Aegis Ai logo
Posted 1h ago•United States

Security Engineer

MiddleUnited StatesSalary undisclosed
Required Skills
PythonNext.jsKubernetesCI/CDLLMs
Job Description

Overview

We're a team of ex-Google engineers who built some of the largest defensive platforms on the planet — Safe Browsing and reCAPTCHA. Now, we're striking out on our own to tackle an even bigger challenge: stopping the new wave of adversarial AI attacks already hitting organizations today.

We're going after a $5B+ market, ripe for disruption. Traditional detection methods are too slow to keep up. Adversaries are using AI to craft customized, high-evasion attacks — and old-school rules-based systems don't stand a chance.

The Role

We're looking for a Security Engineer to accelerate AegisAI's security program. Our customers trust us with their most sensitive data, and you'll build the systems that keep it protected: the scanning and vulnerability management that covers all of engineering, the posture and identity controls across our cloud estate, and the guardrails in our pipelines that stop problems before they ship.

This is a building role, not a gatekeeping one. The best security engineering here looks like paved roads: predefined pipelines, logging and auth paths that make the secure way the fast way, so product teams move quicker because security already did the thinking. You'll work directly with our engineering and DevOps teams and with the head of security, and your fingerprints will be on how a security company secures itself.

You'll own real surface from week one, and the scope grows as fast as you can take it.

What You'll Do

Vulnerability management at the source: Own scanning across code, dependencies, images, cloud config and our external surface; automate the triage, the routing to owners, and the remediation itself wherever it's safe; keep what's left inside our SLAs.

CI/CD security: Own and expand the security gates in our build and deploy pipelines, so vulnerable dependencies and misconfigurations are blocked before they ship.

Cloud security posture: Define secure baselines for our cloud estate, detect drift from them, and automate remediation.

Cloud identity and access: Drive least privilege and zero trust by default, across every system, credential and workload we operate.

Application security: Run design and code reviews and threat modeling for new features and products.

Paved roads: Partner with DevOps on reusable, secure-by-default paths for CI/CD, logging and auth, so every new service starts at our baseline and teams ship faster.

Incident response: Be a technical lead when something needs investigating, and build the tooling that makes the next investigation faster.

Automate: If you do it twice by hand, you build it the third time.

Who You Are

  • 4+ years in security engineering, or infrastructure engineering with real security ownership, at a cloud-native company.

  • You write code. Python, Go or similar, and you'd rather build a guardrail than write a runbook.

  • Deep in cloud IAM and Kubernetes security: you design for least privilege and short-lived credentials by default, and can walk engineers through the tradeoffs.

  • Fluent in CI/CD: you've hardened pipelines, not just run tools in them.

  • You work in the open with engineers: design reviews, pull requests and docs, not tickets thrown over a wall.

  • You prioritize by real-world risk, not scanner severity, and can explain the call to engineers and leadership alike.

Bonus points:

  • You've secured systems that process email or other high-sensitivity customer data.

  • You've built a vulnerability management program and automated it end to end.

  • LLM application security: prompt injection, model pipelines, AI agent guardrails.

  • Supply chain security: artifact signing, provenance, SBOMs.

  • Detection engineering, or close partnership with a SOC.

  • You've worked at a security vendor and know what it means to be the product.

Our Culture

  • Flat, flexible, and fast.

  • You'll own your decisions.

  • You'll have clear KPIs for success — but how you get there is up to you.

  • If you want your security work to be the reason customers trust the company, and want to work with a team that moves at the speed of the real world, join us.

Similar Openings in DevOps & Cloud

View all in category➔