AI-Driven Cyber Security Jobs: Who's Hiring & Pay [2026]

9 min readBy Nathan House

// real postings · captured & archived

Bridgewater Associates$450K–$600K
Anthropic$320K–$485K

Accenture $366K  ·  Fluidstack $330K  ·  Replit $313K

While everyone argues about whether AI will take cyber security jobs, employers have quietly started paying more for the people who bring AI with them. AI-driven cyber security jobs are real, they're posted right now, and the pay runs to $600,000. We've been collecting the proof: 42 listings from named employers — Amazon, Capital One, Notion, Jefferies — every one expecting AI, LLM, or agentic tools to be part of how the security work gets done, and every one captured here with the employer's exact wording and its salary where disclosed. In this guide, you'll see who's hiring, which specializations are moving first, what they pay, and what these employers actually require. Then we'll look at how you position yourself for one. Let's start with what changed.

TL;DR — if you've only got 30 seconds

Who's hiring: Amazon, Capital One, Notion, Jefferies, OpenAI and more — 42 verified postings below, each archived with the employer's exact AI requirement.

What they pay: up to $600K, with 21 disclosed ceilings at $200K+ and a median ceiling around $238K (US figures).

What they require: real security experience (most listings 5+ years, none entry-level) plus demonstrated AI fluency — Claude Code and MCP are named by brand in the postings.

The Tide Has Turned: Cyber Security Hiring Is Now AI-Driven

The clearest description of the shift I've seen anywhere wasn't written by an analyst or a YouTuber. It was written by a hiring manager, inside a job posting. Lumin Digital — a cloud-native banking platform serving credit unions — opened its Detection Engineer listing ($155,000–$180,000) with this:

"This is not a traditional SOC analyst seat. AI-driven triage and SOAR platforms now handle the bulk of routine alert processing, and the analysts who thrive in the modern SOC are the ones who build the detections those platforms execute, author the automation playbooks that accelerate response, and hunt proactively for threats that evade automated pipelines."

— Lumin Digital, Detection Engineer posting, captured July 2026

Read that again, because it's the whole story in one paragraph. The routine work — alert triage, the classic entry-level SOC grind — has moved to AI. But the job didn't vanish. It moved up a level: the human now builds and directs what the AI executes. Same company, same security team, different seat. Further down that same posting, working proficiency with AI-assisted development tools — it names Claude Code and Codex CLI — "is required."

This is what I call AI-driven cyber security: the security professional who directs AI to do the work, rather than competing with it. It's the same shift Andrej Karpathy calls agentic engineering, seen from the hiring side.

✅ And here's the context that makes this remarkable: the listings below were captured in a single weekend of searching — 26 and 27 July 2026 — at a time when the loudest story in tech is how hard it is to get hired. Both things are true at once. The traditional ladder is jammed with applicants; this new one is short of people.

But before we get to the listings, one distinction matters, because the job market mixes two different things under "AI" and you should know which one you're looking at.

AI-Driven Security vs AI Security: Not the Same Thing

The job market currently mixes two different things under "AI security jobs", and if you're planning a career move you need to keep them straight, because they lead to different places.

AI-Driven Security

Using AI to do your security job. Detection engineer, AppSec engineer, network engineer — the role stays a security role; AI is how you now work: Claude Code in the daily workflow, agents running triage. It's a way of working — and every listing on this page passes that bar.

AI Security — NOT what this page covers

Securing AI systems themselves — the LLMs, RAG pipelines, and agents your organisation deploys become the thing you protect. A different field with its own three career tracks: Defensive, Offensive, and Governance — we keep full role guides for each.

Split diagram: AI-driven security is a person using AI agents to do the security job, versus AI security which secures AI systems across defensive, offensive, and governance tracks

The two worlds overlap in the best postings — Notion's AppSec role secures agentic features and requires you to stay current with Claude Code and MCP; Capital One's AI Red Team is "essentially building AI to attack AI", which is offensive AI security done in an AI-driven way. But keep them straight when you're reading the listings below: everything on this page is the AI-driven side — security roles where AI is how the work gets done. Which raises the obvious question: who exactly is hiring for this, today?

Who's Hiring: 42 Real AI-Driven Cyber Security Jobs

Below is every listing in our collection — filter by company, role, location, or minimum salary. Each row opens the proof: a screenshot of the posting where we captured one, the AI requirement in the employer's own words, the full archived text, and links to the original — plus its archive.org snapshot where one exists. Job postings vanish fast (over half the postings we tracked this quarter closed within weeks), so every listing here was captured and archived with its date. These are real examples of the category — not a live job board.

42example listings
21ceilings ≥ $200K
$600Khighest salary
$238Kmedian midpoint
Any
Bridgewater Associates
Staff AI Agentic Security Engineer
Detection & SOC
$450K–$600K
Screenshot of the Bridgewater Associates Staff AI Agentic Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Design, develop, and deploy autonomous agents for threat detection, alert triage, vulnerability management, and incident response… Replace manual runbooks with intelligent agents that reason, act, and escalate.”
📍 New York, NY🛠️ LangGraph · CrewAI · AutoGen🗓️ Captured 2026-07-27
Read the full archived posting

Bridgewater Associates — Staff AI Agentic Security Engineer

Bridgewater Associates is a premier asset management firm focused on delivering unique insights and partnerships for sophisticated global institutional investors. The Staff AI Agentic Security Engineer will lead the development and implementation of AI agents to enhance security operations and collaborate with technology teams to ensure secure deployment of AI systems.

Responsibilities

  • Build Security Operations Agents: Design, develop, and deploy autonomous agents for threat detection, alert triage, vulnerability management, and incident response — to transform the way those teams operate
  • Modernize Workflows AI-Natively: Reimagine existing security processes through the lens of agentic AI. Replace manual runbooks with intelligent agents that reason, act, and escalate. Build agent-powered security copilots for engineering teams that perform real-time code review, suggest secure patterns, and catch vulnerabilities before they ship
  • Own the Security AI Stack: Evaluate, select, and implement the right mix of frameworks, orchestration tools, and infrastructure for the department's agent platform. You should have strong opinions — backed by hands-on experience — on LangGraph, LangChain, CrewAI, AutoGen, OpenAI Agents SDK, Google ADK, Semantic Kernel, Dify, n8n, and the broader ecosystem
  • Governance and framework Automation: Build agents that continuously validate configurations, access policies, and data handling against regulatory and internal frameworks of the agents deployed by our investment teams
  • Be the agentic security thought leader: Be the person the department looks to for what's possible. Stay deeply current on the AI landscape — enterprise and open-source — and translate that knowledge into real capability
  • Deep Architecture & Sandboxing: Design secure deployment architectures for AI agents across the firm. Define sandboxing strategies, execution boundaries, network isolation, and blast-radius controls that let teams move fast without exposing the organization to unacceptable risk
  • Identity & Authorization for Agents: Architect identity strategies for a world where agents act on behalf of humans. Define how agents authenticate, what permissions they hold, how credentials are scoped and rotated, and how to enforce least-privilege across multi-agent systems and MCP server integrations
  • AI Supply Chain Security: Own the security posture of the AI supply chain end to end. Evaluate the security of agent frameworks, MCP servers, skills/plugins, model providers, embedding pipelines, vector databases, and every dependency in between. Understand the attack surface of tools like LangGraph, LangFlow, Dify, n8n, Open Interpreter, Claude Code, Cursor, and similar agentic development environments
  • Prompt Injection & Model Manipulation Defense: Be the firm's leading expert on prompt injection, jailbreaking, data poisoning, indirect injection via tool outputs, and agent manipulation attacks. Design and deploy runtime defenses using tools like NeMo Guardrails, LlamaFirewall, LLM Guard, OpenGuardrails, Guardrails AI, and custom detection layers
  • Runtime Safety & Governance: Build monitoring, kill switches, escalation triggers, and anomaly detection for AI agents in production. Design human-in-the-loop checkpoints calibrated to risk tolerance and action severity. Implement policy-as-code that governs agent behavior, tool access, data exposure, and output validation
  • Secure Agent-to-Agent Communication: Architect trust boundaries and communication protocols for multi-agent systems — ensuring orchestration, tool use, and data sharing follow least-privilege principles and are resilient to injection and manipulation
  • Security Reviews & Red Teaming: Conduct deep-dive security architecture reviews of agentic systems before they go to production. Red-team LLM integrations and agent workflows to find weaknesses before adversaries do

Qualifications

Skills listed: AI agent development · Threat detection automation · Vulnerability management · Incident response automation · Compliance monitoring · Developer security tooling · LangGraph · LangChain · CrewAI · AutoGen · OpenAI Agents SDK · Google ADK · Semantic Kernel · Dify · N8n · AI security architecture · Sandboxing strategies · Network isolation · Identity and authorization for AI agents · AI supply chain security · Prompt injection defense · Model manipulation defense · NeMo Guardrails · LlamaFirewall · LLM Guard · OpenGuardrails · Guardrails AI · Runtime safety monitoring · Policy-as-code implementation · Agent-to-agent communication security

Required

  • 10+ years of experience in software engineering, security engineering or application security with demonstrated impact at a senior or staff level
  • 3+ years of hands-on experience building, deploying, or securing AI/ML systems, including LLM-based applications and agentic workflows
  • Proven track record of building production-grade AI agents or agent-powered tools — not just evaluating or advising on them
  • Deep, current knowledge of the AI agent ecosystem across enterprise and open-source: frameworks, orchestration tools, model providers, RAG infrastructure, and developer tooling
  • Demonstrated expertise in AI-specific security threats, including prompt injection defense, agent sandboxing, identity for autonomous systems, and supply chain security for AI toolchains
  • Experience securing cloud-native applications and infrastructure (AWS, Azure, or GCP) with strong understanding of identity, networking, and data protection
  • Expert in Python and/or TypeScript with the ability to build production-grade security tooling, agents, and automation
  • Proven ability to work as an embedded partner with engineering and research teams — influencing through expertise and trust, not mandates
  • Exceptional communication skills: able to translate complex AI security concepts into clear, actionable guidance for engineers, researchers, and leadership
  • Strong judgment in balancing security risk, business velocity, and the realities of a fast-moving AI landscape

Preferred

  • Contributions to open-source AI security projects or frameworks
  • Background in financial services or other highly regulated industries
  • Experience red-teaming LLMs and agentic systems in adversarial settings
  • Familiarity with AI observability and tracing tools (LangSmith, Langfuse, Helicone, Arize) for monitoring agent behavior in production

Benefits

  • Discretionary target bonus
  • Hybrid with options to work out of our NYC or CT offices
  • Competitive suite of benefits
Anthropic
Staff+ Application Security Engineer
AppSec Remote
$320K–$485K
Screenshot of the Anthropic Staff+ Application Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
We use Claude as our primary tool across every part of the job: it drives our static analysis, drafts and fixes vulnerabilities as pull requests, performs first-line bug bounty triage, and assists threat modeling for design reviews.”
📍 Remote — US (SF / NYC / Seattle)🛠️ Claude · agentic AppSec🗓️ Captured 2026-07-27
Read the full archived posting

About Anthropic

Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the role:

Anthropic's Application Security team secures the systems that build, serve, and increasingly are Claude. The attack surface is unlike most AppSec work: multi-agent orchestration, sandboxed code execution, agents holding delegated credentials, untrusted tool output crossing trust boundaries — problems with little prior art and no off-the-shelf playbook.

The way the team works is also different. We use Claude as our primary tool across every part of the job: it drives our static analysis, drafts and fixes vulnerabilities as pull requests, performs first-line bug bounty triage, and assists threat modeling for design reviews. The human work is the judgment layer — system-level reasoning, deciding what matters, and building the next thing the model can't do yet.

This is a builder's role on a senior team. We hire engineers who ship production systems and clear a hands-on threat-modeling bar — people who can find the vulnerability but would rather build the system that finds them all. Every engineer owns a system end-to-end, and the team's work has shaped customer-facing product security — including Claude Code's security review tooling, its security guidance plugin, sandboxing, and auto mode.

Key responsibilities:

  • Design, build, and operate Claude-powered security systems — LLM-driven code analysis, automated vulnerability remediation, AI-assisted threat modeling — and own one or more of them end-to-end, including the cross-functional relationships that come with it
  • Lead secure design reviews and threat modeling for novel AI systems, identifying risks that don't map to existing frameworks
  • Evolve a public bug bounty program where automation handles routine triage and root-cause work, and engineers handle escalations and corner cases
  • Partner with Product, Infrastructure, and Research teams as an embedded security owner — consulting on launches, shaping architecture, and influencing decisions where security is the constraint
  • Share an operational on-run rotation with the rest of the team — bounty escalations, incident response, and launch consults on systems serving Claude in production

Minimum qualifications:

  • Hands-on application and infrastructure security experience, including cloud and containerized environments
  • Production-quality coding ability in at least one of Python, Go, Rust, or TypeScript, with a track record of building durable systems rather than one-off scripts
  • Practical threat-modeling and vulnerability-identification skills — you've found and reasoned about real bugs in real systems, even if breaking isn't your primary mode
  • Demonstrated ability to operate with high autonomy and ambiguity — comfortable being handed a problem and a lot of latitude rather than a spec
  • Clear technical communication with both engineers and leadership

Preferred qualifications:

  • 7+ years in application security, security engineering, or security-focused software engineering
  • Already use LLMs as a core part of how you work, with opinions about where they help and where they don't
  • Experience securing agentic, code-execution, or LLM-integrated systems specifically
  • Prior ownership of a bug bounty program, vulnerability disclosure program, or vulnerability-management infrastructure at scale
  • Background building security automation or developer-facing security tooling
  • Offensive security or penetration testing experience

Representative projects

  • An increasingly autonomous vulnerability pipeline — LLM-driven code analysis finds the issue, scores it for real exploitability, and opens the fix PR, with humans as the review step rather than the author
  • Bug bounty operations where Claude handles first-line triage and drafting, and engineers focus on the reports that actually need judgment
  • AI-assisted threat modeling that generates intake questions, drafts the model, and recommends which design reviews need a human in the room
  • Automated dependency vulnerability remediation across Anthropic's codebase
  • The company-wide vulnerability dashboard and SLA enforcement layer every engineering team works against
  • Threat models and security architecture for agentic product surfaces — code execution sandboxing, agent identity and delegated auth, tool-use boundaries

The annual compensation range for this role is listed below.

For sales roles, the range provided is the role’s On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.

Annual Salary:

$320,000—$485,000 USD

Logistics

Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience

Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience

Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position

Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.

Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.

We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed.  Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team.

Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit anthropic.com/careers directly for confirmed position openings.

How we're different

We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.

The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.

Come work with us!

Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process.

Accenture
Cybersecurity Forward Deployed Engineer - FDE Senior Manager
Architect
$113K–$366K
Screenshot of the Accenture Cybersecurity Forward Deployed Engineer - FDE Senior Manager job posting, captured 2026-07-27
Posting as captured 2026-07-27
Agentic coding is not a supporting skill for this role—it is the primary method of delivery. You use Claude Code, Cursor, or GitHub Copilot as your standard operating environment.”
📍 Multiple US locations🛠️ Claude Code · Cursor🗓️ Captured 2026-07-27
Read the full archived posting

AI - Cybersecurity Forward Deployed Engineer - FDE Senior Manager

Forward Deployed Engineer Senior Manager | Senior Level | Full time

Job No. R00338788 | Multiple Locations

Descrição

We Are

Accenture Security helps organizations prepare, protect, detect, respond, and recover along with all points of the security lifecycle. Cybersecurity challenges are different for every business in every industry. Leveraging our global resources and advanced technologies, we create integrated, turnkey solutions tailored to our client's needs across their entire value chain. Whether we're defending against known cyberattacks, detecting and responding to the unknown, or running an entire security operations center, we will help companies build cyber resilience to grow with confidence. Our team of the security sector's brightest people uses the coolest tech to out-hack the hackers and help clients build resilience from within. We blend risk strategy, digital identity, cyber defense, application security, and managed service solutions to rethink the entire security lifecycle.

Do you have the deep functional and technical experience to help implement security solutions that align with our clients' business objectives? Do you have the expertise to design and deliver solutions for establishing system user's credentials, and processes for applying those credentials to access enterprise systems and applications?

You Are

This is not a security consulting role. It is not a compliance advisory position. It is not a pen test engagement. A Cybersecurity Forward Deployed Engineer is a production engineer who works embedded inside a client's enterprise—shoulder to shoulder with their security and engineering teams—to make AI systems secure, governed, and resilient in real, complex organizational environments. You own outcomes: reduced attack surface, production-safe AI deployments, measurable security posture improvement.

Agentic coding is not a supporting skill for this role—it is the primary method of delivery. You use Claude Code, Cursor, or GitHub Copilot as your standard operating environment. You build security tooling, detection systems, threat models, and governance frameworks with AI co-authoring the code alongside you. Engineers who treat AI tools as optional accelerators are not the profile. Engineers who cannot deliver without them are.

The Work

Cybersecurity FDEs operate as part of Accenture's Reinvention Delivery Engine (RDE) Pod: a small, persistent, outcome-oriented team aligned to a client's business domain or AI programme. The pod operates in 90-day delivery cycles, owns end-to-end outcomes across build, deploy, and optimize, and embeds directly inside the client's technology organization.

Key Responsibilities

  • Lead AI security architecture and threat modeling for production agentic deployments across complex multi-stakeholder client environments—LLM systems, multi-agent pipelines, RAG architectures, and MLOps infrastructure—owning the full security design from assessment through hardened deployment
  • Deliver hands-on security engineering using agentic coding tools as the primary build environment: build AI-powered detection systems, automated threat response tooling, security assessment frameworks, and governance automation using Claude Code, Cursor, or GitHub Copilot in daily delivery practice
  • Own AI-specific threat surface management at programme scale: OWASP LLM Top 10 controls, prompt injection hardening, model extraction prevention, adversarial input defences, and AI supply chain security across concurrent client workstreams
  • Architect and govern AI security controls across the enterprise stack: identity and access for AI systems, data pipeline security, model serving security, and multi-system integration risk across cloud platforms (AWS, Azure, or GCP)
  • Lead AI governance framework implementation: EU AI Act, NIST AI RMF, and model risk management applied to live production systems, not theoretical compliance exercises
  • Shape AI reinvention security strategy for client CISO and CTO: build risk-adjusted investment cases, security architecture roadmaps, and AI governance operating models aligned to commercial outcomes
  • Define and publish reusable security patterns, playbooks, and accelerators that scale across multiple client engagements and grow the Secure AI practice
  • Lead architecture design sessions, threat modeling workshops, and code-with sessions with client engineering and security leadership teams
  • Cybersecurity domain expertise in at least one discipline (AppSec, SecOps, IAM, cloud, GRC, or offensive security)
  • Proposal and SOW development, solution shaping, and client commercial engagement
  • Executive workshop facilitation and C-suite / CISO-level communication
  • Structured analytical thinking and hypothesis-driven problem decomposition
  • Team leadership: developing and coaching managers and consultants through delivery

Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements.

Requisitos

Here's what you need

  • Minimum of 10 years of engineering experience in production environments with a cybersecurity discipline depth in at least one area: AppSec, SecOps / detection engineering, cloud security, IAM, offensive security / penetration testing, or GRC
  • Minimum 2 year of hands-on experience designing and deploying agentic AI solutions in a production environment—non-negotiable; theoretical familiarity does not qualify
  • Minimum 8 years of demonstrated end-to-end security delivery ownership experience in a client-embedded or production environment; internal advisory or compliance-only roles do not qualify
  • Minimum 8 years working with Cloud platform security fundamentals across at least one provider (AWS, Azure, or GCP): IAM, network security, secrets management, and AI service security configurations
  • Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate's Degree, must have minimum 6 years work experience

Professional Skills Requirements

  • Proven ability to communicate security risk in business terms: can translate threat exposure into risk-adjusted investment rationale a CISO or CFO would act on
  • People lead responsibilities: experience managing, developing, and performance-managing a team of engineers; setting individual development plans and conducting career conversations

Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired as set forth below.

We anticipate this job posting will be posted until 08/10/2026.

Accenture offers a market competitive suite of benefits including medical, dental, vision, life, and long-term disability coverage, a 401(k) plan, bonus opportunities, paid holidays, and paid time off.

Role Location Annual Salary Range

  • California $132,500 to $366,300
  • Cleveland $122,700 to $293,000
  • Colorado $132,500 to $316,400
  • District of Columbia $141,100 to $337,000
  • Illinois $122,700 to $316,400
  • Maine $112,900 to $269,600
  • Maryland $132,500 to $316,400
  • Massachusetts $132,500 to $337,000
  • Minnesota $132,500 to $316,400
  • New York $122,700 to $366,300
  • New Jersey $141,100 to $366,300
  • Virginia $122,700 to $337,000
  • Washington $141,100 to $337,000

Locais

Atlanta, GA; Albany, NY; Arlington, VA; Austin, TX; Beaverton, OR; Bentonville, AR; Boston, MA; Carmel, IN; Charlotte, NC; Chicago, IL; Cincinnati, OH; Cleveland, OH; Columbus, OH; Culver City, CA; Denver, CO; Des Moines, IA; Detroit, MI; Hartford, CT; Herndon, VA; Houston, TX; Irvine, CA; Irving, TX; Kirkland, WA; Miami, FL; Milwaukee, WI; Minneapolis, MN; Morristown, NJ; Mountain View, CA; Nashville, TN; New York City, NY; Oklahoma City, OK; Overland Park, KS; Philadelphia, PA; Pittsburgh, PA; Raleigh, NC; Redmond, WA; Sacramento, CA; San Diego, CA; San Francisco, CA; Scottsdale, AZ; Seattle, WA; St. Louis, MO; St. Petersburg, FL; Walnut Creek, CA

Fluidstack
Staff Detection Engineer
Detection & SOC
$250K–$330K
Screenshot of the Fluidstack Staff Detection Engineer job posting, captured 2026-07-26
Posting as captured 2026-07-26
“Develop novel detection tooling, including agentic capabilities that use LLMs for triage, investigation, and response… You read the agent-first thesis as the most interesting design choice in security operations right now.”
📍 New York, NY🛠️ LLM triage agents🗓️ Captured 2026-07-26
Read the full archived posting

Fluidstack — Staff Detection Engineer

Text below is the version matching the Q1–Q2 2026 inventory (contains the AI-signal quote), preserved verbatim on the Indeed mirror (jk=cbaecba2d408d369, "San Francisco, CA · $250,000 - $330,000 a year · Full-time"). The live canonical Ashby posting is a later rewritten version of the same role.

San Francisco, CA, New York, NY

Full Time

About Fluidstack

We exist to make humanity more free. For most of human history, you farmed or you starved. Technology gave people more time for the things they wanted to do, instead of things they had to do. Powerful AI will be the biggest lever for human choice we've ever built - but only if models are aligned with what humanity actually wants. There are groups building AI who don't share these goals. Whoever deploys frontier compute infrastructure fastest will decide whether AI expands human freedom or shrinks it.

We're singularly focused on delivering 10 to 100s of GWs of compute faster than anyone else, rethinking every layer of the stack. We acquire power, design and build data centers, and operate them - with teams spanning hardware and software. Speed and scale are our key differentiators. Come be a part of building civilization-scale infrastructure for AI.

We hire people who care deeply about this problem space. If that is you, please apply!

About the Role

Fluidstack operates the compute infrastructure powering frontier AI. The work running on it is among the most consequential being done today, and the adversaries interested in it are among the most sophisticated, persistent, and well-resourced anywhere. We are building Detection & Response Engineering from the ground up: engineering-led, agent-first, and built to scale across IT, OT, and physical surfaces. As the Staff Detection Engineer for IT, you lead detection engineering for Fluidstack's IT surface. You set the standards that every detection engineer who follows inherits, and lay the foundations of detection on some of the most critical infrastructure being built today.

What you'll do

Lead detection engineering for Fluidstack's IT surface, including cross-domain detections where IT bridges OT or physical surfaces.

Author and tune production detections as code, with peer review, CI/CD, and measured precision and recall.

Apply AI and machine learning to build effective detections, including behavioral analytics and anomaly detection at scale.

Develop novel detection tooling, including agentic capabilities that use LLMs for triage, investigation, and response.

Set the engineering standards, coverage methodology, and quality metrics for the detection engineering discipline.

Conduct threat and security research that informs detection logic, surfaces coverage gaps, and drives new detections.

Partner with security platform engineers, incident response, and threat intelligence to close the detection-to-response loop.

Participate in the on-call rotation for incident response.

About You

You have strong detection engineering experience and have built detection programs at scale.

You are fluent across coding and querying languages, pick up new ones quickly, and have handled security-relevant data at massive scale and complexity.

You have written sophisticated detection logic against diverse telemetry, not synthesized it from vendor templates.

You have handled security incidents and investigated anomalies as part of a team.

You have set up detection CI/CD, or know how you would build it on day one.

You have well-founded opinions on what makes a detection program work in production.

You read the agent-first thesis as the most interesting design choice in security operations right now.

You have built or contributed to internal tooling, not just consumed commercial products.

You see what is needed, scope it yourself, and run with it.

Strong candidates may also have

Experience building or operating agentic detection tooling using LLMs.

Experience designing and tuning LLM-based triage or investigation systems against measured precision and recall.

Experience with Python and SQL applied to detection development and security data analysis.

Experience at the boundary between detection engineering and security platform engineering at scale.

Background in detection or security engineering at GPU compute, HPC, or other hyperscale infrastructure.

Salary & Benefits

Competitive total compensation package (salary + equity)

Retirement or pension plan, in line with local norms

Health, dental, and vision insurance

Generous PTO policy, in line with local norms

The base salary range for this position is $250,000 - $330,000 per year, depending on experience, skills, qualifications, and location. This range represents our good faith estimate of the compensation for this role at the time of posting. Total compensation may also include equity in the form of stock options.

We are committed to pay equity and transparency.

Fluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

You will receive a confirmation email once your application has successfully been accepted. If there is an error with your submission and you did not receive a confirmation email, please email [email protected] with your resume/CV, the role you've applied for, and the date you submitted your application- someone from our recruiting team will be in touch.

Replit
Offensive Security Engineer
Offensive
$188K–$313K
“Perform offensive testing on LLM-backed applications and agentic AI workflows… build AI-assisted testing tools to automate the discovery of common bug classes.”
📍 Foster City, CA🛠️ AI-assisted tooling🗓️ Captured 2026-07-26
Read the full archived posting

Replit — Offensive Security Engineer

Source of text below: choppingblock.ai mirror (which links to the canonical Ashby application URL). Location: Foster City, United States. Salary: $188,000 – $313,000. Date posted: March 11, 2026. Full-time, Senior 7+.

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation.

About the role

We are looking for a senior-level Offensive Security Engineer to serve as a high-impact "adversary-in-residence" for Replit's cloud-native platform. At Replit, security isn't just about perimeter defense; it's about the integrity of the code that powers millions of environments.

In this role, you will lead advanced "whitebox" penetration testing engagements—diving deep into our source code to identify systemic weaknesses, logic flaws, and architectural gaps. You will simulate sophisticated adversary tactics across our web applications, APIs, and containerized infrastructure, ensuring that our AI-integrated development environment remains the most secure place for the world's software to live.

What You'll Do

Lead Whitebox Penetration Testing: Execute end-to-end testing with full access to source code. You will perform manual code-level inspections to uncover complex logic flaws and authorization bypasses that automated tools miss.

Simulate Adversarial Attacks: Conduct Red and Purple team engagements across our cloud-native stack (K8s, Docker), simulating how a sophisticated actor might move from a code-level exploit to infrastructure-wide impact.

Secure AI-Enabled Systems: Perform offensive testing on LLM-backed applications and agentic AI workflows, focusing on prompt injection, data leakage, and abuse of AI-driven components.

Vulnerability Research & Chaining: Identify, exploit, and demonstrate realistic business risk by chaining vulnerabilities—from the application layer down through our internal trust boundaries.

Build Offensive Tooling: Contribute to internal security frameworks and build AI-assisted testing tools to automate the discovery of common bug classes while maintaining deep manual testing depth.

Partner with Engineering: Work closely with product teams and security architects to explain root causes, influence design guardrails, and triage high-priority findings from our Bug Bounty (HackerOne) program.

Required Skills & Experience

Experience: 7+ years of hands-on experience in penetration testing, offensive security, or vulnerability research.

Code Fluency: You are a practitioner of whitebox testing. You can navigate large codebases and have a deep understanding of modern application architectures and secure coding pitfalls.

Cloud-Native Context: You are comfortable in a cloud-native environment. While your focus is the code, you understand how it interacts with Kubernetes, Docker, and hybrid cloud infrastructure.

Engineering Skills: Strong proficiency in Go, Python, or TypeScript. You should be capable of writing custom scripts, payloads, and proof-of-concept exploits.

Adversarial Mindset: You enjoy the "hunt" and have a proven track record of manual exploitation beyond automated scanners.

Communicator: You can translate a complex code-level exploit into a clear narrative that helps engineering teams understand risk and prioritize fixes.

Bonus Qualifications

Public recognition on platforms like HackerOne or Bugcrowd.

Experience building or extending AI-based security testing tools.

Background in incident response or detection engineering from the defensive side.

Published CVEs or security research in the cloud-native or AI space.

This is a full-time role that can be held from our Foster City, CA office. The role has an in-office requirement of Monday, Wednesday, and Friday.

Full-Time Employee Benefits Include:

Competitive Salary & Equity; 401(k) Program with a 4% match; Health, Dental, Vision and Life Insurance; Short Term and Long Term Disability; Paid Parental, Medical, Caregiver Leave; Commuter Benefits; Monthly Wellness Stipend; Autonomous Work Environment; In Office Set-Up Reimbursement; Flexible Time Off (FTO) + Holidays; Quarterly Team Gatherings; In Office Amenities

To achieve our mission of making programming more accessible around the world, we need our team to be representative of the world. We welcome your unique perspective and experiences in shaping this product. We encourage people from all kinds of backgrounds to apply, including and especially candidates from underrepresented and non-traditional backgrounds.

