Product Security Engineer

Posted Yesterday
Be an Early Applicant
2 Locations
Remote or Hybrid
248K-282K Annually
Mid level
Artificial Intelligence • Information Technology • Software
The Role
Design, build, and harden security-critical systems: manage KMS and key management, protect PHI/PII, secure storage and tenant isolation, embed security in SDLC and CI/CD, lead threat modeling, and improve security scanning and compliance.
Summary Generated by Built In
About the Company

StackAI (by Asana) is a no-code AI workflow platform that empowers companies to build, deploy, and scale AI-powered workflows easily. With thousands of users and rapidly growing enterprise adoption, our mission is to democratize access to LLMs and bring AI into the hands of every business operator, not just developers. An Asana Company, we're building the foundational platform for the AI-driven future of work

About the role


At StackAI, security is how we earn the trust of the enterprises building AI assistants on our platform. We're hiring a hands-on (Senior) Product Security Engineer to design, build, and harden the secure architecture at the core of the product, working as a technical partner to our Core engineering lead.


This is a hands-on engineering role. You'll write production code and own the security-critical systems the whole platform depends on: encryption and key management, customer data protection, and how security is built into the way every team ships.
If you want deep ownership of these systems and the chance to harden and scale them as the platform grows, we'd love to meet you.


What you'll do
  • Own encryption and signing. Take ownership of our KMS, key management, BYOK, envelope encryption, and signing pipeline across both cloud and on-prem deployments—operating, hardening, and evolving them as the platform scales.

  • Protect the most sensitive customer data. Extend our PHI/PII scrubbing and strengthen the data-protection foundations that regulated enterprises already rely on.

  • Secure the storage layer. Own encryption at rest and tenant isolation.

  • Keep security the default in how we ship. Maintain and expand the secure-by-default templates and reference implementations embedded in our SDLC—the ones engineers actually want to adopt.

  • Threat-model the platform. Lead threat modeling on the seams between systems (the execution engine, connector trust boundaries, and multi-tenant isolation), using modern, AI-assisted threat-modeling tooling.

  • Raise the bar on tooling. Push our scanning further on coverage, signal, and CI enforcement, so critical findings never reach production.

  • Be the technical point of contact for security standards. Translate audit, compliance, and incident-response requirements into real implementation in our codebase.

What we're looking for
  • 4+ years building security-critical systems in production, with significant time spent implementing, not only reviewing or assessing.

  • Practical depth in cryptography and key management: encryption, KMS, secrets handling, and signing in real systems.

  • Secure architecture judgment: you can design and reason about secure systems and hold your own as a technical peer with senior engineers.

  • Multi-tenant SaaS isolation experience, including the data-isolation guarantees regulated customers require.

  • Strong secure-coding skills in our stack: Python on the backend, TypeScript/Node.js on the product surfaces.

  • Comfortable wiring security checks and gates into CI/CD so security is enforced automatically in the pipeline.

Security engineering is broad. If you're strong on most of this and excited to grow into the rest, we'd like to hear from you, even if you don't check every box.
Bonus points

  • Cloud and API security fundamentals on GCP, Azure, or AWS.

  • Securing on-prem, self-hosted, or air-gapped deployments.

  • Experience in regulated domains (healthcare/PHI, finance, etc.).

  • Familiarity with AI/LLM platform security: agent execution, connector trust boundaries, prompt and tool-call risk.

  • Startup or growth-stage experience.

Skills Required

  • 4+ years building security-critical systems in production
  • Practical depth in cryptography and key management (encryption, KMS, secrets handling, signing)
  • Secure architecture judgement and ability to design secure systems
  • Multi-tenant SaaS isolation experience and data-isolation guarantees for regulated customers
  • Strong secure-coding skills in Python (backend) and TypeScript/Node.js (product surfaces)
  • Experience wiring security checks and gates into CI/CD pipelines
  • Cloud and API security fundamentals (GCP, Azure, or AWS)
  • Securing on-prem, self-hosted, or air-gapped deployments
  • Experience in regulated domains (healthcare/PHI, finance, etc.)
  • Familiarity with AI/LLM platform security (agent execution, connector trust boundaries)
  • Startup or growth-stage experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
12 Employees
Year Founded: 2023

What We Do

Enterprise AI trusted by IT - power your GenAI strategy with Stack AI. Backed by YC and Google. We are a small dedicated team of insanely talented individuals relentlessly pushing the boundaries of what’s possible with AI. We are pioneering a new horizontal platform allowing anyone to build and deploy AI agents and automations. Companies across industries -- including healthcare, legal, financial, logistics, and defense -- use our software to make their organizations faster, more efficient, and scalable, leveraging the power of AI. With strong backing from YC and Google, we're set to double our team size in 2025. This is an exciting time to join if you want to build a category-defining product with strong customer momentum. We're looking for user-centric, craft-focused, creative minds who work hard but don't take themselves too seriously. We're ambitious yet pragmatic. We move fast, but care about the important details. We're hiring for a range of roles. Reach out if you'd like to learn more

Similar Jobs

Cedar Logo Cedar

Security Engineer

Artificial Intelligence • Fintech • Healthtech • Software
Easy Apply
Remote
United States
420 Employees
157K-185K Annually

Lob Logo Lob

Security Engineer

Logistics • Marketing Tech • Software
Easy Apply
Remote
United States
125 Employees
198K-220K Annually

MongoDB Logo MongoDB

Security Engineer

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
3 Locations
5550 Employees
106K-209K Annually

CrowdStrike Logo CrowdStrike

Security Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
160K-250K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account