
VP, Security
Posted Sep 14

Posted Sep 14
This is a fully remote position, open to applicants in United States.
• Take full ownership of security at Engine, managing it comprehensively across strategy, engineering, operations, and trust posture.
• Establish the AI security function and develop an internal AI gateway that includes authentication, authorization, logging, DLP, and model allowlisting.
• Define the AWS agent identity with specific roles and temporary credentials.
• Strengthen consumer-facing AI interfaces through authenticated MCP, prompt-abuse detection, output filtering, and CI red-team regression testing.
• Lead the AppSec and SecArch, SecOps, CloudSec, and corporate IT teams.
• Promote secure-by-design practices, secrets refactoring, organization-wide RBAC implementation, SIEM detection engineering, automated response playbooks, and identity-log onboarding.
• Enhance Salesforce with least privilege access, monitor contractor and BPO access, manage insider threats, and ensure production data hygiene.
• Manage security due diligence, customer security reviews, trust artifacts, and technical controls related to SOC 2 and PCI compliance.
• Oversee identity management, endpoint fleet, SaaS administration, automation of joiner-mover-leaver processes, and entitlement hygiene.
• Report directly to the SVP of Engineering and AI, representing security to executives, the board, and enterprise customers.
• Achieve first-year objectives including the establishment of an AI security team, deployment of a production AI gateway, enforcement of agent identity, development of a prompt-abuse pipeline, enhancement of access controls, and maintenance of SOC 2 and PCI compliance.
• 12+ years of experience in security.
• 5+ years of experience leading security organizations.
• Ideal experience in hypergrowth environments and involvement in major fundraising or IPO-related diligence processes.
• Strong technical expertise in agent identity models, AI gateway architecture, and detection engineering.
• Up-to-date knowledge of prompt injection, agentic access, model-mediated data exfiltration, and LLM red teaming.
• Proven experience in building new functions from the ground up to a fully operational team with effective controls.
• Proficiency in AWS identity management, CSPM, EDR, SIEM operations, and modern AppSec tools in CI.
• Experience managing corporate IT, identity platforms, endpoint fleets, and SaaS governance.
• Executive presence for conducting board briefings and enterprise customer security reviews.
• Experience in securing customer-facing AI or LLM products at scale is a plus.
• Background in payments, travel, or other PCI-regulated, high-transaction-volume environments is a plus.
• Experience collaborating with legal teams on privacy initiatives and regulatory frameworks is a plus.
• Competitive base salary linked to the role and individual experience.
• Equity opportunities available for all employees.
• Certain roles may qualify for bonuses or commissions.
• Hybrid-hub model allowing for office-based or fully remote work environments depending on the role.
• Comprehensive benefits available; a full list can be found at engine.com/culture.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.