Pioneering Conversational AI
Security Engineer
Location
Sweden
Posted
1 day ago
Salary
€65K - €115K / year
Seniority
Senior
Job Description
Security Engineer
EverAI
• Perform weekly code reviews to catch vulnerabilities before they ship • Track, prioritize, and drive remediation of security vulnerabilities across the stack • Coordinate external security audits and penetration tests, and follow through on findings • Maintain and evolve our risk register, mapping all company services and prioritizing what's exposed • Support audit follow-up and keep GRC documentation up to date • Communicate new threats to the team, document findings, and broadcast security updates company-wide • Run phishing simulations and security training (via Riot) • Own the monitoring of security channels and alerts, including weekend coverage, so nothing goes unanswered • Set up and secure new employee devices (MDM), manage access provisioning/deprovisioning • Keep an eye on emerging attack techniques targeting generative AI (prompt injection, jailbreaks, content filter bypass) • Track security incidents and vulnerabilities disclosed by the third-party AI providers we rely on
Job Requirements
- Solid experience in application security (code review, vulnerability management)
- Experience coordinating or conducting penetration tests / security audits
- Comfortable shipping code and working with Git/GitHub workflows
- Scripting/automation skills
- Bonus: familiarity with AI/LLM security concepts (prompt injection, jailbreaking, adversarial testing) — this is still an emerging field, so curiosity matters more than proven experience
- Strong communication & collaborative skills (perfectly fluent in English)
- Goal-orientated, ownership and commitment
- Doer mindset - we are moving fast and we need people who can find the right balance between executing, planning and strategy
- Humble - willing to learn, open to feedback
- you are comfortable working in an environment with products that are based on uncensored models and content
Benefits
- 4 weeks (20 working days) of PTO per year to recharge and reset
- Monthly allowance of 100 USD for health insurance expenses & access to unlimited 1:1 sessions with psychologists and lifestyle experts through OpenUp (also available to up to three of your family members)
- Work from a co-working space up to twice per month (35 EUR / 40 USD per visit) to stay inspired and connected
- Dedicated funds to support your professional growth: courses, books, conferences, events, or certifications
- Laptop provided + monitor budget up to 250 USD + keyboard/mouse/mic/headphones budget up to 150 USD
- Premium access to ChatGPT, Cursor, Hugging Face, Claude Code, and any other tool needed to excel at your job, power your ideas and workflows
- Annual Gathering: A yearly in-person meetup to connect, brainstorm, and celebrate wins together
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Perform weekly code reviews to catch vulnerabilities before they ship • Track, prioritize, and drive remediation of security vulnerabilities across the stack • Coordinate external security audits and penetration tests, and follow through on findings • Maintain and evolve our risk register, mapping all company services and prioritizing what's exposed • Support audit follow-up and keep GRC documentation up to date • Communicate new threats to the team, document findings, and broadcast security updates company-wide • Run phishing simulations and security training (via Riot) • Own the monitoring of security channels and alerts, including weekend coverage, so nothing goes unanswered • Set up and secure new employee devices (MDM), manage access provisioning/deprovisioning • Keep an eye on emerging attack techniques targeting generative AI (prompt injection, jailbreaks, content filter bypass) • Track security incidents and vulnerabilities disclosed by the third-party AI providers we rely on
• Take ownership of protecting our product, users, and collaborators • Perform weekly code reviews to catch vulnerabilities before they ship • Track, prioritize, and drive remediation of security vulnerabilities • Coordinate external security audits and penetration tests • Maintain and evolve our risk register, mapping all services • Support audit follow-up and keep documentation up to date • Communicate new threats to the team and broadcast security updates • Run phishing simulations and security training • Monitor security channels and alerts with weekend coverage • Set up and secure new employee devices (MDM) • Track security incidents and vulnerabilities disclosed by AI providers
• Perform weekly code reviews to catch vulnerabilities before they ship • Track, prioritize, and drive remediation of security vulnerabilities across the stack • Coordinate external security audits and penetration tests, and follow through on findings • Maintain and evolve our risk register, mapping all company services and prioritizing what's exposed • Support audit follow-up and keep GRC documentation up to date • Communicate new threats to the team, document findings, and broadcast security updates company-wide • Run phishing simulations and security training (via Riot) • Own the monitoring of security channels and alerts, including weekend coverage, so nothing goes unanswered • Set up and secure new employee devices (MDM), manage access provisioning/deprovisioning • Keep an eye on emerging attack techniques targeting generative AI (prompt injection, jailbreaks, content filter bypass) • Track security incidents and vulnerabilities disclosed by the third-party AI providers we rely on
• Take ownership of protecting our product, users, and collaborators • Perform weekly code reviews to catch vulnerabilities before they ship • Track, prioritize, and drive remediation of security vulnerabilities across the stack • Coordinate external security audits and penetration tests, and follow through on findings • Maintain and evolve our risk register, mapping all company services and prioritizing what's exposed • Support audit follow-up and keep GRC documentation up to date • Communicate new threats to the team, document findings, and broadcast security updates company-wide • Run phishing simulations and security training (via Riot) • Own the monitoring of security channels and alerts, including weekend coverage, so nothing goes unanswered • Set up and secure new employee devices (MDM), manage access provisioning/deprovisioning • Keep an eye on emerging attack techniques targeting generative AI (prompt injection, jailbreaks, content filter bypass) • Track security incidents and vulnerabilities disclosed by the third-party AI providers we rely on