Cisco
AI Security Research Engineer
Architect
$167K–$293K
Screenshot of the Cisco AI Security Research Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“it defines what secure AI looks like, validates that Cisco meets it, and helps teams get there faster, including by using AI for security itself.”
📍 Research Triangle Park, NC🛠️ MCP · Claude Code🗓️ Captured 2026-07-27
Read the full archived posting

AI Security Research Engineer

Cisco | Research Triangle Park, NC | $167,000 - $292,800 | Full-time | Senior

About The Position

Plans, leads, and shares applied security research that defines how AI is built and used securely across Cisco, spanning AI-assisted development, AI features in products, and AI in internal operations. Sets technical direction at the intersection of AI/ML security and hands-on engineering: leads AI-specific threat modeling, red-team and evaluation strategy, and secure architecture patterns that make AI-developed and AI-assisted software at least as secure as traditionally developed software. Serves as a research and security strategy liaison to engineers, product managers, and partners across Cisco's Security and Trust Organization (S&TO). Partners with teams in the systems and workflows they already use, and influences leadership decisions with evidence. The role enables teams rather than gating them: it defines what secure AI looks like, validates that Cisco meets it, and helps teams get there faster, including by using AI for security itself.

Requirements

  • Bachelor's + 7 years of related experience, or Master's + 4 years of related experience, or PhD + 1 year of related experience.
  • Demonstrated depth in AI/ML security and hands-on security engineering, with a track record of leading initiatives and influencing cross-functional teams.
  • Proficiency in Python; ability to read and review code fluently across multiple languages.

Nice To Haves

  • Proven leadership of AI red-team engagements and evaluation programs; familiarity with Cisco AI Defense (Cisco's AI security solution) or an open-source framework such as NVIDIA's Garak.
  • Deep command of LLM and agentic-system security: prompt injection (direct and indirect), jailbreaking, insecure output handling, RAG hardening, tool-call governance, and multi-agent trust boundaries.
  • Experience authoring security standards or baselines and embedding them into a secure SDLC and CI/CD.
  • Authority with OWASP LLM/Agentic Top 10, MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, and the EU AI Act, with the judgment to apply them proportionately by risk tier.
  • Experience shipping or integrating agentic and MCP (Model Context Protocol) systems and AI development tooling (Cursor, Claude Code, Copilot).
  • Experience with Go, Rust, or C/C++ is a plus, with C/C++ valuable for Cisco's embedded and networking products.
  • Recognized external contributions, such as published threat research, conference talks, open-source security tooling, or patents.

Responsibilities

  • Leads strategic AI security initiatives and roadmaps with manageable-to-significant complexity (e.g., six-month to one-year plans) across the team's three pillars: securing AI-assisted development, securing AI in products, and securing AI in how we run the business.
  • Influences product organizations and partners across S&TO, setting the security bar while partners build and run.
  • Applies deep expertise in AI/ML security and research methods (adversarial machine learning, prompt injection, model extraction/inversion, membership inference, data poisoning, and excessive agency) while weighing ethical and responsible-AI considerations.
  • Sets AI red-team methodology and evaluation strategy; advances eval harnesses, LLM-as-a-judge approaches, and ground-truth/silver-dataset generation so conformance and agent behavior are measured with evidence rather than described manually.
  • Owns secure AI architecture patterns and prohibited design patterns for AI-native features (RAG, tool use, multi-agent workflows, MCP (Model Context Protocol) integrations), including prompts, context, retrieval, model selection, and output handling.
  • Authors and shepherds AI security standards and security requirements; defines clear release criteria for AI systems.
  • Drives the model and data supply-chain security strategy, including model provenance and data protection requirements such as classification, minimization, residency, and sensitive data handling.
  • Defines agent identity, human review, approval, and accountability controls so autonomous agents and AI-assisted outcomes are authenticated, bounded, and accountable.
  • Owns reusable platform contributions and architecture (security tooling and agentic workflows) that scale enablement across engineering rather than blocking it.
  • Monitors and evaluates emerging AI technologies, attacker techniques, and adversarial research; develops hypotheses, designs experiments and prototypes, and turns discovery into shipped controls.
  • Synthesizes findings into triangulated insights and meta-analyses that impact product and security decisions across multiple teams and AI initiatives.
  • Independently develops and delivers presentations; leads cross-functional working sessions with diverse audiences and creates clear ownership models with partner teams.
  • Leads creation of research artifacts (threat research, patterns, proposals, patents) of scientific quality and rigor; shares in company and industry forums.
  • Serves as the AI security technical authority within the team; mentors peers and security champions across engineering through reusable patterns, training, and office hours.

Benefits

  • Medical, dental and vision insurance; 401(k) plan with a Cisco matching contribution; paid parental leave; short and long-term disability coverage; basic life insurance
  • 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees; 1 paid day off for employee's birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness
  • 16 days of paid vacation time per full calendar year (non-exempt employees); flexible vacation time off program (exempt employees); 80 hours of sick time off
  • Optional 10 paid days per full calendar year to volunteer; annual bonuses (for non-sales roles); performance-based incentive pay (for sales roles)
Amazon
Senior Manager, AI Red Team, Threat Operations
Offensive Remote
$208K–$282K
Screenshot of the Amazon Senior Manager, AI Red Team, Threat Operations job posting, captured 2026-07-26
Posting as captured 2026-07-26
“Developing scalable offensive security automation and AI-augmented testing tools that can be shared across the organization.”
📍 USA, Virtual🛠️ AI-augmented tooling🗓️ Captured 2026-07-26
Read the full archived posting

Amazon.com Services LLC — Senior Manager, AI Red Team, Threat Operations

Job ID: 10379285 | Amazon.com Services LLC

Description

Application deadline: Jul 29, 2026

We are looking for an experienced Senior Manager to lead our AI Red Team within Threat Operations. You will build and lead a team of security engineers and researchers focused on security research and offensive security operations targeting AI systems, infrastructure, and emerging threats. This role is responsible for establishing our AI offensive security research program, driving sophisticated Red Team operations across our AI portfolio, and ensuring we stay ahead of threat actors in the rapidly evolving AI security landscape. You will partner with security leadership, business stakeholders, and engineering organizations to protect critical customer trust points and drive meaningful security improvements.

As a Senior Manager, you will set strategic direction for AI security research and offensive operations while building a high-performing team with diverse expertise spanning traditional Red Team skills and deep AI/ML knowledge. You'll be responsible for delivering security outcomes across our AI products and infrastructure. This position requires a leader who can balance hands-on technical depth with strategic thinking, translating complex security findings into actionable business impact while fostering a culture of innovation and continuous improvement.

Key job responsibilities

  • Building and leading a team of security engineers with expertise in offensive security, AI/ML systems, threat intelligence, and security automation
  • Establishing and driving the strategic vision for AI offensive security research, focusing on emergent threats and novel attack surfaces in the AI ecosystem
  • Overseeing sophisticated Red Team operations targeting AI assets including training pipelines, inference systems, model architectures, and supporting infrastructure
  • Driving cross-organizational security initiatives to assess how growing reliance on AI introduces new vulnerabilities across the enterprise
  • Partnering with security teams to protect critical AI offerings and ensure customer security in AI workloads
  • Developing scalable offensive security automation and AI-augmented testing tools that can be shared across the organization
  • Translating technical security findings into strategic recommendations for senior leadership, clearly articulating business impact and risk
  • Recruiting, mentoring, and developing security talent with diverse backgrounds spanning offensive security and AI/ML expertise
  • Fostering collaboration between security engineers and research scientists to advance the field of AI security · Establishing metrics and reporting frameworks to demonstrate security program effectiveness and drive continuous improvement
  • Building relationships with security leadership, product teams, and business stakeholders to drive consensus on complex security issues and risk remediation strategies

About the team

The Threat Operations team protects critical customer trust points through offensive security operations and emergent threat research. Our mission spans validating security across diverse technology landscapes, from AWS to satellite communications and autonomous systems to frontier AI models and advertising platforms. We simulate sophisticated threat actors, validate security assumptions, and identify novel risk patterns that drive meaningful security improvements. The team comprises security professionals with a cross-section of national security and private sector experience, providing a range of perspectives required for creative problem solving. We value diversity of thought, creativity, and a strong Bias for Action and Earn Trust. We believe that there are no "perfect" security solutions and we develop and iterate using a continuous improvement process.

Diverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.

Why Amazon Security?

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.

Basic Qualifications

  • Knowledge of information security technologies such as security design review, threat modeling, risk analysis, and software testing techniques
  • Minimum 10+ years of experience in offensive security, security engineering, or related security domains
  • 3+ years of experience managing security teams or leading security programs
  • Proven track record of building and scaling security capabilities in complex technology organizations

Preferred Qualifications

  • 15+ years of experience in offensive security or security engineering roles with increasing leadership responsibility
  • 5+ years of people management experience, including hiring, developing, and retaining high-performing security engineers
  • Deep understanding of AI/ML security including threats to AI systems, adversarial machine learning, or AI supply chain security
  • Experience leading Red Team operations, penetration testing programs, or offensive security research initiatives
  • Track record of establishing new security programs or capabilities from the ground up
  • Experience working across large organizations to drive security outcomes and build stakeholder consensus
  • Demonstrated ability to translate technical security findings into strategic business recommendations for executive audiences
  • Experience with cloud security programs at scale
  • Strong technical background with hands-on experience in offensive security domains
  • Proven ability to recruit and develop diverse technical talent with specialized skillsets
  • Experience fostering collaboration between security practitioners and research scientists or applied researchers

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location.

USA, , - 208,300.00 - 281,800.00 USD annually

Job details: USA, MD, Virtual Location - Maryland | USA, Virtual | USA, VT, Virtual

Category: Systems, Quality, & Security Engineering

Notion
Application Security Engineer, AI Security
AppSec
$230K–$280K
“leverage skills, MCP enabled tools, and hooks to help prevent vulnerabilities for developers using agentic coding tools… You stay current with tools like Cursor, Claude Code, and other AI-assisted development environments…”
📍 San Francisco / New York🛠️ Claude Code · MCP · Cursor🗓️ Captured 2026-07-26
Read the full archived posting

Notion — Application Security Engineer, AI Security

NOTE: Canonical Ashby posting is closed/JS-rendered. Full text below is verbatim from the startup.jobs mirror (scraped 2026-07-26). The second inventory AI-signal appears here as: "leverage skills, MCP enabled tools, and hooks to help prevent vulnerabilities for developers using agentic coding tools."

Application Security Engineer, AI Security

San Francisco, California, U.S.

Full-Time

Hybrid

$230,000 – $280,000 per year

TLDR

Consult and build security for Notion AI features, defining enterprise-grade security models and automated red-team testing.

Who We Are

Notion is the collaborative AI workspace where teams and agents think together. We're building one place where your knowledge, projects, meetings, and AI tools live side by side, so work feels faster, clearer, and less fragmented. Millions of individuals, small teams, and large companies run their work on Notion.

Notinos (our employees) are customer zero in bringing this future of work to life. We care about craft, humanity, and building things that last — not just shipping the next feature, but setting a standard for how modern teams (with humans and agents working together) think and execute.

About The Role

Millions of people use Notion — and this number is increasing every day. Our users depend on us to deliver a secure and trustworthy experience, and we value this more than anything. We want to keep building on that trust, while also continuing to amaze our users with the tools they can build in Notion. This is where you come in — to help us forge a strong, reliable path forward to the future. The Notion application is flexible, powerful and always evolving. With a product that needs to scale to meet the needs of many thousands of businesses globally. They rely on us to protect their data and that of their customers.

Notion is looking for security engineers that have a passion for securing complex products. As an Application Security Engineer working on AI Security you will be a consultant, advocate and builder that is hyper focused on preventing and eliminating security risk for Notion’s AI products.

What You'll Achieve

Help define the security models for Notion’s products as they ship, giving guidance to engineering and product teams to ensure new features meet strict enterprise security requirements.

Perform hands on testing and develop automated red teaming for AI and agentic features, especially focused on AI specific risks like prompt injection.

Make the secure path the easy path for product teams by providing design guidance and finding architectural solutions that eliminate classes of vulnerabilities.

Provide developers guidance and education on security and privacy best practices that prevent the authoring of vulnerabilities; leverage skills, MCP enabled tools, and hooks to help prevent vulnerabilities for developers using agentic coding tools.

Participate in and drive mitigation strategies during AppSec related incident responses.

Skills You'll Need to Bring

Security Architecture expertise: You have at least 6+ years of experience working with product teams to design and/or build secure software.

Thoughtful problem-solving: For you, problem-solving starts with a clear and accurate understanding of the context. You can decompose tricky problems and work towards a clean solution, by yourself or with teammates. You're comfortable asking for help when you get stuck.

Impact-driven approach to technology: You use technology to drive measurable user and business outcomes, not as an end in itself. You stay current with tools like Cursor, Claude Code, and other AI-assisted development environments, and you’re pragmatic about choosing what delivers the most value.

Pragmatic and business-oriented: You care about business impact and prioritize projects accordingly. As a product security expert you communicate and facilitate understand of the threat model and risks with the goal to balance the right security investments with the right bottom line outcomes.

Empathetic communication: You communicate nuanced ideas clearly, whether you're explaining technical decisions in writing or brainstorming in real time. In disagreements, you engage thoughtfully with other perspectives and compromise when needed.

Startup mentality: You are comfortable navigating the fast moving, unstructured nature of a hyper-growth startup. You are self-motivated to add value and bias towards action.

You don’t need to be an AI expert, but you’re curious and willing to adopt AI tools to work smarter and deliver better results

Nice To Haves

Experience building AI-enabled applications in production (LLMs and/or classical ML), including prompt + tool orchestration, retrieval, evaluation, and iteration based on real-world feedback.

Published reports of vulnerabilities you have found or AppSec related blog posts, especially anything AI related

Participation in bug bounty programs or capture the flag exercises

Involvement in local or regional security user groups or conferences

Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role’s scope and complexity, and the candidate’s experience and expertise, and may vary from the range provided below. For roles based in San Francisco and New York, the estimated base salary range for this role is $230,000 - $280,000 per year. For qualified candidates, Notion may consider a full-time remote candidate.

By clicking “Submit Application”, I understand and agree that Notion and its affiliates and subsidiaries will collect and process my information in accordance with Notion’s Global Recruiting Privacy Policy. #LI-Onsite

A Note on AI

You don’t need deep AI expertise for every role, but we do expect every Notino to be intellectually curious, drawn to tinkering and discovery, and excited to use AI as a real collaborator in their work. For some roles, AI fluency is a core requirement — when that’s the case, we’ll make it explicit in the qualifications. People who thrive here don’t treat AI as a novelty. They use it to think better, move faster, and build more creatively.

Equal Opportunity & Accommodations

We hire talented and passionate people from a variety of backgrounds because we want our teams to reflect the wide diversity of our customers. If you’re excited about a role but your experience doesn’t align perfectly with every bullet point listed, we still encourage you to apply.

Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.

\[Notion

]\(/company/notionapi)Notion

Notion creates a powerful workspace that enables teams to connect docs, notes, projects, calendar, and email all in one place. With AI integrated to automate busywork and streamline workflows, it's designed for anyone from individuals to large organizations looking to enhance productivity and collaboration.

Horizon3.ai
Staff Attack Engineer, AI/LLM
Offensive Remote
$223K–$275K
Screenshot of the Horizon3.ai Staff Attack Engineer, AI/LLM job posting, captured 2026-07-27
Posting as captured 2026-07-27
“You will break AI and agentic systems and turn that research into automated attacks inside NodeZero, our autonomous pentesting platform.”
📍 Remote — US🛠️ NodeZero · LLM attacks🗓️ Captured 2026-07-27
Read the full archived posting

Get to Know Us

Horizon3.ai is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. NodeZero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises. It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs.

We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.

SUMMARY

We are hiring a Staff Attack Engineer specializing in AI/LLM security to join our team. You will break AI and agentic systems and turn that research into automated attacks inside NodeZero, our autonomous pentesting platform.

This is not consulting or manual pentesting; the goal is to build repeatable, scalable attack patterns that run autonomously across customer environments. You’ll also help drive our LLM-powered offensive capabilities and act as a technical leader for AI/LLM offense.

ESSENTIAL FUNCTIONS

ATTACKING AI/LLM SYSTEMS

- Break AI and agentic systems and translate that research into automated, repeatable attack modules for NodeZero.

- Design and execute prompt injection and defense evasion attacks, focusing on generalized, reusable patterns.

- Conduct tool-use exploitation, abusing LLM agents’ access to code, file systems, APIs, and databases for attacker-realistic outcomes (e.g., context poisoning, RCE, data exfiltration, privilege escalation).

- Target AI infrastructure (model serving, training pipelines, vector databases, GPU/MLOps tooling) with an understanding of real-world enterprise deployments and misconfigurations.

- Research and apply model and supply chain attacks (poisoning, training data extraction, adversarial inputs, deployment pipeline abuse).

- Perform threat modeling for agentic systems, mapping trust boundaries and attack surfaces and turning them into concrete attack paths.

- Apply a strong productization mindset, turning manual techniques into safe, reliable, and scalable automated tooling.

BUILDING WITH LLMS

- Build and extend LLM-powered applications (prompting, structured output, agentic workflows).

- Design with production concerns in mind: cost, safety and hallucination guardrails, reliability, and observability.

- Design and extend microservices that orchestrate LLM tasks and integrate with NodeZero and related offensive workflows.

COMPETENCIES / REQUIREMENTS

- Expert-level Python and software engineering skills.

- Solid penetration testing fundamentals and understanding of common attack chains.

- Familiarity with AI/LLM security frameworks (e.g., OWASP Top 10 for LLMs, MITRE ATLAS).

- Experience in a security product or offensive security team, ideally with shipped offensive capabilities or tooling.

- Proven ability to break AI/LLM and agentic systems.

- Clear understanding of trust boundaries around AI tools, data sources, and permissions, and how to systematically test and exploit them.

- Expert-level ownership – drives high-complexity, high-risk programs and sets strategy, not just execution.

- Self-motivated – identifies problems and builds solutions proactively.

- Industry obsessed – tracks the fast-moving AI security landscape and can speak to recent developments, new attacks, and where the field is heading.

NICE-TO-HAVE

- Experience with other cloud AI services (e.g., Azure OpenAI, GCP Vertex AI).

- Contributions to AI security research (blog posts, conference talks, CVEs, open-source tools).

- Experience with AWS Bedrock and AWS Agent Core.

- Familiarity with graph databases (e.g., Neo4j).

- Background in traditional exploit development or vulnerability research.

- CTF experience, particularly in AI/ML-focused challenge categories.

Perks of Horizon3.ai

- Inclusive Team: We value diversity and promote an inclusive culture where everyone can thrive.

- Growth Opportunities: Be part of a dynamic and growing team with numerous career development opportunities.

- Innovative Culture: Work in a collaborative environment that encourages creativity and out-of-the-box thinking.

- Remote Work: We are a 100% remote company. Enjoy the convenience and work-life balance that comes with remote work.

- Competitive Compensation: We offer competitive salary, equity and benefits. Our benefits include health, vision & dental insurance for you and your family, a flexible vacation policy, and generous parental leave.

Compensation and Values

At Horizon3, we believe that our people are our greatest asset, and our compensation philosophy reflects this core value. We are committed to fostering an environment where all employees feel valued, respected, and rewarded for their contributions. Our compensation structure is designed to be fair, competitive, and transparent, ensuring that every team member is recognized and compensated equitably across roles, levels, and locations.

In accordance with various State’s transparency regulations, we provide the following salary range information for this position:

- Base salary range: $223,000 - $275,000 annually. The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills.

- Additional compensation: All full-time roles are eligible for an equity package in the form of stock options.

You Belong Here

Horizon3 is not just an equal opportunity employer - we are a community that values diversity, equity, and inclusion as fundamental principles of our culture and success. We are dedicated to fostering a workplace where everyone feels welcome and respected, regardless of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, or any other legally protected status by law.

Our commitment to diversity and inclusion means we strive to attract, develop, and retain a workforce that reflects the varied communities we serve. We believe that diverse perspectives drive innovation and strengthen our ability to create cutting-edge cybersecurity solutions. At Horizon3, every team member is valued and supported in an environment that encourages personal and professional growth.

We welcome candidates from all backgrounds and experiences, and we encourage all qualified individuals to apply. Come be a part of Horizon3, where your unique contributions are recognized, and your potential is limitless.

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice.

Gusto
Senior Staff Security Engineer - Cloud and Network Security
Cloud
$210K–$270K
Screenshot of the Gusto Senior Staff Security Engineer - Cloud and Network Security job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Operate as an AI-native engineer, using Claude Code, MCP-driven tooling, and agentic workflows as a daily force multiplier across investigation, automation, and detection engineering.”
📍 San Francisco, CA🛠️ Claude Code · MCP🗓️ Captured 2026-07-27
Read the full archived posting

Gusto — Senior Staff Security Engineer - Cloud and Network Security

About Gusto

At Gusto, we're on a mission to grow the small business economy. We handle the hard stuff — payroll, health insurance, 401(k)s, and HR — so owners can focus on their craft and their customers. With teams in Denver, San Francisco, and New York, we support more than 500,000 small businesses nationwide and are building a workplace that reflects the people we serve.

All full-time employees receive competitive base pay, benefits, and equity (RSUs) — because everyone who helps build Gusto should share in its success. Offer amounts are determined by role, level, and location. Learn more about our Total Rewards philosophy.

AI is a fundamental part of how work gets done at Gusto. We expect all team members to actively engage with AI tools relevant to their role and grow their fluency as the technology evolves. AI experience requirements vary by role and will be assessed during the interview process.

About the Role:

We're looking for a Senior Staff Security Engineer to lead Gusto's edge and network security strategy, owning the design and operation of our Cloudflare WAF, DDoS protection, Zero Trust, and broader perimeter controls. The ideal candidate brings deep, hands-on Cloudflare expertise and a proven track record of hardening edge and network architectures at scale, including tuning WAF rulesets, defending through live DDoS events, and shipping Zero Trust rollouts engineers actually adopt. You think in terms of layered defense, measurable risk reduction, and automation over manual toil. In this role, you'll serve as a force multiplier across the security org, partnering with infrastructure and product teams to make high-impact architectural decisions that compound over time.

About the Team:

The Gusto's Enterprise Security Engineering team, a small but high-leverage group responsible for cloud security posture, edge and network defense, container security, secrets management, and endpoint protection across the company. The team runs a modern stack including Cloudflare, Wiz, CrowdStrike, Panther, and Tines, scaling impact through automation, IaC, and AI-augmented tooling. The work carries real stakes, protecting the payroll, benefits, and HR systems that hundreds of thousands of small businesses and their employees rely on every day. The team is engineering-first, with most of the roadmap living in code and a strong emphasis on partnering with infrastructure and product teams rather than gatekeeping them.

Here's what you'll do day-to-day:

  • Design and operate Gusto's edge security stack including Cloudflare WAF, DDoS protection, Bot Management, WARP, Gateway, and Access, tuning rules against real traffic and shaping how engineers and operations teams reach internal systems securely.
  • Own the network security perimeter across AWS and the edge: VPC design, Network Firewall, Shield, CloudFront, NACLs, and egress filtering, all codified in Terraform and Crossplane, observable, and consistently enforced.
  • Develop policy-as-code patterns for WAF rules, network policies, and edge configuration so changes ship through pull requests with review, testing, and clean rollback paths.
  • Build detections and alerting on edge and network telemetry including Cloudflare logs, VPC Flow Logs, and CloudTrail flowing into Panther, and lead incident response for perimeter and network events.
  • Contribute broadly across the security engineering surface including cloud posture, container security, IAM, vulnerability management, and on-call, bringing a strong generalist instinct to wherever the work is most critical.
  • Operate as an AI-native engineer, using Claude Code, MCP-driven tooling, and agentic workflows as a daily force multiplier across investigation, automation, and detection engineering.
  • Prototype and ship agents, custom MCP servers, and LLM-assisted automations that compress security work from days to minutes and raise the bar for what one engineer can own.

Here's what we're looking for:

  • 10+ years of hands-on security engineering experience, with significant time owning edge, network, or perimeter security at scale.
  • Deep, production-grade expertise with Cloudflare's security stack including WAF, DDoS, Bot Management, WARP, Gateway, and Access, covering rule tuning, incident response, and Zero Trust rollouts.
  • Strong network architecture skills across edge and cloud: TLS/mTLS, segmentation, egress controls, DDoS resilience, and AWS networking including VPC, Network Firewall, Shield, CloudFront, and NACLs.
  • Fluency with policy-as-code, Terraform, and CI/CD-first delivery of security controls; Crossplane or similar a plus.
  • Solid generalist foundation across cloud security, IAM, container security, and detection engineering, with hands-on incident response experience on edge and network telemetry in a modern SIEM.
  • AI-native working style with daily use of Claude Code or equivalent agentic tooling, and a track record of building AI-assisted workflows including custom MCP servers, agents, and LLM automations that compound team output.
  • Excellent written and verbal communication; you can take a complex perimeter decision and explain the tradeoffs to a staff engineer, a PM, and a VP without changing the substance.
  • Relevant certifications a plus including AWS Certified Advanced Networking Specialty, AWS Certified Security Specialty, Cloudflare Certified Security Associate/Professional, CKS, or equivalent.

Our cash compensation amount for this role is targeted at $210,000/yr to $230,000/yr in Denver & most remote locations, $230,000/yr to $270,000/yr for San Francisco, New York & Seattle. Stock equity is additional. Final offer amounts are determined by multiple factors including candidate experience and expertise and may vary from the amounts listed above.

Gusto has physical office spaces in Denver, San Francisco, and New York City. Employees who are based in those locations will be expected to work from the office on designated days approximately 2-3 days per week (or more depending on role). The same office expectations apply to all Symmetry roles, Gusto's subsidiary, whose physical office is in Scottsdale.

Note: The San Francisco office expectations encompass both the San Francisco and San Jose metro areas.

When approved to work from a location other than a Gusto office, a secure, reliable, and consistent internet connection is required. This includes non-office days for hybrid employees.

Our customers come from all walks of life and so do we. We hire great people from a wide variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger. If you share our values and our enthusiasm for small businesses, you will find a home at Gusto.

Gusto is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Gusto considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Gusto is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. We want to see our candidates perform to the best of their ability. If you require a medical or religious accommodation at any time throughout your candidate journey, please fill out this form and a member of our team will get in touch with you.

Gusto takes security and protection of your personal information very seriously. Please review our Fraudulent Activity Disclaimer.

Personal information collected and processed as part of your Gusto application will be subject to Gusto's Applicant Privacy Notice.

AbbVie
Principal Agentic AI Security Engineer
Detection & SOC
$142K–$269K
Screenshot of the AbbVie Principal Agentic AI Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Architect and build AI agent systems for security operations -- autonomous detection, investigation, response, threat hunting, vulnerability analysis, and risk assessment… you build with agents, not just build agents.”
📍 North Chicago, IL🛠️ Claude Code · AI agents🗓️ Captured 2026-07-27
Read the full archived posting

Principal Agentic AI Security Engineer

North Chicago, IL | Function: Corporate | Work location type: Hybrid | Full-time | Job ID: R00146581

Company Description

About AbbVie

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.

Job Description

We are building a team that develops AI agents to solve hard security problems -- and you will be tackling the hardest ones. This is a hands-on, senior IC role. You will architect, build, and ship agentic AI systems that operate autonomously within security environments, while also driving the technical direction and standards for how these systems are built, tested, and secured.

This is not a management role and not a pure research role. You will write code, ship systems, and get your hands dirty -- but you will be working on problems where there is no playbook yet. You will define the approach, build the proof of concept, harden it for production, and write the technical guidance others follow.

Responsibilities:

  • Architect and build AI agent systems for security operations -- autonomous detection, investigation, response, threat hunting, vulnerability analysis, and risk assessment
  • Tackle the novel, high-complexity problems: adversarial robustness of agent systems, secure agent-to-agent communication, guardrails for autonomous decision-making in high-stakes security contexts
  • Develop frameworks, tooling, and patterns for building secure and reliable agentic AI systems -- then use them yourself
  • Conduct original research and experimentation on agentic AI applied to offensive and defensive security, translating findings into working code
  • Build proof-of-concept exploits and adversarial tests against agentic AI systems to identify failure modes and inform defensive design
  • Develop and publish technical guidance and policy for agentic AI security -- grounded in systems you have built and broken
  • Independently author security position papers on emerging technologies -- strategic, high-level documents that frame organizational thinking on new threat domains and drive downstream policy and technical guidance
  • Serve as a subject matter expert and key driver of the AI Cybersecurity Maturity program, spanning application security, training, AI controls and infrastructure, AI discovery and inventory, operations and incident response, and policy and procedure development
  • Integrate LLMs, custom models, and security tooling (SIEM, EDR, SOAR, cloud platforms, vulnerability scanners) into agent architectures
  • Evaluate and adopt emerging AI capabilities (new models, frameworks, techniques) and determine their applicability to security problems
  • Set technical direction for agent development practices, including evaluation frameworks, testing methodologies, and deployment patterns
  • Mentor and elevate other engineers on the team through code review, design guidance, and technical leadership

Qualifications

Required:

  • Bachelor's Degree with 9 years' experience; Master's Degree with 8 years' experience; PhD with 4 years' experience.
  • Respective years of experience in cybersecurity, security engineering, or security research -- with substantial hands-on technical depth
  • Strong software engineering skills -- you ship production systems, not just prototypes. Python required; additional languages a plus
  • Deep expertise in at least two of: security operations, application security, threat intelligence, vulnerability research, detection engineering, offensive security, cloud security
  • Demonstrated experience building AI agents and AI/ML-powered security tools or automation that operated at scale
  • Hands-on experience with agentic coding tools (e.g., Claude Code, Cursor, GitHub Copilot, Aider, or similar) as part of your daily development workflow -- you build with agents, not just build agents
  • Track record of original technical work -- published research, open-source tooling, conference presentations, or equivalent evidence of independent technical contribution
  • Ability to work at the intersection of security and AI: you understand both the security implications of AI systems and how to apply AI to security problems
  • Experience developing technical standards, frameworks, or guidance that others adopted
  • Strong written and verbal communication -- you can explain complex technical concepts to both engineers and senior leadership, and you can write strategically about emerging technology risks at a level that shapes organizational direction

Preferred:

  • Experience with agent orchestration and autonomous systems (custom frameworks, LangChain, AutoGen, MCP, or similar)
  • Background in adversarial ML, AI red teaming, or AI safety
  • Familiarity with security compliance frameworks (NIST, ISO 27001, SOX) and how they apply to AI systems
  • Published work (Black Hat, DEF CON, OWASP, academic journals, or equivalent venues)
  • Experience in regulated industries (financial services, healthcare, critical infrastructure, government/defense)
  • Contributions to open-source security projects
  • OWASP, MITRE ATT&CK, or similar framework expertise applied in production environments
  • Security clearance eligibility (not required)

Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:

The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.

