Member of Technical Staff - Security Engineer
San Francisco, CA • FullTime
Posted 3mo ago
About the job
Reflection.AI is seeking a Member of Technical Staff - Security Software Engineer to establish our Application Security function from the ground up. This role offers significant autonomy to design and implement solutions across various Security Engineering projects, including AI agent incident detection and response, and internal AI agents. The ideal candidate is a self-starter who excels in high-ownership, low-structure environments and possesses a strong "0 to 1" mindset, ready to build and innovate within a talent-dense team focused on making intelligence open and accessible.
Responsibilities
- Contribute engineering efforts to security projects, including AI agent incident detection & response and internal AI agents.
- Implement security controls for AI agents, such as sandboxes, identity, and authorization systems.
- Define software supply chain security strategy, tooling, and infrastructure, including SCA/SBOM analysis.
- Roll out controls to address emerging supply chain attacks.
- Develop and maintain a comprehensive threat model for the software stack.
- Drive the pentesting program, prioritizing based on threat model insights.
- Define and socialize secure coding practices and architecture patterns for AI/ML systems.
- Integrate SAST tools into CI/CD pipelines for continuous vulnerability analysis.
- Define and implement a comprehensive Secure Software Development Lifecycle.
Requirements
- Strong proficiency in Python or Golang.
- Proven track record of architecting and building complex software systems.
- Familiarity with common application logic exploit vectors.
- Experience implementing and rolling out cross-functional projects impacting multiple teams.
- Experience with AI-native engineering workflows.
- Experience working with Kubernetes.
- Experience working with AWS and/or GCP.
- Strong interest in developing expertise in security sub-specialties like infrastructure security, incident detection & response, and digital forensics.
- Willingness to contribute to cross-functional security projects.
- Experience building programs from inception ('0 to 1').
Benefits
- Top-tier compensation (salary and equity).
- Stock options.
- Comprehensive health, dental, vision, and life insurance.
- Annual wellness allowance.
- Provided lunch and dinner in the office.
- 22 weeks paid parental leave.
- Unlimited paid time off (U.S.) / 30 days paid time off (U.K.).
- Visa sponsorship support.
- Regular off-sites, happy hours, and team celebrations.