Senior Security Engineer

2 weeks ago


San Francisco, United States Lakera AG Full time

As our first dedicated

Senior Security Engineer,

you’ll have a significant impact at a rapidly growing startup. We’ve built a small security program including SOC2 certification, but it’s time for someone dedicated to lead that. Your role will vary, from implementing security monitoring tools to promoting IaC best practices to conducting risk assessments and ensuring compliance – you will get to draw on your full set of skills and develop new ones. Locations:

Senior Security Engineer (Zürich /San Francisco) About Lakera Lakera is on a mission to secure the era of intelligent computing. We are heading towards a future where AI-powered applications take center stage. Here at Lakera, we're not just dreaming about the future; we're building the security foundation for it. We empower builders, giving them the confidence to navigate this new dynamic landscape and unleash the next phase of innovation. We work with Fortune 500 companies, startups, and foundation model providers to protect them and their users from adversarial misalignment. We are also the company behind

Gandalf

, the world’s most popular AI security game. If you're eager to be part of a team that's not just keeping pace but setting the pace, Lakera is the right place for you. Let's shape the future together. What You’ll Do Securing our cloud infrastructure Design and implement a secure architecture for our cloud infrastructure (AWS) that follows industry and IaC best practices.

Select and maintain our security tools stack.

Implement and maintain secure access to our cloud infrastructure.

Implement security monitoring tools to detect and respond to security events in real time., either through third-party tools or custom scripts.

Identity Management Implement an identity management solution for secure RBAC to all our infrastructure

Ensure the IAM solution strikes the right balance between automation, security, and frictionless work.

Champion secure development practices Educate developers on security best practices.

Conduct code reviews of Terraform scripts and high-risk segments of application code.

Vulnerability and risk assessments Conduct regular assessments of which of our assets are at risk.

Perform penetration testing to simulate cyberattacks (or work with external parties).

Collaborate with DevOps to introduce DevSecOps best practices.

Incident Response Put in place comprehensive EDR tooling and continue to ensure our endpoints and infrastructure are well-protected

Develop and manage our incident response plans and related policies.

Investigate security incidents, analyze root causes, and recommend corrective actions.

Compliance, audits, and requests Ensure regulatory compliance from a security perspective to SoC2, ISO27001, GDPR, and HIPAA.

Help in preparing for external audits.

Help in answering security-related questions as part of procurement processes.

Cross-team collaborations Collaborate with anyone from top-level management to engineering, to IT on our internal security posture.

Collaborate with the product team, to help us shape the AI Security landscape.

Participate in our InfoSec research of LLM applications.

What You’ll Bring You are a battle-hardened security engineer with 5+ years of experience in a security role and an excellent overview of the threat landscape.

You are comfortable with Infrastructure as Code (Terraform, CloudFormation).

You are comfortable with Python (or Node.js) and Bash to develop custom scripts to automate tooling, check infrastructure configurations, and log analysis.

You have 3+ years of experience working on AWS with a solid understanding of AWS security best practices, experience with other cloud platforms is a bonus.

You have worked in a fast-growing startup or scale-up before.

Your role will be cross-functional, collaborating with top-level management, engineering, and IT, so you have to be an excellent communicator.

You’re comfortable evaluating new tools and vendors to find the right fit for our company today and where we will be in the future.

Let's stay connected Follow us on

LinkedIn

,

Twitter

&

Instagram

to learn more about what is happening at Lakera.

️ Join us on

Momentum

, the slack community for AI Safety and Security everything.

To remove your information from our recruitment database, please email

privacy@lakera.ai

. #J-18808-Ljbffr



  • San Francisco, United States Opal Security Full time

    Opal is building the next generation of access management. We've all felt the pain of not getting the access we need to do our job. At Opal, we’re building a central hub for authorization to make access management automated, intelligent, and easy to use. We are taking an age old problem in enterprise software and making it simple. Our product prioritizes...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is looking for a Senior Software Engineer who is passionate about building and operating microservices at large scale. The Core Platform team owns foundational platform services including but is not limited to the Dynamic Configuration system which is responsible for delivery of runtime...


  • San Francisco, United States Chime Full time

    About the Role As a Senior Security Engineer, you'll be essential in protecting our advanced web software and backend services. You'll collaborate with diverse teams to implement technical solutions that will help mitigate security vulnerabilities and reduce security risk across Chime. Your clear communication will be crucial as you explain security...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionThe OpportunityIn a cloud software world, who you are and what you have access to determines the risk associated with your accounts being compromised, Abnormal Security aims to build a comprehensive tool to understand the employees of our customers, and aid security professionals in assessing the risks and threats impacting...


  • San Francisco, United States Kandji Full time

    About Kandji Kandji is the Apple Device Management and Security Platform. Kandji empowers companies to manage and secure Apple devices in the enterprise and at scale. By centrally securing and managing Mac, iPhone, iPad, and Apple TV devices, IT and InfoSec teams can save countless hours of manual, repetitive work with features like one-click compliance...


