Назад
Company hidden
7 часов назад

Senior Product Security Engineer (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Product Security Engineer (AI): Building secure architecture patterns, developer-facing security tooling, and platform capabilities for cloud-native products with an accent on secure-by-default systems, software supply chain security, and AI-generated code guardrails. Focus on designing threat models, integrating security controls into CI/CD and developer workflows, and solving complex product security challenges through hands-on engineering.

Location: Boston, MA, United States; hybrid

Company

hirify.global builds AI-focused products and platforms where security is foundational to protecting sensitive customer data.

What you will do

  • Define and evolve secure architecture patterns for products, services, internal tools, and platform capabilities.
  • Partner with engineering, product, Platform, and DevOps teams throughout the software development lifecycle to design and ship secure systems.
  • Build security guardrails, automation, developer tooling, platform services, and secure development workflows.
  • Operate and improve SAST, SCA, CSPM, dependency management, and other product security tooling.
  • Design approaches for safely using AI-generated code, agentic workflows, and AI-powered developer tools.
  • Identify and remediate risks through architecture reviews, threat modeling, code review, and hands-on investigation, including customer and partner security discussions when needed.

Requirements

  • 6+ years of software engineering, security engineering, or product security experience in modern cloud-native environments.
  • Strong knowledge of secure application and system design, including authentication, authorization, secrets management, software supply chain security, and common application vulnerabilities.
  • Production coding experience in at least two of Python, TypeScript, or Rust.
  • Experience implementing and tuning SAST, SCA, dependency management, CSPM, and related security tooling.
  • Hands-on experience building developer tooling, platform services, automation, infrastructure, or secure development workflows.
  • Strong threat modeling, architectural reasoning, communication, collaboration, and technical influence skills.

Nice to have

  • Experience securing AI platforms, LLM-powered applications, agentic systems, or AI-assisted development workflows.
  • Experience with internal developer platforms, engineering enablement systems, or platform engineering.
  • Familiarity with AWS, GCP, or Azure.
  • Contributions to security tooling, open-source projects, developer infrastructure, or platform services.
  • Experience in high-growth startups.

Culture & Benefits

  • Hands-on security engineering focused on enabling developers rather than acting as a gatekeeper.
  • Secure-by-default practices designed to balance security rigor, usability, and delivery velocity.
  • Close collaboration across engineering, product, Platform, and DevOps teams in a fast-moving product environment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →