Security Engineer

Profound

New York (NY)

On-site

USD 100,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
Equity offerings
Full range of benefits and perks

Job summary

A tech company specializing in AI is seeking a Security Engineer to oversee the security of its platform and infrastructure. This on-site role in Union Square, NYC, requires a candidate with 3+ years in security engineering, a strong grasp of access control, and hands-on experience with SOC 2 compliance. The position offers a competitive salary between $100,000 and $170,000, alongside equity and comprehensive benefits. Ideal for someone motivated by building foundational security for an innovative company.

Qualifications

  • 3+ years of experience in security engineering.
  • Experience in high-growth SaaS or infrastructure-heavy environments.
  • Hands-on experience with SOC 2 compliance.

Responsibilities

  • Design and maintain access control across systems.
  • Conduct regular access reviews and enforce least-privilege.
  • Build automated workflows for onboarding and role changes.

Skills

Security engineering experience
Access control models
Identity management systems
OAuth, SAML, OIDC
AWS security services
Network security fundamentals
Scripting skills in Python or Bash
Communication skills
Systems thinking
Autonomous working style
Infrastructure as code security
Data infrastructure security

Education

Relevant certifications (CISSP, CCSP, etc.)

Job description

Profound is on a mission to help companies understand and control their AI presence. We are hiring a Security Engineer to own the security posture of our platform, infrastructure, and corporate environment. You will work directly with Engineering and Operations teams to build and maintain the security controls, compliance programs, and threat defenses that protect customer data and enable rapid growth.

This role is ideal for someone who sees security as a business accelerator rather than a blocker and who thrives on building practical, scalable security systems from the ground up. As the first dedicated security hire, you will shape how we approach access control, vulnerability management, compliance, and incident response as we scale.

What you’ll do
  • Design, implement, and maintain role-based and attribute-based access control across production systems, cloud infrastructure, and corporate tools
  • Own identity and access management including SSO, SCIM provisioning, and lifecycle automation across Google Workspace, AWS, and internal systems
  • Conduct regular access reviews and enforce least-privilege principles across environments
  • Build automated workflows for onboarding, offboarding, and role change provisioning
  • Build and run a vulnerability management program across infrastructure, applications, and dependencies
  • Integrate security scanning into CI or CD pipelines including SAST, DAST, SCA, and container image scanning
  • Triage and respond to security findings from automated tools, bug bounty programs, and third-party assessments
  • Own SOC 2 Type II compliance end to end, including defining controls, collecting evidence, managing auditor relationships, and closing gaps
  • Build and maintain security policies, standards, and procedures aligned with operational reality
  • Support customer security reviews, vendor assessments, and due diligence processes
  • Conduct risk assessments and maintain a risk register that informs prioritization decisions
  • Secure AWS infrastructure including VPC architecture, security groups, IAM policies, and network segmentation
  • Implement and maintain logging, monitoring, and alerting for security-relevant events across cloud and corporate systems
  • Oversee physical security controls for the Union Square office including access management, visitor policies, and asset tracking
  • Build and maintain an incident response plan, run tabletop exercises, and lead incident response when necessary
  • Implement detection capabilities using log aggregation, SIEM tooling, and anomaly detection
  • Conduct post-incident reviews and drive systemic improvements
Who you are
  • 3 or more years of experience in security engineering, including experience in high-growth SaaS or infrastructure-heavy environments
  • Deep understanding of access control models, identity management systems, and authentication protocols such as OAuth, SAML, and OIDC
  • Hands-on experience building or maintaining a SOC 2 compliance program
  • Strong knowledge of AWS security services and cloud security architecture including IAM, VPC, CloudTrail, GuardDuty, and Security Hub
  • Experience integrating vulnerability management tooling into CI or CD workflows
  • Familiarity with network security fundamentals including firewalls, DNS, VPNs, segmentation, and traffic analysis
  • Practical scripting skills in Python or Bash for automation of security workflows
  • Clear communicator who can translate security risks into business terms for engineering, leadership, and customer-facing teams
  • Systems thinker who understands root causes, blast radius, and scalable control design
  • Self-directed with strong judgment and comfort operating with significant autonomy
  • Motivated by building the security foundation for a category-defining AI company
  • Experience with infrastructure as code security such as Terraform or CloudFormation
  • Familiarity with data infrastructure security for systems such as ClickHouse or PostgreSQL
  • Background in penetration testing or application security assessments
  • Relevant certifications such as CISSP, CCSP, AWS Security Specialty, or similar
  • Experience with data processing compliance in analytics-heavy environments
Location

This is an on-site role based in our Union Square, NYC office, designed for builders who thrive on speed, iteration, and meaningful impact. We are happy to support visa sponsorship for qualified international candidates.

For this role, the expected base salary range is $100,000 to $170,000. Profound’s total compensation package is designed to be competitive and includes base salary, equity, and a full range of benefits and perks. Final compensation will depend on factors such as your skills, experience, qualifications, and location, and will be determined during the interview process. Our recruiting team will share more details about the full compensation package and benefits as you move through hiring.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security GRC Specialist
Security GRC Specialist

Profound • New York (NY)

On-site
USD 150,000 - 240,000
Head of Security
Head of Security

Profound • New York (NY)

On-site
USD 300,000 - 375,000
Security Engineer - Product Security (Senior)
Security Engineer - Product Security (Senior)

Cogent • All (MO)

On-site
USD 100,000 - 300,000
Technical Operations Engineer
Technical Operations Engineer

Profound • Boston (MA)

On-site
USD 130,000 - 170,000
Sr. Security Engineer
Sr. Security Engineer

openspace • United States

On-site
USD 180,000 - 230,000
100% employer-paid medical, dental, &
Flexible paid time off
401(k) with company match
+4
Sr. Infrastructure Security Engineer
Sr. Infrastructure Security Engineer

Albert Invent • United States

On-site
USD 138,000 - 190,000
401(k) with 5% company match
Holistic well-being resources, including health coverage
Flexible time off and paid parental leave
+2
Software Engineer, Proactive Capabilities
Software Engineer, Proactive Capabilities

United States Digital Space LLC • Bellevue (CA)

Hybrid
USD 166,000 - 195,000
Equity ownership
401(k) matching
Health insurance (employee)
Technical Operations Engineer
Technical Operations Engineer

Slope • San Francisco (CA)

On-site
USD 130,000 - 170,000
Equity
Comprehensive benefits package
Competitive total compensation
Staff Security Engineer Manager
Staff Security Engineer Manager

Google • United States

On-site
USD 207,000 - 301,000
Health insurance
401(k) match
Paid time off
+2
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

Cogent-Security • United States

On-site
USD 100,000 - 300,000