Robinhood

Senior Security Engineer, AI Vulnerability Management

Robinhood$187K — $220K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in Security Engineering with leadership in automation initiatives
  • Experience with agentic systems or LLM orchestration frameworks
  • Involvement in Bug Bounty programs and knowledge of exploit methods
  • Strong software engineering skills in Go or Python
  • Deep understanding of AWS and Kubernetes security
  • Familiarity with vulnerability risk frameworks
  • Experience with security platforms like Snyk or Semgrep

Responsibilities

  • Define the strategic roadmap for Risk-Based Vulnerability Management
  • Design and implement AI systems for triaging security findings
  • Develop systems for correlating vulnerabilities with runtime context
  • Automate processes to reduce manual security work
  • Create dashboards for translating complex security signals
  • Lead response efforts for high-impact security vulnerabilities
  • Ensure systematic eradication of critical vulnerabilities

Benefits

  • Challenging work for career growth
  • Performance-driven compensation with equity and bonuses
  • 100% covered health insurance for employees and 90% for dependents
  • Flexible benefits spending account for wellness and learning
  • Employer-funded life and disability insurance, plus mental health support
  • Generous time off policies including holidays and parental leave
  • Inviting office environment with catered meals and events
Full Job Description
This role is based in our Menlo Park, CA office, with in-person attendance expected at least 3 days per week.

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.
What you'll do
  • Set Strategic RBVM Vision: Act as the technical lighthouse, defining the multi-year roadmap and driving the move toward Risk-Based Vulnerability Management (RBVM), prioritizing vulnerabilities based on real-world exploitability and business context.
  • Architect Agentic AI Systems: Design and deploy AI agents that autonomously triage findings, correlate threat intelligence, and generate production-ready remediations (e.g., automated Pull Requests for dependency updates and config drift).
  • Build Exposure Intelligence: Develop systems that correlate vulnerabilities with runtime context and infrastructure topology (Kubernetes/AWS) to accurately model real-world blast radius and ensure engineers only fix what is actually exploitable.
  • Automate Triage & Self-Healing: Create "paved roads" and CI/CD guardrails that prevent specific vulnerability categories from ever reaching production, reducing manual toil for the entire engineering organization.
  • Data-Centric Visibility: Build high-fidelity dashboards using LLM-powered summarization to translate complex security signals into actionable insights for engineering leadership.
  • Lead Emergency Response: Orchestrate the technical response to high-impact zero-days by rapidly performing cross-environment blast-radius analysis.
  • Drive Execution Ownership: Take full ownership of operational security work, ensuring that critical vulnerabilities are systematically eradicated while maintaining high engineering velocity.
What you bring
  • Experience: 5+ years in Security Engineering with a track record of leading high-impact automation or security platform initiatives at a Senior or Staff level.
  • AI & Agentic System Fluency: Hands-on experience building or deploying agentic systems or LLM orchestration frameworks (e.g., LangChain, AutoGPT) to solve complex security or engineering problems at scale.
  • Bug Bounty & Exploit Proficiency: Active experience participating in or managing Bug Bounty programs; a deep understanding of how attackers exploit vulnerabilities and how to translate those findings into systemic fixes.
  • Engineering Excellence: Strong software engineering background with proficiency in Go or Python and a history of building scalable, API-driven security tooling.
  • Modern Infrastructure Depth: Deep knowledge of securing AWS and Kubernetes-based architectures.
  • Vulnerability Domain Knowledge: High familiarity with vulnerability categories, exploitability, and modern risk frameworks (CVSS, EPSS, CISA KEV).
  • Detection Ecosystems: Experience with modern platforms like Snyk, Semgrep, Wiz, EndorLabs, or TruffleHog.
  • Velocity Mindset: A commitment to reducing security friction and a track record of working effectively with high-velocity engineering teams.
Nice to have
  • Fintech Experience: Experience navigating security in highly regulated or high-growth financial environments.
  • Security as Code: Experience implementing "Security as Code" within large-scale CI/CD environments.
What we offer
  • Challenging, high-impact work to grow your career.
  • Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching.
  • Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents.
  • Lifestyle wallet - a highly flexible benefits spending account for wellness, learning, and more.
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits.
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more!
  • Exceptional office experience with catered meals, events, and comfortable workspaces.


In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Base Pay Range:

Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)

$187,000-$220,000 USD

Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)

$165,000-$194,000 USD

Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL)

$146,000-$172,000 USD

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you're ready to build the future of finance, we look forward to seeing your application.

About Robinhood

Robinhood is a financial services company that offers commission-free trading through its website and mobile app. The company was founded in 2013 by Vladimir Tenev and Baiju Bhatt, and is headquartered in Menlo Park, California. Robinhood's mission is to democratize finance for all by making investing accessible to everyone. The company has raised over $5 billion in funding and has over 13 million users. Robinhood has faced criticism for its business model, which relies on selling order flow to market makers, and for its handling of the GameStop trading frenzy in early 2021.
Learn more about Robinhood
Size
2,000 employees
Industry
Founded
2013

Similar Jobs

More Jobs at Robinhood

More Information Technology Jobs

Find similar Senior Security Engineer, AI Vulnerability Management jobs: