Security Engineer
Listed on 2026-02-28
-
IT/Tech
AI Engineer, Cybersecurity, Machine Learning/ ML Engineer
About Rivian
Rivian is on a mission to keep the world adventurous forever. This goes for the emissions‑free Electric Adventure Vehicles we build, and the curious, courageous souls we seek to attract. As a company, we constantly challenge what’s possible, never simply accepting what has always been done. We reframe old problems, seek new solutions and operate comfortably in areas that are unknown.
Our backgrounds are diverse, but our team shares a love of the outdoors and a desire to protect it for future generations.
As a Security Software Engineer at Rivian, you will sit at the intersection of cybersecurity, software engineering, and artificial intelligence. Your role is not just to “guard” the AI; it is to engineer the solutions that allow our AI/ML teams to move fast without breaking safety. You will act as a bridge—writing the code that secures our infrastructure while partnering directly with data scientists and ML engineers to validate new systems before they touch production.
You will play a key role in maturing Rivian’s AI security posture from “ad‑hoc” to “systematic.” We are open to location on this role and report to our Sr. Manager, Cybersecurity.
- Collaborative Design & Validation (Consultant‑Builder): Partner with AI product teams during the design phase to review architecture and ask critical questions about data storage, model isolation, and prompt safety.
- Security Reviews: Conduct security reviews with AI product teams, asking hard questions such as “Where is this data stored?” “How is this model isolated?” and “What happens if the prompt is malicious?”
- Threat Modeling: Participate in (and eventually lead) threat‑modeling sessions for new ML features, helping teams identify risks in their RAG pipelines or autonomous training loops.
- Validation: Verify that security requirements—auth
Z scopes, encryption, etc.—are actually implemented correctly in final code, working with QA and Engineering. - Engineering & Tooling (SWE Core): Write Python or Go libraries that make it easy for data scientists to secure their work, build automation that scans Kubeflow/MLflow clusters, and submit pull requests directly to ML repositories.
- Maturing AI Security (Growth Aspect): Define “Gold Standard” documentation for secure model deployment, assist in triaging findings from bug bounties or internal scans, track remediation time, and research new AI attacks such as Model Inversion.
- Strong Engineering Foundation: 2+ years of software engineering experience; write clean, tested code (Python preferred) and understand the SDLC.
- Security Mindset: Experience identifying potential breakage points in system designs; understand concepts like least privilege, defense in depth, and input validation.
- Communication
Skills:
Explain security risks to Data Scientists without jargon, and explain ML constraints to Security Engineers. - Understanding of AI/ML: Know the basic components of an AI system—Data Lake → Training → Model Registry → Inference API—and how security fits into that flow.
- Experience with AWS or GCP cloud security architecture.
- Experience using or securing vector databases or LLM orchestrators (e.g., Lang Chain).
- Previous experience in an embedded, automotive, or IoT environment, understanding that code eventually runs on vehicle or physical hardware.
Salary range for this role is $105,100 – $131,400 for California‑based applicants and $88,300 – $110,400 for Georgia‑based applicants. This is the range we in good faith believe we would pay for this role at the time of posting, based on specific competencies, education, qualifications, certifications, experience, skills, geographic location, shift, and organizational needs. The successful candidate may be eligible for an annual performance bonus and equity awards.
We offer a comprehensive benefits package for full‑time and part‑time employees, their spouse or domestic partner, and children up to age 26; benefits include paid vacation, paid sick leave, and a competitive portfolio of insurance benefits (life, medical, dental, vision, short‑term disability, long‑term disability), as well as a…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).