We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.

This job is eligible to participate in our long-term incentive programs.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law.

AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.

Travel: Yes, 5% of the Time

Pay Range: $141,500 - $268,500 USD

Where We Work: Role is primarily site- or office-based but can occasionally be performed remotely. US Employees must be in the office on Tuesday, Wednesday, and Thursday with flexibility to work remotely on Mondays and Fridays. Three days in the office is the minimum; some individuals or teams may require more in-office days due to meetings, business/project needs or their role.

Rokt
GRC Automation & Assurance Lead
GRC
$174K–$255K
Screenshot of the Rokt GRC Automation & Assurance Lead job posting, captured 2026-07-27
Posting as captured 2026-07-27
“This is not a "use ChatGPT to summarise a policy" role. You will architect and ship agents on our internal Security Agent Suite, build internal GRC tools using AI coding agents like Claude Code and Cursor…”
📍 New York, NY🛠️ Claude Code · agent suite🗓️ Captured 2026-07-27
Read the full archived posting

Rokt — GRC Automation & Assurance Lead

GRC Automation & Assurance Lead

New York

We are Rokt, a hyper-growth ecommerce leader. Rokt is the global leader in ecommerce, unlocking real-time relevance in the moment that matters most. Rokt’s AI Brain and ecommerce Network powers billions of transactions connecting hundreds of millions of customers, and is trusted to do this by the world’s leading companies.

We are a team of builders helping smart businesses find innovative ways to meet customer needs and generate incremental revenue. Leading companies drive 10-50% of additional revenue—and often all their profits—from the extra products or services they sell. This economic edge unleashes a world of possibilities for growth and innovation.

At Rokt, we practice transparency in career paths and compensation. We believe in transparency, which is why we have a well-defined career ladder with transparent compensation and clear career paths based on competency and ability. Rokt’stars constantly strive to raise the bar, pushing the envelope of what is possible.

We are looking for a GRC Automation & Assurance Lead

Target total compensation ranges from $214,000 - $255,000, including a fixed annual salary of $174,000- $215,000, an employee equity plan grant, and world-class benefits.

Equity grants are issued in good faith and are subject to company policies, board approval, and individual eligibility.

About the Role:

We are looking for a GRC professional who is equal parts auditor and builder. Rokt's information security management system is ISO 27001 and SOC 2 certified, and protects personal customer data entrusted to us by leading global e-commerce brands with a combined 100 million transactions each month. As we scale, we are reimagining GRC as an AI-first function — one where agents and automation do the heavy lifting on evidence collection, control monitoring, questionnaire response, and audit preparation, freeing humans to focus on judgment, strategy, and stakeholder partnership.

You will own the audit, assurance, and compliance pillar of our GRC program, and you will lead the design and engineering of the agentic systems that run it. This is not a "use ChatGPT to summarise a policy" role. You will architect and ship agents on our internal Security Agent Suite, build internal GRC tools using AI coding agents like Claude Code and Cursor, and treat automation as a first-class deliverable alongside the audits you lead.

You will work closely with engineering, product, legal, finance, people, and our external auditors to drive ISO 27001, SOC 1, and SOC 2 programs to clean outcomes — and to make sure that next year, the same outcomes are achieved with materially less manual effort. You move fast, you prefer significant leaps over small iterations, and you genuinely enjoy the intersection of compliance rigour and AI engineering.

Responsibilities:

AI automation and tooling

  • Architect, build, and maintain agents on Rokt's internal Security Agent Suite for GRC workflows, including client security questionnaires, evidence collection, control testing, vendor assessments, DPIAs, and audit preparation
  • Design new GRC automations end-to-end: scope the workflow, build the agent or tool, validate outputs, and roll it out with the rest of the GRC team
  • Build internal tools and integrations using AI coding agents (Claude Code, Cursor, or equivalents) to extend our in-house GRC systems and Jira-based workflows
  • Continuously evaluate agent performance, refine prompts and tool definitions, and improve coverage and accuracy of automated controls

Audit, assurance, and compliance

  • Lead the ISO 27001:2022 surveillance and recertification cycles, and SOC 1 and SOC 2 Type 2 audits, end-to-end
  • Plan and execute Rokt's internal audit program (user access, exemptions, DPIAs, SCF controls, AI controls), ideally with agent-assisted execution
  • Drive external auditor engagement, evidence collection, and remediation tracking
  • Manage the processing of client security questionnaires using and continuously improving the questionnaire agent
  • Maintain and evolve ISMS performance metrics, including new metrics covering AI control effectiveness and automation coverage
  • Coordinate Rokt's security calendar including audit windows
  • Produce and maintain quality procedure documentation co-authored with AI assistance

Compliance and audit experience

  • 4+ years of relevant experience in Governance, Risk & Compliance, ideally in a fast-moving tech environment
  • Working knowledge of ISO 27000 family, SOC 1, SOC 2, NIST CSF, and privacy regulations (GDPR, CCPA, CPRA); bonus for PCI-DSS, CIS, SCF, ISO 42001, NIST AI RMF
  • Hands-on internal auditing experience against ISO 27001 and SOC 2
  • Track record managing external audits end-to-end, including evidence collection, auditor engagement, and findings remediation
  • Solid grasp of controller/processor concepts and broader privacy fundamentals

AI and technical skills (this is the differentiator)

  • Demonstrated experience designing and shipping agentic AI systems — not just using a chatbot. You have built agents that take actions, call tools, integrate with APIs, and complete multi-step workflows
  • Comfortable using AI coding agents (Claude Code, Cursor, Copilot, or similar) to build and maintain internal tools; able to read, modify, and ship code even if you don't consider yourself a software engineer
  • Familiarity with at least one agent framework (Google ADK, LangGraph, OpenAI Agents SDK, MCP, or similar) and the core patterns: tool use, memory, evaluation, guardrails
  • Understanding of LLM risks and controls — prompt injection, model misuse, agent autonomy, data leakage — and how they map to frameworks like OWASP Agentic Top 10 or NIST AI RMF
  • Working knowledge of basic IT, cloud (AWS preferred), APIs, and SQL
  • Comfort with version control (Git/GitHub) and basic scripting (Python or TypeScript)

Ways of working

  • Strong written and verbal communication; able to translate technical detail into business language for leadership, clients, and auditors
  • Demonstrated ability to break complex compliance requirements into scalable, automated processes that don't slow the business down
  • Bias for shipping, comfort with ambiguity, and a builder mindset
  • Strong attention to detail balanced with willingness to use AI to extend it
  • Highly responsive, autonomous, and resilient

About Rokt’stars:

As a mission-driven, hyper-growth community of curious explorers, our ambition is to unlock real-time relevancy in ecommerce and beyond. Our bias for action means we are not afraid to quickly venture into uncharted territories, take risks, or challenge the status quo; in doing so we either win or learn. We work together as one aligned team, never letting egos get in the way of brilliant ideas. We value diversity, transparency, and smart humble people who enjoy building a disruptive business together. We pride ourselves on being a force for good as we make the world better.

About the Benefits:

We leverage best-in-class technology and market-leading innovation in AI and ML, with all of that being underlined by building and maintaining a fantastic and inclusive culture where people can be their authentic selves, and offering a great list of perks and benefits to go with it:

  • Become a shareholder. Every Rokt’star gets equity in the company
  • Enjoy catered lunch every day and healthy snacks in the office. Plus join the gym on us!
  • Access generous retirement plans like a 4% dollar-for-dollar 401K matching plan and get fully funded premium health insurance!
  • Dog-friendly office
  • Extra leave (bonus annual leave, sabbatical leave etc.)
  • Work with the greatest talent in town
  • See the world! We have offices in New York, Seattle, Sydney, Tokyo and London

We believe we’re better together. We love spending time together and are in the office most days (teams are in the office minimum 4 days per week).

We at Rokt choose to create a company that is as diverse and inclusive as the world we live in by attracting, growing & keeping the best talent. Equal employment opportunities are available to all applicants without regard to race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Dropzone AI
Detection Engineering Lead
Detection & SOC Remote
$200K–$250K
Screenshot of the Dropzone AI Detection Engineering Lead job posting, captured 2026-07-27
Posting as captured 2026-07-27
Prototype, validate, and continuously improve an AI agent that programmatically generates detection content across diverse security environments.”
📍 Remote — US🛠️ AI detection agent🗓️ Captured 2026-07-27
Read the full archived posting

About Dropzone AI

Dropzone’s mission is to scale cybersecurity beyond human limits, and augment every single human security engineer/analyst with an army of AI security specialists. Humans alone cannot sufficiently protect our digital future, and AI augmentation is the only way for defenders to reclaim the high ground. We are an award winning company disrupting the $200B+ cybersecurity market.

Powered by Gen AI advancements, our technology offloads repetitive day-to-day work and frees human analysts to focus on real threats and higher-value projects. We are venture-backed, and our team has a rare blend of deep experience across cybersecurity, AI/ML, and SaaS product development. Join us if you want to be on the ground floor of using Gen AI to transform cyber defense. Learn more at www.dropzone.ai.

About the role

We're looking for a highly experienced Senior / Principal Detection Engineer to help shape the future of AI-driven security operations. This is a senior-to-principal level role for an individual who combines deep detection engineering expertise with a passion for innovation, customer impact, and advancing the state of security operations.

As the Detection Engineering Lead, you will serve as one of Dropzone AI's foremost experts in adversary tradecraft, threat detection, detection efficacy evaluation, and SIEM content. You will work closely with product management and engineering teams to ensure our AI detection engineer can draft new detection contents and improve existing detection rules as well as the best detection engineer on the planet.

This role is part of the R&D team and you will focus on building the best software that replicates your expert intuitions and techniques. This is not a service or consulting role and you will not be performing hands-on detection engineering service to our customers.

What you'll do

Detection Engineering Leadership

  • Reimagine how having unlimited detection engineering capacity could change Detection and Response teams and how future security practitioners interact with an AI detection engineer
  • Prototype, validate, and continuously improve an AI agent that programmatically generates detection content across diverse security environments.
  • Experiment autonomous agentic loops between detection engineering and other D&R functions such as threat intelligence and threat hunting

Product Development

  • Partner with engineering teams to encode expert detection knowledge into our product.
  • Design scoring rubrics on AI generated detection content for SIEM, EDR, NDR, cloud, identity, and SaaS security platforms.
  • Provide guidance on detection methodologies used by mature SOCs.
  • Establish best practices for detection quality, tuning, testing, and lifecycle management.
  • Influence product roadmap decisions based on customer and operational needs.

Threat Research & Innovation

  • Stay current on emerging threats, attacker techniques, and defensive strategies.
  • Conduct original research into detection opportunities and gaps.
  • Develop novel approaches for AI-assisted threat detection.

Requirements

  • 5+ years of experience in detection engineering.
  • Deep expertise with two or more major SIEM platforms (Microsoft Sentinel, Splunk, QRadar, Elastic, Chronicle, Sumo Logic, etc.).
  • Strong understanding of endpoint, cloud, identity, network, and SaaS telemetry.
  • Expertise in MITRE ATT&CK, adversary emulation, and detection coverage analysis.
  • Experience building and tuning high-fidelity detections at scale.
  • Strong understanding of modern attacker tradecraft across Windows, Linux, cloud, identity, and SaaS environments.
  • Excellent communication skills with the ability to engage practitioners, executives, and customers.
  • Early-stage startup mindset. You thrive on ambiguity and move with lightspeed execution
  • Being data-driven is part of your DNA.

Preferred

  • Experience leading detection engineering programs at large complex environments.
  • Expertise with EDR platforms such as CrowdStrike, Microsoft Defender, SentinelOne, or Palo Alto Cortex XDR.
  • Experience with cloud security platforms including AWS, Azure, and GCP.
  • Familiarity with AI, machine learning, LLMs, or autonomous security workflows.
  • Experience contributing to open-source detection content (Sigma, YARA, Suricata, Zeek, etc.).
  • Public speaking, research publication, or conference presentation experience.

Work Environment/Travel

We are a 100% remote company where you will work from your home with company-provided equipment to set you up for success. Semi-frequent travel to professional office settings and other events locally and nationally; some overnight travel expected.

Compensation

In the spirit of pay transparency, we are excited to share the base salary range below, exclusive of fringe benefits or potential bonuses. If you are hired at Dropzone your final base salary compensation will be determined based on factors such as geographic location, skills, education, and/or experience. In addition to those factors, we believe in the importance of pay equity and consider internal equity of our current team members as a part of any final offer. Please keep in mind that hiring at the maximum of the range would not be typical to allow for future and continued salary growth. In addition, all compensation packages include significant above market new hire equity grants because we believe in rewarding long term value creation. We also offer a generous benefits package, including company paid health insurance, 401K Plan with employer match, Self-Managed PTO, parental leave, and more.

The pay range for this role is:

$200,000—$250,000 USD

Accenture Federal Services
Penetration Tester - Lead AI-Driven Security Testing
Offensive
$126K–$244K
Screenshot of the Accenture Federal Services Penetration Tester - Lead AI-Driven Security Testing job posting, captured 2026-07-27
Posting as captured 2026-07-27
“guide the integration of automated and AI-assisted testing capabilities into the organization's Agentic AI architecture, improving speed, accuracy, and repeatability of offensive security operations.”
📍 Washington, DC🛠️ AI-assisted offensive tooling🗓️ Captured 2026-07-27
Read the full archived posting

Penetration Tester (Lead AI-Driven Security Testing)

Accenture Federal Services | Washington, DC | Full-time | On-site | USD 126,000 - 244,000 (JobLeads) | Posted Jul 03, 2026 (Lensa)

Job Description

At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. Join Accenture Federal Services, a technology company within global Accenture. Recognized as a Glassdoor Top 100 Best Place to Work, we offer a collaborative and caring community where you feel like you belong and are empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more. Join us to drive positive, lasting change that moves missions and the government forward!

We are seeking a Penetration Tester to design, coordinate, and execute a modern, scalable penetration-testing program. This role will unify penetration-testing activities across network, application, and cloud environments, ensuring consistent execution, standardized reporting, and alignment with enterprise security and risk-management objectives.

The Pen Tester will also guide the integration of automated and AI-assisted testing capabilities into the organization's Agentic AI architecture, improving speed, accuracy, and repeatability of offensive security operations.

You Will:

Program Leadership & Governance

  • Consolidate ad-hoc penetration-testing efforts into a unified enterprise pen-testing program with standard methodologies, processes, and reporting.
  • Establish and maintain Rules of Engagement (ROE) for all testing activities, defining scope, communication protocols, safety constraints, escalation paths, and evidence-handling guidelines.
  • Coordinate and supervise all test execution activities, including internal teams, contractors, and third-party assessors.

Technical Execution & Delivery

  • Plan and execute network, application, and cloud penetration tests under the approved ROE.
  • Combine manual tradecraft with AI-assisted offensive-security tooling to increase depth and coverage of assessments.
  • Produce detailed evidence packages, exploitation artifacts, and findings reports that support remediation and root-cause analysis.
  • Work with product teams, system owners, and DevSecOps/Cloud teams to validate findings and retest fixes.

Tooling & AI Integration

  • Integrate penetration-testing tools, automation frameworks, and exploit-development workflows into the Agentic AI security architecture.
  • Recommend tooling enhancements, AI-driven analysis approaches, and automation opportunities.

Risk & Vulnerability Management

  • Conduct technical risk assessments across systems to determine likelihood, impact, and exploitation feasibility.
  • Analyze risk vectors to prioritize vulnerabilities and perform triage across multiple findings sources (manual, automated, AI-assisted, third-party).
  • Partner with vulnerability-management, SOC, threat-intelligence, and engineering teams to drive remediation activities.

Here's what you need:

  • Two years of Penetration-Testing experience
  • Hands-on penetration-testing experience across at least two of the following domains: network, cloud, web application, identity, or containerized environments.
  • Experience operating within defined Rules of Engagement.
  • Proficiency with common offensive-security tools (e.g., Burp Suite, Cobalt Strike, Metasploit, BloodHound).
  • Ability to produce high-quality technical documentation, findings reports, and remediation guidance.

Nice to Haves:

  • Experience developing custom exploits, automation scripts, or AI-augmented testing workflows.
  • Familiarity integrating tooling into agent-based or Agentic AI architectures.
  • Prior experience leading penetration-testing teams or programs.
  • Industry certifications such as OSCP, OSWE, OSEP, CRTO, GPEN, or equivalent.
MITRE
Cyber Operations Engineer - Artificial Intelligence
Offensive
$159K–$238K
Screenshot of the MITRE Cyber Operations Engineer - Artificial Intelligence job posting, captured 2026-07-27
Posting as captured 2026-07-27
“help drive the adoption of AI-enabled solutions for cyber investigations, data analysis, operational automation, vulnerability research, and mission decision support across collaborative R&D and operational environments.”
📍 McLean, VA🛠️ LangChain · Claude Code🗓️ Captured 2026-07-27
Read the full archived posting

Cyber Operations Engineer - Artificial Intelligence

MITRE Corporation | McLean, VA | Hybrid | Salary range $158,800 - $198,500 - $238,200 (min - midpoint - max) | Posted 13 Jul 2026 (mirror date)

Job Description

Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges-and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day-working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities for career growth, and a culture of innovation that embraces adaptability, collaboration, technical excellence, and people in partnership. If this sounds like the choice you want to make, then choose MITRE - and make a difference with us.

Department Summary: MITRE's Offensive Operations & Effects department, part of the Cyber Operations & Effects Innovation Center, develops advanced cyber capabilities and mission-focused technology solutions supporting national security objectives. Our teams conduct applied research, operational analysis, prototype development, and technical experimentation across offensive cyber operations, digital investigations, reverse engineering, vulnerability research, malware analysis, and cyber-enabled mission support. We leverage emerging technologies, advanced analytics, and artificial intelligence to deliver innovative capabilities designed for real-world operational environments.

MITRE is seeking a highly technical Cyber Operations Engineer - focusing on Cyber Operations & AI Innovation to support advanced cyber operations, digital investigations, and applied research initiatives. This role combines expertise in cybersecurity operations, digital forensics, AI/ML technologies, reverse engineering, and mission-focused engineering to develop and integrate innovative capabilities supporting operational cyber missions. The successful candidate will help drive the adoption of AI-enabled solutions for cyber investigations, data analysis, operational automation, vulnerability research, and mission decision support across collaborative R&D and operational environments.

Roles & Responsibilities

MITRE is seeking strong technical candidates with a background in artificial intelligence to join a research and development team focused on advanced cyber operations, digital investigations, and AI-enabled mission capabilities. The candidate for this position should have familiarity in one or more of the following disciplines: digital forensics, mobile forensics, cloud forensics, reverse engineering, vulnerability research, network packet capture and analysis, IoT investigations, AI/ML development, or cyber analytics. Candidates should also possess a strong interest in applying emerging AI technologies and advanced analytics to operational cyber and investigative challenges.

In this role, you will:

  • Design, develop, and implement advanced cyber and AI-enabled capabilities supporting operational mission objectives and technology innovation initiatives
  • Lead development and integration of AI/ML tools and supporting infrastructure for cyber operations, digital investigations, reverse engineering, and mission analytics
  • Identify opportunities for automation, optimization, and data-driven decision-making across cyber operations and digital investigation workflows
  • Conduct and support digital, mobile, cloud, and network forensic analysis activities in support of mission requirements
  • Develop prototypes, tools, analytics, and workflows supporting cyber operations, vulnerability research, reverse engineering, and investigative activities
  • Research and evaluate emerging AI cyber technologies applicable to forensic techniques and/or operational tradecraft
  • Establish and implement best practices for AI governance, operational security, responsible AI usage, and secure deployment within mission environments
  • Support sponsor engagements and collaborate with technical representatives, investigators, operators, and multidisciplinary engineering teams
  • Prepare and deliver technical documentation, assessments, demonstrations, testing reports, and operational briefings to internal and external stakeholders
  • Provide technical leadership, mentorship, and knowledge transfer to cyber operations and engineering teams
  • Work independently to rapidly learn new technologies, platforms, operational methodologies, and investigative techniques in evolving cyber mission environments

Basic Qualifications

  • Typically requires a minimum of 8 years of related experience with a Bachelor's degree; or 6 years and a Master's degree; or a PhD with 3 years' experience; or equivalent combination of related education and work experience
  • Degree in Computer Science, Artificial Intelligence, Machine Learning, Software Engineering, Cybersecurity, Data Science, or related technical field
  • Ability to obtain and maintain a security clearance
  • Per the U.S. Government's eligibility requirements, you must be a U.S Citizen to be considered for a security clearance.
  • Experience designing, developing, or deploying AI/ML systems in operational or research environments
  • Experience programming in languages such as Python, Java, C++, or C
  • Experience with AI/ML frameworks and tooling such as PyTorch, TensorFlow, Scikit-learn, LangChain, MLflow, Hugging Face, Sage, Cursor, Claude Code, or equivalent
  • Familiarity with deploying AI solutions within secure, enterprise, cloud, hybrid, or disconnected operational environments
  • Strong familiarity with Linux systems and development environments
  • Familiarity with cybersecurity operations concepts and objectives
  • Familiarity with one or more cyber technical disciplines such as: digital forensics; mobile or cloud forensics; reverse engineering; vulnerability research; IoT analysis; network packet capture and analysis
  • Familiarity with database systems such as PostgreSQL and/or SQLite
  • Experience applying professional engineering principles, theories, concepts, and techniques to complex technical problems
  • Strong written and verbal communication skills with ability to communicate complex technical concepts to technical and non-technical stakeholders
  • This position requires a minimum of 50% hybrid on-site

Preferred Qualifications

  • Experience applying AI/ML to cyber operations, reverse engineering, digital investigations, or mission analytics
  • Experience developing or integrating large language models (LLMs), retrieval-augmented generation (RAG), autonomous agents, or generative AI solutions
  • Familiarity with AI security, adversarial machine learning, model validation, and responsible AI governance practices
  • Experience with cloud-native AI/ML infrastructure and containerized deployments (Docker, Kubernetes, OpenShift, etc.)
  • Operational experience with network forensics and PCAP analysis
  • Experience conducting applied research, rapid prototyping, or proof-of-concept development in mission environments
  • Experience supporting outward-facing sponsors and collaborative technical engagements
  • Familiarity with DevSecOps, MLOps, CI/CD pipelines, and infrastructure automation
  • Experience briefing technical strategies, assessments, and demonstrations to leadership or sponsor organizations
  • Prior experience working within government, defense, intelligence, or national security environments
  • Having previously held a Top Secret/SCI clearance or equivalent suitability determination
  • Demonstrated technical leadership of multidisciplinary engineering or research teams

Clearance & Compensation

This requisition requires the candidate to have a minimum of the following clearance(s): None

This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s): Top Secret

Salary compensation range and midpoint: $158,800 - $198,500 - $238,200 Annual

Work Location Type: Hybrid

Commitment to Non-Discrimination: All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local or international law.

RealPage
Senior Director, IT & Security GRC
GRC
$138K–$236K
Screenshot of the RealPage Senior Director, IT & Security GRC job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Demonstrated interest or working proficiency in "vibe coding" and AI-assisted development workflows using tools (e.g., Claude Code, Cursor and GitHub Copilot), sufficient to prototype control automations, evidence collectors, and governance tooling without dependence on engineering backlog.”
📍 Richardson, TX🛠️ Claude Code · vibe coding🗓️ Captured 2026-07-27
Read the full archived posting

RealPage — Senior Director, IT & Security GRC

> NOTE: Canonical iCIMS posting (careers-realpagepms.icims.com job 13861) now returns 410 Gone. Verbatim text below from the Nexxt mirror of the original listing, scraped 2026-07-27. Nexxt's rendering breaks some words across spans (transcribed as continuous text). Salary per mirror: USD $138,400.00 - $235,600.00 /Yr.

Senior Director, IT & Security GRC

RealPage, Inc. • Richardson, TX 75082

Salary: USD $138,400.00/Yr. - USD $235,600.00/Yr.

Overview:

This role reports to VP, Technology GRC and Deputy CISO and has accountability for maturing SOX ITGC oversight, establishing a unified Technology Risk, Threat, and Controls Library, and delivering executive-level risk reporting and advisory services. It partners closely with senior leadership, Internal Audit, and business stakeholders to design and operate a scalable, framework-aligned risk and control environment across a complex SaaS ecosystem.

The position serves as a strategic advisor to executives, providing clear insight into technology risk posture, emerging threats, and remediation strategies while enabling regulatory compliance (SOX, PCI, SOC, NYDFS) and business objectives

Responsibilities:

SOX IT General Controls (ITGCs)

  • Partner with control owners (1st LOD) to mature controls, drive automation, and remediate control deficiencies prior to year-end.
  • Monitor compliance of control design and operating effectiveness

Technology Risks, Threats & Controls Library

  • Build, govern, and continuously evolve the enterprise Technology Risk, Threat, and Control Library, mapped to NIST CSF 2.0, COBIT 2019, ISO 27001, MITRE ATT&CK, and applicable regulatory regimes.
  • Establish a unified control taxonomy enabling control rationalization, framework crosswalks, and "test once, satisfy many" efficiencies across SOX, PCI DSS, SOC 1, SOC 2 and NYDFS.

AI Risk Management

  • Demonstrated interest or working proficiency in "vibe coding" and AI-assisted development workflows using tools (e.g., Claude Code, Cursor and GitHub Copilot), sufficient to prototype control automations, evidence collectors, and governance tooling without dependence on engineering backlog.
  • Hands-on familiarity with leading Large Language Models (LLMs) (e.g., Anthropic Claude (Opus, Sonnet, Haiku), OpenAI GPT-4/5 and o-series, Google Gemini, Meta Llama, and Mistral), with a practical understanding of model selection trade-offs (reasoning depth, context window, cost, latency, data residency).
  • Working knowledge of LLM application patterns — prompt engineering, retrieval-augmented generation (RAG), function/tool calling, agentic workflows, and Model Context Protocol (MCP) and the associated risk, control, and governance implications.
  • Familiarity with the AI/LLM risk landscape, including OWASP Top 10 for LLM Applications, NIST AI RMF, ISO/IEC 42001, MITRE ATLAS, and emerging regulatory expectations (EU AI Act, NYDFS AI guidance, state-level AI laws).
  • Ability to govern AI responsibly while using it productively leveraging LLMs to accelerate risk assessments, control narratives, policy drafting, audit evidence review, and Board reporting while maintaining accuracy, confidentiality, and IP boundaries.

Committee & Board Reporting

  • Develop and deliver executive ready reporting on technology risk posture, control health, emerging threats, regulatory developments, and remediation progress.

Advisory Services

  • Serve as a trusted advisor to IT, Information Security and Engineering on technology risk, control design, and regulatory implications of strategic initiatives, including AI/ML, cloud transformation, M&A, and platform migrations.
  • Provide proactive risk and control guidance on architecture decisions, technology investments, third-party engagements, and new product capabilities.
  • Embed risk and control thinking into enterprise programs and strategic pillars (Innovate, Expand, Protect, Transform), shaping outcomes earlier in the lifecycle.

Issue & Remediation Management

  • Own the enterprise technology risk and control issue lifecycle, including identification, root cause analysis, risk rating, remediation planning, tracking, and closure validation.
  • Drive accountability across control owners and remediation owners; escalate aging or critical issues to executive leadership and the Board with clear paths to resolution.
  • Maintain a single enterprise issue register with risk-rated, time-bound action plans and trend reporting for governance forums.

Risk Assessments

  • Perform risk assessment on AI agentic solutions.
  • Translate risk assessment outputs into actionable risk treatment plans, control improvements, capital and investment recommendations, and executive risk narratives.

Qualifications:

Required Knowledge, Skills & Abilities

  • Bachelor's degree in Business Administration, Accounting, Finance, Operations, Computer Science, Information Technology, Cybersecurity, or a related field; advanced degree (MBA, MS) preferred.
  • Minimum 12+ years of progressive experience in technology risk, IT audit, GRC, or information security, with at least 7+ years leading and developing high-performing teams.
  • Deep, hands-on expertise across SOX IT General Controls, technology risk management, control design, and the IT audit lifecycle within a complex public company environment.
  • Strong understanding on AI risk management with practical experience working with AI solutions.
  • Demonstrated experience designing and operating GRC programs aligned to NIST CSF 2.0, COBIT 2019, COSO 2013, ISO 27001, and MITRE ATT&CK.
  • Proven track record of executive- and Board-level communication, including authoring risk narratives, committee materials, and Board updates.
  • Ability to be a change agent and influence positive outcomes by exercising critical thinking, strategic growth, and a bias toward action.
  • Exceptional ability to influence without authority and partner effectively with senior IT, Engineering, Security, Internal Audit, and business leaders.
  • Exceptionally strong quantitative and analytical skills, with experience applying formal risk and process improvement practices (e.g., FAIR, NIST 800-30, Lean, Six Sigma).
  • Excellent leadership, communication, interpersonal, and presentation skills, with the ability to operate from technical detail to Board-room strategy.
  • Ability to work extended hours when needed to meet department, audit, and regulatory deadlines.
  • Ability to challenge the status quo, go above and beyond, build and maintain trust, and strive for excellence.
  • Relevant certifications strongly preferred (e.g., CISA, CRISC, CISM, CISSP, CIA, CGEIT, ISO 42001).
  • Preferred 7+ years of experience in the Property Management, Multifamily Housing, SaaS, FinTech, or PropTech industries.

#LI-REMOTE #LI-JL1

SALARY AND BENEFITS

RealPage provides a competitive salary package along with a comprehensive benefit plan that includes:

  • Health, dental, and vision insurance.
  • Retirement savings plan with company match.
  • Paid time off and holidays.
  • Professional development opportunities.
  • Performance-based bonus based on position.

Compensation may vary depending on your location, qualifications including job-related education, training, experience, licensure, and certification, that could result at a level outside of these ranges. Certain roles are eligible for additional rewards, including annual bonus, and sales incentives depending on the terms of the applicable plan and role as well as individual performance.

Equal Opportunity Employer: RealPage Company is an equal opportunity employer and committed to creating an inclusive environment for all employees.

Pay Range:

USD $138,400.00 - USD $235,600.00 /Yr.

Affirm
Security Risk Management Lead
GRC Remote
$146K–$225K
Screenshot of the Affirm Security Risk Management Lead job posting, captured 2026-07-27
Posting as captured 2026-07-27
“shipping automation using modern tooling (Python, Cursor, Claude, and other agentic coding platforms) to replace manual GRC work with scalable, code-defined workflows.”
📍 Remote — US🛠️ Python · Claude · Cursor🗓️ Captured 2026-07-27
Read the full archived posting

Affirm — Security Risk Management Lead

Security Risk Management Lead

Remote US

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

Affirm values security as being critical to the company’s continued success. Our mission is to cultivate a culture of security at Affirm, enabling the company to succeed in building honest financial products. The Security Risk Management team is evolving beyond traditional governance, risk, and compliance; we are building an engineering driven program that designs, automates, and scales the controls, workflows, and tooling that protect Affirm and our customers.

The ideal candidate will design, develop, configure, and implement solutions to complex technical and business problems across the Security Third Party Program and the broader Security Risk Management program. They are equally comfortable shaping policy and shipping automation using modern tooling (Python, Cursor, Claude, and other agentic coding platforms) to replace manual GRC work with scalable, code-defined workflows. They will operate as a subject matter expert, interface with business and engineering stakeholders, and play a key role in transforming Security Risk Management from a compliance oriented function into a security engineering discipline.

What You'll Do

  • Lead and mature Affirm's Security Third Party Program, including the design, implementation, and continuous improvement of processes, controls, and operational workflows
  • Build and maintain automation that replaces manual GRC tasks: intake, triage, evidence collection, control validation, tracking, escalations, and reporting, using either Python, low code platforms, and agentic coding tools (Cursor, Claude, etc.)
  • Design and operate workflow orchestration and integrations across systems like ticketing, GRC platforms, vendor management tools, identity providers, and cloud control planes
  • Partner closely with Procurement, Legal, Engineering, IT, Compliance, Privacy, and business stakeholders to assess and manage security risk across third party relationships
  • Translate ambiguous business and security requirements into practical, scalable program solutions and decision frameworks
  • Identify opportunities to automate manual processes across the program and prototype solutions yourself rather than waiting on an engineering backlog
  • Drive program operational excellence by establishing repeatable processes, service-level expectations, metrics, and reporting for third party security risk management
  • Evaluate third party security controls, cloud architectures (AWS/GCP), integration patterns, and risk posture, and provide clear recommendations to stakeholders and leadership
  • Conduct light threat models on high risk integrations and partner with Security SMEs for deeper diligence
  • Manage and prioritize a portfolio of complex security risk reviews and initiatives simultaneously, balancing business enablement with risk reduction
  • Partner with technical teams to implement or optimize systems and tools that support program automation and workflow orchestration
  • Develop dashboards, reporting mechanisms, and program insights (SQL, BI tools, or custom tooling) that improve visibility into risk trends, bottlenecks, and program performance
  • Act as a trusted advisor and SME on third party security risk management, helping stakeholders make informed, risk based decisions
  • Contribute to the broader Security Risk Management strategy by identifying opportunities to scale, simplify, and strengthen security governance processes through engineering

What We Look For

  • 5+ years of experience in Information Security, Risk Management, Engineering and/or relevant roles
  • Hands-on experience using agentic coding tools (Cursor, Claude Code, Copilot, etc.) and a working knowledge of Python; you don't need to be a software engineer, but you should be fluent enough to read, modify, and run scripts, build automations, and ship small tools end-to-end
  • Familiarity with cloud environments (AWS, GCP, or Azure) — IAM, logging, common services, and the security risks/controls that apply to cloud-deployed third parties and integrations
  • Excellent written and verbal communications skills
  • Experience engineering solutions via Python, Claude, Cursor or other agentic coding tooling
  • Experience with industry based information security & control frameworks (NIST Cyber Security Framework, ISO 2700x, SOC1&2(SSAE18), PCI DSS, NIST-800-53, FFIEC Cybersecurity Assessment Tool, SANS Top 20, etc.)
  • BA or BS degree in Information Security, Cyber Security, Computer Science or related field or commensurate experience
  • Attention to detail and experience with security practices and security tooling
  • Demonstrated ability to drive projects towards completion
  • Ability to understand and communicate technical issues to non-technical teams
  • Professional certification in Information Security or Risk Management (such as CISSP, CISM, CISA, CRISC, etc.) is a plus

Base Pay Grade - L

Equity Grade - 5

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills. Base pay is part of a total compensation package that may include equity rewards, monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents.)

USA Pacific base pay range (CA, WA, NY, NJ, CT) per year: $165,000 - $225,000

USA Sapphire base pay range (all other U.S. states) per year: $146,000 - $206,000

Please note that visa sponsorship is not available for this position.

#LI-Remote

Affirm is proud to be a remote-first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office. A limited number of roles remain office-based due to the nature of their job responsibilities.

We’re extremely proud to offer competitive benefits that are anchored to our core value of people come first. Some key highlights of our benefits package include:

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process.

[For U.S. positions that could be performed in Los Angeles or San Francisco] Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affirm will consider for employment qualified applicants with arrest and conviction records.

By clicking "Submit Application," you acknowledge that you have read Affirm's Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.

AbbVie
Agentic AI Security Engineer
Detection & SOC
$110K–$209K
Screenshot of the AbbVie Agentic AI Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Build and deploy AI agents that automate security workflows -- threat detection, alert triage, incident response, risk assessment, and compliance monitoring… we expect you to build with agents, not just build agents.”
📍 North Chicago, IL🛠️ Claude Code · AI agents🗓️ Captured 2026-07-27
Read the full archived posting

Agentic AI Security Engineer

North Chicago, IL | Function: Corporate | Work location type: Hybrid | Full-time | Job ID: R00146579

Company Description

About AbbVie

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology, and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.

Job Description

We are building a team that develops AI agents to solve real security problems -- detection, triage, response, risk assessment, and policy enforcement. This is a hands-on engineering role. You will design, build, test, and ship agentic AI systems that operate within our security stack.

You will work alongside senior engineers and researchers who are pushing the boundaries of what autonomous systems can do in cybersecurity. You will contribute production code from day one while developing deep expertise in both AI/ML and security operations.

Responsibilities:

  • Build and deploy AI agents that automate security workflows -- threat detection, alert triage, incident response, risk assessment, and compliance monitoring
  • Integrate large language models and other AI/ML capabilities with security tooling (SIEM, EDR, SOAR, cloud security platforms)
  • Develop and maintain agent orchestration pipelines, including prompt engineering, tool integration, and evaluation frameworks
  • Write Python (primarily) to build, test, and iterate on agent systems
  • Instrument agents with logging, monitoring, and metrics to measure effectiveness against security operations KPIs
  • Participate in adversarial testing of agent systems -- identify failure modes, edge cases, and security vulnerabilities in agent behavior
  • Collaborate with senior ICs to translate research concepts into production-ready systems
  • Contribute to agentic AI security policy, standards, and technical guidance -- informed by what you learn building and running these systems
  • Help shape best practices for safe and effective use of AI agents in security operations
  • Contribute to security position papers on emerging technologies -- high-level strategic documents that frame organizational thinking and drive downstream policy and technical guidance
  • Contribute to the AI Cybersecurity Maturity program across domains including application security, training, AI controls and infrastructure, AI discovery and inventory, operations and incident response, and policy and procedure development

Qualifications

Required:

  • Bachelor's Degree in Computer Science, Cybersecurity, or related field with 7 years' experience; or Master's Degree with 6 years' experience; or PhD with 2 years' experience.
  • Experience in cybersecurity, software engineering, or a closely related field
  • Strong Python skills - you can build, debug, and ship production systems
  • Hands-on experience with at least one area of security operation: threat intelligence, detection engineering, incident response, cloud security, or application security
  • Hands-on experience with agentic coding tools (e.g., Claude Code, Cursor, GitHub Copilot, Aider, or similar) as part of your daily development workflow - we expect you to build with agents, not just build agents
  • Working knowledge of LLMs and AI/ML concepts -- you have built something with them, not just read about them
  • Experience integrating APIs and building data pipelines
  • Familiarity with security tooling (SIEM, EDR, vulnerability scanners, cloud security tools)
  • Experience building AI agents or automation systems - you have shipped something, not just experimented
  • Ability to work independently on well-scoped problems and collaboratively on ambiguous ones

Preferred:

  • Familiarity with agent orchestration frameworks and concepts (LangChain, AutoGen, custom frameworks)
  • Experience with cloud platforms (Azure, AWS, GCP) and their AI/ML services
  • Background in threat intelligence, detection engineering, or security automation (SOAR, playbooks)
  • Exposure to adversarial testing or red teaming of AI systems
  • Interest in or experience contributing to security policy, standards, or technical guidance
  • Master's in computer science, Cybersecurity, or related field

Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:

The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.

We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.

This job is eligible to participate in our long-term incentive programs.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law.

AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.

Travel: Yes, 5% of the Time

Pay Range: $109,500 - $208,500 USD

Where We Work: Role is primarily site- or office-based but can occasionally be performed remotely. US Employees must be in the office on Tuesday, Wednesday, and Thursday with flexibility to work remotely on Mondays and Fridays. Three days in the office is the minimum; some individuals or teams may require more in-office days due to meetings, business/project needs or their role.

Capital One
Senior AI Engineer (Red Team, LLM, Prompt Injection…)
Offensive
$177K–$201K
“Our AI Foundations team is forming a brand new AI Red Team to focus on adversarial attacks against AI systems, essentially building AI to attack AI so we can make our systems safer and more robust.”
📍 NYC / SF / San Jose🛠️ AI red-team tooling🗓️ Captured 2026-07-26
Read the full archived posting

Capital One — Senior AI Engineer (Red Team, LLM, Adversarial Attacks, Prompt Injection, Guardrails, Policy Bypass)

NOTE: Verbatim from the archive.org capture (2026-02-11) of Capital One's canonical careers page.

Senior AI Engineer (Red Team, LLM, Adversarial Attacks, Prompt Injection, Guardrails, Policy Bypass)

San Jose, California | San Francisco, California | New York, New York | Cambridge, Massachusetts | McLean, Virginia Pin job

Apply

Category Engineering

Experience Principal Associate

Primary Address San Jose, California

Overview

Senior AI Engineer (Red Team, LLM, Adversarial Attacks, Prompt Injection, Guardrails, Policy Bypass)

Overview:

At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an industry leader in using machine learning to create real-time, personalized customer experiences. Our investments in technology infrastructure and world-class talent — along with our deep experience in machine learning — position us to be at the forefront of enterprises leveraging AI. From informing customers about unusual charges to answering their questions in real time, our applications of AI & ML are bringing humanity and simplicity to banking. We are committed to continuing to build world-class applied science and engineering teams to deliver our industry leading capabilities with breakthrough product experiences and scalable, high-performance AI infrastructure. At Capital One, you will help bring the transformative power of emerging AI capabilities to reimagine how we serve our customers and businesses who have come to love the products and services we build.

Team Description:

The Intelligent Foundations and Experiences (IFX) team is at the center of bringing our vision for AI at Capital One to life. We work hand-in-hand with our partners across the company to advance the state of the art in science and AI engineering, and we build and deploy proprietary solutions that are central to our business and deliver value to millions of customers. Our AI models and platforms empower teams across Capital One to enhance their products with the transformative power of AI, in responsible and scalable ways for the highest leverage impact.

Our AI Foundations team is forming a brand new AI Red Team to focus on adversarial attacks against AI systems, essentially building AI to attack AI so we can make our systems safer and more robust. The team works hands-on with LLMs, guardrails, prompt injection, policy bypass, and end-to-end AI system exploitation across both Internal Foundational and External models. It’s a rare chance to join a team at inception and do deep, impactful work in AI security.

In this role, you will:

Partner with a cross-functional team of engineers, research scientists, technical program managers, and product managers to deliver AI-powered products that change how our associates work and how our customers interact with Capital One.

Design, develop, test, deploy, and support AI software components including foundation model training, large language model inference, similarity search, guardrails, model evaluation, experimentation, governance, and observability, etc.

Leverage a broad stack of Open Source and SaaS AI technologies such as AWS Ultraclusters, Huggingface, VectorDBs, Nemo Guardrails, PyTorch, and more.

Invent and introduce state-of-the-art LLM optimization techniques to improve the performance — scalability, cost, latency, throughput — of large scale production AI systems.

Contribute to the technical vision and the long term roadmap of foundational AI systems at Capital One.

The Ideal Candidate:

You love to build systems, take pride in the quality of your work, and also share our passion to do the right thing. You want to work on problems that will help change banking for good.

Passion for staying abreast of the latest research, and an ability to intuitively understand scientific publications and judiciously apply novel techniques in production.

You adapt quickly and thrive on bringing clarity to big, undefined problems. You love asking questions and digging deep to uncover the root of problems and can articulate your findings concisely with clarity. You have the courage to share new ideas even when they are unproven.

You are deeply Technical. You possess a strong foundation in engineering and mathematics, and your expertise in hardware, software, and AI enable you to see and exploit optimization opportunities that others miss.

You are a resilient trail blazer who can forge new paths to achieve business goals when the route is unknown.

Basic Qualifications:

Bachelor's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 3 years of experience developing AI and ML algorithms or technologies, or a Master's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 1 year of experience developing AI and ML algorithms or technologies

At least 3 years of experience programming with Python, Go, Scala, or Java

Preferred Qualifications:

4 years of experience deploying scalable and responsible AI solutions on cloud platforms (e.g. AWS, Google Cloud, Azure, or equivalent private cloud)

Experience developing, delivering, and supporting AI services

Experience developing AI and ML algorithms or technologies (e.g. LLM Inference, Similarity Search and VectorDBs, Guardrails, Memory) using Python, C++, C#, Java, or Golang

Experience developing and applying state-of-the-art techniques for optimizing training and inference software to improve hardware utilization, latency, throughput, and cost

Capital One will consider sponsoring a new qualified applicant for employment authorization for this position.

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

Cambridge, MA: $161,800 - $184,600 for Senior AI Engineer

McLean, VA: $161,800 - $184,600 for Senior AI Engineer

New York, NY: $176,500 - $201,400 for Senior AI Engineer

San Francisco, CA: $176,500 - $201,400 for Senior AI Engineer

San Jose, CA: $176,500 - $201,400 for Senior AI Engineer

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at theCapital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.

No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City’s Fair Chance Act; Philadelphia’s Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to [email protected]

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Jefferies
VP, Network Security Engineer
Network
$185K–$200K
Screenshot of the Jefferies VP, Network Security Engineer job posting, captured 2026-07-26
Posting as captured 2026-07-26
“Integrating Automation (Python, LLM’s) into the Network Security stack of tools and services… Utilize LLM/AI and automation that build Processes to improve/audit/secure the Jefferies environment from a Network Security & Segmentation perspective.”
📍 Jersey City, NJ🛠️ LLM + network stack🗓️ Captured 2026-07-26
Read the full archived posting

Jefferies — VP, Network Security Engineer

NOTE: Verbatim from Jefferies' own LinkedIn job posting (live 2026-07-26). Canonical ATS page (jefferies.tal.net) is hash-routed/js-rendered — needs browser capture.

VP, Network Security Engineer

Jefferies | Jersey City, NJ (On-site)

\*\*Job Description

\*\*Jefferies is seeking a Network Security Engineer to join as a Vice President in the Information Security team with accountability for researching, designing, engineering, implementing, and supporting network security. This role is hands-on and requires deep technical expertise across network security and segmentation, automation, DevOps practices and emerging AI/LLM driven capabilities. The engineer will work closely with our infrastructure, application, and security teams to implement our existing and future network security & segmentation tools, drive automation and self-service models and influence security architecture decisions while protecting the firm’s assets.

The ideal candidate will be knowledgeable with Integrating Automation (Python, LLM’s) into the Network Security stack of tools and services. They will also have experience in: Management of Next-Generation Firewalls (Palo Alto & ZScaler preferred), Network Segmentation (Illumio preferred) WAF, IPS, NDR, NAC, etc. Most importantly, the ideal candidate must be extremely eager to learn new technologies and able to execute. The role will also have an opportunity to work with subject matter experts not only within security, but across infrastructure, network, development, and business teams.

We look to hire people who are comfortable in working with minimal supervision as part of a team that has consistently delivers ground-breaking and innovative solutions in one of the most exciting and fast-moving areas of the financial markets vertical. We need people who can prioritize and effectively communicate complex issues.

\*\*Primary Responsibilities

\*\*The Network Security Engineer will play a critical role in the architecture, development, deployment, and management of Jefferies’s Network Security Program as part of the global information security team.

Utilize LLM/AI and automation that build Processes to improve/audit/secure the Jefferies environment from a Network Security & Segmentation perspective.

Work in conjunction with the Networking Security Engineering team on the architecture, deployment, management of Jefferies global network segmentation deployment and strategy with the focus on security architecture

Deploy and implement network security through the Palo Aito Firewalls, and the llumio product for Applications and Endpoints.

Work independently and part of a team to analyze and troubleshoot escalated issues for Palo Alto Firewalls, GlobalProtect VPN, Cloudflare WAF, Network Detection and Response technologies, Network Access Control, ISE, Web-Browser Isolation, Illumio, Network Security Policy Management, and other related Network Security Platforms. Efficiently troubleshoot/prioritize issues and create a culture of root cause analysis.

Work closely with the Network Engineering and Operations teams, the Security Engineering and Operations teams to support and integrate security at every level into the network

Work with Infrastructure and Applications Teams to align the Network Security Policies to the needs and expectations of each Team and the Company as a whole.

\*\*Required Background

\*\*

10+ years of technical experience in networking, network security.

Experience with Automation, Python, LLM’s

Working knowledge on building and implementing a network automation design that automates networking tasks across multiple vendors and platforms.

Significant experience with Computer Networks, Firewalls (Palo Alto) including GlobalProtect, Security Policies, Micro-Segmentation(Illumio), WAF (Cloudflare or equivalent), NAC (Cisco ISE or equivalent), , etc Proficient with network troubleshooting tools (sniffer, syslog, NetFlow, TCPDUMP, Wireshark etc.)

Demonstrated knowledge with Intrusion Detection, Incident Response, Data Encryption, Network Access Controls, Threat Management, and proper IT related Security Controls.

Working knowledge of the OSI model, subnetting, including CIDR notation

Manage multiple projects simultaneously and can adapt to changing business needs

Work well with cross functional global and remote teams

Self-disciplined, self-starter who can provide leadership and mentor others while resolving complex incidents and delivering projects

Ability to analyze complex problems, propose effective solutions and understand and apply business vision and direction

Ability to be called upon 24/7 in case of emergencies

Ability and willingness to learn new things in a fast-paced environment

\*\*Desirable Skills

\*\*

Hands-on experience deploying and managing an Illumio environment. Illumio Core Assosciate/Specialist/Expert: SaaS or On-Prem, CCNA/CCNP Routing & Switching, Palo Alto Networks Security certifications (PCSNE), Security+, CCNA Security, or CISSP.

Previous experience with Checkpoint, Fortinet, Proofpoint, Cloudflare, F5 Silverline, SSL Certificate management, Palo Alto Networks Prisma Access, or other Zero Trust/SASE products a plus.

Primary Location Full Time Salary Range of $185,000 - $200,000.

\*\*About Us

\*\*Jefferies is a leading global, full-service investment banking and capital markets firm that provides advisory, sales and trading, research, and wealth and asset management services. With more than 40 offices around the world, we offer insights and expertise to investors, companies, and governments.

At Jefferies, we are committed to building a culture that provides opportunities for all employees regardless of our differences and supports a workforce that is reflective of the communities where we work and live. As a result, we are able to pool our collective insights and intelligence to provide fresh and innovative thinking for our clients.

Jefferies is committed to creating and sustaining a workforce that welcomes individuals from all backgrounds to apply. Our employment decisions are made without regard to race, creed, color, national origin, ancestry, religion, pregnancy, age, medical condition, physical or mental disability, marital status, domestic partner status, sex, sexual orientation, gender, gender identity or expression, veteran or military status, genetic information, reproductive health decisions, or any other factor protected by applicable law. We are committed to hiring the most qualified applicants and complying with all federal, state, and local equal employment opportunity laws. As part of this commitment, Jefferies will extend reasonable accommodation to individuals with disabilities, as required by applicable law.

The salary offered will take into consideration an individual’s experience level and qualifications. In addition to salary, Jefferies Financial Group is proud to offer a comprehensive benefits package to eligible, full-time employees or part-time employees, who are scheduled to work at least 30 hours or more per week, including an annual discretionary incentive and retention bonus, competitive employee benefits, including: medical, dental & vision coverage; 401(k); life, accident, and disability insurance; and wellness programs. Jefferies also offers paid time off packages that include planned time off (e.g., vacation), unplanned time off (e.g., sick leave), and paid holidays, and for full-time employees, paid parental leave.

DISQO
Senior Security Engineer
Cloud
$180K–$200K
Screenshot of the DISQO Senior Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Apply AI to scale Tier-1 triage, alert enrichment, IR draft communications, and detection content authoring… Use AI coding agents (Claude Code, Cursor, Copilot) as part of your default workflow, not as an experiment.”
📍 Los Angeles, CA🛠️ Claude Code · Cursor🗓️ Captured 2026-07-27
Read the full archived posting

DISQO — Senior Security Engineer

Senior Security Engineer

Los Angeles, CA

DISQO is a leading provider of advertising intelligence, measuring brand and performance outcomes across every media channel to power data-driven marketing decisions. Trusted by 500+ of the world’s largest brands and 150+ agency and media partners, and recognized by Inc., Deloitte, Ad Age, Digiday, Forbes, and Cynopsis, DISQO is redefining the power of measurement in advertising.

Joining DISQO Nation means being part of a team that moves fast, thinks boldly, and is passionate about solving meaningful problems. Innovation isn't just something we talk about, it's how we operate. We challenge assumptions, embrace new ideas, and continuously push ourselves to build better solutions for our customers and each other.

Our values guide how we work and win together. We believe in winning as one team, fostering a culture of collaboration, trust, and shared accountability. We pursue outsized impact by focusing on opportunities that drive meaningful results for our customers and our business. We champion the customer by putting their needs at the center of every decision and delivering solutions that create real value. And we are relentlessly all in, bringing energy, passion, and commitment to every challenge, every day.

If you're energized by high-growth environments, motivated by innovation, and excited by the opportunity to do impactful work alongside talented, driven teammates, you'll feel right at home at DISQO.

DISQO is hiring a Senior Security Engineer to take definitive ownership of our comprehensive security posture, encompassing both AWS cloud and endpoint security. This critical role leads day-to-day security operations across our platform, which includes a high-throughput AWS environment that processes billions of measurement signals. We rely heavily on AI-assisted tooling to enable a small, effective security team.

This is a hands-on individual contributor role. You will harden our AWS footprint, run detection and incident response, and build automations that turn repetitive security work into code. You will be expected to use AI coding agents (Claude Code, Cursor, or similar) as part of your default workflow.

You will report to the Director of Platform and partner closely with Engineering, IT, Product, and Legal. No direct reports. You influence through designs, code, reviews, and the systems you ship.

Position Summary:

As Senior Security Engineer, you are the technical owner of DISQO's security posture, encompassing both cloud and endpoint environments. You set the technical bar for security and security operations, driving the implementation of Zero Trust principles across our infrastructure and employee devices. On the cloud side, you own AWS identity, network, data, and account-level controls. On the operations side, you manage detection engineering, alert triage, incident response, and vulnerability management. As an AI-enabled engineer, you leverage coding agents and automation to build tools, agents, and integrations that compress manual toil into seconds, scaling the security practice.

You will work with autonomy on cross-functional initiatives, drive architectural decisions for security-critical systems, and help build a forward-leaning, AI-native security practice.

What you will do:

  • AWS Cloud Security:

-

Own the security posture of our AWS environment: IAM, networking, encryption, KMS, secrets management, and multi-account governance.

-

Operate AWS-native security services: GuardDuty, Security Hub, Config, IAM Access Analyzer, Macie, Inspector, CloudTrail, and Control Tower.

-

Design and review secure-by-default patterns for new services. Provide security guidance on Terraform, CloudFormation, and CDK changes.

-

Drive identity, network, and data perimeter strategy. Reduce blast radius and enforce least privilege across accounts.

-

Harden container, serverless, and Kubernetes (EKS) workloads where they touch sensitive data.

  • Security Operations:

-

Run day-to-day SecOps: detection engineering, alert triage, threat hunting, and incident response.

-

Tune and operate the SIEM, SOAR, and EDR stack (e.g., CrowdStrike). Author and maintain detections as code.

-

Drive the implementation of Zero Trust principles and manage endpoint security for employee devices, including local admin removal for employees handling customer data.

-

Lead incident response end-to-end: containment, forensics, root cause, customer comms, and blameless postmortems.

-

Run vulnerability management and patching cadence; track and drive remediation SLAs.

-

Build runbooks, on-call playbooks, and tabletop exercises that keep the team sharp.

  • AI-Enabled Engineering:

-

Use AI coding agents (Claude Code, Cursor, Copilot, or similar) daily to accelerate security engineering work.

-

Build automations and small services that turn manual security work into repeatable, code-defined workflows.

-

Apply AI to scale Tier-1 triage, alert enrichment, IR draft communications, and detection content authoring.

-

Help shape security guardrails for AI tooling and AI-related workloads as they emerge in our stack.

  • Governance, Risk & Compliance:

-

Support SOC 2 Type I/II and similar audits: evidence collection, control mapping, and customer questionnaire response.

-

Run third-party and vendor security assessments.

-

Manage security awareness training and the anti-phishing program.

-

Manage relationships and contracts with security vendors (MSSP, EDR, WAF, vulnerability management, etc.).

  • Cross-functional Partnership:

-

Champion the DevSecOps mindset and foster a security-first culture across engineering teams.

-

Be the go-to technical reviewer for new product surfaces, infrastructure designs, and data flows.

-

Partner with Legal and Privacy on regulatory requirements, control implementation, and audit readiness.

-

Mentor engineers on secure coding, threat modeling, and cloud security best practices.

What we're looking for:

  • Required:

-

Experience: 6+ years in cloud security, security operations, or infrastructure security, with hands-on production experience (not policy-only).

-

AWS Depth: Strong working knowledge of AWS security: IAM, VPC, KMS, GuardDuty, Security Hub, CloudTrail, Config, and multi-account governance.

-

Security Operations: Hands-on security incident response experience. You have led real investigations, written postmortems, and tuned detections in a SIEM/SOAR.

-

Coding Ability: Comfortable scripting and building small services in Python, Go, or similar. You ship automation, not just tickets.

-

AI-Enabled Workflow: Use AI coding agents (Claude Code, Cursor, Copilot) as part of your default workflow, not as an experiment.

-

Frameworks: Working knowledge of NIST CSF, CIS Controls, OWASP Top 10, and MITRE ATT&CK.

-

Experience implementing cloud-native detection and monitoring

-

Audit experience: SOC 2, ISO 27001, PCI, or similar.

-

Hands-on experience with endpoint security, including EDR (e.g., CrowdStrike), local admin removal, and device management/hardening.

  • Nice to have:

-

Detection engineering and SOAR/automation experience at scale.

-

IaC security: Terraform, CDK, or CloudFormation, plus CI/CD security gates and policy-as-code (OPA, Cedar).

-

Container and Kubernetes (EKS) security.

-

Multi-cloud exposure (GCP or Azure) in addition to AWS.

-

Familiarity with AI/LLM security (OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF). Useful but not required.

-

Certifications: AWS Security Specialty, CISSP, CCSP, GCIH, GCIA, GCFA, or OSCP.

-

Built custom MCP servers, agent frameworks, or in-house security tooling.

-

Open-source contributions to cloud security or detection engineering tooling.

#LI-MV1

At DISQO, we pride ourselves on having a positive, performance-oriented workplace that includes a flexible hybrid approach, competitive medical benefits, and an amazing vacation policy. Read more about our culture on Glassdoor.

You can learn more about what’s happening at DISQO by visiting the DISQO Company Blog.

Perks & Benefits:

·100% covered Medical/Dental/Vision for employee, competitive dependent coverage

·Stock options

·401K

·Generous PTO policy

·Team offsites, social events & happy hours

·Life Insurance

·Health FSA

·Catered lunch and fully stocked kitchen

·Paid Maternity/Paternity leave

·Disability Insurance

·Travel Assistance Program

·24/7 Counseling Services offered to Employees

Note: The benefits noted above are for full time US based employees only.

