Senior Security Engineer

Luxer One

McClellan Place, Northern (CA, KY)

Hybrid

USD 145,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

401k matching
Tuition reimbursement
Medical insurance
Dental insurance
Vision insurance
Life insurance
Employee assistance program
Career advancement

Job summary

Luxer One seeks a senior security engineer to own the full security program across cloud, firmware, and AI systems. You will design, implement, and run incident response with hands-on tooling while partnering with engineering to embed security into CI/CD and product development.

The role emphasizes AI/LLM security, governance, and compliance ownership at a growth-stage company known for hardware–software integrations in smart locker and access systems.

Qualifications

  • Eight or more years of security experience with clear ownership across IT and product security in the same role.
  • Founding or first security hire experience at a startup or growth-stage company.
  • Hands-on security operations depth: SIEM, IR, vulnerability management, incident ownership.
  • Product security: threat modeling, pen-test coordination, secure SDLC in CI/CD.
  • AI/LLM security: securing models, auditing agent actions, runtime monitoring.

Responsibilities

  • Own the security program end-to-end across cloud infrastructure, AI agents, and hardware–software systems.
  • Design programs, run tools, and execute incident response as the security authority for AI systems.
  • Partner with engineering teams to integrate guardrails, monitoring, and governance into production.

Skills

Security leadership
Incident response
Threat modeling
Pen test coordination
CI/CD security
AI/LLM security
Compliance ownership
Cloud security
AWS/GCP security
Security operations

Job description

Own the security program — from cloud infrastructure to AI agents — at a hardware-meets-software IoT company moving fast.

About Luxer One

Luxer One builds and deploys smart locker and access systems across multifamily, commercial, retail, and enterprise markets in North America. An Assa Abloy company, our platform spans cloud infrastructure, mobile applications, IoT firmware, and a live AI operating system — Cortex — with more than twenty deployed autonomous AI agents running real operations across the company. We process millions of transactions annually and are trusted by enterprise customers who take security seriously.

We are not a software company that ships firmware on the side. We are not a hardware company trying to do software. We are both, fully, which makes the security surface broader and more interesting than most.

Why This Role Exists

We have built a lot. Cloud infrastructure running on AWS and GCP. Mobile apps. Embedded firmware on connected locker hardware deployed at thousands of sites. A growing AI operating system with autonomous agents that take real actions against real data. Enterprise customers with real compliance requirements — CCPA, CPRA, ISO 27001 — and a pipeline expanding into Canada and Europe.

What we need is one senior security engineer who owns the whole picture: designs the programs, runs the tools, executes incident response, and is the security authority for our AI systems. Not a team. Not a security analyst to hand off to. You.

If you have been the first or founding security hire somewhere before — or you are ready to be — this is a high-ownership, high-impact seat at a company that is genuinely ahead of most on AI adoption and needs someone who can help keep it that way.

Who You Are

You are a security practitioner who builds programs and runs them. The distinction between "architect" and "operator" is not interesting to you — you do both because both need to get done. You are hands-on with tooling, direct in incident response, and thoughtful in design reviews. You treat engineering teams as partners, not compliance risks to manage.

You are also someone who has thought seriously about AI security — not because it is a trend, but because you understand that LLM-based systems and autonomous agents introduce attack surfaces that traditional security tooling does not cover, and you want to be the person who figures that out in a production environment.

You are probably at a startup or growth-stage company right now — or you have been recently. You have had to make the program work with limited resources, build what did not exist, and be the person engineering leadership calls when something goes wrong. That is the profile.

You are:

A builder who ships — you produce controls libraries, compliance evidence, playbooks, and threat models, not just recommendations

An operator who runs it — SIEM tuning, alert triage, IR execution, vulnerability management with real patching accountability

A product security partner — threat modeling alongside engineers, penetration test coordination, secure SDLC enforcement in CI/CD pipelines

An AI security practitioner — you understand prompt injection, tool abuse, agent identity, and runtime monitoring for autonomous systems; you can design the guardrails and detect when they fail

Low ego, high ownership — you take the 3am call, you close the finding, you write the post-mortem

And you bring:

  • A track record at startup or growth-stage companies — you have operated where security is lean and the surface area is large
  • Experience as the founding or first dedicated security hire somewhere, or effectively functioning as one
  • Hands-on depth across IT security and product/application security in the same role
  • Real AI or LLM security experience: securing model access, auditing agent actions, building monitoring for autonomous behavior, or applying AI governance frameworks to production systems
  • End-to-end compliance ownership: you have run a compliance program to certification, not just contributed to one
Requirements
What We're Looking For
  • Eight or more years of security experience with clear ownership across both IT and product security in the same role
  • Demonstrated experience as a founding or first security hire — or the functional equivalent — at a startup or growth-stage company
  • Hands-on security operations depth: SIEM, IR execution, vulnerability management, real incident ownership
  • Product security experience: threat modeling, pen test coordination, secure SDLC enforcement alongside engineering teams
  • AI or LLM security experience — securing model access, auditing agent actions, building guardrails for autonomous systems, or applying AI governance frameworks to production deployments
  • End-to-end compliance program ownership: ISO 27001, SOC 2, or equivalent — not just participation, full ownership
  • Familiarity with AI governance frameworks: NIST AI RMF, ISO 42001, or emerging regulatory requirements
  • Cloud security depth — AWS or GCP, CSPM, IAM, cloud incident response
  • Strong written and verbal communication — policy, post-mortems, executive briefings, customer-facing security conversations
Strongly Preferred
  • Experience securing IoT, connected hardware, or firmware-based products
  • Hands‑on agentic AI security experience — MCP, tool‑use APIs, multi‑agent systems, autonomous agent monitoring
  • Relevant certifications: CISSP, GIAC (GCIH, GPEN, GCIA), CIPP/US or CIPP/E, ISO 27001 Lead Implementer, AIGP, or ISO 42001 Lead Implementer
  • Experience with Wiz, Datadog Security, CrowdStrike, or similar modern security tooling
Location & Work Model
  • Sacramento, CA. On-site or hybrid
  • You will have a 401k with up to 4.5% matching, untracked vacation, and a hybrid work schedule.
  • We promote education through tuition reimbursement.
  • You will also have medical, dental, vision, and life insurance programs, as well as employee assistance programs.
  • You’ll have opportunities to advance.
  • We’re fans of helping our employees learn different aspects of the business, be challenged with new tasks, be mentored and grow.
  • We promoted 42% of our employees last year!

Luxer One is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other legally protected status.

Compensation

The pay range for this role is $145,000-180,000 per year, depending on experience, skills, and location. This range reflects what we believe in good faith we'd pay for this position at the time of posting, and final offers may vary based on qualifications and business needs .

Luxer One is an Equal Opportunity Employer and does not discriminate on the basis of race or ethnicity, religion, sex, national origin, age, veteran disability or genetic information or any other reason prohibited by law in employment.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Luxer One • North Highlands (CA)

On-site
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision
+2
Senior Security Engineer
Senior Security Engineer

Luxer One • McClellan (WV)

Hybrid
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision insurance
+3
Staff Software Engineer - AI
Staff Software Engineer - AI

Luxer One • North Highlands (CA)

Hybrid
USD 145,000 - 180,000
401k matching up to 4.5%
Hybrid work schedule
Tuition reimbursement
+3
Staff Software Engineer - AI
Staff Software Engineer - AI

Luxer One • McClellan (WV)

Hybrid
USD 145,000 - 180,000
401k with match
Tuition reimbursement
Medical, dental, vision, and life_ins
+2
Staff Software Engineer - AI
Staff Software Engineer - AI

Luxer One • Sacramento (CA), Northern (KY)

Hybrid
USD 145,000 - 180,000
401k matching
Tuition reimbursement
Medical insurance
+5
Senior Security Engineer: AI, IoT & Cloud Defender
Senior Security Engineer: AI, IoT & Cloud Defender

Luxer One • McClellan Place (CA), Northern (KY)

Hybrid
USD 145,000 - 180,000
401k matching
Tuition reimbursement
Medical insurance
+5
Sales Enablement & Solutions Lead
Sales Enablement & Solutions Lead

Luxer One® • Madison (WI)

On-site
USD 110,000 - 170,000
401k matching
Tuition reimbursement
Health insurance
+1
Sales Enablement & Solutions Lead
Sales Enablement & Solutions Lead

Luxer One • McClellan (WV)

On-site
USD 80,000 - 100,000
Medical benefits
Dental benefits
Vision benefits
+2
Senior Security Engineer — AI/IoT Security Leader (Hybrid)
Senior Security Engineer — AI/IoT Security Leader (Hybrid)

Luxer One • North Highlands (CA)

On-site
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision
+2
Senior Security Engineer — AI, IoT & Cloud Security Lead
Senior Security Engineer — AI, IoT & Cloud Security Lead

Luxer One • McClellan (WV)

Hybrid
USD 145,000 - 180,000
401k match
Tuition reimbursement
Medical, dental, vision insurance
+3