Security Engineer
Listed on 2026-05-29
-
IT/Tech
Cybersecurity
A Little About Us
EDB provides a data and AI platform that enables organizations to harness the full power of Postgres for transactional, analytical, and AI workloads across any cloud, anywhere. EDB empowers enterprises to control risk, manage costs and scale efficiently for a data and AI led world. Serving more than 1,500 customers globally and as the leading contributor to the vibrant and fast-growing Postgre
SQL community, EDB supports major government organizations, financial services, media and information technology companies. EDB’s data-driven solutions enable customers to modernize legacy systems and break data silos while leveraging enterprise-grade open source technologies. EDB delivers the confidence of up to 99.999% high availability with mission critical capabilities built in such as security, compliance controls, and observability. For more information, visit
As a Staff Security Engineer at EDB, you will be a technical leader with a developer‑centric background, responsible for designing and implementing security architectures that protect EDB's products, infrastructure, and customers. You will lead cross‑functional application security initiatives, build automation and tooling that multiplies the impact of the entire Info Sec organization, drive vulnerability disclosure investigations, and ensure our security posture meets regulatory requirements.
You will build deep trust with engineering teams by speaking their language, reviewing their code, and partnering with them to ship secure software.
This is a role designed for someone who wants to grow. As a member of a small, high‑impact security team, you'll have the autonomy to shape security strategy and the runway to grow into a broader Info Sec leadership role over time. You'll champion security awareness through training and cross‑functional collaboration, and deliver iterative security improvements — thinking big but acting small to move the organization forward incrementally.
This role is ideal for experienced engineers who thrive on solving complex technical challenges through code, want autonomy in shaping security strategy, and are passionate about building resilient defenses through collaboration and partnership. If you're ready to strengthen EDB's security foundations, we want to hear from you!
Responsibilities- Lead cross‑functional application security initiatives to identify, prioritize, and mitigate security risks across EDB's products.
- Write and review code to build security automation and tooling that serves the full Info Sec organization accelerating the team's ability to detect, respond, and remediate.
- Build & orchestrate security agents deploying AI‑driven security tools using LLMs and orchestration frameworks (Lang Chain) to automate threat modeling, alert triaging, and code analysis.
- Partner with internal teams to implement security guardrails for internal AI applications, focusing on prompt injection mitigation, data leakage prevention, and secure architectures.
- Integrate AI tools into the SDLC to perform automated architectural risk assessments, security reviews, and identify vulnerabilities in generated code or toolsets.
- Design and integrate complex security architectures across cloud and on‑premise environments, strengthening EDB's overall defense posture against advanced threats.
- Lead vulnerability disclosure investigations, coordinating with engineering teams to assess impact, validate findings, and drive timely remediation.
- Embed security into the software development lifecycle through secure design reviews, code review, threat modeling, and ongoing partnership with engineering and product teams. Build trust with development teams by meeting them where they are, respecting their workflows, and delivering clear guidance throughout implementation.
- Deliver security solutions as minimum valuable products, starting with the smallest solution that provides the needed value and iterating over time as capacity allows.
- Drive continuous improvement of security tooling, detection capabilities, and monitoring infrastructure.
- A developer‑centric background with demonstrated ability to write and review…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).