Staff Security Engineer

🕒 May 4

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of EDB

EDB

501 - 1000 employees

Founded 2004

🏢 Enterprise

🤝 B2B

💰 Venture Round on 2019-10

Software • Enterprise • B2B

EDB is a company focused on providing advanced software solutions and services for database management. It specializes in PostgreSQL, an open-source database management system, and helps organizations deploy, run, and scale their data infrastructure efficiently and securely. EDB offers tools and support for database optimization, migration, and performance tuning, making it a valuable partner for enterprises looking to maximize their data capabilities.

📋 Description

• Lead cross-functional application security initiatives to identify, prioritize, and mitigate security risks across EDB's products. • Write and review code to build security automation and tooling that serves the full InfoSec organization accelerating the team's ability to detect, respond, and remediate. • Build & orchestrate security agents deploying AI-driven security tools using LLMs and orchestration frameworks (LangChain) to automate threat modeling, alert triaging, and code analysis. • Partner with internal teams to implement security guardrails for internal AI applications, focusing on prompt injection mitigation, data leakage prevention, and secure architectures. • Integrate AI tools into the SDLC to perform automated architectural risk assessments, security reviews, and identify vulnerabilities in generated code or toolsets. • Design and integrate complex security architectures across cloud and on-premise environments, strengthening EDB's overall defense posture against advanced threats. • Lead vulnerability disclosure investigations, coordinating with engineering teams to assess impact, validate findings, and drive timely remediation. • Embed security into the software development lifecycle through secure design reviews, code review, threat modeling, and ongoing partnership with engineering and product teams. Build trust with development teams by meeting them where they are, respecting their workflows, and delivering clear guidance throughout implementation. • Deliver security solutions as minimum valuable products, starting with the smallest solution that provides the needed value and iterating over time as capacity allows. • Drive continuous improvement of security tooling, detection capabilities, and monitoring infrastructure.

🎯 Requirements

• A developer-centric background with demonstrated ability to write and review production-quality code in Python, Go, or a comparable language. • Hands-on LLM engineering with proven experience working with LLM APIs (Anthropic Claude, OpenAI) and 'AI-as-a-Service' kits to build functional internal tools or security automations. • Deep understanding of the OWASP Top 10 for LLMs, including risks like prompt injection, insecure output handling, and training data poisoning. • Ability to craft complex, multi-shot prompts and system instructions to ensure AI security agents provide high-fidelity, low-noise results. • Proven experience leading cross-functional application security initiatives in complex, distributed environments. • Demonstrated experience leading vulnerability disclosure investigations, including impact assessment, coordination with engineering teams, and driving remediation. (You don't need to be able to write novel exploits — you need to assess risk and drive fixes.) • Proven ability to build trust with development teams: reviewing their code, engaging in their design discussions, and partnering as a peer rather than a gatekeeper. • Strong communication skills with the ability to influence cross-functional stakeholders, translate technical security concerns into business risks, and negotiate priorities with partner teams to get security initiatives on shared roadmaps. • An empathetic, collaborative approach to working with partner teams, respecting their processes and assuming the best while still driving accountability for security outcomes. • Demonstrated ability to balance long-term security architecture initiatives with day-to-day operational security needs, delivering incremental value rather than waiting for large, all-at-once solutions. • An AI-first approach to problem solving and security, leveraging AI tools and techniques to accelerate delivery, automate security workflows, and enhance decision-making. • Interest in growing into a broader InfoSec role over time, taking on expanded scope and influence across the organization.

🏖️ Benefits

• We provide access to CuraLinc to aid employees in health and wellness tips and practices • Wellness Fridays extending to December 2026!

Apply Now

Similar Jobs

🕒 May 3

CVS Health

10,000+ employees

⚕️ Healthcare Insurance

🛒 Retail

🧘 Wellness

Staff Security Engineer at CVS Health designing security measures for digital infrastructure. Collaborating with teams and providing technical guidance to safeguard sensitive data and ensure compliance.

AWS

Azure

Cloud

Google Cloud Platform

JavaScript

Python

Splunk

SQL

🕒 May 2

Core Education

51 - 200

📚 Education

🏢 Enterprise

☁️ SaaS

Practice Leader responsible for Infrastructure & Information Security Practice within Core Education. Leading teams and managing operations to enhance partner college experiences.

ITSM

🕒 May 1

Censys

51 - 200

🔒 Cybersecurity

🏢 Enterprise

Director of Security & GRC leading corporate security functions and compliance programs at Censys. Ensuring systems are secure, available, and easy to use while adhering to compliance frameworks.

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

🕒 May 1

Sony Interactive Entertainment

10,000+ employees

🎮 Gaming

🔧 Hardware

📡 Telecommunications

Staff Cloud Security Engineer focusing on cloud and AI security architecture for PlayStation. Leading security initiatives across multi-cloud environments and AI systems.

AWS

Azure

Cloud

Docker

Google Cloud Platform

Kubernetes

🕒 May 1

Greenhouse Software

501 - 1000

☁️ SaaS

👥 HR Tech

🏢 Enterprise

Head of Security managing complex financial security across NEAR Intents and NEAR One at Defuse Labs. Ensuring comprehensive security in crypto-native environments against diverse threats.

Terraform