xelys jobs xelys jobs

Staff Product Security Engineer

AlphaSense

full-remoteleadpermanentsecurity Full remote 134 days ago via WTTJ

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Product SecuritySecure SDLCThreat ModelingSecure ArchitectureDevSecOpsCI/CDAWSContainer SecuritySupply Chain SecurityAI/LLM Security

About the role

Role Overview

Join AlphaSense as a Staff Product Security Engineer to design and implement security for products across AI, data, and cloud-native systems. You’ll partner with engineering, data science, and infrastructure teams to embed security-by-design throughout the product lifecycle.

Key Missions

  • Lead secure product design and implementation, with a focus on AI, data, and cloud-native environments.
  • Embed security throughout the software/AI development lifecycle via:
    • secure design reviews
    • threat modeling
    • risk assessments
  • Build security automation and governance frameworks that integrate with development workflows, including software supply chain security.

Responsibilities

  • Drive architecture and security decisions in collaboration with cross-functional stakeholders.
  • Influence product and technical roadmaps by aligning security requirements and stakeholders.
  • Support security automation for development workflows and code review/tooling.

Requirements

  • 7+ years in product/application security engineering.
  • Deep expertise in secure SDLC, threat modeling, and secure architecture design.
  • Strong security automation skills using Python, Java, and/or JavaScript.
  • Solid fundamentals in encryption and key management, including:
    • symmetric/asymmetric cryptography
    • TLS/mTLS
    • secrets handling
  • Strong experience with container security, orchestration, and runtime protection.
  • Proven expertise with AWS cloud security concepts and best practices.
  • Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure.
  • Familiarity with DevSecOps and CI/CD environments.
  • Knowledge of AI/LLM security.
  • Experience with software supply chain security and artifact integrity verification.
  • Understanding of authentication/authorization patterns including OAuth 2.0, OIDC, SAML, RBAC, and ABAC.
  • Familiarity with compliance/governance frameworks such as SOC 2, ISO 27001, NIST 800-53, and NIST AI RMF.

Nice-to-Haves

  • Experience with GCP or Azure.
  • Security certifications such as CKS, CISSP, CSSLP, or AI/ML-focused security credentials.

About AlphaSense

AlphaSense is a company focused on helping users make better decisions using AI-driven search and analytics. It operates at the intersection of AI, data, and cloud-native infrastructure, serving enterprise needs with secure, scalable systems.

Scraped 5/12/2026