
Sr. Security Engineer
intenseye
Posted about 9 hours ago
The Role
As our first security hire, you’ll build our security function from the ground up: defining the architecture, owning compliance, protecting our AI platform and customer data, and establishing a security-first culture. You’ll report directly to the CTO.
We’re looking for someone who is deeply technical and ready to own the security function end-to-end. As our first security hire, you’ll cover a lot of ground—writing policy, reviewing code, responding to customer security questionnaires, and hands-on infrastructure work.
This role is a strong fit for someone who is:
-
A founder-minded builder: you’re energized by creating security infrastructure from scratch, not inheriting a mature program—and you take full ownership of outcomes.
-
Technically deep and strategically broad: you can write policy and write code. You can threat-model a distributed AI system and present risk to leadership in the same week.
-
Pragmatically risk-driven: you understand that startups must move fast, and you find ways to reduce risk without becoming a blocker—earning trust across engineering and product by being a partner, not a gatekeeper.
-
Thinking beyond the technical: you’ve started to think about governance, organizational resilience, and how security creates competitive advantage at the enterprise level.
-
A clear, confident communicator: you can simplify complex risk for the CEO, rally engineers around secure-by-default practices, and represent Intenseye’s security posture to enterprise customers and prospects.
### What you’ll do:
Architect and build Intenseye’s security program end-to-end: cloud infrastructure security, application security, data protection, endpoint, and identity.
Own our compliance roadmap—including SOC 2 Type II, ISO 27001, and GDPR—and drive it to completion, partnering with legal, finance, and customer success.
Embed security into the SDLC: define secure coding standards, introduce SAST/DAST tooling, and partner with engineering to make secure-by-default the norm.
Build and run incident response: design our monitoring and alerting stack, write the playbooks, and lead the response when things go wrong.
Own IAM strategy across internal systems, cloud infrastructure, and customer-facing platforms.
Lead threat modeling and vulnerability management—working with engineering to prioritize and remediate across a complex, globally distributed system.
Be the face of security to enterprise customers: own security questionnaires, due diligence reviews, and executive-level conversations about our security posture.
Advise the CTO and executive team on security risk, investment, and strategy as the function matures.
8+ years in security engineering, with meaningful experience owning or significantly shaping a security function—not just executing within one.
Deep hands-on expertise in cloud security (GCP strongly preferred): network security, IAM, secrets management, container security (Kubernetes/Docker), and cloud-native threat detection.
Strong application security fundamentals: OWASP Top 10, secure SDLC, API security, and experience integrating SAST/DAST into CI/CD pipelines.
Proven experience driving a compliance program through completion (SOC 2 Type II, ISO 27001, or equivalent)—not just supporting it.
Solid grasp of data privacy (GDPR, CCPA) and the ability to work cross-functionally with legal and GTM teams on customer-facing requirements.
Experience with modern security tooling: SIEM, EDR, CSPM, vulnerability scanners (e.g., Wiz, Crowdstrike, Datadog Security, or equivalents).
Demonstrated ability to communicate security risk at the executive level—written and verbal.
Experience leading a cross-functional initiative.
Prior startup experience is required- high ownership, high velocity, pragmatic judgment.
Experience securing physical hardware deployments: device hardening, firmware security, secure boot, and managing the security lifecycle of hardware deployed in customer environments.
Bonus: experience with AI/ML platform security, industrial IoT, or edge computing environments;



