See how much of this job your resume covers, and what’s missing.
Want a recruiter to go through it line by line?
Get professional reviewQuestions interviewers often ask for this role, with sample answers.
Upload your resume and we draft a letter for this exact role, tailored to what it asks for.
You will own vulnerability management, cloud security posture, and identity controls to protect sensitive customer data. Additionally, you will partner with DevOps to build secure-by-default pipelines and automate security guardrails across the engineering organization.
We're a team of ex-Google engineers who built some of the largest defensive platforms on the planet — Safe Browsing and reCAPTCHA. Now, we're striking out on our own to tackle an even bigger challenge: stopping the new wave of adversarial AI attacks already hitting organizations today.
We're going after a $5B+ market, ripe for disruption. Traditional detection methods are too slow to keep up. Adversaries are using AI to craft customized, high-evasion attacks — and old-school rules-based systems don't stand a chance.
We're looking for a Security Engineer to accelerate AegisAI's security program. Our customers trust us with their most sensitive data, and you'll build the systems that keep it protected: the scanning and vulnerability management that covers all of engineering, the posture and identity controls across our cloud estate, and the guardrails in our pipelines that stop problems before they ship.
This is a building role, not a gatekeeping one. The best security engineering here looks like paved roads: predefined pipelines, logging and auth paths that make the secure way the fast way, so product teams move quicker because security already did the thinking. You'll work directly with our engineering and DevOps teams and with the head of security, and your fingerprints will be on how a security company secures itself.
You'll own real surface from week one, and the scope grows as fast as you can take it.
Vulnerability management at the source: Own scanning across code, dependencies, images, cloud config and our external surface; automate the triage, the routing to owners, and the remediation itself wherever it's safe; keep what's left inside our SLAs.
CI/CD security: Own and expand the security gates in our build and deploy pipelines, so vulnerable dependencies and misconfigurations are blocked before they ship.
Cloud security posture: Define secure baselines for our cloud estate, detect drift from them, and automate remediation.
Cloud identity and access: Drive least privilege and zero trust by default, across every system, credential and workload we operate.
Application security: Run design and code reviews and threat modeling for new features and products.
Paved roads: Partner with DevOps on reusable, secure-by-default paths for CI/CD, logging and auth, so every new service starts at our baseline and teams ship faster.
Incident response: Be a technical lead when something needs investigating, and build the tooling that makes the next investigation faster.
Automate: If you do it twice by hand, you build it the third time.
4+ years in security engineering, or infrastructure engineering with real security ownership, at a cloud-native company.
You write code. Python, Go or similar, and you'd rather build a guardrail than write a runbook.
Deep in cloud IAM and Kubernetes security: you design for least privilege and short-lived credentials by default, and can walk engineers through the tradeoffs.
Fluent in CI/CD: you've hardened pipelines, not just run tools in them.
You work in the open with engineers: design reviews, pull requests and docs, not tickets thrown over a wall.
You prioritize by real-world risk, not scanner severity, and can explain the call to engineers and leadership alike.
Bonus points:
You've secured systems that process email or other high-sensitivity customer data.
You've built a vulnerability management program and automated it end to end.
LLM application security: prompt injection, model pipelines, AI agent guardrails.
Supply chain security: artifact signing, provenance, SBOMs.
Detection engineering, or close partnership with a SOC.
You've worked at a security vendor and know what it means to be the product.
Flat, flexible, and fast.
You'll own your decisions.
You'll have clear KPIs for success — but how you get there is up to you.
If you want your security work to be the reason customers trust the company, and want to work with a team that moves at the speed of the real world, join us.
Stop the endless job search. Our AI finds and applies to the best jobs for you.
Featuring 215,705+ Jobs in Security Engineer
Answer easy questions
215,705+ jobs across 15+ categories
Get your best job matches
Only hand-screened, legit jobs
Find a remote job faster
No ads, scams, or junk
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”