Job Closed

This listing is no longer active.

AlphaSense logo
AlphaSense

The market intelligence and search platform trusted by over 3,500 leading organizations

Staff Product Security

Security EngineerSecurity EngineerOtherRemoteLeadTeam 1,001-5,000Since 2011H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

183 days ago

Salary

$184K - $252K / year

Seniority

Lead

Bachelor Degree7 yrs expEnglishAWSJavaJavaScriptMicroservicesPythonSDLC

Job Description

Staff Product Security

AlphaSense

• Embed robust security practices throughout the software and AI development lifecycle (SDLC). • Lead secure design reviews, threat modeling, and risk assessments for AI-driven products, APIs, and backend services. • Partner with engineering and product teams to ensure security, privacy, and compliance by design. • Build and maintain security automation and governance frameworks that integrate seamlessly into development workflows. • Architect and enforce security controls for AI/ML systems, including model training, data pipelines, and inference environments. • Identify and mitigate AI-specific attack vectors such as data poisoning, model inversion, prompt injection, and model theft. • Collaborate with governance and compliance teams to align with ethical AI principles and frameworks like NIST AI RMF and the EU AI Act. • Implement model provenance, integrity, and auditability controls to ensure responsible and secure AI operations. • Partner with DevOps and SRE teams to secure service meshes, container networking, and secrets management. • Drive software supply chain security, including artifact integrity, dependency management, and vulnerability reduction. • Build internal frameworks for continuous assurance and real-time vulnerability management. • Define and maintain reference security architectures for microservices, APIs, and AI-powered systems deployed in the cloud. • Mentor teams on secure coding, containerization best practices, and AI risk management. • Promote a security-first culture through advocacy, documentation, and training. • Represent product security in cross-functional initiatives and leadership discussions.

Job Requirements

  • 7+ years of experience in product, application, or cloud security engineering.
  • Deep understanding of secure SDLC, threat modeling, and secure architecture design.
  • Proven expertise with AWS cloud security concepts and best practices.
  • Strong experience with container security, orchestration, and runtime protection.
  • Proficiency in Python, Java, and/or JavaScript for security automation, code review, and tooling.
  • Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure.
  • Familiarity with DevSecOps and continuous integration/deployment environments.

Benefits

  • Competitive compensation
  • Performance-based bonus
  • Equity
  • Generous benefits program
  • Health insurance

Related Categories

Related Job Pages

More Security Engineer Jobs

vivenu logo

Senior Security Engineer

vivenu

Empowering limitless ticketing.

Security Engineer184 days ago
OtherRemoteTeam 51-200H1B No Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description As a Senior Security Engineer (d/f/m), your responsibilities will include: - Architecting our technical security operations while supporting the general growth and maturity of our information security program. - Driving the implementation of a SIEM, including log ingestion, tuning, and general log/evidence integration across a broad range of product and enterprise technologies. - Detecting, investigating, and resolving security events and incidents to continuously minimize impact and recovery time. - Leading the technical IR lifecycle (including our product) as the Incident Commander, conducting forensics and comprehensive post-incident analysis. - Creating and maintaining comprehensive incident response runbooks and automated response processes to continuously mature the IR program. - Assisting with the broader security posture through code reviews, implementing technical controls, and building checks into our CI/CD pipeline. Qualifications - 5+ years of experience as a product-facing SOC Analyst, Incident Responder, or Security Engineer (or equivalent) in a SaaS/E-commerce environment. - Proven ability to act as Incident Commander in the technical IR lifecycle—preferably for a SaaS/E-commerce product with high uptime and resilience requirements—leading forensics and driving SIEM implementation and tuning. - A proven track record of taking end-to-end ownership in a fast-paced environment, building processes from the ground up, and constantly adjusting to technological and organizational change. - Proficiency in any programming language for scripting, security tooling development, and automating GRC evidence collection. - A Bachelor's or Master’s degree in Computer Science, Information Technology, Cybersecurity, or a closely related technical field. Requirements - Proficiency in Terraform for securing infrastructure, combined with hands-on experience in integrating security testing. - Experience with preventing “rent-seeking” attacks like cybersquatting, sneaker bots, scalping, or grinch bots. - Experience in executing Red Team operations and/or penetration testing, with the ability to effectively collaborate with development teams to drive the remediation of software vulnerabilities. Benefits - We scale sustainably on a profitable, VC-backed foundation with true product-market fit. - Collaborate with over 160 dedicated professionals, including leaders from Google, Slack, and Salesforce. - We’re a diverse, merit-driven team spread across six global offices. - Consistently ranked among the fastest-growing scale-ups in Europe. - Work alongside some of tech’s brightest minds — from Forbes 30 Under 30 founders to Executive of the Year award winners.

