Senior Security Engineer
Jasper United States · $174K–$205K/yr
Software Development · 201-500 employees
About the role
You will lead the security design and implementation for Jasper's AI infrastructure while building automated guardrails for sensitive data. Additionally, you will collaborate with GRC, Engineering, and IT teams to maintain compliance and strengthen cloud security across GCP and AWS.
What they look for
Requirements
Candidates must have 8+ years of security engineering experience with a strong background in AI/ML security, cloud infrastructure, or GRC. You should possess deep knowledge of security principles, automation, and experience working with AI agent frameworks and compliance standards.
Benefits
Full description
Jasper is the marketing agents platform, built to help enterprises orchestrate AI agents that execute marketing work at scale. Purpose-built for marketing teams, Jasper enables faster, more consistent execution across campaigns, personalization, localization, and compliance—while maintaining enterprise-grade control and governance.
Jasper is trusted by hundreds of enterprises worldwide, including Prudential, Cushman & Wakefield, and nearly 20% of the Fortune 500. Founded in 2021, Jasper has team members across the U.S., Australia, and France.
About The Role
As a Senior Security Engineer at Jasper, you'll be the first true generalist on our Security Engineering team—someone equally comfortable securing and building AI agents and platforms as they are automating GRC controls or hardening cloud infrastructure. This role sits at the center of a fast-moving security function, partnering closely with Engineering, GRC, Product, and IT to protect the systems and AI products Jasper builds.
You'll set technical direction on AI security while still being hands-on across infrastructure, product security, and compliance engineering—a true jack-of-all-trades role that flexes across the full security spectrum as priorities shift. This is a force-multiplier position on a small team where your work will have outsized impact on how Jasper builds securely at scale.
This fully remote role reports to the Director, Security and is open to candidates located anywhere in the US.
What you will do at Jasper
- Lead the security design, implementation, and controls for Jasper’s AI infrastructure and AI-powered internal workflows—building the guardrails that govern how AI systems access, process, and handle sensitive data at every layer
- Own threat modeling for AI-specific risks, including the attack surfaces that don’t map cleanly onto traditional application security, and design controls for validating, logging, and auditing AI outputs where accuracy and data protection are non-negotiable
- Build security tooling and automated checks that let internal teams adopt AI capabilities without slowing down
- Collaborate, design, and influence the direction of the Security program at Jasper
- Work with the GRC team to build and maintain GRC-related engineering—automating evidence collection, control monitoring, and compliance workflows (ie. via Vanta or similar) so the team spends less time on manual audit prep
- Strengthen infrastructure security across GCP and AWS: identity and access management, network segmentation, secrets management, and secure-by-default infrastructure patterns
- Own and improve GitHub security controls—branch protection, required reviews, secret scanning, dependency/SCA policies, and CI/CD pipeline security
- Operate and tune Wiz (or equivalent CSPM/CNAPP tooling) to continuously identify and drive remediation of cloud misconfigurations and vulnerabilities
- Use AI tools heavily in your own workflow (code review, triage, detection engineering, documentation) and help the broader security and engineering org do the same safely, while partnering cross-functionally with Engineering, Legal, Product, IT, and GRC to translate security and compliance requirements into practical, low-friction engineering solutions
What you will bring to Jasper
- AI fluency—a working understanding of core AI concepts (LLMs, agents, copilots, tokens, credits, context windows, RAG, data governance, etc.), applied in the context of security engineering, with demonstrated enthusiasm for using AI tools to work faster and more effectively day to day
- 8+ years in security engineering, with hands-on experience across at least two of: AI/ML security, cloud infrastructure security, and/or GRC compliance engineering
- Practical experience securing AI systems—LLM applications, agents, or ML pipelines—including familiarity with common AI-specific threats (prompt injection, data leakage, model abuse, insecure tool use)
- Deep understanding of security principles, best practices, and common vulnerabilities, including strong security judgment under ambiguity
- A proactive mindset, with the ability to identify, prioritize, and address security gaps or inefficiencies through automation and tooling
- Expertise and curiosity about using frontier models and agents to effectively solve security challenges
- Demonstrated ability to build security programs, processes, or standards from scratch rather than inheriting a mature playbook
- Strong working knowledge of GCP and AWS security services and IAM models
- Experience with GitHub security controls (branch protection, secret scanning, Actions/CI security) and secure software supply chain practices
- Hands-on experience with Wiz or a comparable CSPM/CNAPP platform
- Comfort building automation and tooling (scripting, APIs, infrastructure-as-code) rather than relying solely on point-and-click console work
- Strong cross-functional collaborator who can communicate security and compliance tradeoffs clearly to both engineers and non-technical stakeholders
- Direct experience building or securing AI agent frameworks, agent tool-calling systems, or internal AI platforms
- Experience supporting SOC 2 / ISO 27001 or similar compliance frameworks and working with GRC platforms (e.g., Vanta, Drata)
- Background in detection engineering or building internal security tooling
- Experience being an early or first specialized hire on a small security team, comfortable with ambiguity and shifting priorities
- Experience working in AI infrastructure platforms (e.g., Modal, CoreWeave, etc.)
Compensation Range
At Jasper, we believe in pay transparency and are committed to providing our employees and candidates with access to information about our compensation practices. The expected base salary range offered for this role is $174,250 - $205,000. Compensation may vary based on relevant experience, skills, competencies, and certifications.
Benefits & Perks
- Comprehensive Health, Dental, and Vision coverage beginning on the first day for employees and their families
- 401(k) program with up to 2% company matching
- Equity grant participation
- Flexible PTO with a FlexExperience budget ($900 annually) to help you make the most of your time away from work
- FlexWellness program ($1,800 annually) to help support your personal health goals
- Generous budget for home office set up
- $1,500 annual learning and development stipend
- 16 weeks of paid parental leave
Our goal is to be a diverse workforce that is representative at all job levels as we know the more inclusive we are, the better our product will be. We are committed to celebrating and supporting our differences and that diversity is essential to innovation and makes us better able to serve our customers. We hire people of all levels and backgrounds who are excited to learn and develop their skills.
We are an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state or federal laws.
By submitting this application, you acknowledge that you have reviewed and agree to Jasper's CCPA Notice to Candidates, available at legal.jasper.ai/#ccpa.
Similar roles
-
Senior Cyber Security Engineer
Westpac New Zealand
-
Associate - Cybersecurity
PwC Kuala Lumpur, Kuala Lumpur, Malaysia
-
Security Engineer (OAMD)
BeVera Solutions LLC Atlanta, Georgia, United States
-
Director, Application Security
Zeta Global United States · $275K–$315K/yr
-
Senior Security Engineer
Motive Toronto, Ontario, Canada · CA$146K–CA$184K/yr
-
SR Information Security Engineer
Mayo Clinic Rochester, Minnesota, United States · $134K–$195K/yr