hud
hud17d ago
New

Senior Security Engineer

United StatesUnited States·San FranciscoRemotefull-timesenior
EngineeringSecurity Engineer
0 views0 saves0 applied

Quick Summary

Requirements Summary

Strong security engineering fundamentals and hands-on experience across multiple areas such as infrastructure security, detection and response, identity, etc.

Technical Tools
EngineeringSecurity Engineer

HUD is building infrastructure to create RL training data and evals for frontier AI agents, as well as a marketplace to sell these to frontier labs through the HUD marketplace. Our platform is used by frontier labs, Fortune 500 companies, and startups. We’ve raised $16M from top VCs and were YC W25.

About the Role

~1 min read

We’re looking for a Security Engineer to own and build HUD’s security program as our first full-time security hire. You will work closely with the rest engineering to secure our product, cloud infrastructure, data workflows, and internal systems. You’ll also lead incident response, SOC 2, and customer trust.

We are securing up to billions in data assets and are looking for someone who can lead security such that our infrastructure is never compromised.

Responsibilities

~1 min read
  • →

    Lead detection and incident response from signal to alert to postmortem

  • →

    Own HUD’s security roadmap across product security, cloud and infrastructure security, corporate security, incident response, and compliance

  • →

    Secure HUD’s APIs, platform, and data systems through threat modeling, design and code reviews, authentication and authorization controls, secrets management, etc.

  • →

    Build monitoring, detection, and incident-response capabilities; lead investigations and postmortems; and turn incidents and emerging threats into durable improvements

  • →

    Own SOC 2 and customer trust, including control design, security questionnaires, policy management, vendor reviews, and audits

  • →

    Partner with legal, commercial, engineering, and operations to translate customer contracts and data-license requirements into enforceable controls for data access, provenance, permitted use, retention, deletion, isolation, and auditability

  • Strong security engineering fundamentals and hands-on experience across multiple areas such as infrastructure security, detection and response, identity, etc.

  • Experience leading security incidents end-to-end, from detection and containment through root-cause analysis and follow-up engineering work

  • Experience implementing or operating SOC 2 or a comparable security framework, including translating requirements into real technical and operational controls

  • High agency and sound judgment—you can identify and prioritize the risks that matter, make pragmatic decisions under uncertainty, and personally drive implementation

  • Strong communication skills for working with founders, engineers, operations, legal, auditors, customers, and external partners

  • Experience as an early security hire or building a security program from scratch at a fast-growing startup

  • Experience securing AI/ML infrastructure, agent execution environments, data platforms, developer tools, or other systems that run untrusted code or process sensitive data

  • Experience protecting licensed, proprietary, or customer-provided data and operationalizing contractual requirements around access, use, retention, and deletion

  • Experience finding CVEs, creating security tooling on GitHub, or with bug bounty programs

  • CVEs, or have created security tooling on GitHub, have conference talks, bug bounty history, or blog posts about incidents/something security related they've done that would also be good

  • OSCP, AWS Security Specialist, OSWE, CKS, or GIAC hands on certifications

We prioritize technical aptitude and learning potential over years of experience. Motivated candidates are encouraged to apply even if they don't meet all criteria.

  • Visa Sponsorship: We provide support for relocation and visas for strong full-time candidates to the US or Singapore.

  • Timeline: Applications are rolling. The process is 2 technical interviews and a 2-3 day work trial.

  • What We Offer

    ~1 min read
    ✓Competitive compensation
    ✓100% covered top-of-the-line medical, dental, and vision from Blue Shield of CA (US employees)
    ✓Lunch and dinner when you’re in the office (in-office employees)
    ✓Company-wide holiday break (Christmas Eve to New Year’s Day) on top of PTO and paid holidays
    ✓Other perks including an Equinox membership, 401k, and commuter benefits (US employees)
    ✓Unlimited* access to tokens for ChatGPT, Claude Code, Cursor, etc. *By unlimited, we mean no one on our token usage leaderboard has ever hit a limit. So we have no idea what the limit is.

    Location & Eligibility

    Where is the job
    San Francisco, United States
    Remote within one country
    Who can apply
    US

    Listing Details

    Posted
    September 9, 2026
    First seen
    September 25, 2026
    Last seen
    September 26, 2026

    Posting Health

    Days active
    0
    Repost count
    0
    Trust Level
    27%
    Scored at
    September 26, 2026

    Signal breakdown

    freshnesssource trustcontent trustemployer trust
    Newsletter

    Stay ahead of the market

    Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

    A
    B
    C
    D
    Join 12,000+ marketers

    No spam. Unsubscribe at any time.

    hudSenior Security Engineer