Senior Security Engineer, Platforms & AI

🏢 Spinwheel · all 3 jobs
📍 United States
📅 Posted Aug 14, 2026 · via Himalayas
🏷 Security Engineering, Cloud Security, AI Security, Platform Security, Devsecops, Platform Security Engineer +4 more
Apply on original site ↗

About the Role

We're looking for a hands-on Senior Security Engineer to own the technical security posture of our platform, infrastructure, and AI-driven systems. You'll spend most of your time in the systems themselves: hardening infrastructure, closing vulnerabilities, and building the guardrails that keep our AI-driven workflows safe.

Following our recent Series A, we're scaling rapidly and investing deeply in platform security, AI safety, and operational resilience. This is a builder's role, not a policy role. You'll work closely with Engineering to secure production systems, find weaknesses, and keep our monitoring and incident response sharp as we scale.

As a remote-first company, we welcome applicants based anywhere in the United States or Canada.

You'll join a high-ownership, high-trust engineering culture where self-starters thrive and autonomy is the natural state of work.

Key Responsibilities

Security Engineering & System Hardening
- Secure and harden cloud infrastructure, applications, APIs, internal systems, and operational workflows.

- Implement and maintain security controls across production environments, CI/CD pipelines, cloud infrastructure, and internal tooling.

- Work directly with engineering teams to remediate vulnerabilities and improve secure development practices.

- Ensure encryption, secrets management, logging, monitoring, and access controls are properly implemented and continuously maintained.

- Design and improve security architecture across cloud-native and distributed systems.

- Build scalable security processes that integrate directly into engineering and operational workflows.

Vulnerability Management & Offensive Security
- Continuously identify, assess, prioritize, and remediate security vulnerabilities across infrastructure, applications, APIs, and operational systems.

- Proactively search for weaknesses through vulnerability scanning, penetration testing, adversarial testing, threat modeling, and manual security reviews.

- Coordinate remediation efforts across engineering and operations teams, and validate fixes to ensure long-term mitigation.

- Improve detection and prevention capabilities for emerging threats.

- Help establish a culture of continuous security improvement and operational accountability.

AI Security & Emerging Threat Protection
- Secure AI-driven systems and automated agents against prompt injection, adversarial inputs, unauthorized or unintended actions, unsafe outputs, and data leakage.

- Design and implement guardrails and validation layers for AI-generated actions.

- Ensure AI systems safely handle untrusted inputs from IVRs, web systems, APIs, and human interactions.

- Monitor AI system behavior for anomalies, abuse attempts, or unsafe decision-making.

- Partner with engineering teams to ensure AI systems are observable, auditable, bounded, and fail safely.

- Help define operational and technical controls for responsible AI deployment.

Monitoring, Detection & Incident Response
- Improve and maintain security monitoring, alerting, logging, and incident response capabilities.

- Investigate suspicious activity, anomalies, and potential security incidents.

- Lead or support incident response efforts, root cause analysis, and remediation planning.

- Ensure operational visibility into system health, access patterns, and security events.

- Recommend and implement preventative measures following incidents or security discoveries.

Required Qualifications
- 7+ years of hands-on experience in security engineering, infrastructure security, application security, DevSecOps, or offensive security.

- Exceptional knowledge of the AWS ecosystem.

- Demonstrated experience identifying and remediating vulnerabilities in live production systems.

- Self-starter mindset: able to drive projects, make decisions, and prioritize ruthlessly in a fast-moving environment.

- Strong communication skills, with the ability to explain technical security issues clearly to engineering stakeholders.

Preferred Qualifications
- Experience securing AI/LLM-powered systems or automated agents.

- Familiarity with prompt injection attacks, adversarial AI techniques, AI guardrails, and behavioral anomaly detection.

- Experience with cloud security tooling, SIEM and observability platforms, penetration testing tools, endpoint security platforms, and infrastructure-as-code security.

- Prior experience in high-growth startup, fintech, banking, or payments environments.

- Certifications such as CISSP, CISM, AWS Security Specialty, or similar.

What We Offer
- 100% remote-first culture (work anywhere in the US or Canada)

- Competitive salary and equity opportunities

- Unlimited PTO, flexible schedule, and paid holidays

- Comprehensive health, dental, and vision insurance

- A culture built on ownership, transparency, autonomy, and craftsmanship

- Real opportunities for architecture ownership and technical leadership

Originally posted on Himalayas

Flights + hotels

This role requires you to be in the United States. If that means relocating or flying in, it is worth checking fares before you commit to a start date.

Compare flights and hotels →

← All remote jobs

Want more like this? Browse every live remote developer role.All remote developer jobs →
Get new developer jobs by email
Daily email, only when there's something new. One click to stop.

Get remote developer jobs like this by email

10 hand-picked jobs, one email a day. No spam, unsubscribe anytime.

Similar for you