T
San FranciscoFull TimeEngineering
Remotely
awsgcpincident responsethreat modelingsecrets managementsecure sdlcoauthencryption
Job Description
📋 Description
- Own security across Town assistant and agent actions (email, calendar, docs, Slack, CRM).
- Threat-model autonomous agent behavior and guardrails for untrusted input, data, and actions.
- Secure data pipeline behind the persistent user model (encryption, isolation, access controls
- Harden cloud infrastructure and OAuth integrations (Google, Slack, CRM).
- Build and scale secure SDLC practices and incident response processes.
- Partner with engineering to make the secure path the easy path.
🎯 Requirements
- Extensive security engineering experience with depth in app and/or infra security.
- Ability to read and write production code and fix problems.
- Experience securing multi-tenant SaaS handling sensitive data at scale.
- Cloud security expertise (AWS and/or GCP), authn/authz, secrets, encryption.
- Threat-modeling skills and ability to explain risk to engineers and founders.
- Desire to own security from the ground up and move fast in a startup.