Перейти к основному содержимому
FirstPrinciples

Staff Product Security Engineer - AI Systems

УдалённоCanada, United States только
Опубликовано
Роль
Фулстек
Опыт
Стафф
Занятость
Полная занятость
Зарплата не указана
Проверьте доступность

Доступно для: CA, US only. Укажите, откуда вы работаете, чтобы проверить доступность.

Коротко по делу

We are looking for a Staff Product Security Engineer to define and build the security architecture for Theo and the cloud platform surrounding it. Theo combines our own AI models, agentic workflows, tool use, code execution, scientific data, model serving, and multi-tenant SaaS infrastructure.

Ключевые навыки

SASTDASTSBOMs

Обязательные навыки

Python/Go/Rust/TypeScriptKubernetes/CI/CD/infrastructure as codeAWS PrivateLink/VPC endpoints/private subnetsLinux/UnixLinux/Unix internals/TCP/IP/DNS/routing/firewalls/proxies/VPNs

Желательные навыки

LLM applicationsagentic systemsRAGtool useMCP integrationscode-generating systemsmulti-agent orchestrationsecure sandboxes

Чем предстоит заниматься

  • Define the security architecture for Theo. Design security across our SaaS application, APIs, cloud infrastructure, model-serving systems, agent runtimes, data platforms, research environments, and deployment pipelines.
  • Secure agent identity and authority. Build robust authentication and authorization for users, services, and AI agents, including scoped credentials, delegated permissions, least-privilege tool access, approval boundaries, tenant isolation, and auditable agent actions.
  • Secure tool and code execution. Help design hardened execution environments for agent-generated and user-provided code, with strong isolation, resource limits, filesystem and network controls, provenance, monitoring, and escape testing.
  • Lead threat modelling and secure design. Work with Engineering, Research, Product, and Infrastructure from early architecture through production. Identify trust boundaries, abuse cases, attack paths, and practical mitigations before systems ship.
  • Address AI- and agent-specific threats. Defend against prompt and goal injection, unsafe tool use, confused-deputy behaviour, context or memory poisoning, insecure output handling, model and data exfiltration, model extraction, privilege escalation, resource abuse, and attacks across multi-agent workflows.
  • Build security-critical software. Implement secure-by-default services, libraries, policies, test harnesses, and platform controls for identity, secrets, encryption, policy enforcement, auditability, abuse prevention, and vulnerability management.
  • Embed security into development. Integrate static application security testing (SAST) and dynamic application security testing (DAST), alongside dependency, container, infrastructure-as-code, secret, and software supply-chain scanning, into development and release workflows. Establish practical security reviews, release controls, SBOMs, artifact provenance, and automated security regression testing.
  • Test the platform adversarially. Conduct penetration tests, red-team and purple-team exercises, architecture attacks, and abuse-case testing across our applications, APIs, infrastructure, agents, tools, and model systems.
  • Own vulnerabilities through resolution. Assess real exploitability and impact, work directly with engineers on remediation, validate fixes, and eliminate recurring classes of weakness rather than producing reports that stop at the finding.
  • Protect our AI and scientific assets. Secure model weights, training and evaluation data, datasets, embeddings, registries, research artifacts, GPU infrastructure, and software supply chains against leakage, tampering, poisoning, and unauthorized access.
  • Build detection and response into the platform. Define the telemetry, alerting, containment, and forensic capabilities needed to understand and respond to incidents involving users, services, agents, models, and data.
  • Engineer compliance into the product. Translate SOC 2 and customer security requirements into real technical controls. Support FedRAMP and NIST SP 800-53 readiness where strategically relevant, and automate evidence collection and control validation wherever possible.
  • Raise the security capability of Engineering. Mentor engineers, establish reusable patterns, document architectural decisions, and communicate consequential risks clearly to technical teams and company leadership.

Что требуется

  • 7+ years of experience in product security, application security, cloud security, offensive security, or security-focused software engineering.
  • Strong software engineering ability in at least one production language such as Python, Go, Rust, or TypeScript.
  • Deep experience securing modern cloud and SaaS systems, including web applications, APIs, distributed services, databases, containers, Kubernetes, CI/CD, and infrastructure as code.
  • Strong knowledge of authentication, authorization, IAM, tenant isolation, secrets management, encryption, network boundaries, logging, and secure software supply chains.
  • Hands-on experience with threat modelling, architecture review, secure code review, vulnerability analysis, penetration testing, and remediation.
  • An attacker-informed mindset developed through authorized red teaming, white-hat research, bug bounties, consulting, internal product-security work, or similar experience.
  • A history of moving beyond findings to durable fixes: changing architectures, contributing code, building shared security systems, or eliminating vulnerability classes.
  • The judgment to balance security, product velocity, usability, and business risk without reducing security to either compliance or blanket prohibition.
  • The ability to influence critical decisions across teams without relying on formal authority.
  • Clear written and verbal communication, intellectual honesty, high agency, and comfort working where the threat model and correct architecture are still emerging.

Преимущества

  • This is an opportunity to shape foundational architecture rather than inherit a finished security program.
  • Your work will directly determine how confidently researchers and organizations can use increasingly capable AI systems to pursue difficult scientific questions.

FirstPrinciples is a research company building AI for scientific discovery. It began with Theo, the AI Physicist, and has since grown into a product-focused company with two additional systems including Theo Conjecture and Theo Collaborator.

AI ResearchСтартап
Зарплата не указана