  • San Francisco, United States Hayden AI Technologies, Inc Full time

    About Us At Hayden AI, we are on a mission to harness the power of artificial intelligence and machine learning to transform the way governments and businesses address real-world challenges. From optimizing bus lane and bus stop enforcement to pioneering digital twin modeling and beyond, our innovative mobile perception system empowers our clients to...


  • San Francisco, California, United States Discord Full time

    Discord is about giving people the power to create space to find belonging in their lives. Trusted by millions of people to keep their communications secure, private, and out of the hands of evildoers, security and privacy are necessary to Discord's success.We are looking for a Senior Security Engineer, Platform Security reporting to the Platform Security...


  • San Francisco, United States Lakera Full time

    As our first dedicated Senior Security Engineer, you'll have a significant impact at a rapidly growing startup. We've built a small security program including SOC2 certification, but it's time for someone dedicated to lead that. Your role will vary, from implementing security monitoring tools to promoting IaC best practices to conducting risk assessments and...


  • San Francisco, United States Lakera Full time

    As our first dedicated Senior Security Engineer, you'll have a significant impact at a rapidly growing startup. We've built a small security program including SOC2 certification, but it's time for someone dedicated to lead that. Your role will vary, from implementing security monitoring tools to promoting IaC best practices to conducting risk assessments and...


  • San Francisco, United States Avant Digital Full time

    Juniper Networks Cyber Fusion is looking for a certified cybersecurity professional to join our highly collaborative and diverse team of talent. who will be responsible for ensuring the security and compliance of our cloud infrastructure and data. You will work with the engineering, DevOps, and IT teams to design, implement, and maintain security policies,...


  • San Francisco, United States Avant Digital, Inc. Full time

    Job Description: Job Description- Location: Remote Contract type - Contract / C2C Contract duration - 12 months Juniper Networks Cyber Fusion is looking for a certified cybersecurity professional to join our highly collaborative and diverse team of talent. who will be responsible for ensuring the security and compliance of our cloud infrastructure and data....


  • San Francisco, United States Lakera Full time

    Job DescriptionJob DescriptionAs our first dedicated Senior Security Engineer, you’ll have a significant impact at a rapidly growing startup. We’ve built a small security program including SOC2 certification, but it’s time for someone dedicated to lead that. Your role will vary, from implementing security monitoring tools to promoting IaC best...


  • San Francisco, United States Avant Digital, Inc. Full time

    Job Description:Job Description-Location: RemoteContract type - Contract / C2CContract duration - 12 months Juniper Networks Cyber Fusion is looking for a certified cybersecurity professional to join our highly collaborative and diverse team of talent. who will be responsible for ensuring the security and compliance of our cloud infrastructure and data. You...


  • San Francisco, United States Entertainment Services Alliance, Inc. Full time

    Fastly helps people stay better connected with the things they love. Fastly’s edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and securing our customers’ applications as close to their end-users as possible — at the edge of the Internet. The platform is designed to take...


  • San Francisco, United States Light and Wonder, Inc. Full time

    Corporate: Light & Wonder's corporate team is comprised of incredible talent that works across the enterprise, defying boundaries to provide essential services in an extraordinary manner to ensure the success of the organization and the well-being of employees. Position Summary JOB OVERVIEW The Senior Advanced Information Security Engineer will help protect...


  • San Francisco, United States Abnormal Security Full time

    Job DescriptionJob DescriptionAbout the RoleAbnormal Security is looking for a Senior ML Infra Engineer to join the Detection Team. The Detection Division is focused on building the world's most advanced technology for identifying and stopping email and cloud-based attacks that were previously undetectable and help make the world a safer place. As an ML...


  • San Francisco, United States Dedge Security Full time

    Dedge Security es una startup de ciberseguridad que nace de la mano de Rubén y Paco, una pareja de fundadores muy experimentados que tras vender su anterior empresa a un gran fabricante de Silicon Valley, ahora inician este nuevo proyecto, con el fin de asegurar el desarrollo y despliegue de soluciones Web3. Su plataforma permitirá mantener un control de...


  • San Francisco, United States AnaLog Services Inc Full time

    About Us: Analog is building a true Layer-0 blockchain network that ushers in the omnichain future, secured with the Proof-of-Time consensus mechanism. Backed by world-class investors, our vision is to facilitate the seamless communication of time data (events) between decentralized applications across different chains. We are a non-hierarchical team seeking...


  • San Francisco, United States Austin Werner Full time

    One of our clients, a pioneering multi-chain NFT Platform operating on Solana, Ethereum, Polygon, and Bitcoin is looking for a Senior Solidity Engineer! Their mission is to democratize digital ownership and catalyze the internet economy. At this project, you'll have the opportunity to dive deep into innovative projects and cultivate your skills. We foster a...


  • San Diego, United States Motion Recruitment Partners, LLC Full time

    Senior Staff Security Engineer - Embedded Devices and Encryption Position Overview: A leading embedded device client of ours is looking for a Senior Staff Security Engineer. This engineer would be focused on encryption for devices as well as secure embedded software development. The ideal candidate would come from a company working on physical products and...