Senior Product Security Engineer

Crusoe

3d ago 1 views 0 applications
San Francisco, CA - US Onsite
Competitive
Full-time
Security Engineer

Job Description

Join the AI Revolution: Senior Product Security Engineer at Crusoe

Crusoe is on a mission to accelerate the abundance of energy and intelligence. We're building the engine that powers a future where AI empowers ambitious creation, sustainably and at scale. Be a part of this revolution!

As a Senior Product Security Engineer at Crusoe AI, you'll play a pivotal role in securing our AI/ML-focused cloud products and applications throughout their entire lifecycle. You'll be at the forefront of protecting cutting-edge AI infrastructure and customer data, working with a team of passionate innovators.

What You'll Do:
Secure the SDLC: Collaborate with product and engineering teams to deeply integrate security best practices into every stage of the software development lifecycle.
Threat Modeling & Assessments: Conduct in-depth threat modeling, security architecture reviews, design reviews, and code reviews to identify and mitigate potential vulnerabilities. Perform penetration testing, vulnerability analysis, and security assessments on product features and systems.
Security Automation: Develop and implement security automation tools for continuous testing and monitoring of code and software for vulnerabilities.
Establish Standards: Define and maintain secure coding standards and procedures specifically tailored for cloud and Kubernetes-based environments.
Proactive Risk Management: Proactively identify and mitigate risks in user-facing flows and critical infrastructure components.
Champion Security Culture: Drive security education, training, and mentorship initiatives to foster a culture of security awareness and responsibility across all teams.
Vulnerability Management: Identify, document, prioritize, and efficiently remediate security vulnerabilities.

What You'll Bring:
Experience: 4-6+ years of hands-on experience in Information Security, with a strong focus on application or product security.
Cloud Expertise: Deep understanding of cloud platforms (AWS, GCP, or Azure), Kubernetes orchestration, and automation scripting (e.g., Python, Bash).
Threat Modeling Prowess: Proven ability to conduct comprehensive threat modeling, identifying, evaluating, and mitigating risks in complex systems.
SDLC Security Foundation: Solid understanding of SDLC security principles ("Shift Left") and secure coding practices.
Vulnerability Management & Incident Response: Experience implementing and managing vulnerability management programs and incident response protocols.
AI/ML Security (Bonus): Experience with Large Language Model (LLM) applications and AI/ML security is highly desirable.
Communication & Collaboration: Self-motivated, an excellent communicator, and capable of collaborating effectively across cross-functional teams.
Values Alignment: Embody the Company values.

Benefits of Joining Crusoe:
Industry competitive pay
Restricted Stock Units in a fast-growing, well-funded technology company
Comprehensive health insurance package options (HDHP and PPO), vision, and dental for you and your dependents
Employer contributions to HSA accounts
Paid Parental Leave
Paid life insurance, short-term, and long-term disability
Teladoc
401(k) with a 100% match up to 4% of salary
Generous paid time off and holiday schedule
Cell phone reimbursement
Tuition reimbursement
Subscription to the Calm app
MetLife Legal
Company-paid commuter benefit: $300 per month

Compensation: $180,000 - $230,000 per year, plus Restricted Stock Units. The final compensation will be determined based on your education, experience, knowledge, skills, and abilities, as well as internal equity and market data.

Crusoe is an Equal Opportunity Employer. We value diversity and are committed to creating an inclusive environment for all employees.