DISQO is an equal opportunity employer. Discovery, innovation, and growth are possible when we open ourselves to new possibilities, perspectives, and approaches. That’s why, at DISQO, we welcome, support, and empower individuals from diverse backgrounds. Exceptional teams are rooted in extraordinary people, each with a unique story and a compelling set of skills. DISQO does not discriminate against employees based on race, color, religion, sex, national origin, gender identity or expression, age, disability, pregnancy (including childbirth, breastfeeding, or related medical condition), genetic information, protected military or veteran status, sexual orientation, or any other characteristic protected by applicable federal, state or local laws.

*Recruiting firms that submit resumes to DISQO without first entering into a written contract will not be entitled to any compensation on candidates referred by that firm.

Salary range: $180,000 – $200,000 per year (USD)

Coinflow
Security Engineer
AppSec
$145K–$195K
Screenshot of the Coinflow Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“we use Claude Security and Claude Code as force multipliers for internal pentesting, code review, and remediation.”
📍 Chicago, IL🛠️ Claude Security · Claude Code🗓️ Captured 2026-07-27
Read the full archived posting

Coinflow — Security Engineer

Security Engineer

Chicago

About Coinflow

Coinflow is the next-generation payment service provider revolutionizing global financial infrastructure with stablecoins, AI-driven fraud prevention, and instant settlement. Coinflow enables businesses to grow faster with instant settlement, fraud & chargeback indemnity, global pay-ins, multi-currency FX, and unified payouts. Founded in 2023, the company serves marketplaces, fintechs, remittance providers, gaming platforms, and ecommerce merchants worldwide.

Since our seed round in 2024, we’ve achieved 23x revenue growth and scaled to multi-billion-dollar annual transaction volume. In response to this growth, Coinflow announced a $25M Series A https://coinflow.cash/blog/coinflows-series-a in October 2025—led by Pantera Capital, CMT Digital, Coinbase Ventures, Jump Crypto, and Reciprocal Ventures—accelerating our mission to power the world’s fastest-moving businesses with innovative, reliable global payments.

Coinflow is proudly headquartered in Chicago, IL. Learn more at coinflow.cash http://coinflow.cash.

About The Role

We're hiring for a Security Engineer to own the day-to-day defensive and offensive security posture of Coinflow. You'll build the SecOps backbone, hunt for weaknesses in our own stack before anyone else does, and partner with engineering to keep our SDLC fast and secure. This role reports to the CTO and has a direct line into every part of the engineering org.

You'll be hands-on with modern AI-native security tooling — we use Claude Security and Claude Code as force multipliers for internal pentesting, code review, and remediation. If you're excited about being one of the first security engineers building this way, you'll fit in well here.

What You'll Own

- SIEM & SecOps Dashboard: Stand up and operate our SIEM. Build out the SecOps dashboard that gives engineering, compliance, and leadership a real-time picture of our security posture — alerts, anomalies, auth events, infrastructure changes, and audit-ready evidence in one place.

- Internal Penetration Testing: Run continuous internal pentests against Coinflow services, APIs, infrastructure, and embedded SDKs. Use Claude Security and Claude Code to scale your coverage — automate reconnaissance, fuzzing, code review, and exploit development. Document findings, drive remediation, and measure mean-time-to-fix.

- Vulnerability & Dependency Management: Own the vulnerability lifecycle end-to-end. Triage CVEs across our npm, cargo, and other ecosystems. Build the automation that keeps packages patched without breaking production — including Dependabot tuning, lockfile hygiene, and gated auto-merge for low-risk upgrades.

- Secure Development Lifecycle: Monitor and improve how we ship code. Define secure-by-default patterns for new services, review threat models for high-risk changes, integrate SAST/DAST/secret scanning into CI, and make the secure path the fast path for engineers.

- Compliance Partnership: Work alongside our compliance function to produce the evidence, controls, and monitoring artifacts that PCI DSS, SOC 2, ISO 27001, and DORA auditors need — without turning engineering into a paperwork shop.

What We're Looking For

- 4+ years in a security engineering, product security, or DevSecOps role, ideally at a fintech, payments company, or other regulated environment

- Strong hands-on offensive skills — you've broken real systems, not just run scanners. Comfortable with web app, API, cloud, and infrastructure pentesting

- Production experience operating a SIEM (Datadog, Splunk, Elastic, Panther, or similar) and building dashboards that engineers actually use

- Fluency in TypeScript/Node and at least passing comfort with Rust, Go, or Python — enough to read our code, find bugs in it, and write the tooling to find more

- Experience with vulnerability management at scale: CVE triage, SCA tooling, dependency upgrade automation

- Comfort working with AI-native tooling (Claude Code, Claude Security, or similar) as a daily driver — or genuine excitement to start

- A bias toward shipping. We'd rather have a working v1 of a control today than a perfect v3 next quarter.

The base salary range for this role is $145,000 to $195,000 USD. The actual base salary offered depends on a variety of factors, including but not limited to experience, education, skills, qualifications and business needs.

In addition, the employee who fills this role will be eligible for an equity grant, allowing you to share in the long-term success of the company. You will also have access to a wide array of benefits, including health and wellness benefits, 401(k) savings plan, and flexible time off.

Join the team rewriting how money moves worldwide—and become a driving force in the $194 trillion cross-border payments market.

Lumin Digital
Detection Engineer
Detection & SOC Remote
$155K–$180K
Screenshot of the Lumin Digital Detection Engineer job posting, captured 2026-07-26
Posting as captured 2026-07-26
“Demonstrated experience using AI-assisted development tools (e.g., Claude Code, Codex CLI, or similar) in a professional engineering or security workflow is required.”
📍 Remote — US🛠️ Claude Code · Codex CLI🗓️ Captured 2026-07-26
Read the full archived posting

Lumin Digital — Detection Engineer

Remote — United States · ERM – Risk · Full Time · Remote

Basic Function

We are hiring a Detection Engineer to sit at the intersection of security operations and security engineering. This is not a traditional SOC analyst seat. AI-driven triage and SOAR platforms now handle the bulk of routine alert processing, and the analysts who thrive in the modern SOC are the ones who build the detections those platforms execute, author the automation playbooks that accelerate response, and hunt proactively for threats that evade automated pipelines.

You will own the full detection lifecycle—from threat intelligence intake and hypothesis formation through rule authoring, testing, deployment, and continuous tuning. You will also design and maintain SOAR playbooks and integrations that keep the SOC operating at machine speed, and you will serve as a hands-on incident responder when complex or novel threats demand human judgment and coordinated response.

This role operates with a high degree of autonomy. There is no daily task list handed to you — you are expected to self-direct priorities, identify gaps, and drive improvements without managerial prompting. Candidates who thrive here are self-directed, comfortable defining their own work, and consistently deliver without close supervision.

Essential Functions, Responsibilities, Experience

Detection Engineering

  • Design, develop, tune, and maintain high-fidelity detection logic, including correlation rules, detection-as-code pipelines, and behavioral analytics, across SIEM, EDR, NDR, and cloud-native platforms, applying the judgment and pattern recognition that comes from deep hands-on experience with attacker behavior and enterprise environments.
  • Apply detection-as-code principles: version detection logic in Git, test in CI/CD pipelines, and deploy through automated workflows, including the use of Terraform, Sigma, Yara, and platform-specific query languages.
  • Map detection coverage to MITRE ATT&CK and maintain a living detection coverage matrix; identify and close gaps proactively.
  • Translate threat intelligence reports, red team findings, and incident post-mortems into actionable detection logic.
  • Manage signal-to-noise ratio across detection platforms through iterative rule logic refinement, suppression tuning, and threshold calibration, with the goal of maximizing automated fidelity and reducing analyst intervention.

SOAR, Automation & Response Orchestration

  • Design and build automated response playbooks and enrichment workflows using SOAR platforms, enabling the system to triage, enrich, and respond to high-confidence alert classes without manual analyst intervention.
  • Integrate SOAR with SIEM, EDR, threat intelligence platforms, ticketing systems, and cloud APIs via REST APIs and custom connectors.
  • Build tooling and scripts to accelerate the development of detection pipelines, log parsing, data normalization, and context enrichment.
  • Evaluate, configure, and optimize AI/ML-assisted triage capabilities; serve as the human-in-the-loop auditor validating AI-generated investigation narratives.
  • Maintain operational documentation, including runbooks, playbook logic diagrams, and integration dependency maps.

On-Call & Alert Operations

  • Participate in a rotating on-call schedule. During on-call weeks, primary responsibilities shift to triaging and reviewing incoming alerts, assessing events for incident response action, and tuning out false positive content to maintain alert fidelity. Ad hoc compliance requests will regularly interrupt planned work — this is expected and should be prioritized accordingly.

Incident Response & Threat Hunting

  • Serve as an escalation point for complex or novel security incidents, performing a deep-dive investigation across endpoint, network, identity, and cloud telemetry.
  • Contribute to the full incident response lifecycle: detection, analysis, containment, eradication, recovery, and lessons-learned documentation.
  • As part of the team's rotating duty, lead incident responses as the incident commander as needed, coordinating response activities across internal teams, vendors, and executive stakeholders with clarity and authority following established playbooks and structured approaches.
  • Conduct hypothesis-driven threat hunts using behavioral analytics, anomaly detection, and adversary TTP modeling.
  • Collaborate with team exercises to validate detection and response effectiveness; incorporate findings into the detection backlog.

Collaboration, Compliance & Continuous Improvement

  • Collect, organize, and present evidence of incident response lifecycle activities to support client due diligence requests and audits.
  • Contribute to security metrics reporting for leadership, providing timely and accurate measures such as case statistics, detection coverage, MTTD/MTTR, and TPR/FPR trends.
  • Collaborate with risk management and regulatory compliance to align detection and response capabilities with regulatory requirements and control frameworks relevant to financial services.
  • Perform other duties as assigned

Position Specifications

Education

  • Associate degree in Computer Science, Management Information Systems, Information Assurance, Information Security, Cybersecurity, or related field required; or equivalent self-study with demonstrated command of the knowledge, skills, and abilities outlined in this job description.
  • Certifications preferred: GCIH, GCIA, GCDA, GSOC, or similar detection engineering and incident response-focused credentials.

Experience — Required

  • Five (5) years of experience in a relevant technology domain, including software engineering, information technology, systems administration, or information assurance required.
  • Five (5) years of demonstrated experience in detection engineering, security operations, or threat detection as a detection engineer, security engineer, high-tier SOC analyst, or similar role required.
  • Proven hands-on experience with SIEM platforms (e.g., Elastic Security, or similar), including writing and tuning detection rules.
  • Hands-on experience building and maintaining playbooks in at least one SOAR platform (e.g., Tines, or similar).
  • Demonstrated experience using AI-assisted development tools (e.g., Claude Code, Codex CLI, or similar) in a professional engineering or security workflow is required.
  • Demonstrated experience working with AI tools in production security or engineering environments — including deploying, validating, or operationalizing AI-assisted capabilities (e.g., AI-driven triage, ML-based detection, or LLM-integrated workflows) in live operational contexts — is strongly preferred.
  • Experience with Git-based detection-as-code workflows, including version-controlled detection rules, test-driven development, and automated deployment, is required.
  • Experience leading or commanding security incident response efforts, including cross-functional coordination and stakeholder communication during active incidents, is required.
  • Experience with Amazon Web Services operational environments and related security offerings (e.g., GuardDuty, Inspector, Security Hub, and Security Lake) is required.

Experience — Preferred

  • Hands-on experience with specific tooling in our stack: Uptycs, TheHive, SentinelOne.
  • Familiarity with fintech or banking security environments, including PCI-DSS compliance context.

Knowledge, Skills, & Abilities

  • Working proficiency with AI-assisted development tools (e.g., Claude Code, Codex CLI, or similar) is required. Candidates must demonstrate the ability to integrate these tools into day-to-day detection engineering and scripting workflows — including generating, reviewing, and iterating on AI-assisted code as part of a collaborative team environment.
  • Working proficiency in Python and shell scripting.
  • Deep working knowledge of MITRE ATT&CK techniques and tactics, the 'Cyber Kill Chain', and the 'Pyramid of Pain'; ability to map adversary TTPs to detection strategies.
  • Deep technical knowledge of detection engineering principles, detection-as-code practices, SIEM architecture, and SOC operations in cloud-hosted environments.
  • Strong hands-on experience with SOAR platforms and the ability to design, build, and maintain automated enrichment and response workflows.
  • Strong hands-on experience with endpoint detection and response (EDR) tools, such as SentinelOne and Uptycs.
  • Engineering fluency with Git-based workflows: version control, branching strategies, pull request reviews, and CI/CD pipeline integration for detection content.
  • Strong understanding of cloud security principles, including containerization, orchestration, and IAM/KMS.
  • Ability to query and sift through large volumes of security-related data to surface critical events of interest and meaningful insights and trends.
  • Ability to prioritize under pressure, exercise sound independent judgment, and maintain confidentiality with sensitive information.
  • Calm, decisive approach with appropriate urgency and command authority during active security events.
  • Strong communication, interpersonal, and presentation skills, with the ability to convey technical findings clearly to both technical and non-technical audiences.
  • Ability to work remotely while maintaining high productivity, collaboration, and effectiveness with minimal supervision.
  • Strong drive to continuously improve detection fidelity, automation coverage, response speed, and overall security posture in a rapidly evolving field.
  • Must be able to pass required background checks to access sensitive information.

Travel

Minimal, generally 12 days or less per year; approximately 2 team on-site meetings per year.

Compensation

$155,000 - $180,000 a year

Life at Lumin Digital

Lumin Digital is a trailblazer in digital banking solutions, driven by a unique approach to technology, service, and people. We empower credit unions and banks by creating cutting-edge digital experiences that continuously serve, engage, and grow their membership base — and as a 100% cloud-native company, we're purpose-built to unlock the full advantages of the cloud for financial institutions and their users.

Heartflow
Application Security Engineer
AppSec
$145K–$180K
Screenshot of the Heartflow Application Security Engineer job posting, captured 2026-07-26
Posting as captured 2026-07-26
“Experience using AI code tools such as Claude Code and Github Copilot for development and security testing.”
📍 San Francisco, CA🛠️ Claude Code · Copilot🗓️ Captured 2026-07-26
Read the full archived posting

Heartflow — Application Security Engineer

Job Application for Application Security Engineer at Heartflow

Banner

Back to jobs

Application Security Engineer

San Francisco, California

Apply

Heartflow is a medical technology company advancing the diagnosis and management of coronary artery disease, the #1 cause of death worldwide, using cutting-edge technology. The flagship product—an AI-driven, non-invasive cardiac test supported by the ACC/AHA Chest Pain Guidelines called the Heartflow FFRCT Analysis—provides a color-coded, 3D model of a patient’s coronary arteries indicating the impact blockages have on blood flow to the heart. Heartflow is the first AI-driven non-invasive integrated heart care solution across the CCTA pathway that helps clinicians identify stenoses in the coronary arteries (RoadMap™Analysis), assess coronary blood flow (FFRCT Analysis), and characterize and quantify coronary atherosclerosis (Plaque Analysis). Our pipeline of products is growing and so is our team; join us in helping to revolutionize precision heartcare.

Heartflow is a publicly traded company (HTFL) that has received international recognition for exceptional strides in healthcare innovation, is supported by medical societies around the world, cleared for use in the US, UK, Europe, Japan and Canada, and has been used for more than 500,000 patients worldwide.

We are looking for an Application Security Engineer to work with our engineering team to ensure security is an integral part of our Software Development Lifecycle (SDLC). In this role, you’ll have the chance to use your security and software development background to protect patients as we build products that leverage AI to improve healthcare. If you enjoy working with talented engineers to solve complex technical challenges and want to see your work make a direct difference in patient outcomes, we encourage you to apply. This role is a hybrid, requiring three days a week in our San Francisco office.

What You’ll Do:

Partner with the engineering team to provide hands-on technical guidance to software developers throughout the vulnerability remediation lifecycle. Perform secure code reviews, validate false positive determinations, coach developers on effective remediation strategies, threat model our products and carry out essential parts of a secure SDLC.

Drive vulnerability identification using SAST, DAST, SCA and in-house AI tooling and manage external penetration testing.

Support engineering team on vulnerability management, including risk assessment, remediation, improving identification of vulnerabilities and translate security and privacy requirements into technical requirements.

Build security awareness through training on secure coding practices, security standards and latest security threats.

What You Bring:

Security Communication – Ability to reason about risk in complex environments and communicate that risk to technical and non-technical audiences. Experience leading training, speaking internally/externally about security projects valued.

Programming Skills  – Experience writing and maintaining code in at least one modern programming language and with at least one scripting language (Heartflow uses C++/Python). Comfortable with testing frameworks and CI/CD pipelines.

AI Development Tools – Experience using AI code tools such as Claude Code and Github Copilot for development and security testing.

Education & Experience  – BS in Computer Science (or related degree) or relevant certifications and equivalent experience. 5+ years of total experience with at least 1 year working in Application Security or performing security tasks in a development role.

Securing SDLC – Have contributed to secure SDLC activities, including threat modeling, code review, security testing and vulnerability management.

Knowledge of Modern AI Security Threats – Experience working with or ability to discuss current AI threats for both machine learning and generative AI.

What Helps You Stand Out:

Healthcare Experience – Current knowledge of HIPAA, HITRUST and the complexities of working in a regulated environment. Experience with Software as a Medical Device (SaMD) is especially valuable.

Infrastructure as Code & Cloud – Familiarity with AWS (or equivalent cloud providers) and configuration tools (Terraform, Chef, Ansible). Experience with containerization (Docker, Kubernetes) and orchestration (GitHub Actions or similar).

A reasonable estimate of the base salary compensation range is $145,000 to $180,000 per year, bonus, and equity. #LI-IB1

Heartflow is an Equal Opportunity Employer. We are committed to a work environment that supports, inspires, and respects all individuals and do not discriminate against any employee or applicant because of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law. This policy applies to every aspect of employment at Heartflow, including recruitment, hiring, training, relocation, promotion, and termination.

Positions posted for Heartflow are not intended for or open to third party recruiters / agencies. Submission of any unsolicited resumes for these positions will be considered to be free referrals.

Heartflow has become aware of a fraud where unknown entities are posing as Heartflow recruiters in an attempt to obtain personal information from individuals as part of our application or job offer process. Before providing any personal information to outside parties, please verify the following: A) all legitimate Heartflow recruiter email addresses end with “@heartflow.com” and B) the position described is found on our careers site at www.heartflow.com/about/careers/.

OpenAI
Manager, Third-Party Risk Management (GTM)
GRC
$162K–$180K
“Explore and deploy AI tools to enhance and streamline OpenAI's trade compliance efforts.”
📍 San Francisco, CA🛠️ AI-driven GRC🗓️ Captured 2026-07-26
Read the full archived posting

OpenAI - Manager, Third-Party Risk Management (GTM)

Hybrid | San Francisco, CA, USA

(Full posting text below is verbatim from the Built In San Francisco mirror, which preserved the posting after removal from OpenAI's careers site on Jun 17, 2026.)

About the Team

OpenAI is building a world-class customer and ecosystem risk program to support our global growth across enterprise, API, advertising, and strategic partnership channels. We're hiring a Third Party Risk Manager (GTM) to help scale customer risk operations, KYC/KYB onboarding, and sanctions screening across a rapidly expanding global customer and supplier ecosystem.

About the Role

This role is highly operational and cross-functional. You'll work closely with Legal, Security, Finance, Procurement, GTM Systems, and Sales teams to operationalize scalable risk controls without slowing the business down. You'll help design and improve onboarding workflows, drive customer and supplier sanctions screening operations, support complex escalations, and integrate risk tooling into business processes at scale.

We're looking for someone who combines operational rigor with strong judgment, systems thinking, and the ability to operate effectively in ambiguous, fast-moving environments.

This role is based in San Francisco, CA. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.

In this role, you will:

  • Lead day-to-day execution of customer and advertiser risk reviews, KYC/KYB onboarding, sanctions screening, and enhanced due diligence workflows across global customer populations.
  • Manage lifecycle risk operations from onboarding through monitoring, escalation, reassessment, and offboarding for customers, advertisers, and strategic counterparties.
  • Oversee sanctions screening operations across both customer and supplier populations, including development of automated screening workflows, escalation management, adverse media review, and disposition governance.
  • Build and operationalize scalable customer risk and sanctions screening procedures and governance frameworks aligned to OpenAI's risk tolerance and evolving regulatory expectations.
  • Partner closely with Legal, Security, Procurement, Finance, and GTM teams to integrate risk controls into onboarding and operational workflows.
  • Lead integration and optimization efforts across systems such as Salesforce, Persona, screening providers, workflow automation tools, and internal platforms.
  • Develop dashboards, metrics, SLAs, and reporting mechanisms to provide leadership visibility into customer risk operations and screening effectiveness.
  • Support investigations and escalations involving sanctions concerns, suspicious activity, fraud indicators, regulatory inquiries, or customer misuse scenarios.
  • Build repeatable operational playbooks for onboarding, sanctions screening, adverse media review, and escalation handling.
  • Identify opportunities to automate workflows and improve operational scalability without compromising control effectiveness.
  • Explore and deploy AI tools to enhance and streamline OpenAI's trade compliance efforts.

You might thrive in this role if you have:

  • 6+ years of experience in customer risk operations, KYC/KYB, AML, sanctions compliance, third-party risk management, or related operational risk functions, with a particular focus on building scalable sanctions compliance processes.
  • Experience operating scalable onboarding, screening, and case management workflows in high-growth environments.
  • Strong understanding of sanctions regimes, KYC/KYB requirements, AML concepts, export controls, adverse media screening, and customer due diligence frameworks.
  • Sophisticated understanding of how U.S. and international sanctions laws apply to multinational companies operating globally.
  • Experience integrating or optimizing systems such as Persona, Salesforce, OneTrust, workflow automation platforms, or similar operational tooling.
  • Strong analytical and operational problem-solving skills with the ability to make risk decisions in ambiguous situations.
  • Excellent communication and stakeholder management skills, with the ability to balance business enablement and effective control execution.
  • Demonstrated ownership mindset with strong attention to detail and ability to operate independently in fast-paced environments.
  • Experience supporting high-growth technology, AI, fintech, advertising, payments, marketplace, or platform businesses.
  • Experience building customer risk or KYC operations programs from early-stage or scaling environments.
  • Familiarity with enterprise customer onboarding and global go-to-market operations.
  • Experience working with sanctions screening vendors, adverse media tooling, or identity verification providers.
  • Certifications such as CAMS, CRCM, CTPRP, or similar.

Compensation Range: $162K - $180K USD

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see OpenAI's Affirmative Action and Equal Employment Opportunity Policy Statement.

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form. No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link.

OpenAI Global Applicant Privacy Policy

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Boom
Founding Security Engineer
AppSec
$120K–$180K
Screenshot of the Boom Founding Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“You're already running AI coding agents autonomously, including overnight, to ship and drive your own efficiency. Daily Claude Code use is table stakes.”
📍 Austin, TX🛠️ Claude Code daily🗓️ Captured 2026-07-27
Read the full archived posting

Boom — Founding Security Engineer

> Verbatim text below scraped from the canonical Wellfound posting, 2026-07-27. Screenshot is of the TheLadders mirror because Wellfound blocks the screenshot renderer.

Founding Security Engineer

$120k – $180k • 0.01% – 0.15% | Austin | Full Time

Job Location: Austin

Visa Sponsorship: Not Available

Relocation: Not Allowed

Hiring contact: Michael Bidak

About the job

Our mission

Boom is on a mission to level the playing field for the 110+ million renters in the US by making housing more flexible, affordable, and rewarding. Boom is building a suite of rental financial services for renters and property managers, including tenant screening, rent payment reporting, rent reporting-as-a-service, and a number of integrations with the largest property management systems (PMS). Boom serves renters through the Boom App and property managers via the Boom Platform. Now serving thousands of renters, Boom is led by second-time founder Rob Whiting (ex-BCG, Rubicon). It's backed by investors such as Starting Line, Clocktower Ventures, Gilgamesh Ventures (Petal co-founders), and angels such as William Hockey and Zach Perret (Co-founders of Plaid) and Harry Stebbings. Boom has been profiled by Inman, Business Insider, HousingWire, and more.

Opportunity

We're expanding our engineering team to meet the growing demands of our B2B partners and B2C users. Boom handles sensitive consumer data at scale -- credit, identity, income, an other verification data flow through our platform every day, and we report rent payments to the credit bureaus on behalf of hundreds of thousands of residents. As we move from Seed to Series A and beyond, we're hiring our Founding Security Engineer to harden our platform, mature our security posture, and partner with product engineering and infrastructure teams to bake security into how we build.

This role offers the chance to work closely with our CPO, engineering leadership, and operations, owning security as a function from the ground up. For this role, we are hiring for candidates in Austin, TX, where our leadership and product team is located. Comp range listed is directional and adjustable +/- based on competency.

Our engineering culture is hands-on and pragmatic -- we value shipping real product, maintaining high standards, and communicating clearly. If you're excited about building a security program at a fast-growing fintech and protecting data that materially impacts people's lives, reach out.

What you'll do

Own our application and cloud security posture across our infrastructure and full stack product

Run our SOC 2 certification effort (evidence, controls, auditor interface), interface with vendors for pen testing, and prep us for the next compliance lifts like CASA, FCRA, state-specific data regs, and enterprise security reviews

Build the secure SDLC: threat modeling, security-sensitive code review, SAST/DAST/SCA tooling, secrets management, and dependency hygiene

Lead incident response and vulnerability management. Triage, contain, remediate, and run blameless postmortems

Partner with engineering on identity, access, and data handling for PII, credit, and payment data so secure-by-default is the easy path

Own customer security questionnaires and represent Boom in security conversations with enterprise property management partners

What you'll need

5+ years in security engineering or application security with hands-on web development experience. Track record securing production web apps and cloud environments, with AWS strongly preferred

Working knowledge of SOC 2 (bonus for ISO 27001, HIPAA, PCI, GLBA/FCRA). You're ready to own the program, not just contribute to it

Strong grasp of common attack classes (OWASP Top 10, auth/session, SSRF, deserialization, supply chain) and how they show up in modern web stacks

Backend-leaning full stack on Ruby (Grape and Sequel) with React/Next.js and TypeScript on the frontend. Comfortable with third-party APIs (OAuth, webhooks, rate limits, idempotency), observability, on-call, real incidents, and Terraform

You're already running AI coding agents autonomously, including overnight, to ship and drive your own efficiency. Daily Claude Code use is table stakes

Strong communicator who can explain risk to non-security audiences and push back without slowing the business. Self-starter in a fast-paced, early-stage environment, with empathy for our end users including low-to-moderate-income renters whose financial data we steward

Benefits of working at Boom

Competitive salary with stock options

Full healthcare coverage (health, dental, vision) including 50% coverage for dependents

15 days of Paid Time Off (PTO) per year + 3 sick days + all US federal holidays (11 in total) (note: we think unlimited PTO is BS and causes some employees to feel guilty when they take it)

Company-issued laptop/MacBook

Company-sponsored training & development

Regular off-sites, retreats, and other company-sponsored events and travel opportunities

Fitch Group
Senior AI Penetration Tester (New York)
Offensive
$140K–$160K
Screenshot of the Fitch Group Senior AI Penetration Tester (New York) job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Leverage AI agents and AI-assisted tooling (such as Claude and ChatGPT) to augment testing workflows and automate reconnaissance…”
📍 New York, NY🛠️ Claude · ChatGPT · Burp AI🗓️ Captured 2026-07-27
Read the full archived posting

Senior AI Penetration Tester (New York)

Requisition ID: 49960 | Business Unit: Fitch Group | Category: Information Technology | Location: New York, NY, US | Date Posted: Jul 15, 2026

As a leading, global financial information services provider, Fitch Group delivers vital credit and risk insights, robust data, and dynamic tools to champion more efficient, transparent financial markets. With over 100 years of experience and colleagues in over 30 countries, Fitch Group's culture of credibility, independence, and transparency is embedded throughout its structure, which includes Fitch Ratings, one of the world's top three credit ratings agencies, and Fitch Solutions, a leading provider of insights, data and analytics. With dual headquarters in London and New York, Fitch Group is owned by Hearst.

Fitch's Technology & Data Team is a dynamic department where innovation meets impact. Our team includes the Chief Data Office, Chief Software Office, Chief Technology Office, Emerging Technology, Shared Technology Services, Technology, Risk and the Executive Program Management Office (EPMO). Driven by our investment in cutting-edge technologies like AI and cloud solutions, we're home to a diverse range of roles and backgrounds united by a shared passion for leveraging modern technology to drive projects that matter to our organization and clients. We are also proud to be recognized by Built In as a Best Place to Work in Technology 3 years in a row. Whether you're an experienced professional or just starting your career, we offer an exciting and supportive environment where you can grow, innovate, and make a difference.

Fitch Group is currently seeking a Senior AI Penetration Tester based out of our New York office.

How You'll Make an Impact:

We are seeking a Senior AI Penetration Tester to join our Information Security department. The ideal candidate will bring 2–4 years of hands-on penetration testing experience, deep technical expertise, a proactive approach to identifying security gaps, and the ability to leverage AI agents and automation to continuously improve testing capabilities.

  • Conduct security assessments of AI systems and implementations — including AI chatbots, MCP (Model Context Protocol) servers, and enterprise deployments of Claude, ChatGPT, and Azure OpenAI Studio — identifying risks such as prompt injection, model abuse, data exfiltration etc. Execute continuous adversarial testing of AI platforms and guardrails to validate controls keep pace with evolving vendor capabilities.
  • Plan, scope, and execute penetration testing engagements across network infrastructure (servers, firewalls, endpoints, Active Directory) and perform comprehensive web application security assessments covering OWASP Top 10 vulnerabilities, business logic flaws, authentication weaknesses, and API security issues — following OWASP, and MITRE ATT&CK and other methodologies.
  • Leverage AI agents and AI-assisted tooling (such as Claude and ChatGPT) to augment testing workflows and automate reconnaissance, while developing and maintaining custom scripts and exploit code for attack chain automation, payload generation, and post-exploitation tasks.
  • Document and communicate assessment outcomes — including findings, risk context, and remediation guidance — clearly for both technical teams and senior stakeholders; collaborate with Vulnerability Management, Application, and Infrastructure teams to ensure findings are handed off with clear remediation ownership.
  • Stay current with the latest offensive security research, CVEs, exploitation techniques, and AI security threats; support red team exercises and threat simulation activities; and maintain detailed records of testing activities, methodologies, and evidence per internal documentation standards.