United States + 171 moreAll locations: United States | Canada | Brazil | Colombia | Argentina | Chile | Venezuela | Bolivia | Ecuador | French Guiana | Guyana | Paraguay | Peru | Suriname | Uruguay | Mexico | Costa Rica | El Salvador | Guatemala | Honduras | Nicaragua | Panama | Dominican Republic | Puerto Rico | Bahamas | Guadeloupe | Haiti | Jamaica | Martinique | Montserrat | United Kingdom | Germany | France | Estonia | Portugal | Hungary | Poland | Ukraine | Romania | Bulgaria | Czechia | Slovakia | Belarus | Moldova | Sweden | Greece | Belgium | Italy | Ireland | Switzerland | Netherlands | Finland | Malta | Denmark | Lithuania | Croatia | Spain | Austria | Bosnia And Herzegovina | Iceland | Luxembourg | North Macedonia | Montenegro | Norway | Serbia | Slovenia | Albania | Cyprus | Latvia | Monaco | South Africa | Egypt | Algeria | Angola | Benin | Botswana | Burkina Faso | Burundi | Cameroon | Cabo Verde | Central African Republic | Chad | Congo | Côte D'ivoire | Democratic Republic of the Congo | Equatorial Guinea | Eritrea | Ethiopia | Gabon | Gambia | Ghana | Guinea | Guinea-bissau | Kenya | Lesotho | Liberia | Libya | Madagascar | Malawi | Mali | Mauritania | Mauritius | Mayotte | Morocco | Mozambique | Namibia | Niger | Nigeria | Réunion | Rwanda | Senegal | Seychelles | Sierra Leone | Somalia | Sudan | Eswatini | Tanzania | Togo | Tunisia | Uganda | Zambia | Zimbabwe | Georgia | Turkey | Israel | United Arab Emirates | Armenia | Azerbaijan | Bahrain | Iraq | Jordan | Kuwait | Lebanon | Oman | Qatar | Saudi Arabia | Palestine | Yemen | India | Japan | Philippines | Pakistan | Thailand | Singapore | Vietnam | Taiwan | Indonesia | Cambodia | Laos | Malaysia | Myanmar | South Korea | China | Afghanistan | Bangladesh | Bhutan | Kazakhstan | Kyrgyzstan | Maldives | Mongolia | Nepal | Sri Lanka | Tajikistan | Turkmenistan | Uzbekistan | Australia | Papua New Guinea | Kiribati | Palau | French Polynesia | Tuvalu | New Zealand
Job Closed
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Define the vision and roadmap for Nebius’ security products. • Owning the ideation, postmortem, prioritization, backlog, and customer feedback processes. • Guiding new features, systems and services from inception to launch, while keeping customers at the center of everything. • Lead public-facing communications around security updates or changes in compliance status. • In the event of a security incident, coordinate user messaging (email notifications, press releases, FAQs) with support from the Head of Security Products and CISO. • Gather user feedback on user experience and security to guide continuous improvements. • Conduct ongoing research on industry benchmarks, emerging security standards and technologies, and competitor certifications. • Identify gaps and opportunities in organization’s product security posture; propose strategic initiatives that differentiate the company’s security story in the market. • Stay informed about new regulations or frameworks that may influence future product certifications or transparency requirements (e.g., privacy laws, data sovereignty standards). • Collaborate with the CISO office to gather technical evidence or make necessary product enhancements that satisfy certification requirements. • Take ownership of some security-related services of Cloud platform. • Track and maintain a certification roadmap (ISO 27001, SOC 2, HIPPA, etc.), working closely with CISO, GRC & Compliance, Corporate Security departments. Communicate timelines, goals and status updates to leadership and sales representatives. • Coordinate with multiple Product Managers to align security goals with other product roadmaps, ensuring a consistent narrative between product security and external messaging. • Work with Platform Security, GRC & Corporate Security and legal teams to gather essential information for security products enhancements (e.g., penetration test summaries, compliance reports). • Work with Customer-facing teams to address client inquiries about security posture and guide them on using security features optimally.

Netherlands
Job Closed
Cape logo

Security Engineer – Product Security

Cape

Cape is the privacy-first mobile network.

Security Engineer232 days ago
OtherRemoteTeam 11-50H1B Sponsor

• Design, implement, and manage robust security controls and policies within AWS, focusing on the confidentiality, integrity, and availability of data and services. • Perform comprehensive security assessments of our cloud environments to identify vulnerabilities, assess risks, and recommend actionable mitigation strategies. • Lead the integration of security practices into the DevOps lifecycle, promoting secure development, deployment, and operational processes. • Utilize and optimize AWS security tools (such as Amazon GuardDuty, Amazon Inspector, AWS IAM, AWS KMS, AWS WAF, and AWS Shield) and explore third-party solutions to bolster our security posture. • Assist in running and address findings from penetration tests and security audits, and ensuring prompt and effective remediation. • Stay informed about the latest security threats, vulnerabilities, and compliance mandates affecting cloud environments, provide strategic guidance on technologies and best practices. • Provide expert mentorship to junior security team members and engineers across the company, to foster an organizational culture of security awareness and continuous improvement. • Collaborate with stakeholders to integrate security requirements effectively into engineering projects and broader business initiatives.

United States
Avertium logo

Cybersecurity Consultant

Avertium

The security partner that companies turn to for end-to-end solutions that attack the chaos of cybersecurity with context

Security Engineer279 days ago
Full TimeRemoteTeam 201-500H1B No Sponsor

Responsibilities: Security strategy development: Collaborate with clients to develop and implement effective cybersecurity strategies. Define security frameworks, policies, and roadmaps aligned with clients' business objectives, risk appetite, and industry best practices. Security controls implementation: Design and implement advanced security controls and technologies based on industry standards and regulatory requirements. This may involve configuring and integrating various security tools, such as SIEM, DLP, IDS/IPS, and endpoint protection systems. Security architecture design: Provide expertise in designing secure systems, networks, and cloud environments. Develop security architectures that align with industry best practices, regulatory requirements, and clients' specific needs. Assess and recommend security controls for new technology implementations. Project management: Lead and manage complex cybersecurity projects, ensuring projects are delivered on time, within budget, and meet quality standards. Client relationship management: Develop and maintain strong client relationships. Act as a trusted advisor, provide timely and effective communication, and address client concerns or escalations. Research and thought leadership: Stay updated on the latest cybersecurity trends, emerging threats, and technologies. Conduct research and contribute to thought leadership initiatives, such as whitepapers, industry presentations, and internal training sessions.

Mexico