MTS Lead, Product Security

Reflection AI

New York (NY)

On-site

USD 180,000 - 240,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Top-tier compensation
Stock options
Health & wellness
Meals provided
Parental leave
Unlimited PTO
Visa sponsorship
Team off-sites

Job summary

Reflection AI is seeking a Senior Technology Security (MTS Lead for Product Security) to build and scale a comprehensive security program across data centers, cloud, and neocloud environments. You will partner with the CISO and exec team to translate strategy into an operating model capable of supporting rapid growth in frontier AI.

The role requires deep technical fluency across cloud, infrastructure, and AI compute environments, with hands‑on ability to define standards and drive secure

Qualifications

  • 12+ years of experience in cybersecurity, infrastructure security, or related fields.
  • Proven track record building security programs in startups, AI companies, or hypergrowth tech.
  • Experience securing AI infrastructure and GPU compute security operations.
  • Strong vendor risk, procurement security reviews, and contract negotiation skills.
  • Familiarity with SOC 2, ISO 27001, NIST CSF, and enterprise security audits.

Responsibilities

  • Define and execute long‑term security strategy and operating model for Reflection.
  • Represent security leadership with customers, auditors, and regulators.
  • Build and mentor world‑class security professionals across the org.
  • Own security for data centers, neocloud, and vendor ecosystems.
  • Lead security assessments of neocloud deployments and manage risk remediations.
  • Drive due diligence for acquisitions and strategic partnerships.

Skills

Security leadership
Cloud security
Neocloud security
Data center security
Vendor risk management
Regulatory audits

Tools

Kubernetes security

Job description

Our Mission

Reflection is a research lab making intelligence open and accessible for everyone to use, customize, and build on. We build open models that let anyone control their intelligence and help shape the future of AI. Our mission: make intelligence open and accessible to all.

Role Overview

The MTS Lead for Product Security is responsible for building, scaling, and operating Reflection’s security program across the full breadth of the enterprise — from physical and data center infrastructure to cloud and neocloud environments, vendor ecosystems, and strategic growth activities. This lead serves as a senior partner to the CISO, translating the company’s long-term security strategy into an operating model that can withstand hypergrowth and the unique demands of a frontier AI company.

Sitting at the intersection of infrastructure security, enterprise operations, and strategic risk, this role is uniquely positioned to shape how Reflection understands and manages its security posture as it scales. The ideal candidate is both a strategic architect and a hands‑on operator — equally capable of defining security standards for neocloud environments and standing up physical controls for a new data center deployment. They bring deep technical fluency across cloud, infrastructure, and AI compute environments, and the executive presence to represent Reflection’s security posture to customers, regulators, investors, and government stakeholders.

This is a high-visibility, high-impact role with broad organizational reach. Success requires the ability to build security programs from scratch, scale them through periods of rapid change, and maintain operational excellence across a complex, globally distributed technology footprint.

What You’ll Do

Senior CISO Partnership & Security Strategy

  • Help define and execute the company’s long-term security strategy and security operating model.

  • Support the CISO and CSO in representing security leadership with customers, auditors, investors, regulators, government officials, and executive stakeholders.

  • Recruit, develop, and mentor world‑class security and technology professionals.

  • Balance strategic leadership with hands‑on execution as organizational needs evolve.

Data Center & Physical Security

  • Own security strategy for data centers, colocation facilities, and infrastructure operations globally.

  • Partner with infrastructure and site operations teams to embed security throughout the data center lifecycle, including site selection, design, commissioning, and operations.

  • Define standards for physical access controls, surveillance systems, asset protection, hardware handling, and operational resilience.

Cloud & NeoCloud Security

  • Own the security strategy, configuration requirements, and governance for neocloud infrastructure that each facility must follow to host Reflection workloads.

  • Develop and enforce security design standards for third‑party neocloud environments to integrate with Reflection’s corporate and engineering workflows, including incident response and vulnerability management.

  • Lead technical assessments of neocloud first‑ and third‑party deployments for ongoing assurance — validating security posture, identifying gaps, and driving remediation to meet Reflection’s security guarantees and customer contractual obligations.

  • Own security contractual negotiations with neocloud providers to ensure all Reflection security requirements are contractually defined, enforceable, and aligned with the company’s product offerings and regulatory expectations.

Mergers, Acquisitions & Strategic Growth

  • Partner with the CISO to lead security and technology due diligence for acquisitions, investments, and strategic partnerships.

  • Partner with Reflection’s Risk Leader to identify security, infrastructure, compliance, privacy, and operational risks associated with target organizations.

  • Drive post‑acquisition security integration and modernization initiatives across enterprise security and corporate technology.

Vendor Risk & Strategic Procurement

  • Develop and own security strategy, review processes, and approval workflows for software, SaaS, cloud services, hardware suppliers, and strategic technology purchases.

  • Build and operate vendor security assessment and third‑party risk management programs.

  • Partner with Legal and Finance on contract negotiations, security requirements, privacy obligations, and risk transfer mechanisms on both buy and sell sides.

What We’re Looking For

Experience & Background

  • 12+ years of experience across cybersecurity, infrastructure security, enterprise technology, or related fields.

  • Proven track record of building security programs from the ground up within startups, AI companies, cloud providers, hyperscalers, or hypergrowth technology organizations.

