DevSecOps Engineer (TypeScript & Agentic AI)

your Jared

Northern (KY)

Hybrid

USD 150,000 - 200,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision
401(k)
Unlimited PTO
Generous parental leave
WFH stipend

Job summary

Arize AI is hiring a DevSecOps Engineer to embed security into every pipeline across a TypeScript-heavy stack (Node.js services, Next.js frontends). You will design guardrails for agentic AI workflows, build tooling, and lead incident response, pairing with product and AI/ML teams.

We value collaboration, seniority, and curiosity about agentic AI. This is a remote-first role with optional offices in NYC and SF, plus a monthly WFH stipend.

Qualifications

  • 4+ years in DevSecOps, application security, or platform security roles.
  • Strong working knowledge of TypeScript and the Node.js ecosystem.
  • Practical experience securing cloud infrastructure (AWS, GCP, or Azure), containers, and Kubernetes.
  • Fluency with modern CI/CD tooling and IaC (Terraform, Pulumi).
  • Genuine curiosity about agentic AI systems and related security patterns.
  • Collaborative, pair-on-a-problem mindset and strong communication.

Responsibilities

  • Design and implement guardrails for agentic AI workflows, including tool-use sandboxing and runtime policy enforcement.
  • Build internal tooling in TypeScript: SDKs, CLI utilities, GitHub Actions, and developer dashboards.
  • Threat-model new features with product engineers, especially LLM integrations and agent frameworks.
  • Integrate SAST, DAST, SCA, secret scanning, and IaC scanning into CI workflows.
  • Lead incident response for security events and produce blameless postmortems.
  • Mentor engineers on secure coding patterns and agent-based risk management.

Skills

TypeScript
Node.js
CI/CD
Cloud security
Kubernetes
Agentic AI security
Collaboration
Ambiguity handling

Tools

GitHub Actions
LangGraph
OpenAI SDK
Anthropic SDK
Kubernetes
Terraform
Pulumi

Job description

About Arize

AI is rapidly transforming the world. As generative AI reshapes industries, teams need powerful ways to monitor, troubleshoot, and optimize their AI systems. That’s where we come in. Arize AI is the leading AI & Agent Engineering observability and evaluation platform, empowering AI engineers to ship high-performing, reliable agents and applications. From first prototype to production scale, Arize AX unifies build, test, and run in a single workspace—so teams can ship faster with confidence.

We’re a Series C company backed by top-tier investors, with over $135M in funding and a rapidly growing customer base of 150+ leading enterprises and Fortune 500 companies. Customers like Booking.com, Uber, Siemens, and PepsiCo leverage Arize to deliver AI that works.

The Opportunity

We're hiring a DevSecOps Engineer to embed security into how we ship software — not as a gate at the end, but as a capability woven through every pipeline, repo, and runtime. You'll work across a TypeScript-heavy stack (Node.js services, Next.js frontends, internal platform tools) and play a central role in how we securely design, deploy, and operate agentic AI systems — autonomous and semi-autonomous AI agents that take real actions on behalf of users and engineers.

This role is deeply collaborative. You'll spend more time pairing with other departments. If you believe security is best delivered as developer experience, you'll feel at home.

We're a small, senior team that prioritizes collaboration over hierarchy and enablement over enforcement. Security at our company isn't a department people avoid — it's a function people pull into their work because we make it useful. Expect a lot of pairing, frequent design reviews, and a culture where asking "is this secure?" early is celebrated, not punished.We believe the next generation of software will be co-built with AI agents. We want a teammate who is excited to figure out, alongside us, what it means to make that future safe.

What You'll Do:
  • Design and implement guardrails for agentic AI workflows — including tool-use sandboxing, prompt-injection defenses, MCP server hardening, secret scoping for agents, and runtime policy enforcement.
  • Build internal tooling in TypeScript: SDKs, CLI utilities, GitHub Actions, custom linters, and developer-facing dashboards that make the secure path the easy path.
  • Threat-model new features alongside product engineers, especially those involving LLM integrations, autonomous agents, or third-party tool calls.
  • Integrate and tune SAST, DAST, SCA, secret scanning, and IaC scanning (Terraform, Kubernetes manifests, Helm) into pull-request workflows with low-friction feedback loops.
  • Lead incident response for security events, coordinating cross-functionally and producing blameless postmortems that improve our systems, not assign blame.
  • Partner with the AI/ML team on responsible deployment of agents — defining what "trusted action" means, what telemetry we need, and how we contain blast radius when an agent misbehaves.
  • Mentor engineers across the org on secure coding patterns in TypeScript and on the unique risks of building with LLMs and agent frameworks.
What We're Looking For
  • 4+ years of hands-on experience in DevSecOps, application security, or platform security roles.
  • Strong working knowledge of TypeScript and the Node.js ecosystem.
  • Practical experience securing cloud infrastructure (AWS, GCP, or Azure), containers, and Kubernetes.
  • Fluency with modern CI/CD tooling (GitHub Actions, or similar) and IaC (Terraform, Pulumi).
  • Genuine curiosity about — and ideally hands-on experience with agentic AI systems: LLM tool use, function calling, MCP, agent frameworks (LangGraph, OpenAI Agents SDK, Anthropic SDK, etc.), and the emerging security patterns around them.
  • A collaboration-first mindset. You write clearly, give feedback kindly, and would rather pair on a problem than throw a Jira ticket over the wall.
  • Comfort with ambiguity — the security playbook for agentic systems is being written in real time, and you want to help write it.
Bonus Points
  • Experience with prompt-injection research, LLM red-teaming, or AI safety/evals work.
  • Contributions to open-source, especially in the TypeScript or AI or Security ecosystems.
  • Familiarity with SOC 2, ISO 27001, or similar compliance frameworks — and opinions on how to satisfy them without crushing engineering velocity.
  • Background in incident response or detection engineering at a fast-moving company.

