- We are seeking an experienced Senior Platform Security Engineer to design, implement, and maintain security solutions for our cloud-native infrastructure and AI systems
- This role will be responsible for securing our platform across multiple cloud environments, ensuring container and Kubernetes security, protecting AI/ML workflows, and implementing robust security controls throughout our SDLC
- Cloud & Infrastructure Security:
- Design and implement comprehensive security architectures for cloud platforms (AWS, Azure, GCP)
- Implement security best practices for container and Kubernetes deployments
- Develop and maintain secure Infrastructure as Code (IaC) codebases
- Design and deploy zero-trust network architecture and secure service mesh solutions
- Build and maintain secure CI/CD pipelines following DevSecOps principles
- AI/ML Security:
- Secure AI-powered product features end to end, covering context assembly, tool invocation, and output handling
- Design and review security controls for RAG implementations
- Secure agentic solutions and their extension points: tool integrations (MCP clients and servers), agent skills, and autonomous action boundaries such as scoped credentials, sandboxing, and human-in-the-loop gates
- Build defenses against direct and indirect prompt injection and other adversarial inputs to LLM applications
- Establish data security controls for sensitive data flowing through inference, retrieval, and fine-tuning
- Security Operations:
- Lead incident response for cloud and AI infrastructure security incidents
- Develop and implement security monitoring and detection strategies
- Conduct threat modeling and risk assessments for cloud-native and AI systems
- Perform regular security assessments of cloud infrastructure and container deployments
- Create and maintain security documentation, including policies, procedures, and run-books
- Leadership & Collaboration:
- Collaborate with development, data science, and operations teams to integrate security
- Communicate security requirements and recommendations to technical and non-technical stakeholders
- Stay current with emerging threats and security trends in cloud-native and AI security
- Participate in technology selections for security tooling and platforms
Benefits
- A chance to do meaningful, people-centric work with an international team of passionate professionals
- Holistic wellbeing with free mental health coaching sessions, yoga, and a discounted membership to Urban Sports Club
- A monthly allowance to spend on home support services, including childcare, housekeeping, pet sitting, tutoring, and elderly care
- Employee stock options for all employees because everyone deserves to benefit from the success they help to create
- Dedicated relocation and visa support for those that need it
- 30 annual vacation days and flexible working hours
- Full trust to take ownership of your work in a flat hierarchy where feedback is encouraged and expected
- A generous learning budget to support your personal and professional development and guidance from our internal L&D experts
- Work from abroad for up to six weeks every year. Just align with your team, and then enjoy your trip
- Plenty of opportunities to socialise as a team. In addition to internal meetups, our international team hosts regular get-togethers virtually and in person when possible
- Free tax declaration filing, of course, through the Taxfix app and internal support for all personal tax-related questions
- Have a four-legged friend in your life? We’re happy to have dogs join us in the office
The ideal candidate will have deep technical and programmatic expertise in cloud-native security, along with demonstrable hands-on experience securing AI/ML systems Strong background in at least one major cloud provider (AWS, Azure, GCP) Demonstrable hands-on experience securing AI/ML or LLM-based systems 3+ years of hands-on experience securing containerized environments (Docker, Kubernetes) 5+ years of experience in information security, with at least 3 years specializing in cloud security Proficiency with Infrastructure as Code tools (Terraform, CloudFormation, etc.) Working knowledge of AI/ML and LLM security, including familiarity with frameworks like TensorFlow and PyTorch and their security implications Expert knowledge of container security, Kubernetes security, and cloud-native security patterns Experience with security automation and orchestration Experience with security tooling for cloud environments (Cloud Security Posture Management, CSPM) Strong understanding of network security, identity management, and access control Proficiency in scripting and programming languages (Python, Go, Bash) Not sure if you meet all the requirements for this role? Please apply anyway. You might bring something special to the team that we hadn’t considered previously Deep experience securing Large Language Models (LLMs) and generative AI systems Experience with secure multi-tenant AI infrastructure Familiarity with AI/LLM security frameworks ("e.g., OWASP LLM Top 10") and AI governance or compliance requirements Experience with privacy-enhancing technologies for AI/ML (differential privacy, federated learning) Experience building security tools or automation frameworks Contributions to open-source security projects or public security research