Founding Enterprise Security Engineer

Harden

United States

Hybrid

USD 150,000 - 250,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Harden is looking for a Founding Enterprise Security Engineer to lead security initiatives. This role focuses on developing security layers for AI-generated applications, ensuring compliance and resilience.

The ideal candidate will have expertise in SSO, RBAC, and cloud-native security practices. A strong background in SaaS security for B2B enterprise customers is essential. Join us in making enterprise AI adoption safe and scalable!

Qualifications

  • Strong experience in security engineering for enterprise SaaS products.
  • Hands-on ownership of identity/tenant security features.
  • Experience designing secure APIs and cloud-native security.

Responsibilities

  • Design reusable security primitives for customer applications.
  • Define deny-by-default network patterns and credential schemes.
  • Collaborate to build security features directly into the deployment pipeline.
  • Research AI security threats and translate into product features.
  • Own threat models for the platform and AI-generated applications.

Skills

Security engineering
Product security
Platform security
Knowledge of SSO
RBAC implementation
Threat modeling
Cloud security

Tools

AWS
GCP
Azure
Kubernetes

Job description

# Founding Enterprise Security EngineerOnsite preferred, but remote considered for strong candidates in US or CanadaFull-time$150,000–$250,000 + equity## About UsHarden is the automated DevSecOps platform for AI-generated code. We provide the security layer that turns AI-generated prototypes into compliant, hardened applications — automatically patching critical bugs, adding SSO and SCIM, and securely deploying to your cloud with zero DevOps overhead.We're an early-stage venture-backed startup based in the SF Bay Area. The founding team combines AI/ML research leadership at Google DeepMind and Amazon with product leadership at Verkada and AWS. We already have enterprise customers locked in and are bringing on exceptional engineers to build the infrastructure that makes enterprise AI adoption safe and scalable.## About the RoleHarden is an opinionated DevSecOps layer that secures AI-generated applications by automatically injecting identity controls, network boundaries, and compliance instrumentation prior to deployment. Our focus is on the application and infrastructure layer surrounding AI systems, working alongside foundation model providers who advance model-level safety. We value engineers who can think adversarially about real-world deployments and translate that into resilient, production-grade systems.The ideal candidate blends enterprise security engineering, backend platform development, and solution architecture. This role requires deep experience with core SaaS security primitives such as SSO, SCIM, and RBAC, along with network isolation and SOC 2, ISO 27001, etc aligned controls. You will embed these capabilities directly into our automated pipeline and articulate their value in clear, executive-level terms for CISOs.## What You'll Do* •Design and implement reusable security primitives in Harden (SSO/OIDC integrations, SAML bridges, SCIM provisioning flows, RBAC policy engines, secure session management) that can be automatically injected into customer apps* •Define and enforce deny-by-default network patterns, surrogate credential schemes, egress allowlists, and secrets isolation for agent code running in customer VPCs* •Collaborate with backend and platform engineers to build runtime security and observability features (policy evaluation, anomaly detection hooks, SIEM integrations, compliance dashboards) directly into the deployment pipeline* •Continuously research AI security threats and best practices—across MLSecOps, agent security, and AI DevSecOps—and translate them into concrete hardening rules and product features* •Own threat models for Harden's platform and the AI-generated apps it deploys, focusing on identity, network boundaries, data flows, and AI-specific abuse paths (prompt injection, data exfiltration, agent jailbreaks)## What We're Looking For* •Strong experience in security engineering, product security, or platform security for enterprise SaaS products, ideally with B2B customers that demand SSO, RBAC, and compliance guarantees* •Hands-on ownership of at least one major identity/tenant feature in production: building SAML/OIDC SSO, SCIM 2.0 provisioning, or a multi-tenant RBAC system, including schema design, enforcement, and audit logging* •Experience designing secure APIs, services, and infrastructure-as-code* •Familiarity with cloud-native security (AWS, GCP, or Azure), Kubernetes, and patterns like zero-trust networking, least privilege, secret management, and service-to-service auth* •Experience with security assessments, threat modeling, and design reviews for complex systems, ideally including authentication/authorization, data segregation, and logging* •Strong understanding of security and compliance frameworks relevant to enterprise SaaS (SOC 2, ISO 27001, NIST), enough to design features that materially simplify audits## Nice to Have* •Prior AI research experience or deep familiarity with AI/ML security risks* •Published research, white papers, or technical blog posts on security topics* •Experience with agentic systems and LLM-based applications* •Contributions to security open source projects
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Pioneering Enterprise Security Engineer for AI/DevSecOps
Pioneering Enterprise Security Engineer for AI/DevSecOps

Harden • United States

On-site
Confidential
Founding AI Infrastructure Engineer
Founding AI Infrastructure Engineer

Harden • San Francisco (CA)

On-site
USD 150,000 - 250,000
Equity
Founding AI Engineer
Founding AI Engineer

Harden • San Francisco (CA)

On-site
USD 120,000 - 250,000
DevSecOps Engineer
DevSecOps Engineer

Lockedinai • New York (NY)

On-site
USD 140,000 - 195,000
Member of Technical Staff - Security
Member of Technical Staff - Security

Prime Intellect • San Francisco (CA), Northern (KY)

On-site
USD 180,000 - 350,000
Security AI DevSecOps Engineer
Security AI DevSecOps Engineer

Regional Management Corp • Plano (TX)

Hybrid
USD 140,000 - 170,000
Member of Technical Staff (Security) - AI Infrastructure
Member of Technical Staff (Security) - AI Infrastructure

Hamilton Barnes Associates Limited • United States

On-site
USD 213,000 - 288,000
Equity
Full Healthcare
Founding Security Engineer
Founding Security Engineer

Success Matcher Recruitment • San Francisco (CA)

On-site
USD 180,000 - 280,000
Member of Technical Staff - Security
Member of Technical Staff - Security

Prime Intellect AI • San Francisco (CA)

Hybrid
USD 180,000 - 350,000
Remote or SF office option
Visa sponsorship
Professional development budget
+2
Senior Security Engineer (Infrastructure)
Senior Security Engineer (Infrastructure)

Chainguard • New York (NY)

Remote
USD 180,000 - 230,000
Equity/stock options
Unlimited PTO
Remote work with flexible coworking
+2