Information Security Engineer

Hark

San Jose (CA)

On-site

USD 150,000 - 300,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Hark is seeking a hands‑on Member of Technical Staff (Information Security Engineer) to secure our AWS‑driven infrastructure and hardware‑augmented AI platform in San Jose, CA. You will harden AWS environments, manage IAM across the company, and lead detection, response, and post‑incident reviews in a dynamic environment.

This role focuses on building and operating security controls, enforcing zero‑trust networking, and evaluating third‑party vendors for risk, while advancing automation to

Qualifications

  • 4-8 years of hands‑on security engineering experience in cloud and infrastructure security.
  • Deep fluency in AWS security (IAM, Organizations/SCPs, CloudTrail, EKS), network hardening, and cloud posture tooling like Wiz (or equivalent).
  • Experience with detection engineering and incident response using tools like GuardDuty and CrowdStrike (or equivalent); you've triaged real alerts and contained real incidents.
  • Ability to read and review infrastructure‑as‑code (Pulumi, Terraform, or similar) for security issues.
  • Comfort writing code and automation (Python, Go, or similar) to eliminate manual security work.
  • Experience administering identity and endpoint platforms like Google Workspace as IdP, Kandji, and CrowdStrike (or equivalent IdP, MDM, and EDR tools).

Responsibilities

  • Harden cloud infrastructure across multiple AWS accounts (IAM, EKS, VPC and network access paths, KMS) and review IaC for misconfigurations.
  • Own identity and access: SSO, least‑privilege IAM, just‑in‑time access, secrets management, and access reviews.
  • Build and maintain detection and alerting pipelines; lead triage, containment, and post‑incident review.
  • Secure the corporate environment: endpoint management, SaaS security posture, and zero‑trust network access.
  • Evaluate third‑party vendors and integrations for security and privacy risk.
  • Build the technical controls and evidence behind our compliance programs (SOC 2, GDPR) as automation, not spreadsheets.

Skills

AWS Security
Cloud security
Incident response
IAM & access
IaC review
Scripting (Python/Go)
Identity management
Detection engineering
Zero trust

Tools

Wiz
GuardDuty
CrowdStrike
Pulumi
Terraform
KMS
Google Workspace as IdP
Kandji
Cloudflare
HashiCorp Vault

Job description

About Hark

Hark is an artificial intelligence company building advanced, personalized intelligence. One that is proactive, multimodal, and capable of interacting with the world through speech, text, vision, and persistent memory.


We're pairing that intelligence with next-generation hardware to create a universal interface between humans and machines. While today's AI largely operates through chat boxes and decade-old devices, Hark is focused on what comes next: agentic systems that interact naturally with people and the real world.


To get there, we're developing multimodal models and next-generation AI hardware together, designed from the ground up as a single, unified interface for a new era of intelligent systems.


About the Role

We're hiring a Member of Technical Staff (Information Security Engineer) to secure the infrastructure and systems Hark runs on. You'll harden our AWS environments, own identity and access across the company, build detection and response, and lead incident response when things go wrong. We run model training, agent sandboxes, and hardware manufacturing pipelines, so the environment is broader and more interesting than a typical SaaS stack.


This role is hands‑on; you'll be building and operating, not managing or auditing.


Responsibilities


  • Harden cloud infrastructure across multiple AWS accounts (IAM, EKS, VPC and network access paths, KMS) and review IaC for misconfigurations.

  • Own identity and access: SSO, least‑privilege IAM, just‑in‑time access, secrets management, and access reviews.

  • Build and maintain detection and alerting pipelines; lead triage, containment, and post‑incident review.

  • Secure the corporate environment: endpoint management, SaaS security posture, and zero‑trust network access.

  • Evaluate third‑party vendors and integrations for security and privacy risk.

  • Build the technical controls and evidence behind our compliance programs (SOC 2, GDPR) as automation, not spreadsheets.


Requirements


  • 4-8 years of hands‑on security engineering experience in cloud and infrastructure security.

  • Deep fluency in AWS security (IAM, Organizations/SCPs, CloudTrail, EKS), network hardening, and cloud posture tooling like Wiz (or equivalent).

  • Experience with detection engineering and incident response using tools like GuardDuty and CrowdStrike (or equivalent); you've triaged real alerts and contained real incidents.

  • Ability to read and review infrastructure‑as‑code (Pulumi, Terraform, or similar) for security issues.

  • Comfort writing code and automation (Python, Go, or similar) to eliminate manual security work.

  • Experience administering identity and endpoint platforms like Google Workspace as IdP, Kandji, and CrowdStrike (or equivalent IdP, MDM, and EDR tools).


Bonus Qualifications


  • Experience at a cloud security company (Wiz, Orca, Datadog, Snyk) or a security‑forward startup (Stripe, Figma, Ramp, Netflix).

  • Familiarity with zero‑trust networking and secrets tooling (Tailscale, Cloudflare, HashiCorp Vault).

  • Experience securing ML infrastructure, GPU clusters, or hardware/manufacturing supply chains.

  • Hands‑on experience building out a SOC 2 program at an early‑stage company.


Compensation

The US base salary range for this full‑time position is between $150,000 - $300,000 annually.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Hark • San Jose (CA)

On-site
USD 150,000 - 300,000
Backend Engineer San Jose
Backend Engineer San Jose

Hark, Inc. • San Jose (CA)

On-site
USD 170,000 - 400,000
Cloud Security Engineer - AWS, IR & Automation
Cloud Security Engineer - AWS, IR & Automation

Hark • San Jose (CA)

On-site
USD 150,000 - 300,000
Member of Technical Staff (Security) - AI Infrastructure
Member of Technical Staff (Security) - AI Infrastructure

Hamilton Barnes Associates Limited • United States

On-site
USD 213,000 - 288,000
Equity
Full Healthcare
Member of Technical Staff, Digital World Engineer San Jose
Member of Technical Staff, Digital World Engineer San Jose

Hark • San Jose (CA), Northern (KY)

Hybrid
USD 170,000 - 400,000
Member of Technical Staff, Hark Desktop San Jose
Member of Technical Staff, Hark Desktop San Jose

Hark • San Jose (CA), Northern (KY)

Hybrid
USD 170,000 - 400,000
Security Engineer
Security Engineer

Clera • San Francisco (CA)

On-site
USD 180,000 - 250,000
Medical, dental, vision coverage
401k
Visa sponsorship
+2
Staff Software Engineer, Secure Execution
Staff Software Engineer, Secure Execution

Showcify, Inc. • United States

Remote
USD 231,000 - 346,000
Security Engineer - Infrastructure Security
Security Engineer - Infrastructure Security

Figure • San Jose (CA)

On-site
USD 150,000 - 250,000
Software Engineer, Security
Software Engineer, Security

Harvey, Inc. • San Francisco (CA), Northern (KY)

On-site
USD 161,000 - 245,000