Unknown Company

Senior Security Engineer

new york, ny • Posted 6 days ago
Onsite Full Time Engineering

Responsibilities

  • As our first security hire, you’ll build our security function from the ground up: defining the architecture, owning compliance, protecting our AI platform and customer data, and establishing a security‑first culture
  • You’ll report directly to the CTO
  • Architect and build Intenseye’s security program end‑to‑end: cloud infrastructure security, application security, data protection, endpoint, and identity
  • Own our compliance roadmap—including SOC 2 Type II, ISO 27001, and GDPR—and drive it to completion, partnering with legal, finance, and customer success
  • Embed security into the SDLC: define secure coding standards, introduce SAST/DAST tooling, and partner with engineering to make secure‑by‑default the norm
  • Build and run incident response: design our monitoring and alerting stack, write the playbooks, and lead the response when things go wrong
  • Own IAM strategy across internal systems, cloud infrastructure, and customer‑facing platforms
  • Lead threat modeling and vulnerability management—working with engineering to prioritize and remediate across a complex, globally distributed system
  • Be the face of security to enterprise customers: own security questionnaires, due diligence reviews, and executive‑level conversations about our security posture
  • Advise the CTO and executive team on security risk, investment, and strategy as the function matures

Benefits

  • Support for individuality & continuous education: We stand with you on your journey whether it is the autonomy to make decisions and a true voice in the direction of the company or a need for support in continued development of your education or your passions.
  • Stock option plan: We want our team to be rewarded for the value they bring to the company, all eligible employees enjoy new hire equity.
  • Competitive salaries: We offer a competitive salary which we benchmark constantly.
  • Team, events & activities: We believe great teams are built through shared experiences. From energizing company offsites to in‑person gatherings and a weekly lunch in our NYC HQ, we make time to connect beyond work. No matter where you’re based, you’ll find plenty of opportunities to build relationships, have fun, and strengthen our culture together.

Qualifications

  • We’re looking for someone who is deeply technical and ready to own the security function end‑to‑end.
  • As our first security hire, you’ll cover a lot of ground—writing policy, reviewing code, responding to customer security questionnaires, and hands‑on infrastructure work.
  • A clear, confident communicator: you can simplify complex risk for the CEO, rally engineers around secure‑by‑default practices, and represent Intenseye’s security posture to enterprise customers and prospects.
  • A founder‑minded builder: you’re energized by creating security infrastructure from scratch, not inheriting a mature program—and you take full ownership of outcomes.
  • Thinking beyond the technical: you’ve started to think about governance, organizational resilience, and how security creates competitive advantage at the enterprise level.
  • Pragmatically risk‑driven: you understand that startups must move fast, and you find ways to reduce risk without becoming a blocker—earning trust across engineering and product by being a partner, not a gatekeeper.
  • Technically deep and strategically broad: you can write policy and write code. You can threat‑model a distributed AI system and present risk to leadership in the same week.
  • Solid grasp of data privacy (GDPR, CCPA) and the ability to work cross‑functionally with legal and GTM teams on customer‑facing requirements.
  • Deep hands‑on expertise in cloud security (GCP strongly preferred): network security, IAM, secrets management, container security (Kubernetes/Docker), and cloud‑native threat detection.
  • Prior startup experience is required—high ownership, high velocity, pragmatic judgment.
  • Experience securing physical hardware deployments: device hardening, firmware security, secure boot, and managing the security lifecycle of hardware deployed in customer environments.
  • Strong application security fundamentals: OWASP Top 10, secure SDLC, API security, and experience integrating SAST/DAST into CI/CD pipelines.
  • Bonus: experience with AI/ML platform security, industrial IoT, or edge computing environments.
  • Experience leading a cross‑functional initiative.
  • 8+ years in security engineering, with meaningful experience owning or significantly shaping a security function—not just executing within one.
  • Experience with modern security tooling: SIEM, EDR, CSPM, vulnerability scanners (e.g., Wiz, Crowdstrike, Datadog Security, or equivalents).
  • Proven experience driving a compliance program through completion (SOC 2 Type II, ISO 27001, or equivalent)—not just supporting it.
  • Demonstrated ability to communicate security risk at the executive level—written and verbal.

If you’re excited about our mission and believe you can have an impact in this role, we strongly encourage you to apply. Your experience, skills, and perspective may be exactly what we’re looking for.

We know that not everyone will meet 100% of the listed qualifications, and that’s OK. Research shows that individuals from underrepresented groups often hesitate to apply unless they meet every criterion.

#J-18808-Ljbffr
Back to Job Search