Security Software Engineer

Reflectionai — United States · Posted ~2 hours ago

Senior Full-time Visa History ✓

Skills

Application security Security engineering Software engineering Security architecture Incident detection and response Autonomous problem solving Incident response SOC

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A high-ownership security engineering role focused on building an application security function from the ground up. You will architect and implement security solutions, contribute across incident detection and response and other security initiatives, and drive projects through complex technical and organizational challenges. The position suits engineers who thrive in autonomous, fast-moving environments.

Highlights

High-autonomy security engineering opportunity with the chance to build an application security function from the ground up, influence architecture, work across diverse security projects, and take ownership in a low-structure environment.

Description

Our Mission Reflection is a research lab making intelligence open and accessible for everyone to use, customize, and build on. We build open models that let anyone control their intelligence and help shape the future of AI. Our mission: make intelligence open and accessible to all. Role Overview Reflection.AI is looking for a Member of Technical Staff - Security Software Engineer to build our Application Security function from the ground up while contributing to a broad array of projects across the entire Security Engineering organization. You will have a high level of autonomy to architect solutions and drive them through both technical and organizational adversity. This role is ideal for an engineer who thrives in high-ownership, low-structure environments and has a strong "0 to 1" mindset. Key Responsibilities Contribute engineering cycles to a broad array of key projects across the Security organization ranging from our agentic AI incident detection & response SOC to long-running internal AI agentsImplement security controls around AI agents, including sandboxes, identity, and authorization systemsDefine software supply chain security strategy, tooling, and infrastructure including SCA/SBOM analysisRoll out controls to rapidly ingest and act on emerging supply chain attacksDevelop and maintain a comprehensive threat model of our software stackDrive our pentesting program with prioritization guided by your threat modelDefine and socialize foundation secure coding practices and architecture patterns relevant to AI/ML systemsIntegrate SAST tools into CI/CD pipelines for continuous vulnerability analysisDefine and implement a comprehensive Secure Software Development Lifecycle Required Qualifications Strong proficiency with Python or GolangTrack record of architecting and building complex software systemsFamiliarity with common application logic exploit vectorsExperience implementing and rolling out cross-functional projects that impact many teamsAI-native engineering workflowExperience working with KubernetesExperience working with AWS and/or GCPA strong interest in growing in multiple sub-specialties within security, including infrastructure security, incident detection & response, and digital forensicsWillingness to flex into cross-functional projects across multiple pillars of Security as neededExperience building programs from 0 to 1 What We Offer We believe that to make intelligence open and accessible to all, you need to start at the foundation. Joining Reflection means building from the ground up as part of a talent-dense team. You will help define our future as a company, and help define the future of open foundational models. We want you to do the most impactful work of your career with the confidence that you and the people you care about most are supported. Top-tier compensation: Salary and equity structured to recognize and retain our talent globally.Stock options: Everyone who joins and contributes to Reflection's success gets to share in the upside through stock options.Health & wellness: Comprehensive medical, dental, vision, and life, with an annual wellness allowance.Meals: Lunch and dinner are provided in the office daily.Life & family: 22 weeks paid parental leave for all new birthing and non-birthing parents, including adoptive and surrogate journeys.Vacation days: Unlimited paid time off in the U.S. and 30 days in the U.K.Sponsorship support: We sponsor visas to help exceptional talent join our team and support long-term immigration pathways where applicable.Team building: We have regular off-sites, happy hours, and team celebrations. Export Control Notice: This position may require access to technology or source code subject to the U.S. Export Administration Regulations. Any offer of employment for this role may be conditioned on the Company's ability to provide the candidate with access to such technology or source code in compliance with applicable U.S. export control laws, which may require the Company to seek government authorization.