Lead security assessments of AI/ML models, data pipelines, and AI-enabled applications, identifying vulnerabilities such as prompt injection, model inversion, data poisoning, and adversarial inputs.
Partner with Data & Analytics and Engineering to embed security requirements and threat modeling into the AI development lifecycle, from data collection through model deployment.
Build and maintain guardrails, monitoring, and detection controls for AI systems in production, flagging anomalous model behavior and unauthorized data access.
Interra Health is a healthcare technology company that helps providers and patients navigate the prescription journey. It is a fast-growing, mission-driven team of about 100 employees, formed through the merger of DoseSpot, Arrive Health, and pVerify, and focused on reducing friction and improving access to medications.
Lead security reviews of architecture, code, and security-sensitive changes.
Secure AI-powered products against prompt injection, unsafe tool use, and tenant isolation risks.
Threat model new capabilities and build scalable guardrails that reduce recurring risks.
Cohere is a security-first enterprise AI company building foundation models and products for business. It is a global team of researchers, engineers, and designers headquartered in Toronto with offices worldwide.
Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and feasible implementation.
Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code.
Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, and output validation.
Rithum is the world's most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. More than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV.
Lead Affirm's enterprise AI security review process, evaluating architecture, data flows, and design of AI tools and agentic systems.
Threat model AI/LLM systems for risks like prompt injection, insecure output handling, and data poisoning, and drive remediation.
Build security guardrails, tooling, and policy-as-code to automate AI security and support cross-functional initiatives.
Affirm is a financial technology company that offers clear, predictable point-of-sale installment loans with no hidden fees. The company is remote-first and values transparency, care, and flexibility, with a focus on building a diverse and inclusive team.
Deliver accurate security assessments of software, code, and firmware, evaluating resilience against AI-driven attacks.
Build and pressure-test novel AI-enabled security tooling and workflows, then drive adoption across the security org.
Partner cross-functionally to define and drive Samsara's medium- and long-term AI security strategy.
Samsara provides a Connected Operations Cloud platform that helps organizations improve safety, efficiency, and sustainability of physical operations. As a publicly traded company, they foster a culture of rapid career development and hyper growth, with a high-caliber team.
Design and build secure enterprise applications with React, TypeScript, Python, and API services.
Build agentic workflows and MCP integrations that connect AI applications to enterprise data and tools.
Mentor other engineers and help guide technical direction across teams.
Nortal shapes digital transformation for global enterprises and public sector organizations, helping them turn data into real business value. We champion autonomy, open communication, and respect for diversity, with a close-knit remote community and strong People Care support.
Lead threat modeling and security architecture for AI-enabled systems, including LLM applications and cloud-native platforms.
Define and implement secure engineering patterns and guardrails across AWS infrastructure, CI/CD pipelines, and third-party integrations.
Partner with engineering and security teams to embed security throughout the AI product lifecycle and drive cross-functional security initiatives.
Quanata is an insurance technology innovation company that engineers advanced risk prediction and prevention solutions for State Farm and HiRoad. We are a wholly owned subsidiary of State Farm with a remote-first culture that values inclusion and positive team dynamics.
Design, build and operate production AI agents, including an autonomous coding agent that works from Jira and Slack, opening PRs and fixing CI failures.
Build the retrieval and context layer behind our AI brain: embeddings, semantic search, knowledge-graph modeling, and integration with Snowflake and internal docs.
Harden agents against prompt injection and over-broad permissions, and drive cost and latency down using caching and structured outputs.
Weedmaps is a global leader in the cannabis industry, providing a platform for consumers and businesses. The company has a collaborative culture focused on innovation and community, serving the U.S. and worldwide.
Contribute to secure-by-design practices and maturing SAST, SCA, and DAST programs.
Develop Secure AI Development Lifecycle and AI-assisted threat modeling framework.
Mentor engineers on secure coding and foster cross-functional collaboration.
Spring Health is a global mental health company using an AI-native platform to deliver personalized mental health support. The company reaches over 170 million people worldwide and fosters a culture of innovation, collaboration, and commitment to eliminating barriers to mental health.
Perform weekly code reviews to catch security vulnerabilities before they ship.
Coordinate external security audits and penetration tests, and track remediation.
Manage GRC documentation, run phishing simulations, and oversee security monitoring with weekend coverage.
EverAI builds the world's largest AI companionship platform, redefining relationships with AI. With a team of approximately 100 people, we are fully remote, fast-moving, and led by founders with a track record of scaling companies from zero to IPO.
