Also available on
Job Description
📋 Description Own Tremendous' security posture end-to-end with engineering on production infrastructure and code Prioritize and tackle high-leverage gaps; own the prioritization and implementation Treat incident response as core; ensure incidents are small and well-handled Drive security as a cultural shift across the company with incremental controls Lead AI-security posture and manage tooling risk to enable, not ban, AI usage Define staffing plans for the security function and hire your own team 🎯 Requirements Real, hands-on security experience at a scaling company, ideally as an early security hire Deep experience in at least one core security domain (product/production security, security An engineer's mindset; capable of reading codebase and understanding infrastructure (Ruby on Rails Judgment over checklists; can explain actual risk and balance business needs with best practices Bedside manner; drive change by aligning teams and getting buy-in Experience building or co-building a small security team is a plus 🎁 Benefits Fully remote. Work from anywhere in the Americas Public handbook and culture documented for transparency You’ll have a $5k/month budget for AI tools