Staff Product Security Engineer, AI Security & Security Assurance

Medallia

Municipio de Esquel

Híbrido

ARS 1.600.000 - 2.800.000

Jornada completa

14 días+
Generador de candidaturas

No envíes un currículum genérico: crea un currículum y una carta de presentación adaptados a este puesto concreto.

Supera los filtros ATS

Descripción de la vacante

Medallia is seeking a Senior Staff Product Security Engineer to lead security strategy for AI-powered products and agentic systems. You will partner with Product, Engineering, Data Science, and Security to embed security into design, development, and deployment of AI-enabled capabilities.

The role requires deep expertise in application security, threat modeling, and security architecture, with knowledge of Generative AI, LLMs, AI agents, and secure system design.

Formación

  • Minimum 12+ years in Product Security, Application Security, or related roles.
  • Experience at Staff or Senior Staff level with security leadership influence.
  • Strong background in threat modeling, architecture reviews, and secure SDLC.

Responsabilidades

  • Lead threat modeling for critical product and platform initiatives.
  • Define security requirements and guardrails for AI-enabled products and services.
  • Evaluate emerging AI technologies and assess related security risks.
  • Partner with engineering to ensure AI features are secure by design.
  • Develop security reference architectures and design patterns for engineering teams.
  • Identify systemic security risks and drive remediation strategies.

Conocimientos

Threat Modeling
Security Architecture
Application Security
Cloud Security
Secure SDLC
Vulnerability Management
Secure Design Principles

Herramientas

Kubernetes
Containers
Cloud-native platforms

Descripción del empleo

Medallia is the pioneer and market leader in Experience Management. Our award-winning SaaS platform, Medallia Experience Cloud, leads the market in the management of experiences, insights, and actions for candidates, customers, employees, patients, and residents alike.

We believe that every experience is a memory that can last a lifetime. Experiences shape the way people feel about a company. And they greatly influence how likely people are to advocate, contribute, and stay. At Medallia, we are committed to creating a world where organizations are loved by their customers and their employees.

We empower exceptional people to create extraordinary experiences together.

Bring your whole self.

The Role and Team

We are seeking a Senior Staff Product Security Engineer to lead Medallia's security strategy and assurance efforts for AI-powered products, agentic systems, next-generation platforms, and emerging technologies.

This individual will serve as the technical leader for AI Security and Security Assurance, partnering with Product, Engineering, Architecture, Data Science, and Security teams to ensure security is embedded into the design, development, and deployment of modern AI-enabled capabilities.

The ideal candidate combines deep expertise in application security, threat modeling, and security architecture with a strong understanding of Generative AI, LLMs, AI agents, and secure system design. They will identify emerging risks, establish scalable security practices, and help define Medallia's long-term approach to securing AI-enabled products and platforms.

Responsibilities
AI Security Lead
  • Serve as the technical authority for security reviews involving:
    • Generative AI applications
    • LLM-powered features
    • AI agents
    • Agentic workflows
    • MCP (Model Context Protocol) integrations
    • AI skills and marketplaces
    • AI coding assistants
    • Bring Your Own Model (BYOM) capabilities
  • Define security requirements and guardrails for AI-enabled products and services.
  • Evaluate emerging AI technologies and assess associated security risks.
  • Partner with engineering and product teams to ensure AI features are secure by design.
Threat Modeling & Security Architecture
  • Lead threat modeling efforts for critical product and platform initiatives.
  • Establish and scale a threat modeling program across engineering organizations.
  • Conduct security architecture reviews for high-risk and strategic initiatives.
  • Develop security reference architectures, design patterns, and guidance for engineering teams.
  • Identify systemic security risks and drive long-term remediation strategies.
Security Assurance
  • Own and evolve Product Security assurance activities including:
    • Security reviews
    • Security assessments
    • AI security reviews
    • Security testing strategies
    • Security requirements and standards
  • Define risk-based approaches for evaluating emerging technologies.
  • Partner with engineering teams to embed security validation throughout the SDLC.
Secure Development & Developer Enablement
  • Establish secure development standards for AI-enabled applications.
  • Drive adoption of secure coding practices across engineering teams.
  • Develop scalable developer guidance and security enablement programs.
  • Evaluate and implement approaches to improve security feedback during development, including AI-assisted security review capabilities.
Security Automation & Innovation
  • Identify opportunities to automate security reviews and reduce manual effort.
  • Partner with security tooling owners to improve developer experience and security coverage.
  • Define metrics that measure effectiveness of AI security and security assurance programs.
  • Evaluate emerging security technologies relevant to AI and modern software development.
Cross-Functional Influence
  • Partner closely with Product, Engineering, Architecture, Data Science, Privacy, Legal, Compliance, and Operations teams.
  • Influence technical direction through expertise and relationship-building.
  • Mentor Staff and Senior Engineers in threat modeling, architecture reviews, and AI security.

