USA)
Company
is an AI platform company providing advanced security and safety solutions for industrial environments.
What you will do
- Architect and build the end-to-end security program, including cloud infrastructure, application security, and IAM strategy.
- Own and execute the compliance roadmap for SOC 2 Type II, ISO 27001, and GDPR.
- Embed security into the SDLC by defining coding standards and implementing SAST/DAST tooling.
- Design and lead the incident response function, including monitoring, alerting, and playbook development.
- Perform threat modeling and vulnerability management across globally distributed systems.
- Serve as the primary security point of contact for enterprise customers and executive leadership.
Requirements
- 8+ years of experience in security engineering, with a history of shaping or owning a security function.
- Deep hands-on expertise in GCP cloud security, Kubernetes, Docker, and secrets management.
- Strong application security fundamentals (OWASP Top 10) and experience with secure SDLC.
- Proven track record of driving compliance programs (SOC 2, ISO 27001) to completion.
- Experience securing physical hardware, including device hardening and firmware security.
- Prior startup experience is required.
Nice to have
- Experience with AI/ML platform security.
- Experience with industrial IoT or edge computing environments.
Culture & Benefits
- Founder-minded builder culture with high ownership and velocity.
- Direct reporting line to the CTO.
- Opportunity to build a security function from scratch.
- Pragmatic, risk-driven environment that values partnership over gatekeeping.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →