About the RoleWe are looking for a Security Engineer who thrives on securing novel AI products. You will own the security roadmap, ensuring our platform is resilient, compliant, and stays ahead of an ever-evolving threat landscape.
Responsibilities- Customer Security & Trust: Partner with our largest enterprise customers to navigate the procurement process , leading technical discussions regarding security agreements, providing comprehensive posture overviews, and ensuring alignment on rigorous data handling requirements
- Lead Secure Design: Conduct threat modeling and secure design reviews for new features, ensuring security is a core consideration from initial design through implementation.
- Automate Defenses: Develop tooling and "paved paths" that allow our engineering and research teams to ship code safely without sacrificing velocity.
- Own Vulnerability Management: Oversee our bug bounty program and internal vulnerability scanning, prioritizing fixes based on actual risk to our foundation models.
- Secure AI/ML Pipelines: Build specific defenses against AI-novel risks, including protecting high-throughput inference systems and GPU-accelerated computing environments.
- Champion GitOps Security: Manage security configurations via Terraform/Pulumi, ensuring "security-as-code" is the truth across all multi-region environments.
RequirementsMust Haves- Experience: 5+ years of experience in application or infrastructure security within a high-growth environment.
- Security Polyglot: Deep expertise in securing AWS environments; experience with GCP or Azure is a major plus.
- Offensive Mindset: Ability to think like an attacker to anticipate risks, paired with a collaborative spirit to help engineers remediate them.
- Operational Mindset: Experience with modern observability and a "you build it, you run it" mentality toward security infrastructure.
- Agentic Security Tooling: Experience integrating agentic AI workflows into the developer lifecycle to provide real-time security feedback, enabling engineers to be "secure-by-design" as code is written rather than after the fact.
Nice to Haves- AI/ML Security: Experience securing AI/ML workloads, specifically defending against prompt injection or protecting model weights.
- Kubernetes Mastery: Strong K8s (EKS/GKE) experience, specifically around multi-tenant security and resource isolation.
- Compliance Expertise: Proven track record of navigating SOC2, HIPAA, or similar regulatory frameworks in a cloud-native environment.
Compensation & BenefitsAt
Simile, we provide competitive compensation packages that include base salary, equity, and comprehensive benefits.
- Salary Range: $200,000 - $400,000 USD
- Note: Final offers are based on experience, specialized skills, interview performance, and relevant training.
- Equity: Grants are available for eligible roles, subject to board approval.
- Health & Wellness: Comprehensive medical, dental, and vision coverage.
- Time Off: Flexible time off policies to support work-life balance.
Our ProcessWe prioritize thoughtful conversations and clear examples of past work. Our hiring journey is designed to help both sides align on fit, working style, and expectations.
Reapplication Policy: To ensure a fair and thorough evaluation for all applicants, Simile observes a
90-day waiting period before reconsidering candidates for the same role.