Security Engineer, Product Security

Scale AI, Inc.

Washington (District of Columbia)

On-site

USD 228,800 - 286,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Scale AI, Inc. seeks a highly technical Security Engineer to join our Product Security team. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy across our AI/ML products and services.

Requirements include expertise in TypeScript, Python, AWS, CI/CD, SAST/DAST, and Terraform orchestration; you will diagnose root causes independently and clearly explain the mechanics and significance of vulnerabilities.

Qualifications

  • Must independently drive multi-month security initiatives from problem definition through execution.
  • Proven Security Engineer with a focus on product security.
  • Familiar with NodeJS, TypeScript, Python, and Kubernetes, and AWS at scale.
  • Hands‑on with SAST/DAST tools and secure infrastructure.

Responsibilities

  • Build and maintain security tooling for every layer of the AI/ML software stack.
  • Conduct in-depth code reviews to identify and remediate vulnerabilities.
  • Evaluate and enhance security through RFCs and service reviews.
  • Implement and maintain CI/CD pipelines with a strong focus on security.
  • Perform SAST and DAST on production code to identify vulnerabilities.
  • Utilize Terraform orchestration to ensure secure infrastructure management.
  • Guide engineering teams to build robust long‑term security solutions.
  • Clearly explain vulnerability mechanics, exploitability, and impact.
  • Influence security strategy and drive continuous improvement.

Skills

NodeJS
TypeScript
Python
Kubernetes
AWS
CI/CD
SAST
DAST
Terraform
Security certs

Tools

SAST tools
DAST tools
Terraform
CI/CD tooling

Job description

We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, AWS, CI/CD, SAST, DAST, and terraform orchestration will be crucial in identifying and mitigating potential security vulnerabilities. You will also structure complex problems, diagnose root causes independently, and clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.

Responsibilities
  • Leverage broad product security expertise to build and maintain software tooling that secures every layer of the modern AI/ML software ecosystem.
  • Conduct in-depth code reviews to identify and remediate security vulnerabilities.
  • Evaluate and enhance the security of our product offerings, through RFC and service review.
  • Implement and maintain CI/CD pipelines with a strong focus on security.
  • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to identify vulnerabilities in production code.
  • Utilize terraform orchestration to ensure secure and efficient infrastructure management.
  • Guide engineering teams to build robust long-term solutions that consider security and privacy.
  • Clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.
  • Influence the security strategy and direction of the team, advocating for best practices and continuous improvement.
Qualifications
  • Demonstrated ability to drive multi-month security initiatives independently, from problem definition through execution, without requiring significant direction.
  • Proven experience as a Security Engineer with a focus on product security.
  • Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.
  • Strong understanding of modern Javascript application design.
  • Production experience operating and securing AWS infrastructure at scale.
  • Hands‑on experience with SAST and DAST tools and methodologies.
  • Familiarity with terraform orchestration for infrastructure management.
  • You can structure complex problems and diagnose root causes independently, providing actionable insights without requiring manager input.
  • Excellent communication skills, with the ability to clearly present technical concepts and their implications to both technical and non‑technical stakeholders.
  • Demonstrated ability to influence security strategies and drive improvements within a team.
  • Relevant security certifications (e.g., CISSP, CEH, OSCP) are a plus.
Compensation
  • Base salary range for San Francisco, New York, Seattle: $237,600 – $297,000 USD
  • Base salary range for Washington DC/Hawaii: $228,800 – $286,000 USD
  • Base salary range for St. Louis/Suffolk: $205,700 – $257,400 USD
  • Compensation packages include base salary, equity, and benefits such as health, dental, and vision coverage, retirement benefits, a learning and development stipend, generous PTO, and a commuter stipend.
Equal Employment Opportunity (EEO)

We believe that everyone should be able to bring their whole selves to work, which is why we are proud to be an inclusive and equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability status, gender identity or Veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • San Francisco (CA)

On-site
USD 237,000 - 297,000
Health, dental, and vision coverage
Retirement benefits
Learning and development stipend
+2
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • New York (NY)

On-site
USD 237,000 - 297,000
Learning and development stipend
Commuter stipend
Generous PTO
Security Engineer, Product Security
Security Engineer, Product Security

Scale AI, Inc. • Seattle (WA)

On-site
USD 237,000 - 297,000
Security Engineer, Product Security Washington, DC Apply →
Security Engineer, Product Security Washington, DC Apply →

Scale AI, Inc. • Seattle (WA)

Hybrid
USD 228,000 - 286,000
Comprehensive health coverage
Retirement benefits
Learning and development stipend
+1
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Doist • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies
Security Engineer
Security Engineer

factory • San Francisco (CA)

On-site
USD 120,000 - 150,000
Product Security Engineer, Public Sector
Product Security Engineer, Public Sector

Scale AI, Inc. • St. Louis (MO)

On-site
USD 148,000 - 256,000
Health insurance
Dental coverage
Vision coverage
+4
Product Security Engineer, Public Sector
Product Security Engineer, Public Sector

Scale AI, Inc. • Washington

On-site
USD 178,000 - 307,000
Health benefits
Dental & Vision
Retirement plan
+3
Product Security Engineer, Public Sector
Product Security Engineer, Public Sector

Scale AI, Inc. • New York (NY)

On-site
USD 198,000 - 342,000
Health, dental and vision coverage
Retirement benefits
Learning & development stipend
+1
Product Security Engineer, Public Sector
Product Security Engineer, Public Sector

Scale AI • New York (NY)

On-site
USD 198,000 - 342,000
Health, dental and vision coverage
Retirement benefits
Learning and development stipend
+3