
Senior Security Engineer
Posted Aug 26

Posted Aug 26
This is a fully remote position, open to applicants in United States.
• Oversee the security architecture, implementation, and controls for Jasper’s AI infrastructure and AI-driven internal workflows.
• Establish guidelines that regulate how AI systems access, process, and manage sensitive information.
• Take ownership of threat modeling aimed at AI-specific risks and create controls for validating, logging, and auditing AI outputs.
• Develop security tools and automated checks to ensure the safe adoption of AI within the organization.
• Collaborate and influence the development of Jasper’s Security program.
• Work alongside GRC to automate evidence gathering, control monitoring, and compliance processes.
• Enhance infrastructure security across GCP and AWS, encompassing IAM, network segmentation, secrets management, and secure-by-default patterns.
• Manage and refine GitHub security protocols, including branch protection, required reviews, secret scanning, dependency/SCA policies, and CI/CD pipeline security.
• Operate and optimize Wiz or similar CSPM/CNAPP tools to identify and promote the remediation of cloud misconfigurations and vulnerabilities.
• Utilize AI tools in areas such as code review, triage, detection engineering, and documentation.
• Assist security and engineering teams in the safe adoption of AI technologies.
• Collaborate with Engineering, Legal, Product, IT, and GRC to convert security and compliance requirements into actionable engineering solutions.
• Report directly to the Director of Security.
• Proficiency in AI, with a solid understanding of LLMs, agents, copilots, tokens, credits, context windows, RAG, and data governance.
• A minimum of 8 years of experience in security engineering.
• Hands-on expertise in at least two areas: AI/ML security, cloud infrastructure security, and/or GRC compliance engineering.
• Demonstrated experience securing AI systems, including LLM applications, agents, or ML pipelines.
• Knowledge of prompt injection, data leakage, model abuse, and insecure tool usage.
• In-depth understanding of security principles, best practices, and common vulnerabilities.
• Capability to identify, prioritize, and address security vulnerabilities through automation and tooling.
• Expertise and interest in leveraging frontier models and agents to tackle security challenges.
• Experience in creating security programs, processes, or standards from the ground up.
• Strong working knowledge of GCP and AWS security services and IAM frameworks.
• Familiarity with GitHub security controls and secure software supply chain practices.
• Practical experience using Wiz or a comparable CSPM/CNAPP platform.
• Proficiency in building automation and tooling through scripting, APIs, and infrastructure-as-code.
• Background in developing or securing AI agent frameworks, agent tool-calling systems, or internal AI platforms.
• Experience supporting SOC 2, ISO 27001, or similar compliance frameworks.
• Familiarity with GRC platforms like Vanta or Drata.
• Background in detection engineering or the development of internal security tools.
• Experience as an early or initial specialized hire in a small security team.
• Familiarity with AI infrastructure platforms such as Modal or CoreWeave.
• Must be legally authorized to work in the United States.
• This role requires at least two years of valid U.S. work authorization.
• Comprehensive Health, Dental, and Vision coverage starting on the first day for employees and their families.
• 401(k) plan with up to 2% company matching.
• Participation in equity grant programs.
• Flexible Paid Time Off (PTO).
• FlexExperience budget of $900 annually.
• FlexWellness program offering $1,800 annually.
• Generous budget for home office setup.
• $1,500 annual stipend for learning and development.
• 16 weeks of paid parental leave.
MRO
AgelessRx
Xcelerate Solutions
OnePay
Get handpicked remote jobs straight to your inbox weekly.