Staff Product Security Engineer
Core
Lead security innovation and compliance for a Federal and Commercial AI platform, ensuring FedRAMP High/DoD IL5 authorization while automating security tooling.
Role type
Staff Product Security Engineer (Federal & Commercial)
Builds
Automated security tooling, CI/CD security controls, and compliance evidence for Federal customers
Domain
AI/ML Platform Security, Federal Compliance (FedRAMP/DoD)
Deliverable
production ML models | infrastructure | client delivery
Required skills
Python, Go, Linux container internals, Kubernetes, SAST/DAST/SCA tools, threat modeling, NIST 800-53, FedRAMP process, DoD SRG
Preferred skills
Kubernetes orchestration, container security isolation
Technologies
Semgrep, Trivy, Burp Suite, Kubernetes
Responsibilities
Lead acquisition and maintenance of Authority to Operate (ATO) at FedRAMP High and DoD IL5 levels; Translate federal controls into actionable engineering requirements; Develop custom automation for security tooling and CI/CD pipelines; Identify and implement controls for containerized production environments; Review technical designs and perform threat models; Act as external security face for customers to resolve CVE and architecture concerns.
Seniority
Staff, hands-on IC with strategic leadership