Lead Security Engineer
Listed on 2026-09-25
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Persons in these roles are expected to work from our offices in Seattle. On-site requirements vary based on position and team. If you have questions about on-site work arrangements for this role, please ask your recruiter.
Our base salary range is $176,400 - $264,600, and in addition we have generous bonus plans to provide a competitive compensation package.
Who You Are:
Are you a security-minded individual who not only enjoys identifying security vulnerabilities but also looks forward to helping close out concerns? If so, our infrastructure team is looking for a security leader who can identify and prioritize our biggest security concerns as well as contribute to resolving them. In this role, you’ll work collaboratively across the organization to understand our technical landscape, organize and prioritize security concerns, and directly contribute to projects to secure our systems.
If you enjoy taking initiative, learning about new systems, and making a real impact, we want you on our team.
Who We Are:
At Ai2, you'll be joining a team of top AI researchers and talented engineers who are pushing the boundaries of what's possible. We have projects spanning natural language processing, robotics, artificial assistants, and fully open foundational models.
As a Security Engineer, you would be a key part of our core infrastructure team, with a unique opportunity to improve the security of our groundbreaking initiatives. If you join our team, you will lead our company’s security program: establishing how we conduct security evaluations of programs, auditing systems for security concerns, prioritizing security investments, and working across the company to reduce our security risks.
We have a beautiful new office right across from Lake Union in Seattle; catered lunches five times a week; great pay and benefits; smart, friendly, and helpful coworkers; and even a couple of kayaks and paddleboards you can take out on sunny days.
Your Next Challenge:
The essential functions include, but are not limited to, the following:
- Establish and maintain documentation for Ai2's organizational approach to security, including policies, standards, and system security plans (SSPs).
- Maintain and prioritize a backlog of security investments.
- Conduct in-depth security assessments to identify and mitigate vulnerabilities across cloud infrastructure, ML pipelines, and application code.
- Investigate and respond to security incidents, lead root-cause analysis, and drive remediation to closure.
- Build systems and tooling that improve security compliance, observability, and governance (e.g., audit logging, access control, vulnerability management, configuration baselines).
- Partner across research and engineering teams to address security concerns.
- Define and evolve security standards, secure-development practices, and documentation to raise the organization's overall security maturity.
- Evaluate and secure SaaS platforms and tools that make up our environment (vendor risk assessments, access reviews, data handling review, multi-tenant data isolation).
- Serve as the organization's trusted voice on security: act as a hands-on advisor and sounding board to organizational leaders, helping translate security risk into practical, actionable guidance for teams without deep security expertise.
What You’ll Need:
- Bachelor's Degree and 8–10 years of overall software/infrastructure engineering experience.
- 5+ years focused specifically on security engineering, application security, or security architecture, ideally including time owning a security program.
- Hands‑on experience conducting security and compliance audits, and directly implementing or assessing controls. For example, experience with NIST 800-171.
- A track record of stepping up to ambiguous,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).