Security Engineer

Posted 7 Days Ago
Be an Early Applicant
New York, NY, USA
In-Office
200K-250K Annually
Senior level
Marketing Tech
The Role
Own and build Profound's security posture across cloud, platform, and corporate environments: harden AWS, run SOC 2 Type II compliance, integrate security scanning into CI/CD, manage vulnerabilities, detect and respond to incidents, run access reviews, maintain risk register, and build practical security policies and incident response.
Summary Generated by Built In

Profound is the marketing platform for the age of AI search. The way brands reach people is being rewritten — AI models like ChatGPT, Perplexity, and Google AI Mode are now the answer layer between companies and their customers. We built the platform marketers use to understand, measure, and win in that world: the analytics, intelligence, and agent automation that turn AI search from a threat into a competitive advantage.

We went from 0 to a $1B valuation in 18 months. Revenue grew 100x last year. Our customers include 15% of the Fortune 500 like Walmart, Wayfair and U.S. Bank, and innovators like Ramp, MongoDB, and Figma. We are backed by Sequoia, Kleiner Perkins, LSVP, and Khosla Ventures — and we are moving fast enough that the people joining now are building the playbook everyone who comes after them will run.

As enterprises integrate AI into critical workflows, they need to trust that the platforms they rely on are secure, compliant, and resilient. That's where you come in.

We're hiring a Security Engineer to own Profound's security posture across our platform, infrastructure, and corporate environment. You'll be the first dedicated security hire, which means you'll shape how we approach access control, vulnerability management, compliance, and incident response from the ground up. You'll partner closely with our Engineering and Infrastructure teams to build practical, scalable security systems that protect customer data and enable rapid growth.

This role is ideal for someone who sees security as a business accelerator, not a blocker, and who thrives on building rather than auditing.

What you'll do

In your first 90 days, you'll focus on our most pressing priorities: partnering with our Infrastructure team to harden our AWS environment, driving SOC 2 Type II continuous compliance (defining controls and closing gaps), and integrating security scanning into our CI/CD pipelines.

Over time, you'll take on broader responsibility across our security posture:

  • Enforce least-privilege access controls and conduct regular access reviews across environments

  • Build and run a vulnerability management program spanning infrastructure, applications, and dependencies

  • Triage and respond to security findings from automated tooling, bug bounty programs, and third-party assessments

  • Partner with Infrastructure to implement detection and monitoring capabilities using log aggregation and SIEM tooling

  • Conduct risk assessments, maintain a risk register, and drive prioritization decisions

  • Build security policies and procedures that reflect how we actually operate

  • Lead post-incident reviews and drive systemic improvements

Must have

  • 5+ years in security engineering, with experience in high-growth SaaS or infrastructure-heavy environments

  • Hands-on experience building or maintaining a SOC 2 compliance program

  • Strong knowledge of AWS security services and cloud security architecture (IAM, VPC, CloudTrail, GuardDuty, Security Hub)

  • Deep understanding of identity and authentication protocols (OAuth, SAML, OIDC)

  • Practical scripting skills in Python or Bash for automating security workflows

Strong plus

  • Experience integrating vulnerability management and security scanning (SAST, DAST, SCA, container scanning) into CI/CD workflows

  • Familiarity with network security fundamentals (firewalls, DNS, VPNs, segmentation, traffic analysis)

  • Experience with infrastructure-as-code security (Terraform, CloudFormation)

  • Background in penetration testing, application security assessments, or CTF competitions

  • Familiarity with data infrastructure security for systems like ClickHouse or PostgreSQL

  • Experience with data processing compliance in analytics-heavy environments

  • Relevant certifications (CISSP, CCSP, AWS Security Specialty, or similar)

Who you are

  • Clear communicator who can translate security risks into business terms for engineering, leadership, and customer-facing teams

  • Systems thinker who reasons about root causes, blast radius, and scalable control design

  • Self-directed with strong judgment and comfort operating with significant autonomy

  • Motivated by building the security foundation for a category-defining AI company

Compensation

For this role, the expected base salary range is $200,000 to $250,000 (NYC). Profound's total compensation package includes base salary, equity, and a full range of benefits and perks. Final compensation depends on skills, experience, qualifications, and location, and will be determined during the interview process. Our recruiting team will share more details about the full package as you move through hiring.

#LI-PRO

 

Note: All official communication from Profound will come from a @tryprofound.com email address. If you're contacted by anyone using a different domain, please disregard and report it as spam.

Skills Required

  • 5+ years in security engineering in high-growth SaaS or infrastructure-heavy environments
  • Hands-on experience building or maintaining a SOC 2 compliance program (SOC 2 Type II)
  • Strong knowledge of AWS security services and cloud security architecture (IAM, VPC, CloudTrail, GuardDuty, Security Hub)
  • Deep understanding of identity and authentication protocols (OAuth, SAML, OIDC)
  • Practical scripting skills in Python or Bash for automating security workflows
  • Experience integrating vulnerability management and security scanning (SAST, DAST, SCA, container scanning) into CI/CD workflows
  • Familiarity with network security fundamentals (firewalls, DNS, VPNs, segmentation, traffic analysis)
  • Experience with infrastructure-as-code security (Terraform, CloudFormation)
  • Background in penetration testing, application security assessments, or CTF competitions
  • Familiarity with data infrastructure security for ClickHouse or PostgreSQL
  • Experience with data processing compliance in analytics-heavy environments
  • Relevant certifications (CISSP, CCSP, AWS Security Specialty, or similar)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY

What We Do

Hundreds of millions of consumers are now using AI Search like ChatGPT or Perplexity to discover brands and products. Profound has developed the first analytics platform to help enterprise brands understand and improve how they show up in AI Search.

Similar Jobs

CrowdStrike Logo CrowdStrike

Security Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
120K-180K Annually

Applied Systems Logo Applied Systems

Security Engineer

Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Remote or Hybrid
United States
3116 Employees
80K-120K Annually

Citizens Logo Citizens

Security Engineer

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
2 Locations
17000 Employees
150K-190K Annually

Beyond Finance Logo Beyond Finance

Security Engineer

Fintech • Financial Services
Easy Apply
Remote or Hybrid
United States
2200 Employees
160K-195K Annually

Similar Companies Hiring

ClickMint Thumbnail
AdTech • eCommerce • Marketing Tech • Generative AI
Malibu, CA
9 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account