Senior Product Security Engineer
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior Product Security Engineer securing AlphaSense’s AI-native market intelligence platform. Leading AI/ML security, threat modeling, secure architecture, and customer assurance.
Responsibilities:
- Lead the design and implementation of secure, scalable, and trustworthy products across AlphaSense’s AI-native platform
- Work with architects, engineering, and product teams to embed security by design throughout the software development lifecycle
- Architect and enforce security controls for AI/ML systems, including model training, data pipelines, inference environments, and agentic workflows
- Identify and mitigate AI-specific attack vectors such as prompt injection, data poisoning, model inversion, and model theft
- Implement model provenance, integrity, and auditability controls
- Align AI security with governance and compliance teams against NIST AI RMF and the EU AI Act
- Ensure security, privacy, and compliance by design
- Define and maintain secure development standards, guidance, and best practices
- Lead threat modeling, secure design reviews, and risk assessments
- Build and maintain security automation and governance integrated into development workflows
- Produce customer-facing security assurance materials, including questionnaire responses, security whitepapers, and trust collateral
- Represent product security in customer, cross-functional, and leadership discussions
- Mentor teams on secure coding, AI risk management, and secure design
- Promote a security-first culture through advocacy, documentation, and training
Requirements:
- 5–7+ years in product, application, or cloud security engineering
- Deep understanding of secure SDLC, threat modeling, and secure architecture design
- Ability to read and review code to inform threat models and design reviews
- Experience securing AI/ML pipelines, data workflows, and model-serving infrastructure
- Working knowledge of AI/LLM security, including prompt injection, model integrity, and provenance
- Proven expertise with cloud security concepts and best practices across multi-cloud environments
- Familiarity with DevSecOps and CI/CD environments
- Familiarity with symmetric and asymmetric cryptography, TLS/mTLS, key management, and secrets handling
- Understanding of OAuth 2.0, OIDC, SAML, RBAC, and ABAC
- Ability to drive cross-functional security initiatives with engineering, product, and compliance teams
- Nice to have: proficiency in Python, Java, and/or JavaScript
- Nice to have: container and orchestration security, including Kubernetes runtime protection
- Nice to have: software supply chain security and artifact integrity verification
- Nice to have: bug bounty program experience
- Nice to have: familiarity with SOC 2, ISO 27001, NIST 800-53, and NIST AI RMF
- Nice to have: CKS, CISSP, CSSLP, or AI/ML security credentials
Benefits:
- Performance-based bonus
- Equity
- Generous benefits program
- Career growth opportunities
- Competitive compensation
- Collaborative and security-minded engineering culture
- Equal-opportunity workplace
- Reasonable accommodation for qualified employees with protected disabilities
- AlphaSense never asks candidates to pay for job applications, equipment, or training



















