Product Security Engineer

StackAI

United States

On-site

USD 210,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

StackAI is hiring a hands-on (Senior) Product Security Engineer to design, build, and harden the secure architecture at the core of the product, working as a technical partner to our Core engineering lead.

This is a hands-on engineering role. You'll write production code and own the security-critical systems the whole platform depends on: encryption and key management, customer data protection, and how security is built into the way every team ships.

Qualifications

  • 4+ years building security-critical systems in production.
  • Practical depth in cryptography and key management.
  • Secure architecture judgment and ability to work with senior engineers.
  • Multi-tenant SaaS isolation experience and data isolation guarantees.
  • Strong secure-coding skills in Python and TypeScript/Node.js.
  • CI/CD security checks and gates experience.

Responsibilities

  • Own encryption and signing across KMS, BYOK, envelope encryption, and signing pipelines.
  • Protect PHI/PII data and strengthen data-protection foundations.
  • Own encryption at rest and tenant isolation in the storage layer.
  • Maintain secure-by-default templates and reference implementations in the SDLC.
  • Lead threat modeling across system boundaries and multi-tenant interfaces.
  • Improve scanning coverage, signaling, and CI enforcement to prevent production findings.
  • Translate audit, compliance, and incident-response requirements into code changes.

Skills

Security engineering
Cryptography
KMS
Secrets handling
Python
TypeScript/Node.js
CI/CD security
Threat modeling
Multi-tenant isolation

Job description

About The Company

StackAI (by Asana) is a no-code AI workflow platform that empowers companies to build, deploy, and scale AI-powered workflows easily. With thousands of users and rapidly growing enterprise adoption, our mission is to democratize access to LLMs and bring AI into the hands of every business operator, not just developers. An Asana Company, we're building the foundational platform for the AI-driven future of work

About The Company

StackAI (by Asana) is a no-code AI workflow platform that empowers companies to build, deploy, and scale AI-powered workflows easily. With thousands of users and rapidly growing enterprise adoption, our mission is to democratize access to LLMs and bring AI into the hands of every business operator, not just developers. An Asana Company, we're building the foundational platform for the AI-driven future of work

About The Role

At StackAI, security is how we earn the trust of the enterprises building AI assistants on our platform. We're hiring a hands-on (Senior) Product Security Engineer to design, build, and harden the secure architecture at the core of the product, working as a technical partner to our Core engineering lead.

This is a hands-on engineering role. You'll write production code and own the security-critical systems the whole platform depends on: encryption and key management, customer data protection, and how security is built into the way every team ships.

If you want deep ownership of these systems and the chance to harden and scale them as the platform grows, we'd love to meet you.

What You'll Do
  • Own encryption and signing. Take ownership of our KMS, key management, BYOK, envelope encryption, and signing pipeline across both cloud and on-prem deployments - operating, hardening, and evolving them as the platform scales.
  • Protect the most sensitive customer data. Extend our PHI/PII scrubbing and strengthen the data-protection foundations that regulated enterprises already rely on.
  • Secure the storage layer. Own encryption at rest and tenant isolation.
  • Keep security the default in how we ship. Maintain and expand the secure-by-default templates and reference implementations embedded in our SDLC - the ones engineers actually want to adopt.
  • Threat-model the platform. Lead threat modeling on the seams between systems (the execution engine, connector trust boundaries, and multi-tenant isolation), using modern, AI-assisted threat-modeling tooling.
  • Raise the bar on tooling. Push our scanning further on coverage, signal, and CI enforcement, so critical findings never reach production.
  • Be the technical point of contact for security standards. Translate audit, compliance, and incident-response requirements into real implementation in our codebase.
What we're looking for
  • 4+ years building security-critical systems in production, with significant time spent implementing, not only reviewing or assessing.
  • Practical depth in cryptography and key management: encryption, KMS, secrets handling, and signing in real systems.
  • Secure architecture judgment: you can design and reason about secure systems and hold your own as a technical peer with senior engineers.
  • Multi-tenant SaaS isolation experience, including the data-isolation guarantees regulated customers require.
  • Strong secure-coding skills in our stack: Python on the backend, TypeScript/Node.js on the product surfaces.
  • Comfortable wiring security checks and gates into CI/CD so security is enforced automatically in the pipeline.

Security engineering is broad. If you're strong on most of this and excited to grow into the rest, we'd like to hear from you, even if you don't check every box.

Bonus points
  • Cloud and API security fundamentals on GCP, Azure, or AWS.
  • Securing on-prem, self-hosted, or air-gapped deployments.
  • Experience in regulated domains (healthcare/PHI, finance, etc.).
  • Familiarity with AI/LLM platform security: agent execution, connector trust boundaries, prompt and tool-call risk.
  • Startup or growth-stage experience.

Compensation Range: $210K - $240K

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Product Security Engineer
Product Security Engineer

StackAI • San Francisco (CA)

On-site
USD 248,000 - 282,000
Product Security Engineer
Product Security Engineer

StackAI • New York (NY)

On-site
USD 140,000 - 180,000
Product Security Engineer
Product Security Engineer

Stack Ai • United States

On-site
USD 180,000 - 230,000
Product Security Engineer
Product Security Engineer

StackAI • San Francisco (CA)

On-site
USD 120,000 - 150,000
Security Engineer
Security Engineer

Stack AI, Inc. • San Francisco (CA), New York (NY)

Hybrid
USD 120,000 - 160,000
Security Engineer
Security Engineer

StackAI • New York (NY)

On-site
USD 100,000 - 160,000
Senior Product Security Engineer
Senior Product Security Engineer

7AI, Inc. • Boston (MA)

Hybrid
USD 120,000 - 160,000
Platform Security Engineer
Platform Security Engineer

Future Secure AI • Austin (TX)

On-site
USD 130,000 - 160,000
Flexible work environment
State-of-the-art technology
Competitive salary
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Spinwheel Solutions Inc. • Oakland (CA)

On-site
USD 140,000 - 190,000
Remote-First
Salary & Equity
Unlimited PTO
+2
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Doist • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies