Security Engineer

Clera

10h ago 1 views 0 applications
Full-time On-site
San Francisco
Competitive
Full-time
Security Engineer

Job Description

About the Role: Forge the Future of AI Security
This is an unparalleled opportunity to step into a founding Security Engineering role at an early-stage, high-growth AI/ML infrastructure company. You won't just join a team; you'll *build* the security program from the ground up, owning its vision and execution.
Your expertise will be critical in safeguarding a cutting-edge platform relied upon by frontier AI labs and large enterprise customers. This position is central to cultivating customer trust, ensuring the integrity of highly sensitive data assets, and architecting security at massive scale within a rapidly evolving technological landscape.

What You'll Deliver: Impact & Ownership

Lead End-to-End Detection & Incident Response: Architect, implement, and lead the full lifecycle of security incidents, from initial signal detection and alerting through deep investigation, comprehensive post-mortems, and the implementation of durable engineering improvements.
Define & Drive the Security Roadmap: Own the strategic security roadmap across product security, cloud and infrastructure security, corporate security, incident response, and compliance, ensuring alignment with business goals and emerging threats.
Fortify AI/ML Platforms: Secure our critical APIs, core platforms, and sensitive data systems through meticulous threat modeling, rigorous design and code reviews, robust authentication and authorization controls, and advanced secrets management.
Build Proactive Defenses: Establish and operate advanced monitoring, detection, and incident-response capabilities, continuously translating emerging threats and intelligence into resilient engineering solutions.
Champion Compliance & Trust: Spearhead SOC 2 compliance initiatives and cultivate customer trust, encompassing control design, detailed security questionnaires, policy management, vendor security reviews, and external audits.
Enable Secure Data Innovation: Collaborate closely with legal, commercial, engineering, and operations teams to translate complex data-license requirements into enforceable technical controls for access, provenance, retention, deletion, and comprehensive auditability.

What We're Seeking: Your Core Expertise

Minimum of 5 years of hands-on security engineering expertise across infrastructure, detection and response, and identity domains.
Demonstrated leadership in managing the full lifecycle of security incidents, from containment through root-cause analysis and subsequent engineering remediation.
Solid experience implementing and operating security frameworks like SOC 2 or comparable standards, with a proven ability to translate requirements into effective technical and operational controls.
A blend of offensive and defensive security experience (e.g., bug bounty, penetration testing, red team work) in addition to blue team operations.
Expertise in setting up and operating SIEM and/or XDR tooling for proactive threat detection and analysis.
Hands-on experience with abuse and fraud detection, attack surface management, and autonomous incident response.
Direct experience securing AI/ML infrastructure, agent execution environments, advanced data platforms, or systems handling untrusted or highly sensitive data.
Proven ability to design and implement comprehensive data protection controls, including access, retention, deletion, isolation, and auditability.
Experience engaging with legal teams, auditors, and customers on security questionnaires, policy management, and audit processes.
Prior experience as an early or solo security hire, successfully building a security program or function from scratch at a fast-growing company.
Exceptional communication skills, enabling effective collaboration across engineering, legal, operations, auditors, and customers.
Relevant certifications such as OSCP, AWS Security Specialist, OSWE, CKS, or GIAC, or demonstrated expertise through CVEs, published security tooling, or significant bug bounty contributions.
Systems programming or low-level engineering background (OS internals, Linux kernel, networking fundamentals) is a strong plus.

Compensation & Benefits
We offer a highly competitive compensation package, including significant equity, reflecting the impact of this founding role. Comprehensive medical, dental, and vision coverage, 401k, commuter benefits, and additional perks are provided. Visa sponsorship and relocation support are available for exceptional candidates.

Location
This is an on-site role based in San Francisco, California, USA, or Singapore. We are not offering remote work for this position.