You May be a Good Fit if:

The ideal candidate will have 2–4 years of hands-on penetration testing experience, with demonstrated expertise across emerging AI security, network, and application domains. They should possess strong scripting and exploit development skills, comfort working with AI-powered tools, and the ability to communicate complex technical findings clearly and effectively.

  • Hands-on AI red-teaming experience covering prompt injection (direct and indirect), jailbreaking, tool-use abuse, insecure output handling, training/context data exfiltration, and model DoS; familiarity with OWASP Top 10 for LLMs and MITRE ATLAS expected.
  • Hands-on penetration testing experience across network infrastructure (servers, endpoints, network devices, Active Directory), web applications (OWASP Top 10, API security, manual and automated testing), and AI/LLM-based systems — with a solid grounding in TCP/IP, DNS, HTTP/S, VPNs, and firewalls.
  • Strong scripting proficiency in Python, Bash, or PowerShell — able to write custom exploit scripts, develop attack tooling from scratch, and adapt public PoCs — with working knowledge of Metasploit, Burp Suite (including Burp AI extensions), Nmap, Nessus/OpenVAS, BloodHound, Cobalt Strike and other similar tools
  • Experience using AI tools (such as Claude, ChatGPT, or similar) for penetration testing activities including reconnaissance, vulnerability analysis, payload crafting, and exploit development.
  • Ability to produce clear, well-structured assessment reports that translate findings, risk ratings, and remediation guidance into actionable insights for both technical teams and senior stakeholders.

What Would Make You Stand Out:

  • Experience assessing AI systems and LLM-based applications in enterprise deployments (Claude, ChatGPT, Azure OpenAI Studio, or similar), identifying risks including prompt injection, insecure tool use, MCP server misconfigurations, and risks across agentic orchestration workflows.
  • Experience testing AI systems in regulated or data-sensitive environments where material non-public information (MNPI), confidential client data, or similar controlled data classes are in scope.
  • Experience with AI agent monitoring/observability platforms and strong working knowledge of the MITRE ATT&CK framework, including staying current with newly published TTPs and actively applying them during engagements to simulate real-world adversary behavior.
  • Experience with cloud penetration testing across AWS, Azure, or GCP environments, and/or exposure to container and Kubernetes security assessments.
  • Knowledge of secure coding practices and ability to perform basic code review to support application security engagements; familiarity with compliance frameworks such as PCI DSS, DORA, and ISO 27001.
  • Certifications such as OSCP, CEH, GPEN, GWAPT; a degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience; and/or participation in bug bounty programs or CTF competitions.

Why Choose Fitch:

  • Hybrid Work Environment: 2 to 3 days a week in office required based on your line of business and location
  • A Culture of Learning & Mobility: Dedicated trainings, leadership development and mentorship programs designed to ensure that your time at Fitch will be a continuous learning opportunity
  • Investing in Your Future: Retirement planning, financial wellness and tuition reimbursement programs that empower you to achieve your short and long-term goals
  • Promoting Health & Wellness: Comprehensive healthcare offerings that prioritize a healthy body & mind
  • Supportive Parenting Policies: Family-first policies, including a generous global parental leave plan, designed to help you balance career and family life effectively
  • Dedication to Giving Back: Paid volunteer days and support for community engagement initiatives

At Fitch, AI is embedded in how we work every day—supporting smarter decision-making, streamlining workflows, and enabling new ways to create value for our business and clients. Intelligent solutions are increasingly part of our day-to-day operations, helping teams work more efficiently and think differently as we continue to evolve. We're looking for colleagues who are comfortable operating in an AI-enabled environment—or who are curious, adaptable, and eager to build their AI literacy over time. We value professionals who embrace technology as part of continuous learning and who are committed to using it thoughtfully to enhance how work gets done.

Fitch is committed to providing global securities markets with objective, timely, independent and forward-looking credit opinions. To protect Fitch's credibility and reputation, our employees must take every precaution to avoid conflicts of interests or any appearance of a conflict of interest. Should you be successful in the recruitment process at Fitch Ratings you will be asked to declare any securities holdings and other potential conflicts prior to commencing employment. If you, or your immediate family, have any holdings that may conflict with your work responsibilities, you may be asked to divest yourself of them before beginning work.

Fitch is proud to be an Equal Opportunity and Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, national origin, religion, sex, sexual orientation, gender identity, disability, protected veteran status, and other statuses protected by law.

FOR NEW YORK ROLES ONLY: Expected base pay rates for the role will be between $140,000 and $160,000 per year. Actual salaries will be determined on an individualized basis and may vary based on factors including but not limited to education, training, experience, past performance, and other job-related factors. Base pay is one part of Fitch's total compensation package, which, depending on the position, may also include commission earnings, discretionary bonuses, long-term incentives, and other benefits sponsored by Fitch.

#LI-KN1 #LI-HYBRID #LI-GROUP

Voltus
Security Engineer
Detection & SOC Remote
$140K–$160K
Screenshot of the Voltus Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“operating on both sides of the AI frontier, utilizing agentic tools to amplify your output while establishing the guardrails the company will adopt.”
📍 Remote — US / Canada🛠️ Agentic tools · SIEM🗓️ Captured 2026-07-27
Read the full archived posting

Voltus — Security Engineer

Security Engineer

Remote

Company Description

Voltus is the leading platform connecting distributed energy resources to electricity markets, delivering less expensive, more reliable, and more sustainable electricity. Our commercial and industrial customers and grid services partners generate cash by allowing Voltus to maximize the value of their flexible load, distributed generation, energy storage, energy efficiency, and electric vehicle resources in these markets.

Job Description

Operating as a virtual power plant, our platform delivers the grid of the future today. Our software coordinates and dispatches actual megawatts across thousands of grid-connected sites within regulated wholesale energy markets, managing real financial settlements for the customers behind them. In this position, you will secure real-time energy dispatches, thousands of integrations, and live telemetry for critical infrastructure where system availability and data integrity directly affect physical power distribution and real people.

In this role, you will manage security holistically and make critical, actionable decisions daily, with the independence to shape the program's evolution. You will design and secure software to safeguard virtual critical energy infrastructure, directly enabling the climate energy transition. Your responsibilities will cover a wide range of challenges: establishing our detection and response capabilities from their foundations, leading end-to-end incident response, transforming vulnerability noise in a large monorepo into actionable insights for engineering teams, and operating on both sides of the AI frontier, utilizing agentic tools to amplify your output while establishing the guardrails the company will adopt.

Requirements

-

3+ years of security engineering or a security-focused infrastructure or software engineering role ideally at a SaaS remote-first company. security

-

Comfortable with programming in at least one language. Proficiency programming (Go or Python preferred) to solve real problems, and reading unfamiliar code. You should have shipped some automation, services, or detection-as-code that others relied on.

-

Hands-on experience identifying and analyzing software vulnerabilities. Triaging dependency and code-level findings, judging exploitability and reachability, and working with engineers to ship fixes.

-

Incident Management. Run security investigations, execute containment and scoping protocols, develop incident playbooks, and coordinate tabletop simulation exercises.

-

SIEM Experience. Authoring, tuning, and maintaining custom detection rules across a centralized SIEM or analytics platform (such as Datadog, Splunk, Panther, or Elastic) to analyze aggregated logs from cloud infrastructure, endpoints, and identity systems.

-

Hands-on EDR operation experience with SentinelOne, CrowdStrike, or similar, including policy design, response actions, and tuning.

-

Strong written communication and enjoy working autonomously.

Preferred Skills and Attributes

-

Strong grasp of cloud, networking, and security concepts. AWS-native security services (CloudTrail, GuardDuty, Security Hub). IAM, RBAC and least privilege, role assumption and federation, network boundaries (VPCs, security groups), encryption and key management (KMS)

-

Tools & Tech Experience with Infrastructure as Code tools (Terraform), containerization (Docker), and monitoring/observability platforms (Datadog, Prometheus, OTEL). Container orchestration tooling (Hashicorp Nomad Vault,) Kubernetes.

-

Background in static application security testing (SAST) and code-level security reviews, including overseeing AI-assisted analysis across large codebases.

-

Proficiency producing and maintaining SBOMs within build pipelines, or designing a vulnerability management program utilizing software composition analysis (SCA) tooling on a monorepo.

-

Compliance & Framework Experience: Experience of managing and owning technical security controls within SOC 2, ISO 27001, or comparable regulatory frameworks. This includes implementing automated evidence collection processes and representing your work through audit cycles.

-

Comfort with AI and agentic engineering tools. (AI coding agents and assistants such as Claude Code, Copilot, or Cursor) as part of a working method, with judgment about where they help and where they do not.

-

Threat Modeling & Architecture. Hands-on experience mapping out attack surfaces and trust boundaries for software infrastructure, integrations, and advanced AI technologies. Ability to effectively translate foundational models like STRIDE or MITRE ATT&CK into robust, deployable controls and real-time alerts.

Bonus Qualifications

-

Regulatory & Risk Frameworks: Operational understanding of NIST CSF, ISO 27001, HIPAA, or GDPR. Ability to translate technical security controls into specific audit requirements and compliance evidence.

-

Professional Certifications: Industry-recognized credentials such as CISSP, GIAC, AWS Certified Security Specialty, or CompTIA Security+.

-

Vendor & Supply Chain Risk: Evaluating third-party risk posture, auditing complex OAuth integration scopes, and assessing AI service providers for secure data retention and robust operational security configurations.

-

AI Automation & Threat Landscapes: Developing LLM-powered security workflows via API and maintaining awareness of specialized vulnerabilities like prompt injection or those outlined in the OWASP Top 10 for LLMs.

-

Enterprise AI Governance: Implementing the control plane for safe AI use, including model allow-lists, data boundary enforcement, and AI gateway management.

Please include a link to your GitHub account in your application (in the “links” section). Applications without a GitHub account will not be considered

Please note that at this time, we do not sponsor visas or transfers for new hires. Voltus teammates need to be authorized to work from their home location (in the US or Canada, unless otherwise indicated on the role description).

Additionally, while Voltus is an all-remote workplace, we have limitations on where employees are able to work for regulatory and security reasons. We expect that Voltans are working primarily from their home country. Working while traveling to other countries must be approved as per our Global Remote Travel Policy.

At Voltus, we are proud to be an equal opportunity employer because we recognize that a diverse organization begins with a diverse candidate pool. This means we do not tolerate discrimination of any kind and are committed to providing equal employment opportunities regardless of your gender identity, race, nationality, religion, age, sexual orientation, veteran status, disability status, or marital status.

Salary range: $140,000 – $160,000 per year (USD)

Norm Ai
Security Program Manager
GRC
$140K–$155K
Norm Ai expects all team members to be fluent in AI. Successful candidates actively use AI in their day-to-day work to support thinking, creation, and problem-solving.”
📍 New York, NY🛠️ AI fluency filter🗓️ Captured 2026-07-26
Read the full archived posting

Norm Ai - Security Program Manager

U.S. (East Coast, Remote with quarterly office travel; NYC-local candidates 3-4 days/week in office) | Full-Time | $140,000 - $155,000 per year

(Full posting text below is verbatim from the startup.jobs mirror of the Norm Ai posting.)

About Norm Ai

Norm Ai, the agentic law company, has a client base with a combined $30 trillion in assets under management.

Norm Ai pioneered Legal Engineering, the process that empowers lawyers to build and supervise domain-specific AI agents with Norm's proprietary suite of no-code software tools. Norm Ai technology is deployed inside many of the largest and most consequential institutions in the world.

Norm Ai is also the technology behind Norm Law, LLP, a separate but affiliated AI-native law firm built for the era of agentic AI. Norm Law's attorneys advise leading institutions across private funds, private equity, venture capital, real estate, registered funds, and financial regulation, using the same legal intelligence platform that powers Norm Ai's products.

AI Fluency:

Norm Ai expects all team members to be fluent in AI. Successful candidates actively use AI in their day-to-day work to support thinking, creation, and problem-solving. They use it to improve the quality and speed of their work and to continuously refine how work gets done end-to-end.

Candidates should be prepared to demonstrate and discuss their AI usage throughout the interview process, including concrete examples of tools, workflows, and outcomes. We look for practical, hands-on experience, not theoretical familiarity.

This Role:

The Security Program Manager at Norm Ai is a hybrid between a GRC Manager and a Program Manager within the Office of the Chief Security Officer. You will own the execution of Norm Ai's security compliance programs, serve as the CSO's operational right hand, and drive cross-functional security and compliance initiatives across Engineering, Legal, IT, and the affiliated Norm Law practice. Security is your primary function, but this role sits at the intersection of compliance execution, risk management, and day-to-day program operations. You are the person who brings structure to ambiguity and makes sure nothing falls through the cracks.

You Will:

  • Own and mature the GRC program across SOC 2 Type II, ISO 27001, and other applicable frameworks, including control mapping, evidence collection, gap analysis, remediation tracking, and audit coordination.
  • Serve as the primary liaison with external auditors and certification bodies; manage the full audit lifecycle from scoping and evidence gathering through report issuance.
  • Build and maintain the enterprise risk register; conduct periodic risk assessments and track risk treatment plans to closure with clear stakeholder accountability.
  • Lead the vendor security assessment program: evaluate third-party security posture, manage security questionnaires, and track remediation to completion.
  • Maintain and update security policies, standards, and procedures; own the policy review lifecycle from drafting through approval.
  • Manage priorities, track deliverables, and maintain operational cadence across the security organization including but not limited to staff meetings, quarterly planning, board reporting.
  • Drive cross-functional security initiatives and ensure alignment between Security, Engineering, Product, Legal, IT, and Business teams.
  • Manage security OKRs, KPIs, and metrics reporting; prepare dashboards and executive summaries for leadership and board audiences.
  • Coordinate incident response program readiness: maintain runbooks, organize tabletop exercises, and drive post-incident reviews to ensure lessons learned are captured and tracked.
  • Design, implement, and manage the security awareness and training program, including phishing simulations and effectiveness reporting.
  • Participate in client due diligence reviews and manage the intake process for inbound security questionnaires.
  • Support business continuity and disaster recovery planning in coordination with Engineering and IT.

Skills & Experience - Core:

  • 5+ years of experience in security program management, GRC, or a related security operations role.
  • Hands-on experience managing compliance programs across at least two major frameworks (e.g., SOC 2, ISO 27001, GDPR, HIPAA). You don't need to be a security controls expert, but you need to know how audits work and how to run one.
  • Working knowledge of risk management frameworks such as NIST RMF, ISO 31000, or FAIR.
  • Experience with GRC and compliance automation tooling; we use Vanta.
  • Strong project management skills with the ability to manage multiple concurrent initiatives; experience with Linear, Jira, Notion, or equivalent tools.
  • Comfortable using AI tools to accelerate security and compliance work.
  • Experience coordinating external audits and working directly with auditors.
  • Familiar enough with cloud environments (AWS) and developer tooling (GitHub) to have substantive conversations with engineering teams.
  • Proven ability to drive cross-functional work without direct authority.
  • Clear, concise communicator; experienced preparing executive-level updates and board materials.
  • Background in a fast-paced startup, scale-up, or boutique consulting environment where you had to build programs with limited resources.

Skills & Experience - Pluses:

  • Experience in a strategic operations role within a security or technology organization.
  • Background in government, financial services, or other highly regulated industries.
  • Relevant certifications: CISSP, CISM, CRISC, CISA, CGRC, or PMP.

What Success Looks Like

30 Days:

  • Map the existing security program and compliance calendar; understand Norm Ai's current control environment, open audit gaps, and active risks.
  • Get fully onboarded into Vanta, Linear, and Notion and establish working relationships with the CSO, Director of Compliance, Engineering leads, and Legal.
  • Identify the most pressing open thread and start driving it.

60 Days:

  • Own the GRC program calendar with a clear view of upcoming audit milestones, evidence collection owners, and remediation timelines.
  • Establish a regular reporting cadence for the CSO, including OKR tracking and cross-functional status updates.
  • Have moved at least one active compliance or risk initiative from intake to measurable progress.

Location / Office Requirement

This role is open to candidates based anywhere on the East Coast. Travel to the office is expected approximately once per quarter for remote employees.

Candidates local to New York City and within commuting distance of our office will be expected to come in 3-4 days per week.

Compensation and Benefits

$140,000-$155,000 per year plus equity.

The range displayed in this job posting reflects the minimum and maximum target for new hire salary for this position. Within the range, individual pay is determined by various factors, including job-related skills (as uncovered during the interview process), experience, and relevant education or training. Please note that the compensation details listed here reflect the base salary only, and do not include equity or benefits. We offer a competitive salary along with equity compensation. Our comprehensive benefits package includes a 401(k) plan with an employer match. Employees enjoy top-tier insurance coverage, encompassing health, dental, hospital, accident, and vision plans. For candidates needing to relocate to NYC, we provide relocation reimbursement. You'll thrive in our fast-paced learning environment where professional growth is constant.

To learn more about Norm Ai, visit our website (https://www.norm.ai).

Fireblocks
Senior Application Security Engineer
AppSec
Not disclosed
“You will develop and fine-tune autonomous agents to handle complex code analysis, vulnerability hunting, and automated remediation.”
📍 Tel Aviv🛠️ Autonomous agents🗓️ Captured 2026-07-26
Read the full archived posting

Fireblocks — Senior Application Security Engineer

> NOTE: Canonical posting has expired (page no longer serves job content; role absent from live careers board). Verbatim text below scraped from employbl.com mirror (which records the original canonical URL), 2026-07-26. Location: Tel Aviv-Yafo, Tel Aviv District, Israel.

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.

About the Role

The Application Security team at Fireblocks treats security as a high-stakes engineering discipline, not an administrative task. We are looking for an Adversarial Builder to lead the defense of our Global Application Landscape—securing everything from our core SDLC and Software Supply Chain to our enterprise-wide AI adoption.

In this hands-on role, you will:

Engineer, Don’t just triage: Move beyond manual reviews to build code-driven detection logic and custom AI agents that automate vulnerability hunting, triaging and remediation.

Security by design: Partner with R\&D teams (including Infra and DevOps) to define the application-level technical guardrails for internal and external-facing products.

Scout the Frontier: Act as an early adopter of state-of-the-art systems, evaluating and integrating cutting-edge tech from frontier security startups in AI and Cloud Runtime security.

This role demands a practitioner who thinks like an attacker, possesses a developer’s urge to automate, and has the broad landscape understanding to connect dots across complex, modern domains.

What You’ll Do

Promote Enterprise-Grade Security Initiatives: Engineer and scale the security strategy for Fireblocks’ entire product ecosystem, spanning both internal infrastructure and external-facing products. You will ensure code security at scale by hardening the SDLC, securing the Software Supply Chain perimeter, and designing the technical guardrails for AI adoption at both the enterprise and product levels.

AI Solutions Builder: scale our security program using AI-driven tools. You will develop and fine-tune autonomous agents to handle complex code analysis, vulnerability hunting, and automated remediation.

Drive Early Adoption of Frontier Tech: Act as a scout and evaluator for the world’s most innovative security startups. You’ll partner with cutting-edge vendors in emerging fields like AI Security and Cloud Runtime Security, ensuring Fireblocks remains an early adopter of state-of-the-art defensive systems.

Scale Through Engineering: Move beyond manual reviews. You’ll manage and extend AppSec tools to eliminate false positives and build custom logic that reflects our unique codebase.

Collaborative Engineering: Work alongside our in-house DevOps team to rapidly deploy custom security tools at an enterprise grade.

What You’ll Bring

5-7 Years of AppSec Experience-Must!

Broad Security Horizon: A deep understanding of the modern security landscape, including Identity (OIDC, OAuth, IAM), Supply Chain security, and Cloud-native architectures-Must

Technical Versatility: Strong code review skills and proficiency in at least one major language (Python, TypeScript, etc.). You should be comfortable navigating complex microservices and CI/CD pipelines (GitHub Actions, ArgoCD)-Must

Adversarial Intuition: You have a "hacker heart"—experience in pentesting or security research helps you anticipate risks before they manifest.

Strategic Communication: You can translate complex security concepts into a roadmap that engineers and stakeholders actually want to follow.

You’re a Great Fit If...

You see a manual task and immediately think about how to automate it with a script or an LLM.

You enjoy the challenge of securing industry-novel risks that don't have a "best practice" handbook yet.

You value simplicity in design and believe that security should be a developer enabler, not a blocker.

You thrive in fast-paced environments where "status quo" is a dirty word.

Why You’ll Love It Here

Ownership: You’ll have the autonomy to propose and lead high-impact security initiatives.

Cutting-Edge Stack: Work with the latest in AI, blockchain infrastructure, and cloud security.

A "Rapid" Culture: Our in-house DevOps capability means your tools get deployed and scaled across the enterprise in days, not months.

Mentorship & Growth: Collaborate with world-class experts in cryptography and cybersecurity who are committed to your professional evolution.

Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.

Please see our candidate privacy policy here.

Homebase
Staff Security Engineer, Application Security
AppSec
Not disclosed
“Create AI-powered vulnerability detection and security automation that multiplies the team’s effectiveness.”
📍 US🛠️ AI in security ops🗓️ Captured 2026-07-26
Read the full archived posting

Homebase — Staff Security Engineer, Application Security

> NOTE: Canonical Ashby posting no longer served (expired/unlisted). Verbatim text below scraped from startup.jobs mirror, 2026-07-26.

Staff Security Engineer, Application Security

Toronto, Canada

Full-Time

Hybrid

CAD $205,000 – CAD $240,000 per year

TLDR

Lead multi-quarter application security roadmap and AI/ML security controls, shaping architecture, embedding security in engineering, and enabling safe, scalable product delivery.

Hi, Future Homie!

At Homebase, you’ll join a team that’s bold, fast-moving, and obsessed with helping small businesses thrive. We build with empathy, act with urgency, and take big swings that drive real-world impact. Here, every Homie shows up to raise the bar, support one another, and celebrate wins as a team.

We’re not just building an app—we’re building unstoppable teams. So what do you say, are you in?

 📍Your Impact Starts Here

We’re looking for a hands-on Staff Security Engineer to own and shape Homebase’s Application Security domain. This is a technical leadership role at the E5 level—you’ll define the multi-quarter strategy for how we secure our products, set architectural direction, and pioneer new capabilities that keep pace with our rapid growth.

Homebase’s product suite spans scheduling, payroll, time tracking, HR, team communication, and a growing ecosystem of AI-powered features. That breadth creates fascinating security challenges, from protecting sensitive workforce and financial data to securing the AI models and pipelines that are becoming central to our product experience.

You’ll be the recognized expert our engineering organization turns to for application security decisions. You’ll work at the intersection of security, product, and engineering, partnering with engineering leaders to embed security into architecture from the ground up, while building the platforms and tooling that let developers ship safely at speed.

These are the key ways you’ll contribute and create impact in this role:

Security Strategy & Architecture

Define and execute Homebase’s multi-quarter Application Security roadmap, aligning security initiatives with business objectives and company OKRs.

Architect secure-by-default patterns, frameworks, and paved roads that developers adopt naturally, removing entire classes of vulnerabilities before they reach production.

Evaluate emerging security technologies and make build-versus-buy decisions that shape the security platform.

Drive security and product trade-off decisions at the architectural level, balancing protection with velocity.

Influence company-wide engineering practices and security investments through data-driven recommendations.

AI Security

Lead threat modeling and security architecture reviews for AI-powered features, model training pipelines, and LLM integrations.

Design and implement security controls specific to AI/ML systems, including prompt injection defenses, model input validation, output filtering, and data pipeline integrity.

Create AI-powered vulnerability detection and security automation that multiplies the team’s effectiveness.

Partner with AI engineering teams to establish secure development patterns for model deployment and inference infrastructure.

Stay ahead of the evolving AI threat landscape and translate emerging risks into practical engineering guidance.

Secure Development & Tooling

Build and maintain security tooling and automation that integrates seamlessly into CI/CD pipelines, enabling continuous security validation at scale.

Own the vulnerability management program: design modern systems for detection, prioritization, tracking, and remediation of security debt across the product portfolio.

Own the bug bounty and responsible disclosure program, turning external researcher findings into systemic improvements.

Embed security into the full software development lifecycle through scalable guardrails, automated testing frameworks, and developer-facing documentation.

Cross-Functional Impact & Culture

Partner with senior leaders across Engineering, Product, and Infrastructure to improve Homebase’s overall security posture.

Pioneer a security partnership program, mentoring engineers across the organization, and driving a culture of shared security ownership.

Provide expert guidance during security incidents and lead post-incident analysis to drive systemic improvements.

Curate and author security guidance, patterns, and training content that raises the security bar organization-wide.

Influence security decisions at the department and company level; shape how Homebase invests in security capabilities.

🚀 The Foundation for Success - These are the experiences and strengths that will set you up for success in this role:

10+ years of progressive experience in Application Security or Security Engineering, with demonstrated impact at the Staff or Principal level.

Deep software engineering experience in production environments, you write code, build tools, and think like an engineer first.

A proven track record of leading architectural changes and complex cross-team initiatives that reduced security risk at scale.

Hands-on experience securing AI-native applications, including LLM integrations, model pipelines, or ML infrastructure.

Strong expertise in web application security, cloud-native security (AWS), and modern DevSecOps practices.

Proficiency in languages and frameworks relevant to our stack: Ruby, Python, React, and Rails.

Experience designing and implementing modern vulnerability management systems and embedding security tooling within CI/CD pipelines.

Exceptional ability to evaluate security trade-offs, make pragmatic risk-informed decisions, and communicate them clearly to technical and non-technical stakeholders.

Demonstrated curiosity about emerging AI capabilities, with a track record of leveraging new tools to enhance security operations and productivity.

Bonus point if you bring:

Experience defining application security strategy and maturity roadmaps for a high-growth, product-driven company.

A background in building AI-powered security tools or detection systems.

Speaking experience at security conferences, meetups, or community events.

Experience with threat modeling frameworks adapted for AI/ML systems.

🤝  The Homie Way - These principles guide everything we do—from how we work and make decisions to how we show up for each other.

💡 Be Customer Obsessed – Solve problems with empathy and creativity.

⚡ Move Fast, Learn Fast – Experiment, take action, and grow every day.

🎯 Own Your Impact – Think big, focus on what matters, and make decisions you stand behind.

🏆 Master Your Craft – Excellence fuels impact—show up, step up, and make your mark.

🏅 Win Together – Put goals over roles, lead with trust, and connect to our mission and each other.

What We Offer

💰 Ownership & Savings: Stock options + TFSA/RRSP with 4% company match

Spectrum Security
Lead AI Detection Engineer
Detection & SOC
Not disclosed
“building AI systems that understand adversary tradecraft, reason about logs, and automatically generate and maintain high-quality detections across your entire detection stack.”
📍 US🛠️ Autonomous detection AI🗓️ Captured 2026-07-26
Read the full archived posting

Spectrum Security — Lead AI Detection Engineer

Source: LinkedIn public job view (verbatim scrape, 2026-07-26). Posting marked "No longer accepting applications". Some LinkedIn page furniture appears inline; job content runs from "Company Description" onward.

Lead AI Detection Engineer

Spectrum Security San Francisco Bay Area

[](https://www.linkedin.com/company/spectrum-sec?trk=public_jobs_topcard_logo)

Lead AI Detection Engineer

Spectrum Security San Francisco Bay Area

4 months ago

Be among the first 25 applicants

See who Spectrum Security has hired for this role

No longer accepting applications

Report this job

Company Description

At Spectrum, we're building the next generation of autonomous detection engineering. Security teams today are struggling with brittle rules, noisy alerts, and fragmented SIEM environments. We’re changing that — building AI systems that understand adversary tradecraft, reason about logs, and automatically generate and maintain high-quality detections across your entire detection stack. We’re reimagining what the future of detection engineering looks like.

Why This Role is Different

You won’t just use AI.

You will define how AI learns the multi disciplinary art of detection engineering.

You’ll take everything you know about this field and help encode it into fleets of semi-autonomous agents that scale to thousands of detections across environments.

This role has massive leverage: your expertise becomes the engine behind our product.

Role Description

We're looking for a highly motivated detection engineer to join our early-stage team and work directly with co-founders to build the first real AI-native detection engineering system — someone who knows SIEMs and detection craft like the back of their hand, but also wants to push the boundaries of how AI can reason about threats, logs, and defensive coverage.

This role is central to the core of what we're building. You will be a core and critical part of building this expertise into a product using the latest cutting edge AI techniques. If you thrive in fast-moving environments, love turning prototypes into production-grade systems, and want your work to matter from day one, this is the role for you.

Responsibilities

Serve as the detection subject matter expert for our multi-agent system, defining standards for detection quality, threat research, log understanding

Design, prototype, and test AI-assisted workflows for detection creation, tuning, validation, threat research, detection strategy and recommendation

Reverse engineer agent failures, identify root causes, and develop improvements to agent prompts, tools, and evaluation.

Build & maintain high-quality ground truth datasets: golden detections, tuned rules, TTP exemplars, expected logs, and scenarios for our custom benchmark

Lead threat research experiments exploring emerging attacks, verifying coverage, and training agents on new tradecraft.

Define and enforce detection quality standards across multiple SIEMs and edge detection products

Collaborate with product & engineering to ship validated AI features into customer-facing product

Stay ahead of adversary behaviors & detection trends, bringing new TTPs, patterns, and context into the product.

Qualifications

Required

2 - 3+ years in detection engineering, threat hunting, incident response, or threat research

Expertise with at least one major SIEM (Elastic, Splunk, Sumo Logic, Databricks, Sentinel)

Strong command of:

Detection logic patterns (TTP, anomaly, IOC, correlation, entity behavior)

Common cloud & SaaS logs (AWS, GCP, Azure, Okta, GitHub, EDR, identity & access)

MITRE ATT\&CK and adversary emulation workflows

Detection tuning strategies & false-positive reduction

Ability to evaluate detection quality across different SIEM languages

Strong analytical reasoning across logs, schemas, and adversary behaviors

Excellent written communication — clear thinking is essential when training AI

Preferred

Hands on experience with prompt engineering, prototyping LLMs and AI agents

Experience leading, mentoring or teaching other detection engineers

Prior startup experience — especially early-stage

Experience with LLM evals and benchmarking

Show more Show less

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

INSPYR Solutions
Security Program Manager (Contract)
GRC
Not disclosed
Screenshot of the INSPYR Solutions Security Program Manager (Contract) job posting, captured 2026-07-26
Posting as captured 2026-07-26
“lead a portfolio of cybersecurity initiatives focused on transitioning traditional cyber operations into an AI-enabled Cyber Ops model.”
📍 Houston, TX🛠️ AI-enabled Cyber Ops🗓️ Captured 2026-07-26
Read the full archived posting

INSPYR Solutions - Security Program Manager

Houston, TX | 6+ month contract | Hybrid

(Full posting text below is verbatim from the Ceipal candidate-portal repost of the INSPYR Solutions job description; matches the ZipRecruiter/Dice-indexed text.)

Title: Security Program Manager

Location: Houston, TX

Duration: 6+ month contract

Work Requirements: , Holder, or Authorized to Work in the US

Overview We are seeking an experienced IT Security Program Manager to lead a portfolio of cybersecurity initiatives focused on transitioning traditional cyber operations into an AI-enabled Cyber Ops model. This role will oversee multiple concurrent projects, coordinate with internal stakeholders, and partner closely with an external advisory firm to drive execution and measurable outcomes.

Key Responsibilities

- Lead and manage a cybersecurity program consisting of 3 strategic security projects aligned to AI-driven cyber operations

- Serve as the central point of coordination across security, infrastructure, data, and application teams

- Partner with external advisors to translate strategy into executable plans and ensure alignment with best practices

- Define program roadmap, milestones, dependencies, and deliverables across all projects

- Drive program governance including status reporting, risk management, issue resolution, and executive communication

- Ensure integration of AI/automation capabilities into cyber operations processes (e.g., detection, response, threat analysis)

- Manage vendor engagement, ensuring accountability, deliverable quality, and alignment to internal objectives

- Track KPIs and success metrics tied to operational efficiency, threat response time, and automation outcomes

- Facilitate cross-functional workshops and decision-making sessions to accelerate delivery

Required Experience

- 812+ years of experience in IT program/project management with a focus on cybersecurity initiatives

- Proven experience managing multi-project programs with executive visibility

- Strong understanding of cybersecurity operations (SOC, threat detection/response, SIEM, incident management)

- Experience working with consulting/advisory partners

- Familiarity with AI/ML use cases in cybersecurity (e.g., automation, anomaly detection, predictive threat modeling)

- Experience with enterprise program governance frameworks and delivery methodologies (Agile, hybrid, or waterfall)

- Strong stakeholder management and communication skills across technical and executive audiences

Preferred Qualifications

- Experience leading cybersecurity transformation or modernization programs

- Exposure to AI-enabled security tools (e.g., SOAR, AI-driven SIEM, threat intelligence platforms)

- Certifications such as PMP, CISSP, CISM, or equivalent

- Experience in highly regulated or enterprise-scale environments

Success Profile

- Operates at both strategic and execution levels

- Able to translate advisory guidance into actionable delivery plans

- Drives accountability across internal teams and external partners

- Focused on outcomes, speed, and measurable impact in cyber operations maturity

Our benefits package includes: Comprehensive medical benefits Competitive pay 401(k) retirement plan 026and much more!

About INSPYR Solutions Technology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients' business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.

INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities.

For applications and inquiries, contact: [email protected]

Stripe
Security Engineer - Offensive Security
Offensive Remote
Not disclosed
Screenshot of the Stripe Security Engineer - Offensive Security job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Proficiency with AI/LLM-assisted development tools (e.g., Claude Code, Cursor, GitHub Copilot) and experience applying them to offensive security workflows… using LLMs or autonomous agents to augment reconnaissance, vulnerability discovery, or exploitation workflows.”
📍 Remote — Ireland / Spain🛠️ Claude Code · LLM agents🗓️ Captured 2026-07-27
Read the full archived posting

Stripe — Security Engineer - Offensive Security

Who we are

About Stripe

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.

About the team

The Proactive Threat team is responsible for identifying vulnerabilities and security weaknesses across Stripe's systems, applications, networks, and cloud infrastructure — before adversaries do. We operate as a hybrid offensive function: conducting penetration testing, emulating real-world threat actors through red team operations, and partnering closely with our defensive security teams to validate detection capabilities and improve Stripe's overall security posture.

We are builders first. Our team develops custom tooling, automation frameworks, and internal platforms that scale our offensive capabilities and enable repeatable, high-fidelity assessments. We believe the best offensive security engineers are equal parts hacker and engineer.

The team is distributed across the United States, primarily operating in Eastern and Pacific time zones, and collaborates regularly with security, engineering, and product stakeholders across Stripe — including teams in Europe and Asia.

What you'll do

As an Offensive Security Engineer on the Proactive Threat team, you will simulate the tactics, techniques, and procedures (TTPs) of real-world adversaries to uncover security risks across Stripe's products and infrastructure. You'll conduct hands-on penetration testing, lead red team engagements, and collaborate with blue team counterparts to validate and improve detection and response capabilities. Your work will directly influence how Stripe builds, ships, and secures financial infrastructure used by millions of businesses worldwide.

Beyond assessments, you'll design and build offensive tooling and automation that amplifies the team's impact. You'll leverage threat intelligence to prioritize testing efforts, contribute to incident investigations when needed, and act as a subject-matter expert for security initiatives across the company.

Responsibilities

  • Conduct comprehensive penetration tests across web applications, APIs, cloud environments (AWS/GCP/Azure), mobile applications, and internal infrastructure
  • Plan and execute red team engagements that emulate the TTPs of cyber and criminal threat actors targeting financial services, including initial access, lateral movement, persistence, and data exfiltration scenarios
  • Perform assumed-breach and objective-based assessments to test detection and response capabilities in coordination with defensive teams
  • Partner with detection engineering, threat intelligence, and incident response teams to validate security controls, identify coverage gaps, and improve detection fidelity
  • Contribute adversary tradecraft insights to inform detection rule development, threat hunting hypotheses, and incident response playbooks
  • Support incident investigations by providing offensive expertise, log analysis, and root cause analysis when required
  • Design, develop, and maintain custom offensive tools, scripts, and automation frameworks to enhance assessment efficiency and coverage
  • Build internal platforms and workflows that enable scalable, repeatable offensive operations
  • Contribute to internal security tooling repositories and champion engineering best practices within the team
  • Automate repetitive testing tasks, payload generation, and reporting workflows using modern development practices
  • Produce clear, actionable reports that communicate technical findings, business risk, and remediation guidance to both technical and non-technical stakeholders
  • Act as a subject-matter expert and primary point of contact for stakeholder teams engaged in offensive security programs and Stripe-wide security initiatives
  • Lead offensive security projects end-to-end, mentor junior team members, and foster a culture of continuous learning and knowledge sharing
  • Stay current with emerging threats, vulnerabilities, and attack techniques; share research internally and contribute to the broader security community

Who you are

We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.

Minimum requirements

  • 5+ years of experience in offensive security, penetration testing, red teaming, or a related field
  • Strong programming skills in Python, Go, or similar languages, with demonstrated experience building tools, automation, or custom exploits
  • Deep knowledge of web application security, including OWASP Top 10, ASVS, and common vulnerability classes (injection, auth flaws, business logic, etc.)
  • Hands-on experience with cloud platforms (AWS, Azure, or GCP), including cloud-native attack techniques and misconfigurations
  • Proficiency with offensive tooling such as Burp Suite, Cobalt Strike, Mythic, Sliver, BloodHound, or similar frameworks
  • Familiarity with adversary tradecraft and frameworks such as MITRE ATT&CK, including TTPs for initial access, privilege escalation, lateral movement, and exfiltration
  • Excellent written and verbal communication skills, with the ability to translate complex technical findings into clear, risk-based recommendations
  • Ability to think like an adversary — creative, persistent, and able to holistically assess risk in complex environments

Preferred qualifications

  • Experience conducting offensive security in fintech, financial services, or other highly regulated environments
  • Background in vulnerability research, exploit development, or CVE discovery
  • Experience collaborating with threat intelligence, detection engineering, or incident response teams (purple team operations)
  • Familiarity with big data and log analysis tools (Splunk, Databricks, PySpark, osquery, etc.) for threat hunting or investigative support
  • Proficiency with AI/LLM-assisted development tools (e.g., Claude Code, Cursor, GitHub Copilot) and experience applying them to offensive security workflows
  • Interest or experience in agentic automation — using LLMs or autonomous agents to augment reconnaissance, vulnerability discovery, or exploitation workflows
  • Experience testing AI/ML systems or LLM-based applications for security weaknesses (prompt injection, training data extraction, model manipulation, etc.)
  • Contributions to open-source security tools, published research, blog posts, or conference presentations
  • Relevant certifications such as OSCP, OSWE, OSEP, OSED, CRTO, CPTS, PNPT, GXPN, or cloud security certifications
Stripe
Security Engineer - Threat Detection
Detection & SOC
Not disclosed
Screenshot of the Stripe Security Engineer - Threat Detection job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Proficiency with AI/LLM-assisted development tools (Claude Code, Cursor, GitHub Copilot) applied to detection workflows… using LLMs to augment hunting, tuning, or triage.”
📍 Ireland🛠️ Claude Code · Cursor🗓️ Captured 2026-07-27
Read the full archived posting

Stripe — Security Engineer - Threat Detection

Who we are

About Stripe

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.

About the team

The Proactive Threat team identifies, detects, and responds to threats before they impact Stripe's business or users. The Detection Engineering & Threat Hunting function sits at the intersection of offense and defense — we leverage deep knowledge of attacker tradecraft to build high-fidelity detections, hunt for sophisticated threats, and validate defensive capabilities across Stripe's critical systems.

We are builders first. Our team develops detection-as-code, automates analysis workflows, and builds tooling that scales detection and response across a complex, global environment. We partner closely with Threat Intelligence, Incident Response, and offensive security teams to ensure our detections are grounded in real-world adversary behavior.

The team is distributed across the United States (Eastern and Pacific time zones) and collaborates regularly with stakeholders across Stripe — including teams in Europe and Asia.

What you'll do

You will design, build, and maintain detections that identify malicious activity across Stripe's infrastructure, applications, and cloud environments. You'll leverage your understanding of attacker TTPs — from initial access through exfiltration — to develop detection logic that catches real threats while minimizing noise. Beyond writing detections, you'll conduct threat hunts, perform malware analysis, and build automation that enables detection engineering at scale.

Responsibilities

  • Design, build, and tune high-fidelity detections across modern SIEM platforms, covering adversary TTPs across the full attack lifecycle
  • Develop detection hypotheses by researching TTPs, identifying evidence sources, and determining detection opportunities across available telemetry
  • Conduct hypothesis-driven threat hunts to identify malicious activity, uncover detection gaps, and validate security controls
  • Perform malware analysis and reverse engineering to extract indicators and inform detection strategies
  • Build network-based detections (flow, pcap, protocol analysis) and endpoint-based detections (event logs, EDR telemetry, memory/file artifacts) across Windows, Linux, and macOS
  • Partner with Threat Intelligence to operationalize intel reports into detections, hunting leads, and enrichment logic
  • Collaborate with IR, SOC, and offensive security teams to validate and refine detections based on real-world incidents and red team exercises
  • Build data pipelines, automation, and tooling that enable detection-as-code practices and scalable deployment
  • Map detection coverage to MITRE ATT&CK, identifying and prioritizing gaps across key attack surfaces
  • Lead projects, mentor teammates, and champion quality standards within the team

Who you are

We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.

Minimum requirements

  • 5+ years of experience in detection engineering, threat hunting, or security operations
  • Demonstrated experience writing detection logic in modern SIEM platforms (e.g., Splunk, Chronicle, Elastic, CrowdStrike NG-SIEM, Panther, Microsoft Sentinel)
  • Strong understanding of adversary tradecraft across the attack lifecycle: initial access, privilege escalation, lateral movement, defense evasion, persistence, and exfiltration
  • Ability to extract TTPs from threat intelligence reports and translate them into detection opportunities
  • Experience developing network-based and endpoint-based detections across multiple OS platforms (Windows, Linux, macOS)
  • Experience analyzing telemetry across endpoint, network, cloud (AWS/GCP/Azure), identity, and application log sources
  • Proficiency in detection/query languages (SPL, KQL, EQL, YARA-L, SQL) and programming (Python or similar)
  • Strong communication skills with the ability to document detection logic and explain findings to technical and non-technical audiences
  • Adversarial mindset — understanding how attackers operate to build detections that catch real-world threats

Preferred qualifications

  • Experience in detection engineering or threat hunting within fintech, financial services, or highly regulated environments
  • Background in malware analysis, reverse engineering, or threat research
  • Experience with purple team operations — collaborating with offensive security to validate detections
  • Familiarity with big data platforms (Databricks, Trino, PySpark) for large-scale log analysis
  • Proficiency with AI/LLM-assisted development tools (Claude Code, Cursor, GitHub Copilot) applied to detection workflows
  • Interest in agentic automation — using LLMs to augment hunting, tuning, or triage
  • Experience with detection validation tools (Atomic Red Team, ATT&CK Evaluations)
  • Contributions to open-source detection content, research, or conference presentations
  • Relevant certifications such as HTB CDSA, GCIH, GCFA, GNFA, OSCP, TCM PMAT, or GREM
ServiceNow
Senior Application Security Engineer
AppSec
Not disclosed
Screenshot of the ServiceNow Senior Application Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Proficiency with Claude Code or equivalent AI coding assistant for code comprehension and security research.”
📍 Petah Tikva, Israel🛠️ Claude Code🗓️ Captured 2026-07-27
Read the full archived posting

ServiceNow — Senior Application Security Engineer

Location: Petah Tikva · Flexible · Posted July 21, 2026 · Req JB0074062

Company Description

It all started when engineer Fred Luddy wrote code that automated a tedious task for his coworker, Phyllis. She cried tears of joy. That moment inspired Fred to build a company that could do that for everyone—freeing people from busywork so they could focus on meaningful work. Today, ServiceNow is the AI control tower for business reinvention. Our ServiceNow AI platform brings together any AI, any data, and any workflow— helping 85% of the Fortune 500® work smarter, faster, and better. We're building an AI-native culture where technology and talent are unstoppable together. And we're just getting started.

Join us to put AI to work for people.

Job Description

ServiceNow seeks a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.

The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.

As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.

Key Responsibilities

Triage and Resolve Bug Bounty Reports

  • Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
  • Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
  • Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
  • Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
  • Propose remediations, or design them with engineering, and verify the fix resolves the issue.
  • Assign and defend severity ratings using the program's severity framework.
  • Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.

Own Researcher and Stakeholder Communication

  • Act as ServiceNow's primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
  • Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
  • Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.

Mentor the Team and Raise Triage Standards

  • Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
  • Set and maintain the bar for triage quality and strengthen program practices over time.

Lead Advanced Security Work Beyond Triage

  • Conduct variant hunts to find related instances of reported vulnerabilities before they are discovered externally.
  • Perform original platform security research to surface issues ahead of external researchers.
  • Lead major product security incidents on the PSIRT side, coordinating response across teams under pressure.
  • Run forensic postmortems after significant incidents to determine how the issue reached production, including how design-level flaws bypassed release processes, and confirm that remediations hold.

Qualifications

To be successful in this role, you have:

  • 8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
  • Expertise in:

- Common web and application vulnerability classes and exploitation techniques.

- Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.

- Coordinated vulnerability disclosure.

  • Code and development fluency:

- Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.

- Ability to write code and propose concrete fixes. This is not an application-building role, but you reason fluently in code.

- Working knowledge of Git, Gradle, Maven, CI/CD pipelines, and secure SDLC.

- Proficiency with Claude Code or equivalent AI coding assistant for code comprehension and security research.

  • Exceptional written communication. You will represent ServiceNow directly to external researchers, frequently in disagreement, and bridge those researchers and internal engineering. This is a core requirement of the role, not a supporting skill.

Additional Information

Work Personas

We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.

Equal Opportunity Employer

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.

Accommodations

We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact talent acquisition for assistance.

Export Control Regulations

For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.

From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.

BeyondTrust
Sr Product Security Engineer
AppSec Remote
Not disclosed
Screenshot of the BeyondTrust Sr Product Security Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Use Claude and LLM platforms to automate initial review triage, risk classification, and recommendation generation, escalating to Security Architects or senior engineers for decisions that require judgment.”
📍 Remote — Canada🛠️ Claude Code Security · Codex🗓️ Captured 2026-07-27
Read the full archived posting

BeyondTrust — Sr Product Security Engineer

Location: Canada · Remote

BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio.

Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.

The Role

We're hiring a Senior Product Security Engineer to build and operate the modern security tooling pipeline that underpins everything our Product Security team does. You'll establish and maintain the SDLC security infrastructure using Claude Code Security, Codex Security, GitHub Advanced Security, Wiz CLI, and integrated tooling that gives engineering teams fast, reliable security feedback on every commit, every PR, and every release.

You bring an automation-first mindset. When you see a manual security review process, your instinct is to build a workflow that handles the repeatable parts and surfaces only the decisions that need a human. You'll design and operate product security reviews with human-in-the-loop checkpoints, ensuring coverage scales with the engineering organization without becoming a bottleneck.

You'll be a trusted partner to engineers. That means your tooling works reliably, your findings are accurate, your integrations respect their workflow, and when something breaks or creates noise, you fix it fast. You'll partner closely with Security Testers, Architects, the TPM, and engineering teams across the product portfolio.

You'll also support product incident response when security issues arise, working alongside the broader Product Security team to investigate, scope, and remediate.

What You'll Do

  • SDLC Security Pipeline: Build and maintain the product security tooling pipeline integrated across the software development lifecycle. Implement and tune Claude Code Security, Codex Security, GitHub Advanced Security (code scanning, secret scanning, Dependabot), and Wiz CLI across repositories and CI/CD pipelines. Own the configuration, policy enforcement, and continuous improvement of these tools so engineering teams get accurate, actionable security feedback at the speed of development.
  • Automated Security Reviews: Design and operate automated product security review workflows with human-in-the-loop checkpoints. Use Claude and LLM platforms to automate initial review triage, risk classification, and recommendation generation, escalating to Security Architects or senior engineers for decisions that require judgment. The goal is every change gets appropriate security review coverage without manual review becoming the bottleneck.
  • Tooling Integration & Engineering Experience: Ensure security tooling integrates cleanly into engineering workflows: GitHub PRs, CI/CD pipelines, IDE plugins, and developer dashboards. Reduce false positives, tune rulesets to the product's actual risk profile, and build feedback loops so findings improve over time. You own the engineering experience of security tooling. When a developer interacts with a security gate, it should be clear, fast, and useful.
  • AI-First Automation: Leverage Claude Code Security, Codex Security, and LLM platforms to build automation that scales security engineering. This includes automated code review triage, vulnerability pattern detection, fix suggestion generation, policy-as-code enforcement, and security review summarization. Contribute reusable prompts, skills, and plugins back to the Product Security team's shared library.
  • Product Incident Response Support: Support product incident response alongside the Product Security team. Help investigate security incidents affecting products, scope impact, coordinate with engineering on emergency fixes, and contribute to root cause analysis and post-incident improvements.
  • Cross-Team Partnership: Work closely with Security Testers to ensure scanning and automated tooling feed validated findings into their workflow. Partner with Architects on translating secure design standards into enforceable pipeline policies. Coordinate with the TPM on tracking and reporting for tooling-generated findings. Be the go-to person for engineering teams on security tooling questions, configuration, and troubleshooting.

What You'll Bring

  • 4+ years in Application Security, Product Security, DevSecOps, or Security Engineering with hands-on experience building and operating security tooling in CI/CD pipelines
  • Experience implementing and tuning SAST, DAST, SCA, and secret scanning tools in GitHub-integrated environments (GitHub Advanced Security, CodeQL, Dependabot, or equivalent)
  • Hands-on experience with AI-powered security tooling such as Claude Code Security, Codex Security, or similar LLM-based code analysis platforms
  • Strong understanding of CI/CD pipeline architecture and how security controls integrate without disrupting developer velocity
  • Experience building automation workflows: scripting, pipeline configuration, policy-as-code, webhook integrations, and workflow orchestration
  • Familiarity with container security scanning tools (Wiz CLI, Trivy, Snyk Container, or equivalent) and cloud security fundamentals (AWS preferred)
  • You understand common vulnerability classes well enough to tune tooling, triage findings, and have credible conversations with engineers about severity and remediation
  • Strong collaboration skills. You'll work across Security Testers, Architects, TPM, and engineering teams daily and need to communicate effectively with all of them
  • Automation-first mindset. You default to building repeatable, scalable workflows and reach for manual processes only when automation genuinely falls short
  • Experience with GitHub Advanced Security at scale: CodeQL custom queries, secret scanning custom patterns, and organization-wide rollout
  • Background operating Wiz CLI or similar cloud/container security scanning integrated into CI/CD
  • Experience supporting product incident response or security incident investigation
  • Familiarity with policy-as-code frameworks (OPA/Rego, Kyverno, or similar)
  • Background in securing endpoint technologies, identity systems, or enterprise security platforms
  • Experience building developer enablement programs, security documentation, or self-service security tooling
  • Cloud security experience across AWS, Azure, or Kubernetes environments

How We'll Measure Success

  • Security tooling coverage across repositories and pipelines is comprehensive and consistently maintained
  • Automated security review workflows handle the majority of reviews with human-in-the-loop escalation for high-risk changes
  • False positive rates decrease over time through tuning and feedback loops you build
  • Engineering teams experience security tooling as fast, accurate, and integrated into their existing workflow
  • Reusable automation, prompts, and plugins you build are adopted across the Product Security team
  • You're the person engineering teams reach out to for security tooling support because they trust your responsiveness and expertise

Better Together

Diversity. Inclusion. They're more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.

We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.

About Us

BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.

BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.

Learn more at www.beyondtrust.com.

#LI-BS1

Datadog
Senior Security Engineer - Cloud SIEM
Detection & SOC
Not disclosed
Screenshot of the Datadog Senior Security Engineer - Cloud SIEM job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Design and improve AI-powered investigation, threat hunting, and response workflows that support Datadog's agentic SOC capabilities.”
📍 Lisbon, Portugal🛠️ Agentic SOC workflows🗓️ Captured 2026-07-27
Read the full archived posting

Datadog — Senior Security Engineer - Cloud SIEM

Location: Lisbon, Portugal

As a Senior Security Engineer focused on Datadog's Cloud SIEM product, you will help shape the future of security operations by transforming real-world security expertise into scalable detection, investigation, and response capabilities. You will develop high-impact threat detection content, improve AI-assisted security workflows, and help defenders identify and respond to threats across cloud-native and enterprise environments. Working closely with Product, Engineering, and Security Research teams, you will influence the evolution of Datadog Security products while advancing detection coverage across emerging technologies and attack surfaces. This role offers the opportunity to contribute to open source initiatives, publish security research, and help define the next generation of agentic security operations capabilities.

At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them.

What You'll Do:

  • Research attacker techniques, defensive strategies, and emerging threats, translating findings into scalable security capabilities that protect customers at cloud scale.
  • Design and improve AI-powered investigation, threat hunting, and response workflows that support Datadog's agentic SOC capabilities.
  • Own the lifecycle of threat detections and automated security workflows, from research and design through deployment, measurement, and continuous improvement.
  • Develop high-fidelity detection content across cloud platforms, SaaS applications, identity systems, endpoints, networks, and other modern attack surfaces.
  • Partner with Product, Engineering, Security Research, and customers to influence roadmap decisions and improve security outcomes across the platform.
  • Mentor security engineers and drive improvements through automation, tooling, rapid prototyping, and data-driven optimization.

Who You Are:

  • Experienced in detection engineering, incident response, threat hunting, security operations, or related defensive security disciplines.
  • Knowledgeable in securing and operating public cloud environments such as AWS, Azure, or GCP, along with cloud-native technologies including Kubernetes, Docker, and Terraform.
  • Skilled in modern detection engineering practices, including detection-as-code methodologies and large-scale security telemetry analysis.
  • Proficient in Python, Go, or similar programming languages used to automate workflows, analyze security data, and build security tooling.
  • Comfortable driving initiatives through ambiguity while collaborating effectively across engineering, product, and research organizations.
  • Passionate about applying AI and automation to improve how defenders investigate, detect, and respond to threats.

Datadog values people from all walks of life. We know not everyone will meet all the above qualifications on day one. That's okay. If you're passionate about technology and want to grow your experience, we encourage you to apply.

Benefits and Growth:

  • New hire stock equity (RSUs) and employee stock purchase plan (ESPP).
  • Continuous professional development, product training, and career growth opportunities.
  • Mentor and buddy programs that support learning, development, and internal networking.
  • An inclusive culture with opportunities to participate in Community Guilds and employee resource groups.
  • Access to Inclusion Talks and other learning experiences that foster belonging and growth.
  • Comprehensive mental health benefits for employees and eligible dependents.
  • Competitive benefits programs that support employees globally.

Benefits and Growth listed above may vary based on the country of your employment and the nature of your employment with Datadog.

#LI-Hybrid

About Datadog:

Datadog is the leading observability and security platform for the AI era, providing businesses with unified visibility across the technology stack to manage complexity at scale. It brings applications, infrastructure, data, models, and security into one place, using AI to detect and resolve issues before they impact customers. Trusted globally by Fortune 500 companies and high-growth AI leaders, Datadog enables businesses to move faster with clarity and confidence. Learn more about #DatadogLife on Instagram, LinkedIn, and Datadog Learning Center.

Equal Opportunity at Datadog:

Datadog is proud to offer equal employment opportunity to everyone regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, and other characteristics protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. Here are our Candidate Legal Notices for your reference.

Datadog endeavors to make our Careers Page accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please complete this form. This form is for accommodation requests only and cannot be used to inquire about the status of applications.

Privacy and AI Guidelines:

Any information you submit to Datadog as part of your application will be processed in accordance with Datadog's Applicant and Candidate Privacy Notice. For information on our AI policy, please visit Interviewing at Datadog AI Guidelines.

GuidePoint Security
AI Security Engineer - Mid-Atlantic region
Architect Remote
Not disclosed
Screenshot of the GuidePoint Security AI Security Engineer - Mid-Atlantic region job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Deep knowledge and real operational experience in the usage of Agentic Coding assistants like Claude Code, Open Code, Cursor, or Codex.”
📍 Remote — Mid-Atlantic US🛠️ Claude Code · Codex🗓️ Captured 2026-07-27
Read the full archived posting

GuidePoint Security — AI Security Engineer - Mid-Atlantic region

AI Security Engineer - Mid-Atlantic region (Remote in VA, MD, PA, NC, DE, NJ, or DC)

Remote

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

General Description

GuidePoint Security is seeking a skilled AI Security Engineer to join our growing AI Security Services team. You will be assisting customers in the design, implementation, security, and operational management of generative AI security solutions. You will work closely with peers across multiple domains including AppSec, Cloud Security, and Vulnerability Management to deliver holistic and secure solutions adhering to industry best practices. This role offers the exciting opportunity to contribute to our growing AI security practice.

Roles and Responsibilities

  • AI Security Architecture & Assessment: Advise on and assess the security posture of AI/ML systems, including LLMs, GenAI pipelines, and model serving infrastructure — identifying vulnerabilities, attack surfaces, and gaps against industry frameworks (e.g., OWASP LLM Top 10, MITRE ATLAS).
  • Threat Modeling for AI Systems: Lead threat modeling exercises specific to AI workloads, covering adversarial inputs, prompt injection, model inversion, data poisoning, and supply chain risks across SaaS, self-hosted, and local AI deployments.
  • Secure AI Integration Guidance: Advise internal teams on securely integrating SaaS AI services and APIs (e.g., OpenAI, Azure OpenAI, Bedrock) into enterprise applications, including safe handling of credentials, outputs, and user data.
  • Data Security & Privacy Controls: Evaluate and recommend controls for data ingestion pipelines, RAG architectures, and vector databases to prevent unauthorized data exposure, leakage through model outputs, or non-compliant data processing.
  • Collaboration & Stakeholder Engagement: Serve as a trusted security advisor bridging business stakeholders, AI/ML engineers, IT operations, and information security teams on all matters related to AI risk and security.
  • Stay Current on AI Threat Landscape: Continuously track emerging AI security research, adversarial techniques, regulatory developments, and vendor security advisories to keep client guidance relevant and proactive.
  • Security Documentation & Standards: Produce and maintain security architecture documentation, risk assessments, control frameworks, and guidelines tailored to the organization's AI environment.
  • Strategic AI Security Roadmap: Contribute to the development of a long-term AI security strategy, including prioritized remediation roadmaps, capability maturity assessments, and investment recommendations.
  • Security Awareness & Education: Develop and deliver training and awareness content for technical and non-technical stakeholders on AI-specific risks, responsible AI usage, and secure development practices for AI-powered applications.

