You and the process

With a person
Anna, in-house recruiter
9 years hiring engineers
30 minutes with a real recruiter
They read your CV with you, on a call, and say where the offers are being lost.
Didn’t find what you were looking for? Tell us what to build
Company hidden

Security Operations Engineer

  • Remote
  • 3-6 years

Salary

$600,000/ year

AI summary

For members

The whole posting in a few lines. Sign up to read it here and on every role you open.

Sign Up to Read

Description

Why the company

The company builds the best-in-class Voice AI models powering the next generation of voice applications. Our models serve 600M+ inference calls monthly, process 1M+ hours of audio daily, and power 2 billion+ end-user experiences. The Voice AI space is at an inflection point; we’re looking for folks truly excited to join a small team and help define the future of the industry.

That's not an accident; it's a deliberate choice to stay lean, move fast, and give every person on the team outsized ownership and impact. With thousands of customers including Granola, Fireflies, Figure AI, and CallRail, the company has real scale - processing over 2 million hours of audio daily and handling more than 1 million API calls every day. This is a rare growth-stage opportunity where the business is proven and the trajectory is steep, but the team is still small enough that your fingerprints are on everything.

If you've ever felt buried under layers of bureaucracy, starved of real ownership, or frustrated watching your work disappear into a slow-moving org, the company is built differently. The company operates as a true meritocracy, with no heavy planning or approval processes and no gatekeeping on the tools or information you need. For anyone who genuinely cares about voice AI, not as a trend to chase, but as a technology to build,  this is the place where the most interesting problems at the most interesting scale are being solved by a team small enough that you'll actually know everyone's name.

We’re committed to creating a space where our employees can bring their full selves to work and have equal opportunity to succeed. No matter your race, gender identity or expression, sexual orientation, religion, origin, ability, age, veteran status, if joining this mission speaks to you, we encourage you to apply!

About the role:

The company runs a mature, multi-framework security and compliance program—including SOC 2 (all trust criteria), ISO 27001, and PCI 4.0—that protects the infrastructure and customer data behind our industry-leading Voice AI API. We're hiring a Security Operations Engineer to join our IT & Security team and take day-to-day ownership of the operational backbone of that program.

This role is centered on security operations and GRC: running compliance audit cycles end to end, gathering and organizing evidence, enforcing and verifying controls, executing access reviews, managing vulnerability triage and remediation follow-up, and responding to customer security questionnaires. It's the work that turns a security program on paper into one that demonstrably runs. You'll also have room to grow the technical side of the role. We automate wherever we can, and you'll be encouraged to build scripts, integrations, and tooling that reduce manual toil and improve the program.

This is a high-ownership role on a small team. You'll work closely with engineers across the company, partner with sales and legal on customer-facing security needs, and have a direct hand in how the company enforces security across its products, infrastructure, and internal tools—including a rapidly growing landscape of agentic AI development.

Responsibilities

  • Drive SOC 2, ISO 27001, PCI 4.0, and other compliance audit cycles: gather and organize evidence, document, design, and build controls, coordinate directly with auditors through fieldwork, and collaborate with internal teams on remediation.
  • Own the compliance automation platform (Vanta): monitor control status, chase down failing checks, keep integrations healthy, and update the risk register as the business and infrastructure evolve.
  • Run vendor and third-party risk reviews, security assessments of new tools, periodic re-reviews, and track subprocessor and vendor inventories.
  • Partner with sales and legal responding to customer and vendor security questionnaires, RFP security sections, and trust-and-safety inquiries.
  • Drive vulnerability triage and prioritization across teams, tracking remediation against SLAs and reporting metrics to stakeholders.
  • Monitor and respond to alerts from endpoint, cloud, identity, and application security tools; investigate, escalate, and close the loop.
  • Support incident response for security events: evidence collection, timeline construction, documentation, and tracking of post-incident action items.
  • Maintain and improve security runbooks, process documentation, and operational playbooks.
  • Build automation to reduce the manual burden via scripts, integrations, reporting, and tooling.

