Security Engineer

Legora

Stockholms kommun

On-site

SEK 1,000,000 - 1,500,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Legora is seeking exceptional Security Engineers to own security end to end across a multi-tenant AI platform and a multi-cloud estate (Azure as primary). This hands-on role requires deep specialization in Application Security, Detection Engineering & Response, or Cloud & Platform Security, with strong coding in TypeScript/Node.js and Python.

Based in Stockholm or New York, the team values lean in ownership and excellence.

Qualifications

  • Several years of engineering security specialization with depth in vulnerabilities, incidents, or tooling.
  • Proficient production-grade code in TS/Node.js and Python.
  • Able to operate across application security, detection & response, and cloud/platform security.

Responsibilities

  • Own security work end to end: architecture, tooling, roadmap, and outcomes.
  • Work embedded with engineering teams to make secure design, development, and operations the default.
  • Build and ship software: guardrails, detections, libraries, automation, and workflows that live in git, reviewed, tested, and deployed through CI/CD.
  • Raise the security bar across engineering through design reviews, threat modelling, tooling, and enablement.
  • Fix the class of bug, not just the instance, by turning findings into patterns, defaults, or detections.
  • Secure a multi-tenant AI platform, including identity, authorisation, tenant isolation, data handling, and model-facing attack surfaces.
  • Build with LLMs and agents, and help secure code and workflows produced at agent speed.
  • Respond to incidents and write post-mortems that lead to meaningful technical and organisational improvements.
  • Your specialisation: Application Security; Detection Engineering & Response; Cloud & Platform Security.

Skills

Security engineering
TypeScript/Node.js
Python
Incident response
Threat modelling
Identity & access management

Tools

TypeScript
Node.js
Python
CI/CD
Kubernetes (AKS)

Job description

About Us

Legora is redefining how legal work gets done. Not built for lawyers, built with them. We work alongside the world’s best legal teams, who expect excellence, precision, and speed, and we hold ourselves to the same bar.

Our AI-native workspace lets legal professionals move faster, think more clearly, and operate with sharper precision. By analysing thousands of documents in minutes and powering end-to-end workflows, we cut through complexity, teams can focus on what matters: judgment, strategy, and outcomes.

1,000+ customers across 50+ countries trust us, including Cleary Gottlieb, Goodwin, Linklaters, White & Case, Dentons, and Barclays. We’ve scaled to $100M+ in ARR, with teams across Europe, North America and APAC, and continue to expand through acquisitions including Qura, Walter AI and Graceview.

We partner with world-class performers: including Aaron Judge and the New York Yankees, Ludvig Åberg (and his caddie), and campaigns featuring Jude Law.

Joining Legora means three things.

  • We lean in: ownership over titles, outcomes over intentions.

  • We fight for excellence: high standards, direct, ego-free feedback.

  • We grow together: as a team and with our customers.

Mission before ego. Everyone contributes. No one coasts.

If you’re driven by impact, pace, and raising the bar. This is the place.

The role:

At Legora, security is the foundation of the trust our customers place in us. The world’s leading law firms, as well as some of the biggest corporations use our platform for their most sensitive matters, and we need security to be built into how we design, ship, operate, and scale.

We are looking for exceptional Security Engineers who can build leverage across a large surface area: a multi-tenant AI platform, a multi-cloud estate with Azure as our primary cloud, and an engineering organisation that ships fast. This is a hands‑on engineering role. You will own security work end to end, build tooling and guardrails, embed with engineering teams, and make the secure path the default path.

We hire T‑shaped security engineers. You should bring real depth in one of Application Security, Detection Engineering & Response, or Cloud & Platform Security, while staying credible across the others. Tell us in your application which area is your specialisation.

This role can be based in Stockholm or New York. It is a 5-day in‑office role, we believe building together in person drives better outcomes.

What you will be doing:
  • Own security work end to end: architecture, tooling, roadmap, and outcomes.

  • Work embedded with engineering teams to make secure design, development, and operations the default.

  • Build and ship software: guardrails, detections, libraries, automation, and workflows that live in git, are reviewed, tested, and deployed through CI/CD.

  • Raise the security bar across engineering through design reviews, threat modelling, tooling, and enablement.

  • Fix the class of bug, not just the instance, by turning findings into patterns, defaults, or detections.

  • Secure a multi‑tenant AI platform, including identity, authorisation, tenant isolation, data handling, and model‑facing attack surfaces.

  • Build with LLMs and agents, and help secure code and workflows produced at agent speed.

  • Respond to incidents and write post‑mortems that lead to meaningful technical and organisational improvements.

Your specialisation:
  • Application Security: Threat model features and architectures, review high‑risk changes across authentication, authorisation, tenant isolation, and data handling, and secure AI and agentic product features against prompt injection, tool‑use abuse, data exfiltration, and related attack paths.

  • Detection Engineering & Response: Own detection‑as‑code, security data pipelines, abuse and account‑compromise detection, and incident response across corporate and product surfaces. Build the agents that run first‑pass triage and investigation, plus the guardrails and evals that make their output trustworthy. No tiered queue.

  • Cloud & Platform Security: Harden identity, access, cloud control planes, CI/CD, supply chain, infrastructure‑as‑code, AKS baselines, tenant isolation primitives, and least‑privilege access for engineers, workloads, and AI agents.

Who you are:
  • Several years of engineering experience in your security specialisation, with real depth in vulnerabilities you have found, incidents you have run, systems you have hardened, or tooling you have built.

  • You are an engineer who writes production‑quality code; we work primarily in TypeScript/Node.js and Python.

  • You are comfortable operating across application security, detection and response, and cloud/platform security, even if one of those areas is your main depth.

  • You understand identity, authorisation, multi‑tenancy, and where security boundaries tend to break.

  • You communicate clearly, translate risk into engineering terms, and influence teams without relying on mandates.

  • You are calm and structured under incident pressure, and honest afterwards.

  • You are excited by a small team with a large surface area, where the right answer is usually to build leverage rather than create queues.

Nice to have:
  • Experience securing LLM‑based or agentic products.

  • Experience building a security function at a high‑growth SaaS company.

  • Familiarity with multi‑tenant SaaS isolation models.

  • Experience in environments with strict confidentiality, data residency, or professional secrecy requirements.

  • Supply chain security depth, such as SLSA, artifact signing, or SBOMs.

Legora is an Equal Opportunity Employer

At Legora, we believe great teams are built on diversity of thought and experience. We’re proud to be an equal opportunity employer and committed to creating an inclusive, high‑performance culture where everyone can do their best work. We welcome people of all backgrounds and don’t discriminate based on race, color, religion, national origin, gender, gender identity or expression, sexual orientation, age, disability, veteran status, or any other characteristic protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer
Software Engineer

Legora • Stockholms kommun

On-site
Confidential
Solutions Engineer
Solutions Engineer

Legora AB • Stockholms kommun

On-site
Confidential
30 days of paid vacation
5000kr wellness contribution
Pension and parental leave top-up
+2
Platform Engineer
Platform Engineer

Menlo Ventures • Stockholms kommun

On-site
Confidential
Equal Opportunity Employer
Inclusive culture
Diverse team environment
Solutions Engineer
Solutions Engineer

Menlo Ventures • Stockholms kommun

On-site
Confidential
30 days of paid vacation
5000kr wellness contribution
Pension and parental leave top-up
+2
Software Engineer (AI Focus) Stockholm HQ
Software Engineer (AI Focus) Stockholm HQ

Legora AB • Stockholms kommun

On-site
Confidential
Software Engineer
Software Engineer

Menlo Ventures • Malmö kommun

On-site
Confidential
Senior Software Engineer
Senior Software Engineer

Menlo Ventures • Stockholms kommun

On-site
Confidential
Senior Site Reliability Engineer
Senior Site Reliability Engineer

Legora • Stockholms kommun

On-site
SEK 1,000,000 - 1,400,000
Senior Software Engineer Stockholm HQ
Senior Software Engineer Stockholm HQ

Legora AB • Stockholms kommun

On-site
Confidential
Forward Deployed Engineer - SE
Forward Deployed Engineer - SE

Legora • Stockholms kommun

On-site
Confidential