Senior Security Engineer

1 month ago


San Francisco, United States Lakera Full time
Job DescriptionJob Description

As our first dedicated Senior Security Engineer, you’ll have a significant impact at a rapidly growing startup. We’ve built a small security program including SOC2 certification, but it’s time for someone dedicated to lead that. Your role will vary, from implementing security monitoring tools to promoting IaC best practices to conducting risk assessments and ensuring compliance – you will get to draw on your full set of skills and develop new ones.

Locations: Senior Security Engineer (Zürich /San Francisco)

About Lakera

Lakera is on a mission to secure the era of intelligent computing. We are heading towards a future where AI-powered applications take center stage. Here at Lakera, we're not just dreaming about the future; we're building the security foundation for it. We empower builders, giving them the confidence to navigate this new dynamic landscape and unleash the next phase of innovation. 

We work with Fortune 500 companies, startups, and foundation model providers to protect them and their users from adversarial misalignment. We are also the company behind Gandalf, the world’s most popular AI security game. If you're eager to be part of a team that's not just keeping pace but setting the pace, Lakera is the right place for you. Let's shape the future together.

What You’ll Do

  • Securing our cloud infrastructure

    • Design and implement a secure architecture for our cloud infrastructure (AWS) that follows industry and IaC best practices.

    • Select and maintain our security tools stack.

    • Implement and maintain secure access to our cloud infrastructure.

    • Implement security monitoring tools to detect and respond to security events in real time., either through third-party tools or custom scripts.

  • Identity Management

    • Implement an identity management solution for secure RBAC to all our infrastructure

    • Ensure the IAM solution strikes the right balance between automation, security, and frictionless work.

  • Champion secure development practices

    • Educate developers on security best practices.

    • Conduct code reviews of Terraform scripts and high-risk segments of application code.

  • Vulnerability and risk assessments

    • Conduct regular assessments of which of our assets are at risk.

    • Perform penetration testing to simulate cyberattacks (or work with external parties). 

    • Collaborate with DevOps to introduce DevSecOps best practices.

  • Incident Response

    • Put in place comprehensive EDR tooling and continue to ensure our endpoints and infrastructure are well-protected

    • Develop and manage our incident response plans and related policies.

    • Investigate security incidents, analyze root causes, and recommend corrective actions.

  • Compliance, audits, and requests

    • Ensure regulatory compliance from a security perspective to SoC2, ISO27001, GDPR, and HIPAA.

    • Help in preparing for external audits.

    • Help in answering security-related questions as part of procurement processes.

  • Cross-team collaborations

    • Collaborate with anyone from top-level management to engineering, to IT on our internal security posture.

    • Collaborate with the product team, to help us shape the AI Security landscape.

    • Participate in our InfoSec research of LLM applications.

What You’ll Bring

  • You are a battle-hardened security engineer with 5+ years of experience in a security role and an excellent overview of the threat landscape.

  • You are comfortable with Infrastructure as Code (Terraform, CloudFormation).

  • You are comfortable with Python (or Node.js) and Bash to develop custom scripts to automate tooling, check infrastructure configurations, and log analysis. 

  • You have 3+ years of experience working on AWS with a solid understanding of AWS security best practices, experience with other cloud platforms is a bonus.

  • You have worked in a fast-growing startup or scale-up before.

  • Your role will be cross-functional, collaborating with top-level management, engineering, and IT, so you have to be an excellent communicator.

  • You’re comfortable evaluating new tools and vendors to find the right fit for our company today and where we will be in the future. 

👉 Let's stay connected Follow us on LinkedIn, Twitter & Instagram to learn more about what is happening at Lakera.ℹ️ Join us on Momentum, the slack community for AI Safety and Security everything.

❗To remove your information from our recruitment database, please email privacy@lakera.ai.

  • San Francisco, California, United States Ivalua Full time

    Senior Security Engineer (Cloud and Infrastructure Security) - Pitsburgh,PAAbout IvaluaA "Magic Quadrant" leader, Ivalua's solutions work in a complex global economy. Our innovative Source-to-Pay solutions include automating customized workflows to source, contract, request, procure, receive, and pay for goods and services across the enterprise, refining the...


  • San Francisco, California, United States Ivalua Full time

    Senior Security Engineer (Cloud and Infrastructure Security) - Pitsburgh,PAAbout IvaluaA "Magic Quadrant" leader, Ivalua's solutions work in a complex global economy. Our innovative Source-to-Pay solutions include automating customized workflows to source, contract, request, procure, receive, and pay for goods and services across the enterprise, refining the...


  • San Francisco, United States Opal Security Full time

    Opal is building the next generation of access management. We've all felt the pain of not getting the access we need to do our job. At Opal, we’re building a central hub for authorization to make access management automated, intelligent, and easy to use. We are taking an age old problem in enterprise software and making it simple. Our product prioritizes...