Candidates based in the Buenos Aires vicinity will be prioritized as this role is Hybrid, 3 days per week onsite.

Qualifications
Minimum Qualifications
  • 12+ years of experience in Product Security, Application Security, Security Architecture, or Security Engineering.
  • Proven experience operating at Staff or Senior Staff level within a technology organization.
  • Demonstrated expertise in:
    • Threat Modeling
    • Security Architecture Reviews
    • Application Security
    • Cloud Security
    • Secure SDLC
    • Vulnerability Management
    • Secure Design Principles
  • Demonstated experience securing modern architectures including:
    • APIs
    • Microservices
    • Kubernetes
    • Containers
    • Cloud-native platforms
  • Demonstrated understanding of security frameworks and standards including:
    • OWASP
    • NIST
    • SOC 2
    • ISO 27001
    • PCI DSS
  • Demonstrated ability to influence engineering organizations and drive security outcomes without direct authority.
Preferred Qualifications
  • Experience securing:
    • Generative AI applications
    • LLM-based products
    • AI agents
    • Agentic workflows
    • MCP integrations
    • Retrieval-Augmented Generation (RAG) systems
  • Familiarity with AI security concepts including:
    • Prompt Injection
    • Indirect Prompt Injection
    • Tool Abuse
    • Agent Authorization
    • Data Leakage
    • Model Abuse
    • AI Threat Modeling
  • Experience developing security guidance for AI-enabled software development.
  • Security certifications such as CISSP, CSSLP, GIAC, AWS Security Specialty, or equivalent.

At Medallia, we celebrate diversity and recognize the value it brings to our customers and employees. Medallia is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age (40 and over), disability, genetic information, veteran status or military service, or any other status protected by state or local law. Individuals with a disability who need an accommodation to apply please contact us at ApplicantAccessibility@medallia.com. For information regarding how Medallia collects and uses personal information, please review our Privacy Policies. Applications will be accepted for 30 days from the date this role was posted or until the role has been filled.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Product Security Engineer II
Product Security Engineer II

Medallia • Buenos Aires

Presencial
ARS 52.104.000 - 81.878.000
Senior Technical Program Manager, AI
Senior Technical Program Manager, AI

Medallia • Buenos Aires

Presencial
ARS 179.813.000 - 269.719.000
Senior Technical Program Manager, AI
Senior Technical Program Manager, AI

Medallia • Municipio de Esquel

Híbrido
ARS 209.782.000 - 314.673.000
Senior AI Security Engineer — Threat Modeling & Assurance
Senior AI Security Engineer — Threat Modeling & Assurance

Medallia • Municipio de Esquel

Híbrido
ARS 1.600.000 - 2.800.000
Principal Engineer, Context & Knowledge Systems
Principal Engineer, Context & Knowledge Systems

Medallia • Municipio de Esquel

Híbrido
ARS 176.967.000 - 235.957.000
Semi-Senior IT Systems Engineer, Identity Access Management
Semi-Senior IT Systems Engineer, Identity Access Management

Medallia • Buenos Aires

Presencial
ARS 1.200.000 - 1.800.000
Principal Engineer, Data & Event Intelligence
Principal Engineer, Data & Event Intelligence

Medallia • Buenos Aires

Presencial
ARS 114.613.180 - 171.919.771
Financial Planning & Analysis, Senior Analyst, R&D Finance
Financial Planning & Analysis, Senior Analyst, R&D Finance

Medallia • Buenos Aires

Presencial
ARS 1.800.000 - 2.400.000
Staff Data Platform Engineer
Staff Data Platform Engineer

Medallia • Municipio de Esquel

Híbrido
ARS 211.983.000 - 302.833.000
Senior Software Engineer, Front-End (Text Analytics)
Senior Software Engineer, Front-End (Text Analytics)

Medallia • Buenos Aires

Presencial
ARS 2.000.000 - 3.200.000