Experience securing AI/ML systems or inference infrastructure
Familiarity with endpoint security platforms and cloud security tooling
Security incident handling experience: building SIEM detections, writing queries, managing alerting and triage pipelines
Experience with vulnerability management programs: building triage workflows, managing SLAs, and reporting metrics
Security certifications (CISSP, CSSLP, AWS Security Specialty, or equivalent)
Experience at a high-growth startup in a security role
5+ years of experience in security engineering, security operations, or a related role that combined both
Hands-on experience with at least one of SOC 2, ISO 27001, or PCI compliance audit cycles—you've gathered evidence, documented controls, and worked with auditors, not just read about it
Strong application security fundamentals: threat modeling, secure code review, and familiarity with common vulnerability classes (OWASP Top 10, CWE)
Experience with security tooling across the development lifecycle: SAST, SCA, DAST, secret scanning, or IaC scanning
Working knowledge of AWS infrastructure and services, including IAM, VPC networking, and security configurations
Familiarity with infrastructure-as-code (Terraform preferred) and CI/CD pipeline security
Proficiency in Python and comfort reading code across backend services
Strong written communication skills—you'll write audit documentation, security questionnaire responses, policy documents, and runbooks regularly
Comfort using AI-assisted development tools (e.g., Claude Code, Copilot, or similar) to write scripts, build automations, and accelerate documentation—AI tool fluency is a core expectation at AssemblyAI