  • San Francisco, CA, United States Caldera Full time

    Senior Infrastructure Engineer, Security We’re looking for an incredible senior engineer to help us build the future of blockchain scalability. This is an ideal opportunity for an engineer who is already passionate about tackling problems in blockchain scalability, or looking to break into the blockchain engineering space. If you’re looking to work...

  • Senior Engineer

    6 days ago


    San Francisco, CA, United States Aurora Innovation Full time

    Aurora hires talented people with diverse backgrounds who are ready to help build a transportation ecosystem that will make our roads safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all. We’re searching for a Senior Staff Security Engineer - Detection and Response In this role, you will lead the...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is looking for a Senior ML Infra Engineer to join the Detection Team. The Detection Division is focused on building the world's most advanced technology for identifying and stopping email and cloud-based attacks that were previously undetectable and help make the world a safer place. As an ML...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is looking for a Senior Software Engineer who is passionate about building and operating microservices at large scale. The Core Platform team owns foundational platform services including but is not limited to the Dynamic Configuration system which is responsible for delivery of runtime...


  • San Francisco, United States Chime Full time

    About the Role As a Senior Security Engineer, you'll be essential in protecting our advanced web software and backend services. You'll collaborate with diverse teams to implement technical solutions that will help mitigate security vulnerabilities and reduce security risk across Chime. Your clear communication will be crucial as you explain security...


  • San Francisco, United States Chime Full time

    About the Role As a Senior Security Engineer, you'll be essential in protecting our advanced web software and backend services. You'll collaborate with diverse teams to implement technical solutions that will help mitigate security vulnerabilities and reduce security risk across Chime. Your clear communication will be crucial as you explain security...


  • San Francisco, CA, United States Arbitrum Full time

    Senior Infrastructure Engineer, Security We’re looking for an incredible senior engineer to help us build the future of blockchain scalability. This is an ideal opportunity for an engineer who is already passionate about tackling problems in blockchain scalability, or looking to break into the blockchain engineering space. If you’re looking to work in...


  • San Francisco, CA, United States Caldera Full time

    Senior Infrastructure Engineer, Security We're looking for an incredible senior engineer to help us build the future of blockchain scalability. This is an ideal opportunity for an engineer who is already passionate about tackling problems in blockchain scalability, or looking to break into the blockchain engineering space. If you're looking to...


  • San Francisco, CA, United States Primer Full time

    As a Senior Security Engineer you will be a key member of the Information Security team ensuring security across the company. You will help confirm that sensitive data is protected and make sure we have the right tools implemented to maintain trust. You will also help our software engineers be successful by sharing your knowledge and working to prevent...


  • San Francisco, CA, United States Opal Security Full time

    Opal is building the next generation of access management. We've all felt the pain of not getting the access we need to do our job. At Opal, we’re building a central hub for authorization to make access management automated, intelligent, and easy to use. We are taking an age old problem in enterprise software and making it simple. Our product prioritizes...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionThe OpportunityIn a cloud software world, who you are and what you have access to determines the risk associated with your accounts being compromised, Abnormal Security aims to build a comprehensive tool to understand the employees of our customers, and aid security professionals in assessing the risks and threats impacting...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionThe OpportunityIn a cloud software world, who you are and what you have access to determines the risk associated with your accounts being compromised, Abnormal Security aims to build a comprehensive tool to understand the employees of our customers, and aid security professionals in assessing the risks and threats impacting...


  • San Francisco, United States Kandji Full time

    About Kandji Kandji is the Apple Device Management and Security Platform. Kandji empowers companies to manage and secure Apple devices in the enterprise and at scale. By centrally securing and managing Mac, iPhone, iPad, and Apple TV devices, IT and InfoSec teams can save countless hours of manual, repetitive work with features like one-click compliance...


  • San Francisco, CA, United States Amazon Full time

    Do you thrive on the challenge of threat modeling and fortifying the defenses of AI/Gen AI and cloud systems? As a Senior Security Engineer (AppSec) on the AWS Gen AI security team, you will be entrusted with the security review and threat modeling of AWS Gen AI offerings. We conduct security reviews, penetration testing, build security automation, and...


  • San Francisco, United States Hayden AI Technologies, Inc Full time

    About Us At Hayden AI, we are on a mission to harness the power of artificial intelligence and machine learning to transform the way governments and businesses address real-world challenges. From optimizing bus lane and bus stop enforcement to pioneering digital twin modeling and beyond, our innovative mobile perception system empowers our clients to...


  • San Francisco, CA, United States primer.ai Full time

    Primer exists to make the world a safer place. We do this by providing trusted decision-ready AI to the world's most critical organizations. Our software enables leaders, operators, and analysts to better understand the changing world around us in real time and make informed decisions when the stakes are high. Primer has offices in San Francisco,...


  • San Francisco, CA, United States Pave Full time

    Full Time] Senior Security Engineer at Pave (United States) | BEAMSTART Jobs Senior Security Engineer Full Time Stock Options Today, teams cobble together hundreds of messy spreadsheets and outdated surveys to determine how to compensate their employees. At best, they’re leveraging stale data from an industry that is quickly evolving past it. Add...