Security Engineer, Product Security
New York, NY; San Francisco, CA; Seattle, WA; Washington, DC
Full Time
2 hours ago
Senior LevelEngineering
Over $120K

USD per year

Job Description

Security Engineer, Product Security

New York, NY; San Francisco, CA; Seattle, WA; Washington, DC Join the team shaping the future of AI at Scale. We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, AWS, CI/CD, SAST, DAST, and terraform orchestration will be crucial in identifying and mitigating potential security vulnerabilities. You will also structure complex problems, diagnose root causes independently, and clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.

You will:

  • Leverage broad product security expertise to build and maintain software tooling that secures every layer of the modern AI/ML software ecosystem.
  • Conduct in-depth code reviews to identify and remediate security vulnerabilities.
  • Evaluate and enhance the security of our product offerings, through RFC and service review.
  • Implement and maintain CI/CD pipelines with a strong focus on security.
  • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to identify vulnerabilities in production code.
  • Utilize terraform orchestration to ensure secure and efficient infrastructure management.
  • Guide engineering teams to build robust long-term solutions that consider security and privacy.
  • Clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.
  • Influence the security strategy and direction of the team, advocating for best practices and continuous improvement.

Ideally, you’d have:

  • Demonstrated ability to drive multi-month security initiatives independently, from problem definition through execution, without requiring significant direction.
  • Proven experience as a Security Engineer with a focus on product security.
  • Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.
  • Strong understanding of modern Javascript application design.
  • Production experience operating and securing AWS infrastructure at scale.
  • Hands-on experience with SAST and DAST tools and methodologies.
  • Familiarity with terraform orchestration for infrastructure management.
  • You can structure complex problems and diagnose root causes independently, providing actionable insights without requiring manager input.
  • Excellent communication skills, with the ability to clearly present technical concepts and their implications to both technical and non-technical stakeholders.
  • Demonstrated ability to influence security strategies and drive improvements within a team.
  • Relevant security certifications (e.g., CISSP, CEH, OSCP) are a plus.

Compensation packages at Scale for eligible roles include base salary,... Please reference the job posting's subtitle for where this position will be located. For pay transparency purposes: The base salary range for this full-time position in San Francisco,... PLEASE NOTE:* Our policy requires a 90-day waiting period before reconsidering candidates for the same role...

About Us:

At Scale,... We believe that everyone should be able to bring their whole selves to work,... We comply with the United States Department of Labor's Pay Transparency provision... *PLEASE NOTE:* We collect retain use personal data for our professional business purposes including notifying you of job opportunities that may be of interest sharing with our affiliates....

How to Apply
About Scale AI

Scale AI provides high-quality data and full-stack technologies that power the world’s leading models and enable enterprises and governments to build, deploy, and oversee AI applications that deliver real impact. They offer a data-centric, end-to-end solution to manage the entire machine learning lifecycle, combining cutting edge technology with operational excellence to help teams develop the highest-quality datasets.

View Company Profile
Security Engineer, Product Security at Scale AI - RemoteTips