Conduct hands-on application security reviews threat modeling and code audits across the entire stack (backend frontend APIs infrastructure).
Build and improve security automation for vulnerability management including SAST DAST container scanning and secrets detection.
Drive remediation of findings from bug bounty scanners and audits partnering with engineering teams to prioritize and fix.
Close builds a communication-first AI-powered CRM that helps sales teams sell more and faster. With a 120-person 100% remote team they are bootstrapped profitable and focused on eliminating manual data entry for scaling businesses.
Evolve and run the agent platform for internal and client-facing use cases, including runtime, SDKs, templates, and paved paths.
Harden infrastructure with IaC, network topology, security controls, and operational tooling with SRE.
Design for regulated industry with PHI isolation, least-privilege identity, audit trails, and human review; own production SLOs and incident response.
Arcadia is a healthcare data platform that transforms complex, diverse data into a unified foundation to help organizations deliver better care, boost revenue, and lower costs. It is a remote-first team of fiercely driven individuals committed to making healthcare more sustainable, named a Built In 2026 Best Place to Work.
Build the internal AI stack hands-on: agents, MCP connectors, prompt libraries, and governed knowledge for engineering, product, and design.
Own experiments end-to-end in a dedicated AWS environment with Terraform, shipping what works and driving adoption.
Drive behavior change across the org through enablement, training, and an operating rhythm.
BetterHelp is on a mission to make mental health care more accessible, as the world's largest online therapy service with over 30,000 licensed therapists. Founded in 2013, we're a diverse, mission-driven team that deeply invests in employee well-being and professional development.
Own the technical direction of a product area, defining how teams specify, delegate, and verify agentic work.
Set standards for specification quality, verification, and security architecture to keep AI-generated work safe at scale.
Mentor engineers across teams and drive large-scale initiatives combining human and agentic contributors.
BambooHR builds a people intelligence platform that transforms HR for small and mid-sized businesses. The company is a values-driven market leader with a culture that champions growth, flexibility, and meaningful work.
Build LLM-based agents on the platform's scaffolding, integrating tool calls, internal APIs, and guardrails.
Take agents to production on AWS with containers, CI/CD, secrets, permissions, and security controls.
Define and run evals, monitor with Langfuse, and document runbooks for independent operation.
Muttdata builds innovative Data Products and Machine Learning solutions to help companies solve complex business challenges. It is a fast-growing, remote-first startup that values collaboration, continuous learning, and a positive, ownership-driven culture.
Architect and harden AWS, serverless, data, and EKS with Infrastructure-as-Code.
Secure APIs, SDLC, and video platform; run vulnerability and pen testing.
Own SOC 2, HIPAA, AI security governance, and incident response.
AnswersNow is a venture-backed digital health company delivering virtual autism care to families. The company is a remote-first, high-growth startup focused on making personalized therapy more accessible.
Develop playbooks and address security-related tasks in AWS serverless environments.
Drive improvements in security posture, including application, endpoint, and access management.
Collaborate with product engineering teams to raise the bar for security in CI/CD, dependency management, and secure design reviews.
Stedi is building a new healthcare clearinghouse and RCM engine, accessible via API. With $142 million in funding and a lean, passionate team, they ship products weekly and prioritize automation and eliminating toil.
Take the out-of-band policy engine from prototype to production, wiring Cedar-based enforcement into the AI gateway.
Build the two-tier policy composition model and authoring experience for security teams.
Extend policy operators, audit every decision, and maintain the adversarial certification harness.
Redpanda builds a unified runtime and control plane for agent-data interaction, combining streaming, SQL analytics, and governance for AI agents. It's a people-first, fast-moving company trusted by Fortune 500 companies and startups, with a global team.
Build tooling for capturing and processing data from agents and humans at significant scale.
Solve hard problems around compute, orchestration, scaling, security, and reliability.
Help develop approaches for training, benchmarking, and evaluating AI agents.
Prolific builds human data infrastructure for AI development, connecting researchers with a global pool of participants to collect high-quality, ethically sourced behavioral data. They are a mission-driven company at the forefront of AI innovation, with a remote culture and a focus on impactful work.
Own vulnerability management across code, dependencies, images, and cloud config, automating triage and remediation.
Build and expand security gates in CI/CD pipelines, define secure cloud baselines, and drive least privilege identity.
Partner with DevOps on paved roads for secure-by-default development and lead incident response.
Aegis AI is a startup founded by ex-Google engineers who built Safe Browsing and reCAPTCHA, focused on stopping adversarial AI attacks. The team is flat, flexible, and fast, with engineers owning decisions and clear KPIs.