  • Demonstrated success scaling teams and organizations from 0→1 and 1→N.

  • Experience securing AI infrastructure and running security operations for GPU compute environments.

  • Experience working within or alongside neocloud providers, hyperscalers, colocation operators, or large‑scale physical cloud infrastructure organizations.

  • Experience leading vendor risk programs, procurement security reviews, and legal contract negotiations.

  • Familiarity supporting SOC 2, ISO 27001, FedRAMP, ISO 22237, ISO 22301, NIST CSF, customer audits, and enterprise security reviews.

Skills & Capabilities

  • Technical depth across cloud and infrastructure security, Kubernetes and container security, Zero Trust architectures, identity and access management, detection and response technologies, and security automation and orchestration.

  • Ability to design and communicate security standards, architecture decisions, and risk trade‑offs to both technical and non‑technical audiences.

  • Strong operational judgment — capable of defining security policy and implementing controls directly when organizational needs require it.

  • Proven ability to manage complex vendor relationships, negotiate security‑oriented contractual terms, and hold third parties accountable to defined standards.

  • Track record of building and maturing physical and data center security programs at scale.

Mindset & Approach

  • A security practitioner who operates with both technical rigor and pragmatic judgment — focused on building programs that are operationally effective, not just technically sound.

  • Equally comfortable in the boardroom and the server room — capable of representing Reflection’s security posture to executive stakeholders and regulators while remaining deeply fluent in the technical details.

  • Highly collaborative and organizationally astute, with the ability to build trusted relationships across engineering, legal, risk, and business functions.

  • Motivated by building — energized by creating security infrastructure from scratch in a fast‑moving environment where the stakes are high and the work is genuinely novel.

  • Committed to the mission — understands the unique security responsibilities of a frontier AI company and approaches the work with the seriousness it demands.

What We Offer:

We believe that to make intelligence open and accessible to all, you need to start at the foundation. Joining Reflection means building from the ground up as part of a talent‑dense team. You will help define our future as a company, and help define the future of open foundational models.

We want you to do the most impactful work of your career with the confidence that you and the people you care about most are supported.

  • Top‑tier compensation: Salary and equity structured to recognize and retain our talent globally.

  • Stock options: Everyone who joins and contributes to Reflection's success gets to share in the upside through stock options.

  • Health & wellness: Comprehensive medical, dental, vision, and life, with an annual wellness allowance.

  • Meals: Lunch and dinner are provided in the office daily.

  • Life & family: 22 weeks paid parental leave for all new birthing and non‑birthing parents, including adoptive and surrogate journeys.

  • Vacation days: Unlimited paid time off in the U.S. and 30 days in the U.K.

  • Sponsorship support: We sponsor visas to help exceptional talent join our team and support long‑term immigration pathways where applicable.

  • Team building: We have regular off‑sites, happy hours, and team celebrations.

Export Control Notice: This position may require access to technology or source code subject to the U.S. Export Administration Regulations. Any offer of employment for this role may be conditioned on the Company's ability to provide the candidate with access to such technology or source code in compliance with applicable U.S. export control laws, which may require the Company to seek government authorization.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

MTS Lead, Product Security
MTS Lead, Product Security

Socket.dev • New York (NY)

On-site
USD 180,000 - 260,000
Stock options
Health & wellness benefits
Paid parental leave
MTS Lead, Technology & Security Engineering
MTS Lead, Technology & Security Engineering

Sierra Ventures • San Francisco (CA)

On-site
USD 200,000 - 340,000
Top-tier compensation
Stock options
Health & wellness
+5
MTS, Technology & Security Engineering
MTS, Technology & Security Engineering

Reflection • New York (NY)

On-site
USD 200,000 - 320,000
Top-tier compensation
Stock options
Health & wellness
+5
MTS, Technology & Security Engineering
MTS, Technology & Security Engineering

Sierra Ventures • San Francisco (CA)

Hybrid
USD 180,000 - 280,000
Top-tier compensation
Stock options
Health & wellness
+4
MTS Lead, Technology & Security Engineering
MTS Lead, Technology & Security Engineering

Reflection AI • New York (NY)

On-site
USD 180,000 - 270,000
Top-tier compensation
Stock options
Health & wellness
+5
Manager of Technology & Security Engineering
Manager of Technology & Security Engineering

Reflection AI • New York (NY)

On-site
USD 250,000 - 350,000
Top-tier compensation
Stock options
Comprehensive health benefits
+4
MTS Lead, Identity and Access Management
MTS Lead, Identity and Access Management

Sierra Ventures • San Francisco (CA)

On-site
USD 300,000 - 470,000
Top-tier compensation
Stock options
Health & wellness
+5
MTS Lead, Identity and Access Management
MTS Lead, Identity and Access Management

Reflection AI • New York (NY)

On-site
USD 230,000 - 350,000
Stock options
Health insurance
Meals provided
+4
Manager of Identity & Access Management
Manager of Identity & Access Management

Reflection • New York (NY), San Francisco (CA)

On-site
USD 260,000 - 380,000
Top-tier compensation
Stock options
Health & wellness benefits
+5
Manager of Identity & Access Management
Manager of Identity & Access Management

Reflection AI • New York (NY)

On-site
USD 180,000 - 280,000
Top-tier compensation
Stock options
Health & wellness
+5