Founding Enterprise Security Engineer

Harden

United States

Hybrid

USD 150,000 - 250,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Harden is looking for a Founding Enterprise Security Engineer to lead security initiatives. This role focuses on developing security layers for AI-generated applications, ensuring compliance and resilience.

The ideal candidate will have expertise in SSO, RBAC, and cloud-native security practices. A strong background in SaaS security for B2B enterprise customers is essential. Join us in making enterprise AI adoption safe and scalable!

Qualifications

  • Strong experience in security engineering for enterprise SaaS products.
  • Hands-on ownership of identity/tenant security features.
  • Experience designing secure APIs and cloud-native security.

Responsibilities

  • Design reusable security primitives for customer applications.
  • Define deny-by-default network patterns and credential schemes.
  • Collaborate to build security features directly into the deployment pipeline.
  • Research AI security threats and translate into product features.
  • Own threat models for the platform and AI-generated applications.

Skills

Security engineering
Product security
Platform security
Knowledge of SSO
RBAC implementation
Threat modeling
Cloud security

Tools

AWS
GCP
Azure
Kubernetes

Job description

# Founding Enterprise Security EngineerOnsite preferred, but remote considered for strong candidates in US or CanadaFull-time$150,000–$250,000 + equity## About UsHarden is the automated DevSecOps platform for AI-generated code. We provide the security layer that turns AI-generated prototypes into compliant, hardened applications — automatically patching critical bugs, adding SSO and SCIM, and securely deploying to your cloud with zero DevOps overhead.We're an early-stage venture-backed startup based in the SF Bay Area. The founding team combines AI/ML research leadership at Google DeepMind and Amazon with product leadership at Verkada and AWS. We already have enterprise customers locked in and are bringing on exceptional engineers to build the infrastructure that makes enterprise AI adoption safe and scalable.## About the RoleHarden is an opinionated DevSecOps layer that secures AI-generated applications by automatically injecting identity controls, network boundaries, and compliance instrumentation prior to deployment. Our focus is on the application and infrastructure layer surrounding AI systems, working alongside foundation model providers who advance model-level safety. We value engineers who can think adversarially about real-world deployments and translate that into resilient, production-grade systems.The ideal candidate blends enterprise security engineering, backend platform development, and solution architecture. This role requires deep experience with core SaaS security primitives such as SSO, SCIM, and RBAC, along with network isolation and SOC 2, ISO 27001, etc aligned controls. You will embed these capabilities directly into our automated pipeline and articulate their value in clear, executive-level terms for CISOs.## What You'll Do* •Design and implement reusable security primitives in Harden (SSO/OIDC integrations, SAML bridges, SCIM provisioning flows, RBAC policy engines, secure session management) that can be automatically injected into customer apps* •Define and enforce deny-by-default network patterns, surrogate credential schemes, egress allowlists, and secrets isolation for agent code running in customer VPCs* •Collaborate with backend and platform engineers to build runtime security and observability features (policy evaluation, anomaly detection hooks, SIEM integrations, compliance dashboards) directly into the deployment pipeline* •Continuously research AI security threats and best practices—across MLSecOps, agent security, and AI DevSecOps—and translate them into concrete hardening rules and product features* •Own threat models for Harden's platform and the AI-generated apps it deploys, focusing on identity, network boundaries, data flows, and AI-specific abuse paths (prompt injection, data exfiltration, agent jailbreaks)## What We're Looking For* •Strong experience in security engineering, product security, or platform security for enterprise SaaS products, ideally with B2B customers that demand SSO, RBAC, and compliance guarantees* •Hands-on ownership of at least one major identity/tenant feature in production: building SAML/OIDC SSO, SCIM 2.0 provisioning, or a multi-tenant RBAC system, including schema design, enforcement, and audit logging* •Experience designing secure APIs, services, and infrastructure-as-code* •Familiarity with cloud-native security (AWS, GCP, or Azure), Kubernetes, and patterns like zero-trust networking, least privilege, secret management, and service-to-service auth* •Experience with security assessments, threat modeling, and design reviews for complex systems, ideally including authentication/authorization, data segregation, and logging* •Strong understanding of security and compliance frameworks relevant to enterprise SaaS (SOC 2, ISO 27001, NIST), enough to design features that materially simplify audits## Nice to Have* •Prior AI research experience or deep familiarity with AI/ML security risks* •Published research, white papers, or technical blog posts on security topics* •Experience with agentic systems and LLM-based applications* •Contributions to security open source projects
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Pioneering Enterprise Security Engineer for AI/DevSecOps
Pioneering Enterprise Security Engineer for AI/DevSecOps

Harden • United States

On-site
Founding AI Infrastructure Engineer
Founding AI Infrastructure Engineer

Harden • San Francisco (CA)

Hybrid
USD 150,000 - 250,000
Equity
Founding AI Engineer
Founding AI Engineer

Harden • San Francisco (CA)

Hybrid
USD 120,000 - 250,000
DevSecOps Engineer
DevSecOps Engineer

Lockedinai • New York (NY)

On-site
USD 140,000 - 195,000
Security Engineer - Product Security (Senior)
Security Engineer - Product Security (Senior)

Cogent • All (MO)

On-site
USD 100,000 - 300,000
Senior Software Security Engineer
Senior Software Security Engineer

Xcede • San Francisco (CA)

On-site
USD 120,000 - 160,000
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Spinwheel Solutions Inc. • Oakland (CA)

On-site
USD 140,000 - 190,000
Remote-First
Salary & Equity
Unlimited PTO
+2
Security Engineer (AI DevTool Start-Up)
Security Engineer (AI DevTool Start-Up)

Rise Technical Recruitment Limited • San Francisco (CA)

On-site
USD 200,000 - 230,000
Equity
Benefits
401(k)
Founding Security Engineer
Founding Security Engineer

Success Matcher Recruitment • San Francisco (CA)

On-site
USD 180,000 - 240,000
Senior Sales Engineer, AI and Cloud Security
Senior Sales Engineer, AI and Cloud Security

Silverfort • United States

On-site
USD 120,000 - 160,000