Senior Security Engineer, Platforms & AI

spinwheelio

United States

Remote

USD 150,000 - 190,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Remote-first US/Canada
Salary + equity
Unlimited PTO
Health insurance
Ownership and autonomy
Technical leadership

Job summary

spinwheelio is seeking a Senior Security Engineer to own the security posture of our platform, infrastructure, and AI systems. The role is remote-first for candidates in the United States or Canada, working closely with Engineering to harden production and secure development practices.

You will lead vulnerability management, incident response, and AI safety guardrails, building scalable security processes integrated into engineering workflows.

Qualifications

  • 7+ years hands-on experience in security engineering, infrastructure security, application security, DevSecOps, or offensive security.
  • Exceptional knowledge of the AWS ecosystem.
  • Demonstrated experience identifying and remediating vulnerabilities in live production systems.
  • Self-starter mindset: able to drive projects, make decisions, and prioritize ruthlessly in a fast-moving environment.
  • Strong communication skills, with the ability to explain technical security issues clearly to engineering stakeholders.

Responsibilities

  • Secure and harden cloud infrastructure, applications, APIs, internal systems, and operational workflows.
  • Implement and maintain security controls across production environments, CI/CD pipelines, cloud infrastructure, and internal tooling.
  • Work directly with engineering teams to remediate vulnerabilities and improve secure development practices.
  • Ensure encryption, secrets management, logging, monitoring, and access controls are properly implemented and continuously maintained.
  • Design and improve security architecture across cloud-native and distributed systems.
  • Build scalable security processes that integrate directly into engineering and operational workflows.
  • Continuously identify, assess, prioritize, and remediate security vulnerabilities across infrastructure, applications, APIs, and operational systems.
  • Proactively search for weaknesses through vulnerability scanning, penetration testing, adversarial testing, threat modeling, and manual security reviews.
  • Coordinate remediation efforts across engineering and operations teams, and validate fixes to ensure long-term mitigation.
  • Improve detection and prevention capabilities for emerging threats.
  • Help establish a culture of continuous security improvement and operational accountability.
  • Secure AI-driven systems and automated agents against prompt injection, adversarial inputs, unauthorized or unintended actions, unsafe outputs, and data leakage.
  • Design and implement guardrails and validation layers for AI-generated actions.
  • Ensure AI systems safely handle untrusted inputs from IVRs, web systems, APIs, and human interactions.
  • Monitor AI system behavior for anomalies, abuse attempts, or unsafe decision-making.
  • Partner with engineering teams to ensure AI systems are observable, auditable, bounded, and fail safely.
  • Help define operational and technical controls for responsible AI deployment.
  • Improve and maintain security monitoring, alerting, logging, and incident response capabilities.
  • Investigate suspicious activity, anomalies, and potential security incidents.
  • Lead or support incident response efforts, root cause analysis, and remediation planning.
  • Ensure operational visibility into system health, access patterns, and security events.
  • Recommend and implement preventative measures following incidents or security discoveries.

Skills

7+ years experience
AWS
Vulnerability remediation
DevSecOps
Security operations
Communication skills

Tools

SIEM
IAM
IaC security
Penetration testing

Job description

About the Role

We're looking for a hands-on Senior Security Engineer to own the technical security posture of our platform, infrastructure, and AI-driven systems. You'll spend most of your time in the systems themselves: hardening infrastructure, closing vulnerabilities, and building the guardrails that keep our AI-driven workflows safe.

Following our recent Series A, we're scaling rapidly and investing deeply in platform security, AI safety, and operational resilience. This is a builder's role, not a policy role. You'll work closely with Engineering to secure production systems, find weaknesses, and keep our monitoring and incident response sharp as we scale.

As a remote-first company, we welcome applicants based anywhere in the United States or Canada.

You'll join a high-ownership, high-trust engineering culture where self-starters thrive and autonomy is the natural state of work.

Key Responsibilities
Security Engineering & System Hardening
  • Secure and harden cloud infrastructure, applications, APIs, internal systems, and operational workflows.
  • Implement and maintain security controls across production environments, CI/CD pipelines, cloud infrastructure, and internal tooling.
  • Work directly with engineering teams to remediate vulnerabilities and improve secure development practices.
  • Ensure encryption, secrets management, logging, monitoring, and access controls are properly implemented and continuously maintained.
  • Design and improve security architecture across cloud-native and distributed systems.
  • Build scalable security processes that integrate directly into engineering and operational workflows.
Vulnerability Management & Offensive Security
  • Continuously identify, assess, prioritize, and remediate security vulnerabilities across infrastructure, applications, APIs, and operational systems.
  • Proactively search for weaknesses through vulnerability scanning, penetration testing, adversarial testing, threat modeling, and manual security reviews.
  • Coordinate remediation efforts across engineering and operations teams, and validate fixes to ensure long-term mitigation.
  • Improve detection and prevention capabilities for emerging threats.
  • Help establish a culture of continuous security improvement and operational accountability.
AI Security & Emerging Threat Protection
  • Secure AI-driven systems and automated agents against prompt injection, adversarial inputs, unauthorized or unintended actions, unsafe outputs, and data leakage.
  • Design and implement guardrails and validation layers for AI-generated actions.
  • Ensure AI systems safely handle untrusted inputs from IVRs, web systems, APIs, and human interactions.
  • Monitor AI system behavior for anomalies, abuse attempts, or unsafe decision-making.
  • Partner with engineering teams to ensure AI systems are observable, auditable, bounded, and fail safely.
  • Help define operational and technical controls for responsible AI deployment.
Monitoring, Detection & Incident Response
  • Improve and maintain security monitoring, alerting, logging, and incident response capabilities.
  • Investigate suspicious activity, anomalies, and potential security incidents.
  • Lead or support incident response efforts, root cause analysis, and remediation planning.
  • Ensure operational visibility into system health, access patterns, and security events.
  • Recommend and implement preventative measures following incidents or security discoveries.
Required Qualifications
  • 7+ years of hands-on experience in security engineering, infrastructure security, application security, DevSecOps, or offensive security.
  • Exceptional knowledge of the AWS ecosystem.
  • Demonstrated experience identifying and remediating vulnerabilities in live production systems.
  • Self-starter mindset: able to drive projects, make decisions, and prioritize ruthlessly in a fast-moving environment.
  • Strong communication skills, with the ability to explain technical security issues clearly to engineering stakeholders.
Preferred Qualifications
  • Experience securing AI/LLM-powered systems or automated agents.
  • Familiarity with prompt injection attacks, adversarial AI techniques, AI guardrails, and behavioral anomaly detection.
  • Experience with cloud security tooling, SIEM and observability platforms, penetration testing tools, endpoint security platforms, and infrastructure-as-code security.
  • Prior experience in high-growth startup, fintech, banking, or payments environments.
  • Certifications such as CISSP, CISM, AWS Security Specialty, or similar.
What We Offer
  • 100% remote-first culture (work anywhere in the US or Canada)
  • Competitive salary and equity opportunities
  • Unlimited PTO, flexible schedule, and paid holidays
  • Comprehensive health, dental, and vision insurance
  • A culture built on ownership, transparency, autonomy, and craftsmanship
  • Real opportunities for architecture ownership and technical leadership
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Simile • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Senior Security Application Engineer
Senior Security Application Engineer

Bitgo • Palo Alto (CA)

Hybrid
USD 180,000 - 240,000
Company-paid medical, dental, and vis​
Catered lunches, snacks, coffee
Caltrain passes
+5
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Dallas (TX)

On-site
USD 150,000 - 210,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Engineering Manager, Application Security
Engineering Manager, Application Security

Qualia • Austin (TX)

On-site
USD 180,000 - 240,000
Medical, Dental & Vision health plans
Competitive salary & equity
Flexible schedules
+3
Senior Security Engineer
Senior Security Engineer

Foundation Capital • Phoenix (AZ)

On-site
USD 130,000 - 190,000
Security Engineer
Security Engineer

Juicebox • San Francisco (CA)

On-site
USD 120,000 - 160,000
Security Engineer
Security Engineer

Clera • San Francisco (CA)

On-site
USD 180,000 - 250,000
Medical, dental, vision coverage
401k
Visa sponsorship
+2
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Emeryville (CA)

On-site
USD 130,000 - 160,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Senior Platform Engineer
Senior Platform Engineer

7AI • Boston (MA)

On-site
USD 120,000 - 160,000