Required Experience

  • 5+ years of experience in security engineering with a significant focus on cloud security and/or AppSec
  • Hands-on experience implementing, managing, securing, and supporting Agentic AI solutions within an enterprise context
  • Familiarity with major cloud service provider AI-focused services such as AWS Bedrock, AWS SageMaker, Azure AI Foundry, or Google Vertex
  • Proficiency in at least one relevant programming language, preferably Python
  • Solid understanding of generative AI concepts, Large Language Models (LLMs), context engineering, agentic tool usage, and foundational AI/ML principles
  • Deep knowledge and real operational experience in the usage of Agentic Coding assistants like Claude Code, Open Code, Cursor, or Codex
  • Strong written and oral communication and interpersonal skills, with the ability to explain complex technical concepts to both technical and non-technical audiences
  • Demonstrated experience applying security principles to AI implementations, including data protection, access controls, and threat modeling for AI systems
  • Understanding of AI-specific security challenges including prompt injection, data poisoning, supply chain security, and model extraction attacks
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes

Preferred Qualifications

  • Certifications such as:
  • AWS Certified AI Practitioner/AWS Certified Machine Learning Engineer
  • Azure AI Engineer Associate
  • Claude Certified Architect
  • Understanding or experience with model fine-tuning techniques
  • Familiarity with red teaming of agentic systems
  • Experience with policy as code languages like Cedar or Rego and Infrastructure as Code (IaC) tools like AWS CloudFormation, Terraform, OpenTofu, or equivalent technologies
  • Experience designing and implementing agentic AI architectures that balance security and autonomy
  • Familiarity with MCP client/server architecture vs. agentic skills and the associated security risks of each

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.

Why GuidePoint?

GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
WTW (Willis Towers Watson)
Principal Microsoft Defender XDR, IRM & Deception Engineer
Detection & SOC
Not disclosed
Screenshot of the WTW (Willis Towers Watson) Principal Microsoft Defender XDR, IRM & Deception Engineer job posting, captured 2026-07-27
Posting as captured 2026-07-27
“It combines deep deception engineering expertise with hands-on Defender XDR mastery and the use of Agentic AI to drive proactive, intelligence-led, and largely autonomous security operations.”
📍 London, UK🛠️ Defender XDR · Security Copilot🗓️ Captured 2026-07-27
Read the full archived posting

Principal Microsoft Defender XDR, IRM & Deception Engineer

202604213 | London, England, United Kingdom | Full time

Description

The Principal Microsoft Defender XDR, IRM & Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception programme - including honeypots, honeytokens, decoy users, decoy devices, deceptive credentials, and breadcrumbs - fully integrated with Microsoft Defender XDR (Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps), Microsoft Sentinel, and Microsoft Security Copilot.

The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery and the use of Agentic AI to drive proactive, intelligence-led, and largely autonomous security operations.

The Role:

Deception Engineering Leadership

  • Own and lead the enterprise cyber deception programme end-to-end, including strategy, architecture, deployment, operations, and continuous improvement.
  • Design, deploy, and operate a layered deception fabric across on-premises, hybrid, and multi-cloud environments using honeypots, honeytokens, decoy accounts, decoy devices, deceptive files / shares, and breadcrumbs.
  • Act as the technical authority for deception engineering and Microsoft Defender XDR across the enterprise.

Microsoft Defender XDR Leadership

  • Lead the design, implementation, and optimisation of Microsoft Defender XDR across endpoint, identity, email, and cloud-app workloads.
  • Integrate all deception signals (honeypot, honeytoken, decoy, breadcrumb) into Defender XDR and Microsoft Sentinel as first-class, high-fidelity detections.
  • Define and enforce a unified detection and response strategy across the Microsoft security stack.

Data Protection, DLP & Insider Risk Management

  • Lead the design and implementation of Microsoft Purview Data Loss Prevention (DLP) policies across endpoints, cloud apps, and collaboration platforms
  • Define and enforce data protection controls to prevent unauthorised data exfiltration and misuse
  • Leverage Microsoft Insider Risk Management (IRM) to detect risky user behaviour, including data leaks, policy violations, and insider threats
  • Correlate DLP, IRM, and identity signals with Microsoft Defender XDR to provide unified incident context
  • Collaborate with Risk, Compliance, and Legal teams to align DLP and insider risk controls with regulatory and business requirements
  • Continuously optimise detection use cases combining identity, data, and behavioural analytics

Multi-Cloud Deception & Detection (AWS, GCP, OCI)

  • Extend the deception programme and Defender-style detection capabilities consistently across AWS, GCP, and OCI, including:
  • Cloud honeypots, decoy IAM roles, and honeytoken cloud credentials / API keys
  • Control-plane, workload, container, and Kubernetes threat detection
  • Cross-cloud identity and access misuse detection
  • Ensure consistent detection, deception, and response coverage across hybrid and multi-cloud environments.

Automation, Agentic AI & Continuous Improvement

  • Contribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot.
  • Define KPIs and metrics covering deception engagement, detection coverage, and response maturity.
  • Continuously improve detection, hunting, and deception capabilities to align with emerging threats and adversary tradecraft.

Stakeholder Engagement & Technical Leadership

  • Lead and grow a team of Defender XDR and Deception Engineers, setting technical direction, standards, and delivery priorities.
  • Partner with SOC, CTI, Identity, Cloud, and Engineering teams to embed deception and Defender XDR detection into all enterprise platforms.
  • Provide mentorship and leadership to deception engineers, detection engineers, threat hunters, and SOC analysts.
  • Communicate deception strategy, detection coverage, residual risk, and security improvements to senior stakeholders.

Qualifications

What you'll bring:

Required Skills & Experience:

Hands-on experience with:

  • Open-source and commercial deception / honeypot platforms (e.g., Thinkst Canary, T-Pot, Cowrie, OpenCanary, Zscaler Deception)
  • Advanced KQL for detection engineering and threat hunting at scale
  • Detection-as-code, CI/CD of detection content, and security content management

Strong knowledge of adversary tradecraft and frameworks:

  • MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chain
  • Experience leveraging Agentic AI, Microsoft Security Copilot, or AI/ML in security operations (detection, hunting, IR, automation).
  • Proven experience designing and operating enterprise cyber deception programmes (honeypots, honeytokens, decoy users, decoy devices, breadcrumbs) at scale.
  • Extensive hands-on experience operating and engineering Microsoft Defender XDR (MDE, MDI, MDO, MDA) in large enterprises.

Deep expertise across the Microsoft security stack, including:

  • Microsoft Defender for Identity (MDI) deceptive accounts, deceptive devices, and honeytokens
  • Microsoft Sentinel (analytics rules, workbooks, hunting, SOAR)
  • Microsoft Security Copilot, automated investigation & response, and attack disruption
  • Microsoft Defender for Cloud Apps and Defender for Cloud
  • Proven experience leading incident response across identity, endpoint, email, and cloud domains.
  • Strong scripting / automation experience (PowerShell, Python, or equivalent).
  • Deep understanding of Zero Trust architecture and identity-centric defence.

Preferred Qualifications:

  • Experience contributing to red-team / purple-team exercises and breach-and-attack simulation (BAS) programmes.

Microsoft certifications:

  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Industry certifications (CISSP, GCIA, GCFA, GCIH, OSCP, or equivalent)
  • Cloud certifications across AWS, GCP, or OCI

What we offer:

Enjoy a benefits package designed to help you thrive, both professionally and personally. You'll receive 25 days of annual leave plus an extra WTW day to relax and recharge. Our comprehensive health and wellbeing offering includes private healthcare, life insurance, group income protection, and regular health assessments, all giving you peace of mind. Secure your future with our defined contribution pension scheme, featuring matched contributions up to 10% from the company.

We support your growth and balance with hybrid working options, access to an employee assistance programme, and a fully paid volunteer day to make a difference in your community. On top of these, you can opt into a variety of additional perks including an electric vehicle car scheme, share scheme, cycle-to-work programme, dental and optical cover, critical illness protection, and much more. Start making the most of your career and wellbeing with a range of benefits tailored for you.

Equal Opportunity Employer

We're committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants. If you foresee any barriers, from the application process through to joining WTW, please email [email protected]

Janus Henderson
AI Security Engineer (AI & Automation Security Engineer…)
AppSec
Not disclosed
Screenshot of the Janus Henderson AI Security Engineer (AI & Automation Security Engineer…) job posting, captured 2026-07-27
Posting as captured 2026-07-27
leveraging AI and automation to transform and scale the security function, through risk-based vulnerability management, alert enrichment, workflow orchestration, and CI/CD checks.”
📍 London, UK🛠️ Python · SOAR · RAG🗓️ Captured 2026-07-27
Read the full archived posting

AI Security Engineer

City: London

Division: Office of the CISO

Why work for us?

A career at Janus Henderson is more than a job, it's about investing in a brighter future together.

Our Mission at Janus Henderson is to help clients define and achieve superior financial outcomes through differentiated insights, disciplined investments, and world-class service. We will do this by protecting and growing our core business, amplifying our strengths and diversifying where we have the right.

Our Values are key to driving our success, and are at the heart of everything we do:

Clients Come First - Always | Execution Supersedes Intention | Together We Win | Diversity Improves Results | Truth Builds Trust

If our mission, values, and purpose align with your own, we would love to hear from you!

Your opportunity

The AI & Automation Security Engineer is a hands-on role for engineers passionate about both AI and cybersecurity. This position has a dual focus: first, securing business AI systems including AI-enabled applications, LLM models, agents, and supporting platforms across their full lifecycle. Second, leveraging AI and automation to transform and scale the security function, through risk-based vulnerability management, alert enrichment, workflow orchestration, and CI/CD checks. Whether your background is in security engineering with AI experience or as an AI engineer eager to deepen your security expertise, you will collaborate across teams, applying and expanding your skills to deliver robust, production-ready protections and innovative security solutions at scale, with an emphasis on business impact and responsible practices.

What to expect when you join our firm

  • Hybrid working and reasonable accommodations
  • Generous Holiday policies
  • Excellent Health and Wellbeing benefits including corporate membership to Wellhub
  • Paid volunteer time to step away from your desk and into the community
  • Support to grow through professional development courses, tuition/qualification reimbursement and more
  • Maternal/paternal leave benefits and family services
  • All employee events including networking opportunities and social activities
  • Lunch allowance for use within our subsidized onsite canteen

Must have skills

  • Solid grasp of security engineering fundamentals and familiar with common attack vectors and defence techniques.
  • Proven ability to build and deploy automation using code, APIs, and orchestration tools (e.g., Python, workflow engines, SOAR platforms).
  • Practical experience with AI/LLM systems and automation, including prompt engineering, retrieval augmented generation (RAG), function-calling, or agent-based tools.
  • Skilled at integrating security logs, AI models, and platform components into cohesive pipelines.
  • Effective communicator and collaborator, able to prioritise security risks based on business impact.
  • Demonstrated initiative, ownership, and adaptability in fast-paced, evolving environments.
  • Ability to work with senior stakeholders across infrastructure, engineering and risk to translate AI risks into actionable controls and standards.
  • Leading design reviews, threat modelling and targeted implementation for critical AI initiatives

Nice to have skills

  • Experience with vulnerability management or risk-based threat prioritisation.
  • Knowledge of securing AI agents or agentic workflows, including scoped permissions and approval processes.
  • Able to identify and put guardrails to prevent AI-specific security risks such as prompt injection, model hijacking, data leakage from LLM outputs, or configuration drift caused by AI assistants.
  • Ability to automate response workflows, enrich incident data, and assist with triage.
  • Awareness of frameworks like NIST AI RMF, OWASP for GenAI, or MITRE ATLAS.
  • Mentor security engineers on AI-related security challenges based on existing and emerging AI risk.

Supervisory responsibilities

No

Potential for growth

  • Mentoring
  • Leadership development programs
  • Regular training
  • Career development services
  • Continuing education courses

You will be expected to understand the regulatory obligations of the firm, and abide by the regulated entity requirements and JHI policies applicable for your role.

At Janus Henderson Investors we're committed to an inclusive and supportive environment. We believe diversity improves results and we welcome applications from candidates from all backgrounds. Don't worry if you don't think you tick every box, we still want to hear from you! We understand everyone has different commitments and while we can't accommodate every flexible working request we're happy to be asked about work flexibility and our hybrid working environment. If you need any reasonable accommodations during our recruitment process, please get in touch and let us know at [email protected]

#LI-LN2 #LI-HYBRID

Annual Bonus Opportunity: Position may be eligible to receive an annual discretionary bonus award from the profit pool. The profit pool is funded based on Company profits. Individual bonuses are determined based on Company, department, team and individual performance.

Benefits: Janus Henderson is committed to offering a comprehensive total rewards package to eligible employees that includes; competitive compensation, pension/retirement plans, and various health, wellbeing and lifestyle benefits. To learn more about our offerings please visit the Why Join Us section on the career page.

Janus Henderson Investors is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. All applications are subject to background checks.

Janus Henderson (including its subsidiaries) will not maintain existing or sponsor new industry registrations or licenses where not supported by an employee's job functions (as determined by Janus Henderson at its sole discretion).

You should be willing to adhere to the provisions of our Investment Advisory Code of Ethics related to personal securities activities and other disclosure and certification requirements, including past political contributions and political activities. Applicants' past political contributions or activity may impact applicants' eligibility for this position.

You will be expected to understand the regulatory obligations of the firm, and abide by the regulated entity requirements and JHI policies applicable for your role.

Capgemini
Cybersecurity Consultant (Manager / Senior Manager)
GRC
Not disclosed
Screenshot of the Capgemini Cybersecurity Consultant (Manager / Senior Manager) job posting, captured 2026-07-27
Posting as captured 2026-07-27
“Understanding of emerging risks and controls associated with AI and agentic systems, including secure AI adoption, model risk, data protection, and the application of AI within cybersecurity (e.g. threat detection, automation and response)
📍 London, UK🛠️ AI threat detection🗓️ Captured 2026-07-27
Read the full archived posting

Cybersecurity Consultant

Ref. code: 508193 | Posted on: 1 Jul 2026 | Experience Level: Experienced Professionals | Contract Type: Permanent | Location: London, GB | Brand: Capgemini | Professional Community: Cybersecurity

Internal

Location: UK

Global Grade: D1 / C2

About the job you're considering

Organisations are facing a sustained increase in cyber risk, regulatory pressure and operational complexity as they modernise their technology landscapes. Cybersecurity is no longer a standalone technical function; it is central to business resilience, digital transformation and customer trust. Senior leaders need pragmatic, commercially grounded advice to embed security into their transformation agendas and make confident, risk-informed decisions. Within Capgemini's Cloud Infrastructure Services (CIS) Projects & Consulting, we work with clients across financial services, public and private sectors to shape cybersecurity strategies, design secure transformation pathways and support the mobilisation of complex cyber-enabled change. Our work spans early-stage maturity assessments and cyber strategy through to the integration of security into large-scale cloud, infrastructure and business transformation programmes.

We are seeking Manager and Senior Manager-level cybersecurity consultants who combine strong advisory capability with deep cyber domain expertise and a track record across consulting, pre-sales and delivery. You will play a key role in leading cyber-focused engagements, shaping client propositions, supporting go-to-market activity and helping clients translate cyber ambition into tangible outcomes. This role suits individuals who are credible with senior stakeholders, commercially aware and comfortable operating across advisory, business development and delivery contexts, with cybersecurity as their core specialism.

This role requires someone who can:

  • Lead high-impact cybersecurity consulting engagements, including maturity assessments, risk reviews, strategy and roadmaps
  • Be part of the team that advises senior stakeholders (e.g. CISO, CTO) on cyber risk, resilience and secure transformation priorities
  • Integrate cybersecurity into wider cloud, infrastructure and digital transformation programmes
  • Translate complex cyber and risk concepts into clear, actionable recommendations for business leaders
  • Identify opportunities to extend advisory work into broader transformation, delivery and managed services engagements
  • Support and shape go-to-market propositions in cybersecurity and adjacent domains
  • Contribute to client proposals, bids and credentials, bringing both domain credibility and commercial awareness
  • Engage proactively with clients to originate and develop opportunities
  • Produce high-quality, client-ready outputs and thought leadership aligned to market trends and Capgemini priorities
  • Collaborate effectively with delivery teams, architects and SMEs across Capgemini

Hybrid working: The places that you work from day to day will vary according to your role, your needs, and those of the business; it will be a blend of Company offices, client sites, and your home; noting that you will be unable to work at home 100% of the time.

Your role

As a Manager or Senior Manager in the CIS Projects & Consulting Advisory team, you will:

  • Lead and deliver cybersecurity advisory engagements, from problem definition through to recommendations and mobilisation
  • Act as a trusted advisor to client stakeholders, combining consulting judgement with deep cyber expertise
  • Shape engagement scope, approach and deliverables, ensuring outcomes are practical, commercially sound and aligned to risk priorities
  • Support the integration of cybersecurity into broader technology transformation programmes (e.g. cloud, workplace, infrastructure modernisation)
  • Play an active role in business development, including proposition development, client conversations, bids and pipeline growth
  • Contribute to thought leadership, market insights and internal capability development in cybersecurity
  • Mentor and support junior consultants, helping build a high-performing cyber advisory capability
  • The scope of responsibility will vary by grade, with Senior Managers taking greater accountability for client relationships, engagement leadership and go-to-market contribution

Your skills and experience

You will bring strong consulting foundations alongside credible cybersecurity expertise and commercial experience.

Core experience:

  • Experience in a consulting or advisory role at Manager or Senior Manager level within one of the leading consultancies (e.g. Big 4, boutique cybersecurity consultancies, global SIs)
  • Proven ability to lead front-end, ambiguous cybersecurity engagements from discovery through to recommendations
  • Experience across both advisory and delivery, with exposure to large-scale transformation programmes
  • Track record supporting business development, including proposals, bids and client engagement

Cybersecurity capability (strong experience across some of these areas):

  • Cybersecurity strategy and operating model design
  • Cyber risk management, governance and compliance (e.g. ISO 27001, NIST, NIS2, GDPR)
  • Security architecture and secure-by-design principles in cloud and hybrid environments
  • Identity and access management, security operations or cyber controls engineering
  • Cyber resilience, incident response and operational security
  • Integration of security into DevOps and cloud transformation
  • Understanding of emerging risks and controls associated with AI and agentic systems, including secure AI adoption, model risk, data protection, and the application of AI within cybersecurity (e.g. threat detection, automation and response)

Consulting and commercial skills:

  • Strong stakeholder engagement skills, with the ability to influence at C-suite and senior leadership level
  • Excellent communication and storytelling capability, translating complex cyber topics into clear, compelling narratives
  • Commercial awareness and the ability to shape propositions and differentiate Capgemini in competitive situations
  • Ability to operate across industries and adapt to different client environments

Mindset:

  • Intellectually curious, with a strong interest in evolving cyber threats and technologies
  • Comfortable operating across advisory, pre-sales and delivery contexts
  • A collaborative team player, able to work across a global, matrix organisation
  • Committed to continuous learning and staying current in cybersecurity and technology trends

We are a disability confident employer

Capgemini is proud to be a Disability Confident Employer (Level 2) under the UK Government's Disability Confident scheme. As part of our commitment to inclusive recruitment, we will offer an interview to all candidates who: Declare they have a disability, and Meet the minimum essential criteria for the role. Please opt in during the application process.

Your security clearance and pre-employment checks

If you are successfully offered this position, you will go through a series of pre-employment checks, including: identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service). To be successfully appointed to this role, it is a requirement to obtain Security Check (SC) clearance. To obtain SC clearance, the successful applicant must have resided continuously within the United Kingdom for the last 5 years, along with other criteria and requirements. Throughout the recruitment process, you will be asked questions about your security clearance eligibility such as, but not limited to, country of residence and nationality. Some posts are restricted to sole UK Nationals for security reasons; therefore, you may be asked about your citizenship in the application process.

Make it real - what does that mean for you?

We realise a Total Reward package should be more than just compensation. At Capgemini we offer range of core and flexible benefits and have a Peer Recognition Portal called Applaud.

You will be encouraged to have a positive work-life balance. Our hybrid-first way of working means we embed hybrid working in all that we do and make flexible working arrangements the day-to-day reality for our people. All UK employees are eligible to request flexible working arrangements.

You will be empowered to explore, innovate, and progress. You will benefit from Capgemini's 'learning for life' mindset, meaning you will have countless training and development opportunities from thinktanks to hackathons, and access to 250,000 courses with numerous external certifications from AWS, Microsoft, Harvard ManageMentor, Cybersecurity qualifications and much more.

You'll be bringing your unique skills and perspectives to the team, inspiring and taking inspiration from your teammates as you unlock value in everything you do. You'll be joining a professional community of experts, who have got your back and will support you, every step of the way.

Capgemini. Make it real.

Why you should consider Capgemini

Growing clients' businesses while building a more sustainable, more inclusive future is a tough ask. When you join Capgemini, you'll join a thriving company and become part of a collective of free-thinkers, entrepreneurs and industry experts. We find new ways technology can help us reimagine what's possible. It's why, together, we seek out opportunities that will transform the world's leading businesses, and it's how you'll gain the experiences and connections you need to shape your future. By learning from each other every day, sharing knowledge, and always pushing yourself to do better, you'll build the skills you want. You'll use your skills to help our clients leverage technology to innovate and grow their business. So, it might not always be easy, but making the world a better place rarely is.

About Capgemini

Capgemini is an AI-powered global business and technology transformation partner, delivering tangible business value. We imagine the future of organisations and make it real with AI, technology and people. With our strong heritage of nearly 60 years, we are a responsible and diverse group of over 420,000 team members in more than 50 countries. We deliver end-to-end services and solutions with our deep industry expertise and strong partner ecosystem, leveraging our capabilities across strategy, technology, design, engineering and business operations. The Group reported 2025 global revenues of EUR 22.5 billion.

Make it real | www.capgemini.com

No listings match — clear a filter or try a different search.

🔒 Every listing was captured from a real posting — full verbatim text, plus a screenshot and an archive.org snapshot where we could capture them — stamped with its capture date. Postings may since have closed; the capture is the evidence.

AI-Driven Security Jobs by Specialization

The hiring isn't spread evenly. Across this collection, the AI-driven signal clusters differently by specialization — judged on the language employers use and the pay they attach:

Detection and SOC carries the strongest language and the highest pay in our collection. Fluidstack's Staff Detection Engineer — listed at up to $330,000 as we captured it (the live posting has since been revised) — wanted candidates who "read the agent-first thesis as the most interesting design choice in security operations right now," and AI-native detection shops like Spectrum Security and TENEX.AI are building entire operations where the engineer's job is directing AI that "automatically generates and maintains high-quality detections."

Offensive security is building AI to attack with. Capital One's posting says outright that its "AI Foundations team is forming a brand new AI Red Team" — building AI to attack AI — and Amazon's Senior Manager role calls for "scalable offensive security automation and AI-augmented testing tools." Replit wants offensive engineers who "build AI-assisted testing tools to automate the discovery of common bug classes." A household-name bank announcing a brand-new AI Red Team in the posting itself is not a trend forecast. It's an org chart.

AppSec expects AI in your toolbelt. Notion ($230,000–$280,000) names Claude Code, Cursor, and MCP in its qualifications. Heartflow requires "AI code tools such as Claude Code and GitHub Copilot for development and security testing." Fireblocks wants you to build autonomous agents that hunt vulnerabilities for you.

Even GRC is going AI-driven. Norm Ai "expects all team members to be fluent in AI." OpenAI's third-party risk manager is asked to "deploy AI tools to enhance and streamline" compliance. INSPYR is hiring a program manager specifically to transition "traditional cyber operations into an AI-enabled Cyber Ops model."

Network security is the laggard — and that's a signal too. Jefferies, a Wall Street investment bank, pays $185,000–$200,000 base for a VP wiring LLMs into its firewall stack — and network roles with a hard AI requirement remain rare enough that when you find one, you're looking at the leading edge, not the median. If you're in network security, you're early — probably in a good way.

If you want to map any of these against a career path, our cybersecurity roadmap scores every role's AI exposure. But specialization only answers half the question you came here with — the other half is money.

What These Roles Pay

The honest headline: the ceilings on these roles are high. From the 29 listings with disclosed salaries:

$600K
highest ceiling (Bridgewater Associates)
21/29
disclosed ceilings ≥ $200K
$238K
median ceiling
5
ceilings ≥ $300K

The top of the market as captured: Bridgewater Associates $600K · Anthropic $485K · Accenture $366K · Fluidstack $330K · Replit $313K.

Two caveats, because numbers like these attract wishful reading. First, these are US salaries; UK and European pay for equivalent roles runs meaningfully lower, so anchor against the bottom of these ranges if you're outside the US. Second, ceilings are ceilings — the floors are real too. What I take from the distribution isn't any single number: it's that employers across finance, healthcare, and tech are consistently attaching serious money to security people who bring AI fluency with them. But every one of these employers filters on the same thing, and it's worth being blunt about what that is.

What Employers Actually Require

Reading these postings back to back, the requirement pattern is unmistakable. It's a stack of two things:

1

Real security experience. None of these are entry-level roles. The experience floors run from two-to-three years at the AI-native end (Spectrum Security, Capital One with a Master’s) through five-plus (Lumin, Replit) up to ten or more (Jefferies, Homebase). Most listings demand five-plus years.

2

Demonstrated AI fluency — with tools named by brand. Claude Code appears in 23 of these 42 postings (Lumin, Notion, and Heartflow among them). MCP — the Model Context Protocol, the standard for wiring AI agents to tools — appears in 10. Norm Ai goes as far as a dedicated "AI Fluency" section in the posting.

⚠️ If you're at entry level: this trend is genuinely uncomfortable — the routine work that used to be the first rung is exactly what the AI now does. We've covered whether AI will replace cyber security jobs separately.

But if you already have security experience, I think this is the biggest repricing of a skill set I've seen in thirty years in this industry — the market is putting serious money on a capability you can genuinely build in months, because almost nobody has it yet.

How to Get an AI-Driven Cyber Security Job

The stack these employers want is the one worth building deliberately:

1

Security foundations first. The AI requirement sits on top of the traditional skill set, not instead of it — every posting above pairs its AI language with SIEM, cloud, AppSec, or offensive fundamentals. Our certification roadmap maps that base, and if you're weighing certifications, start with the best AI security certifications.

2

Learn to direct AI, not just use it. The difference between "I've tried ChatGPT" and what Lumin means by "integrate these tools into day-to-day detection engineering workflows" is the discipline of agentic engineering — specs, verification, guardrails, fleets of agents doing real work. That's learnable; it's what I do all day. Around 80% of StationX now runs on AI infrastructure I built this way, including the security scanning across our own servers and repositories.

3

Build evidence. Every posting asks for demonstrated experience. A detection pipeline you built with AI assistance, an automated review workflow, a red-team harness — one real artifact beats any claim. The AI Master's Program trains the full path with structure, and the free web-book Become the Cyber Security Expert the AI Era Demands is the right starting point if you're earlier.

If "directing AI" still sounds abstract, the picture below is the map I use. There are four tiers of building around an AI — from a bare harness like Claude Code, up to shared AI infrastructure running a whole team — and the employers above are effectively hiring for people who can climb it. The full framework, with a real five-agent security review run in four sentences, is in the Agentic Engineering guide; and if you're wondering what happened to "just vibe code it" — vibe coding is dead; disciplined AI-driven engineering is what replaced it.

The four tiers of agentic engineering as an iceberg: Tier 1 Harness, Tier 2 Personal AI, Tier 3 AI Infrastructure, Tier 4 Shared AI Infrastructure

The job titles haven't fully caught up with the work — most of these roles are still called Security Engineer or Detection Engineer, not "AI-driven security engineer." That's exactly what makes this the right moment: the requirements have changed ahead of the labels, and the people who move before the labels catch up are the ones who set the price.

Frequently Asked Questions

Are AI-driven cyber security jobs real, or just hype?

Real and verifiable. This page lists 42 job postings from named employers — including Amazon, Capital One, Notion, and Jefferies — each expecting AI, LLM, or agentic tools to be part of how the security work gets done, each archived with the original wording.

What do AI-driven cyber security jobs pay?

From the disclosed salary ranges in our collection: ceilings run to $600,000, 21 listings carry ceilings of $200,000 or more (5 at $300,000+), and the median ceiling is around $238,000. Floors vary with seniority and sector — the widest government band starts near $110,000. US figures; UK and EU equivalents run lower.

What tools do these jobs require?

The most-named: Claude Code (named in 23 of our 42 archived postings), MCP (the Model Context Protocol, named in 10), Codex CLI, GitHub Copilot, and Cursor, plus building autonomous agents and LLM-based triage and automation into security workflows.

Are any of these jobs entry-level?

No. The lowest experience floor in this collection is two to three years, and most listings demand five or more. The routine work that used to be the first rung is exactly what the AI now does, which is why the surviving roles pay more.

What is the difference between AI-driven security and AI security?

AI-driven security means using AI to do your security job — Claude Code in your workflow, agents running triage, LLMs wired into your tooling. AI security is a different field: securing AI systems themselves, split into defensive, offensive, and governance tracks. The best postings are both.

Will AI replace cyber security jobs?

It is replacing tasks — routine alert triage most visibly — while creating better-paid roles for the people who direct it. Several postings on this page say exactly that in the employer's own words.

About the Author

Nathan House

Nathan House, Founder & CEO of StationX

Nathan House has 30 years of hands-on cybersecurity experience and is Cambridge-educated, holding CISSP, CISA, CISM, OSCP, CEH, and SABSA. He founded StationX in 1999 — one of the UK’s first cybersecurity companies — and has secured £71 billion in UK mobile banking transactions and the London 2012 Olympics, advising clients including Microsoft, Cisco, BP, Vodafone, and VISA. He authored the world’s most popular cybersecurity course — a #1 Udemy bestseller taken by over 500,000 students — and was named Cyber Security Educator of the Year 2020, AI Security Educator of the Year, and a UK Top 25 Security Influencer 2025. A DEF CON speaker and featured expert on CNN, Fox News, NBC, and the BBC, Nathan leads StationX’s training of more than half a million students worldwide.