Security Research Engineer

AI Security Assurance

Northern (KY)

Hybrid

USD 160,000 - 230,000

Full time

35 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote‑first
Life Insurance
Disability coverage
Occasional travel

Job summary

AI Security Assurance is hiring a Security Engineer Specialist to build and extend an AI‑powered ingestion engine that analyzes code across languages and ties results to system‑level security analysis. You’ll work with threat‑modeling experts and data‑flow patterns to extend analytics, expose APIs, and support evaluation in both cloud and on‑prem deployments.

You will contribute to dataset creation, measurement metrics, and collaboration with verification leads to integrate mitigation

Qualifications

  • Bachelor’s degree or higher in Computer Science or a related technical discipline.
  • 4+ years of professional experience in security engineering, static/dynamic analysis, threat modeling, or related roles with a demonstrated ability to deliver.
  • Experience designing and implementing backend services or pipelines and exposing APIs for other components.
  • Familiarity with threat‑modelling frameworks and vulnerability databases (e.g., CWE/CVE) and the ability to map findings back to code.
  • Strong critical thinking about trade‑offs in performance, accuracy and scalability in security tooling.
  • Ability to work independently, collaborate with domain experts, and wear multiple hats in a fast‑moving environment.
  • Ability to work with complex datasets, such as natural language and knowledge graphs, and develop robust evaluation metrics.
  • Experience working in the US without sponsorship; U.S. security clearance potential.

Responsibilities

  • Build and extend the AI‑powered Ingestion Engine with multi‑language ingestion and labeling.
  • Extend data‑flow and pattern matching capabilities for scenario mitigations and attack trees.
  • Expose backend APIs to web UI for cloud and on‑prem deployments.
  • Support evaluation, dataset creation, and multi‑level data quality metrics.
  • Collaborate with STPA‑Sec and formal verification leads to integrate constraints and evidence into backend.

Skills

Threat modeling
Backend pipelines
APIs
Data analysis
Multi-language ingestion
Collaboration
Security tooling
Cloud/On‑prem

Education

Bachelor’s degree in Computer Science or related field

Tools

Code Property Graphs
Knowledge graphs
Pattern matching

Job description

USD $160,000.00/Yr. - USD $230,000.00/Yr

(Remote / U.S-Based)

About Us

AISecurityAssurance is a new, remote‑first startup building automated tooling that bridges high‑level systems‑theoretic security analysis with actual source code to reveal design flaws that traditional tools miss. Our mission is to help engineers design and verify secure systems across software, cyber‑physical, and organizational domains. Transparency is one of our core values: we operate as a distributed team across the United States and we’re open about our progress and challenges. To learn more about the platform’s capabilities please see our product page at aisecurityassurance.com/products .

As an early employee, you'll wear multiple hats typical of a startup. You’ll help build our core AI-powered analysis engine that ingests code in multiple languages, extracts structural and semantic information, and ties it back to system‑level security analysis. Working closely with our STPA‑Sec/verification experts and threat‑modelling SME, you’ll work with team members to design and implement the ingestion engine, knowledge graph, pattern‑matching and data‑flow analysis, and dataset collection and evaluation. If you thrive in a transparent, fast‑moving environment where your contributions shape the product, we’d love to hear from you.

The Role

As our Security Engineer Specialist, you will:

  • Build and extend the AI-powered Ingestion Engine: work with our team members to develop a multi‑language ingestion pipeline that generates syntactic, semantic, focus and hierarchical labels.
  • Integrate hierarchical abstraction and data‑flow: extend the engine with data‑flow extraction, a pattern‑matching library for scenario mitigations, and attack‑tree structures.
  • Expose backend APIs to the web UI: collaborate with the front‑end specialist to ensure the pipeline’s outputs are accessible in both cloud and on‑prem deployments.
  • Support evaluation and dataset creation: help collect test data, generate multi‑level datasets and contribute to our LLM‑as‑a‑judge evaluation metrics.
  • Collaborate across the stack: work with our STPA‑Sec and formal‑verification leads to integrate mitigation constraints, proofs, and assurance evidence into the backend.
What We’re Looking For

Must‑haves:

  • Bachelor’s degree or higher in Computer Science or a related technical discipline.
  • 4+ years of professional experience in security engineering, static/dynamic analysis, threat modeling, or related roles with a demonstrated ability to deliver.
  • Experience designing and implementing backend services or pipelines and exposing APIs for other components.
  • Familiarity with threat‑modelling frameworks and vulnerability databases (e.g., CWE/CVE) and the ability to map findings back to code.
  • Strong critical thinking about trade‑offs in performance, accuracy and scalability in security tooling.
  • Ability to work independently, collaborate with domain experts, and wear multiple hats in a fast‑moving environment.
  • Ability to work with complex datasets, such as natural language and knowledge graphs, and develop robust evaluation metrics.
  • Ability to work in the US without sponsorship. Future work may require ability to obtain a U.S. security clearance.
  • Experience with STPA‑Sec or formal methods (e.g., theorem provers, formal verification frameworks).
  • Knowledge of graph‑based representations of code (Code Property Graphs), knowledge graphs, and pattern‑matching techniques.
  • Contributions to open‑source security tools or static/dynamic analysis projects.
  • Familiarity with cloud/on‑prem deployment, DevOps practices and database technologies (e.g., PostgreSQL).
  • Publications, conference presentations, or blog posts in the area of software or systems security or related areas.
  • Preference for East Coast residents who can travel to the D.C./Virginia area for occasional meetings.
What We Offer
  • Remote-first organization
  • Life Insurance, Short-Term and Long-Term Disability coverage.
  • Occasional travel.

EEO:Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. AI Security Assurance operates a drug free workplace.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

10a Labs • United States

Remote
USD 105,000 - 125,000
Health, dental, and vision coverage
Generous PTO and paid holidays
401(k) plan
+1
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Spinwheel Solutions Inc. • Oakland (CA)

On-site
USD 140,000 - 190,000
Remote-First
Salary & Equity
Unlimited PTO
+2
SENIOR ENGINEER, APPLICATION SECURITY
SENIOR ENGINEER, APPLICATION SECURITY

Cvent • United States

Hybrid
USD 120,000 - 160,000
Founding Member: Systems Security Engineer
Founding Member: Systems Security Engineer

AI Security Assurance • Northern (KY)

Hybrid
Senior Engineer, Application Security
Senior Engineer, Application Security

Cvent • Tysons (VA)

Hybrid
USD 120,000 - 160,000
Bonus
Competitive benefits
Security Engineer, Application Security
Security Engineer, Application Security

OpenAI • San Francisco (CA)

Hybrid
USD 234,000 - 385,000
Hybrid work model
Relocation assistance
Application Security Engineer
Application Security Engineer

xAI • Palo Alto (CA)

On-site
USD 200,000 - 340,000
Equity
Comprehensive medical coverage
401(k) retirement plan
Sr. Security Engineer
Sr. Security Engineer

openspace • United States

On-site
USD 180,000 - 230,000
100% employer-paid medical, dental, &
Flexible paid time off
401(k) with company match
+4
Security Engineer - Product Security (Senior)
Security Engineer - Product Security (Senior)

Cogent • All (MO)

On-site
USD 100,000 - 300,000
Senior Engineer, Application Security
Senior Engineer, Application Security

Namely • United States

Hybrid
USD 120,000 - 160,000
Bonus