Security Engineer

Clay · Vertical AI · New York, NY · Engineering

Security Engineer role focused on building security primitives, tooling, and automation, including AI-assisted vulnerability discovery, automated code review, and threat detection. The role involves securing cloud environments and application security, with a strong emphasis on leveraging modern automation and AI models to scale security operations. This is a hands-on software engineering role requiring expertise in cloud or application security and the ability to build and ship production systems.

What you'd actually do

  1. Build security primitives, tooling, and automation that scale with the product and engineering org
  2. Define and implement our strategy for modern security workflows: AI-assisted vulnerability discovery, automated code review, threat detection, and remediation
  3. Collaborate with Infrastructure and Product Engineering to make secure defaults the easiest path
  4. Own projects end to end: design, implementation, rollout, and measurement

Skills

Required

  • Strong software engineering fundamentals
  • Deep expertise in either cloud security or application security
  • Ability to build, not just advise
  • Comfort with ambiguity
  • Forward-thinking about tooling

Nice to have

  • working knowledge across both Cloud Security and Application Security
  • Terraform
  • AWS Config
  • AWS Security Hub
  • Claude Mythos-class models

What the JD emphasized

  • strong software engineering fundamentals
  • deep expertise
  • Ability to build, not just advise
  • Comfort with ambiguity
  • Forward-thinking about tooling

Other signals

  • leveraging modern automation, including frontier AI models
  • autonomously discovering vulnerabilities
  • reviewing AI-generated code
  • building detection systems that understand context and intent
  • AI-assisted vulnerability discovery
  • automated code review
  • threat detection
  • remediation
  • secure defaults the easiest path
  • modern security workflows
  • build security primitives, tooling, and automation
  • secure our cloud environment
  • define and enforce least-privilege access patterns
  • improve cloud visibility and control
  • develop preventative controls and safe deployment patterns
  • lead secure design and secure coding practices
  • prevent common vulnerability classes
  • perform architecture reviews and code-level security reviews
  • own the vulnerability discovery and validation lifecycle
  • integrate modern automated detection systems
  • build and deploy security agents and automated workflows
  • scan codebases, propose fixes, and in some cases autonomously deploy security patches
  • build frameworks and reusable components for authentication, authorization, and secure-by-default patterns
  • define practical policies and controls for code generation tools and coding agent changes
  • strong software engineering fundamentals
  • track record of shipping production systems
  • deep expertise in either cloud security or application security
  • ability to flex into the adjacent domain
  • ability to build, not just advise
  • translate risk into concrete engineering work and ship solutions
  • comfort with ambiguity
  • thrive when building from first principles and defining what good looks like
  • forward-thinking about tooling
  • interest in leveraging modern automation and AI to scale security operations while maintaining engineering rigor