Requirements

  • 3+ years of experience in security operations, GRC, IT security, or a related role
  • 2+ years of experience with compliance audit cycles—you've gathered evidence, documented controls, and worked with auditors
  • One or more security certifications—CISA, Security+, AWS Security Specialty, or equivalent
  • Experience executing recurring security operations work: security reviews, vulnerability tracking, alert triage, or control monitoring
  • Strong organization—you can run a multi-week evidence collection cycle across many stakeholders without dropping threads
  • Strong written communication skills—you'll write audit documentation, security questionnaire responses, policy documents, and runbooks regularly
  • Proficiency in Python and comfort reading code written by others
  • Experience using AI-assisted development tools (e.g., Claude Code, Copilot, or similar) to write scripts, build automations, and accelerate documentation—AI tool fluency is a core expectation at the company
  • Role is for US based candidates only
  • Application security fundamentals: threat modeling, secure code review, or familiarity with common vulnerability classes (OWASP Top 10, CWE)
  • Experience with security tooling across the development lifecycle—SAST, SCA, DAST, secret scanning, or IaC scanning—and routing findings to the right owners
  • Familiarity with infrastructure-as-code (Terraform preferred) and CI/CD pipeline security
  • Working knowledge of cloud infrastructure (AWS preferred), including IAM concepts, and of identity and SaaS administration
  • Experience building or maintaining SIEM detections, queries, and alerting pipelines
  • Familiarity with endpoint security platforms and cloud security posture tooling
  • Experience securing AI/ML systems or inference infrastructure
  • Experience at a high-growth startup in a security role
  • Pay Transparency:
  • The company strives to recruit and retain exceptional talent from diverse backgrounds while ensuring pay equity for our team. Our salary ranges are based on paying competitively for our size, stage, and industry, and are one part of many compensation, benefit, and other reward opportunities we provide.
  • There are many factors that go into salary determinations, including relevant experience, skill level, qualifications assessed during the interview process, and maintaining internal equity with peers on the team. The range shared below is a general expectation for the function as posted, but we are also open to considering candidates who may be more or less experienced than outlined in the job description. In this case, we will communicate any updates in the expected salary range.
  • The provided range is the expected salary for candidates in the U.S. Outside of those regions, there may be a change in the range which will be communicated to candidates throughout the interview process.
  • Salary range: $180,000 - $220,000 USD
  • The expected base compensation for this role is listed above. Our total compensation package includes competitive equity grants, 100% employer-paid benefits, and the flexibility of being fully remote. A 401k match up to 4% is offered to all US-based full time team members.
  • AI to Interview:
  • If you’re selected for an interview, please review this resource (the company's site) to better understand how the company approaches the use of AI in our interview process.
  • GDPR privacy notice:
  • Candidates from the EU should review this job applicant privacy notice (the company's site) before applying. 
  • Keep Exploring the company:
  • (the company's site)
  • Experience: Any (new grads ok)
  • Visa: US citizen/visa only

Where you’d work

Fully remote

You can work from

  • United States
  • Canada

No visa sponsorship

You must already be able to work in the United States

About the company

Company hidden

  • Industry: AI

Your chances

Likely still hiring, moderately crowded, and a person reads your message.

  • 20 checks run
  • 8 good signs
  • 4 red flags

Still hiring?

13 checks

Likely active

In its favour5

  • Still on the company's own careers site, checked 6 h agoModerate evidence
  • On the company's careers site and 1 other place we trackSlight evidence
  • Specific about the basics: pay, place, level, stack and contract all statedSlight evidence
2 moreFewer
  • States its salary: $600KSlight evidence
  • A hiring contact is attached to itSlight evidence

Against it2

  • The company closed 9 roles and opened none in the last 2 weeksStrong evidence
  • Posted 3 weeks agoSlight evidence

How crowded?

7 checks

Moderate

In its favour3

  • You can message the hiring contact and skip the queueModerate evidence
  • Remote within United States onlySlight evidence
  • Only for people already authorized to work in United StatesSlight evidence

Against it2

  • Open for 3 weeks: applications have had time to pile upModerate evidence
  • Pays more than 100% of similar roles: that draws applicantsSlight evidence
12 roles like this are in their Early WindowFound before the big job boards, while the crowd hasn’t arrived

Fits Me

How well does this role fit you?

Answer a few questions or drop your CV, and every role gets a fit score with the reasons, this one first.

  • Your field
  • Level
  • Stack
  • Work model
  • Salary floor
  • Must-haves
Details14 facts · Role, Location, Compensation, Employment, Company
Tech stack
  • Python
  • AWS
  • Terraform
  • CI/CD
Type
Full-time
Equity
Equity offered
Industry
AI
Specialty
Security
Region
United States
Show 8 more factsShow less

Role

Category
DevOps & Infrastructure
Specialty
Security
Experience
3+ years
Tech stack
  • Python
  • AWS
  • Terraform
  • CI/CD

Location

Work model
Remote
Region
United States
Remote from
  • United States
  • Canada
Visa sponsorship
Not sponsored
Must already work in
  • United States

Compensation

Salary
$600,000 / year
Pay period
Annual
Equity
Equity offered

Employment

Type
Full-time

Company

Industry
AI

Something wrong with this vacancy?

Similar vacancies

  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer, New Grad

    Salary by agreement

    • Office · Dublin
    • Junior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Senior Security Operations Analyst

    Salary by agreement

    • Hybrid · Wellington, Auckland
    • Senior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Platform Security Engineer

    £90,000 - 160,000 / year

    • Hybrid · London
    • Mid-Level
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer

    $275,000 - 345,000 / year

    • Office · London

Share this vacancy

What's wrong with it?

The employer never sees who reported.

Reason