Skip to main content
Abnormal AI

Senior Security Engineer

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
Company size
Startup
$153k–$220k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior security engineer, IC-level, deeply experienced with AWS (IAM, STS, VPC, KMS) and IaC (Terraform/CloudFormation). Must be fluent directing AI coding tools (Claude Code, Cursor, Copilot) and review AI-generated infra/detection logic. US-based remote role.

Core skills

Terraform/CloudFormationAWS SecurityAI coding tools

Required skills

AWSIAMSTSAWS cross-account rolesAWS resource policiesVPCnetwork segmentationKMSPython/GoGitLinuxSIEMSOARvulnerability managementCSPMKubernetesservice mesh controlsIaC

Optional skills

JavaScriptTypeScriptCNAPPDSPMKSPMSOC 2ISO 27001CI/CD systems

What you'll do

  • Lead threat modeling and security design discussions with both platform and product teams, translating risks into engineering actions and using AI to rapidly stress-test designs against attack scenarios before committing engineering time to a direction.
  • Partner with product engineering to review the security architecture of new product features — assessing designs for data exposure, access control, and abuse-case risk before they ship — using AI to speed up first-pass analysis so your review time goes toward the highest-risk decisions.
  • Collaborate with Platform, Infra, and DevOps teams to build scalable preventative controls in AWS via Infrastructure-as-Code — using AI coding agents to scaffold and iterate on Terraform/CloudFormation modules, reserving your own time for least-privilege review, blast-radius analysis, and edge cases.
  • Evaluate and uplift security tooling across commercial, cloud-native, and AI-assisted capabilities, focusing on scale, efficiency, and precision.
  • Mentor engineers on how to get real leverage from AI — reviewing AI-generated code and infrastructure together, and turning recurring feedback into standards and reusable playbooks instead of repeating it review after review.
  • Use AI to rapidly prototype automation for signal correlation, alert enrichment, and auto-remediation of known failure patterns, then harden and productionize what proves out.
  • Architect, build, and validate integrations between AWS and other cloud-native infrastructure and security tooling (e.g., SIEM, SOAR, IAM tooling), with a growing share of first-draft code AI-generated and human-owned.
  • Serve as a hands-on technical contributor during security incidents, using AI to accelerate log and telemetry triage while owning the judgment calls that determine root cause and response.
  • Build and maintain reusable AI-assisted playbooks (for IaC security review, detection authoring, alert triage).

What they require

  • Proven delivery in security engineering or infrastructure security roles, ideally in cloud-native environments.
  • Deep comprehension of native AWS architecture services and identity/access patterns — IAM, STS, cross-account roles and resource policies, VPC and network segmentation, KMS — with AWS as our primary cloud platform, plus working knowledge of Azure and GCP.
  • Strong scripting and dev fundamentals in Python and/or Go — enough to read, critique, and confidently modify AI-generated code, not just prompt for it; proficiency with Git, Linux, and infrastructure automation patterns.
  • Demonstrated fluency directing AI coding/agent tools (e.g., Claude Code, Cursor, Copilot) to accelerate delivery, paired with the judgment to catch when AI-generated infrastructure or security logic is wrong, incomplete, or dangerous.
  • Expertise in integrating or building tooling for SIEM, SOAR, vulnerability management, and CSPM platforms.
  • Experience deploying security controls via Infrastructure-as-Code (Terraform or CloudFormation), primarily in AWS.
  • Comfortable investigating logs, tracing events, and contributing to incident analysis workflows.
  • Proven ability to influence and collaborate cross-functionally with engineering, infra, product, and IT.
  • Strong written communication and documentation skills and being able to convey complex designs clearly.
  • Background with using and securing container orchestration (Kubernetes), including workload security and service mesh controls.
  • Preferred: Experience working in fast-paced or startup environments with sometimes ambiguous ownership lines.
  • Preferred: Experience building or operating agentic workflows/AI tooling for security use cases (detection authoring, alert triage, IaC/review).
  • Preferred: Familiarity with JavaScript or TypeScript, particularly in the context of DevOps tooling or plugins.
  • Preferred: Hands-on experience with commercial Cloud Security tools (CNAPP, CSPM, DSPM, KSPM).
  • Preferred: Prior experience building security telemetry pipelines or log correlation frameworks.
  • Preferred: Exposure to compliance frameworks (SOC 2, ISO 27001) and how engineering decisions affect auditability.
  • Preferred: Familiarity with CI/CD systems and integrating security checks into developer workflows.

Benefits

  • Bonus or incentive compensation
  • Equity
  • Comprehensive benefits package

Abnormal AI provides an email security platform.

CybersecurityStartup

What people say about this company

3.0/ 5

Also posted in 2 other channels
$153k–$220k/yr