The estimated annual salary for this role is between $150,000 - $200,000, plus a competitive equity package. Actual compensation is determined based upon a variety of job related factors that may include: transferable work experience, skill sets, and qualifications. Total compensation also includes a comprehensive benefit package, including: medical, dental, vision, 401(k) plan, unlimited paid time off, generous parental leave plan, and others for mental and wellness support.

While we are a remote-first company, we have opened offices in New York City and the San Francisco Bay Area, as an option for those in those cities who wish to work in-person. For all other employees, there is a WFH monthly stipend to pay for co-working spaces.

More About Arize

Arize’s mission is to make the world’s AI work—and work for people.
Our founders came together through a shared frustration: while investments in AI are growing rapidly across every industry, organizations face a critical challenge—understanding whether AI is performing and how to improve it at scale.

Learn more about what we're doing here:

https://techcrunch.com/2025/02/20/arize-ai-hopes-it-has-first-mover-advantage-in-ai-observability/

Diversity & Inclusion @ Arize

Arize’s mission is to make AI work and make AI work for the people, we hope to make an impact in bias industry-wide and that's a big motivator for people who work here. We actively hope that individuals contribute to a good culture

  • Regularly have chats with industry experts, researchers, and ethicists across the ecosystem to advance the use of responsible AI
  • Culturally conscious events such as LGBTQ trivia during pride month
  • We have an active Lady Arizers subgroup
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Forward Deployed AI Engineer, West
Forward Deployed AI Engineer, West

your Jared • San Francisco (CA), Northern (KY)

Hybrid
USD 155,000 - 190,000
Medical coverage
401(k) plan
Unlimited PTO
Senior AI Product Engineer, Fullstack
Senior AI Product Engineer, Fullstack

Arize AI • San Francisco (CA)

Hybrid
USD 125,000 - 225,000
Unlimited paid time off
401(k) plan
Remote work stipend
Forward Deployed AI Engineer, East
Forward Deployed AI Engineer, East

your Jared • New York (NY), Northern (KY)

Hybrid
USD 155,000 - 190,000
Medical insurance
Dental
Vision
+4
AI Solutions Engineer, East
AI Solutions Engineer, East

Arize AI • New York (NY)

Hybrid
USD 125,000 - 175,000
Unlimited paid time off
Generous parental leave
Comprehensive medical, dental, vision benefits
Open Source AI Engineer (Typescript)
Open Source AI Engineer (Typescript)

your Jared • Northern (KY)

Hybrid
USD 185,000 - 200,000
WFH stipend
Medical, dental, vision
Unlimited PTO
+1
Senior Open Source Design Engineer
Senior Open Source Design Engineer

Cerebras • United States

Remote
USD 145,000 - 185,000
Unlimited paid time off
401(k) plan
Generous parental leave
+1
Developer Relations Education Engineer Arize AI San Francisco, CA, US Workplace 13 hours ago
Developer Relations Education Engineer Arize AI San Francisco, CA, US Workplace 13 hours ago

Content Creators • San Francisco (CA), Northern (KY)

Hybrid
USD 100,000 - 175,000
Medical, Dental, Vision
401(k) plan
Unlimited PTO
+2
Senior AI Product Manager, Observability
Senior AI Product Manager, Observability

your Jared • Northern (KY)

Hybrid
USD 200,000 - 250,000
WFH stipend
Medical, dental, vision
401(k)
+2
Enterprise Account Executive, EMEA
Enterprise Account Executive, EMEA

Cerebras • New Jersey

On-site
USD 250,000 - 300,000
Unlimited paid time off
Generous parental leave plan
WFH monthly stipend
AI Solutions Manager, SMB
AI Solutions Manager, SMB

your Jared • Northern (KY)

Hybrid
USD 140,000 - 175,000
Medical
Dental
Vision
+5