SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Legora is an AI-native legal workspace used by 1,000+ customers across 50+ countries, including leading law firms like Cleary Gottlieb, Goodwin, and Linklaters. The company has scaled to $100M+ ARR and operates teams across Europe, North America, and APAC.
As Security Engineering Director, you will lead Legora's security function with a focus on engineering-led security: secure defaults, paved roads, automation, and measurable risk reduction rather than advisory gates. You will set the direction for security across product, platform, and cloud infrastructure; build and lead a team of senior security engineers; and work closely with engineering leadership to anticipate challenges, influence architecture, and tackle systemic problems.
Key responsibilities include:
**Security Strategy & Architecture**: Define security standards across Legora's product and platform; set roadmap and investment priorities; partner with the CTO on technical direction; identify emerging risks early.
**Engineering Enablement**: Build tools, paved paths, and secure defaults to help teams ship securely; embed security into the software lifecycle through reviews, standards, and automation; drive secrets management, workload identity, and Kubernetes hardening.
**Detection, Response & Agentic Security**: Build automated detection and response capabilities; own incident playbooks and investigations; threat-model the multi-tenant AI platform and define safe boundaries for coding agents.
**Team & Enterprise Readiness**: Hire and develop senior security engineers across Application Security, Detection Engineering & Response, and Cloud & Platform Security; provide strategic direction to solve underlying problem themes; support enterprise customers through security conversations and evidence of practices.
You will operate as a peer to engineering leadership, translating risk into engineering terms and influencing without relying on mandates. The role is based in Stockholm or New York and requires 5 days per week in-office.
**Requirements**:
- Led and scaled a security engineering function through rapid product and team growth, ideally in an environment facing real threats
- Engineering background (not purely corporate infosec or compliance)
- Strong architectural judgment and experience influencing technical direction at scale
- Understanding of application security, detection engineering, and cloud/platform security, and how they integrate
- Ability to operate as a peer to engineering leadership, bringing security onto the agenda and making consequences clear
- Clear communication skills; ability to translate risk into engineering terms and influence without mandates
**Nice to have**:
- Experience securing LLM-based or agentic products
- Experience building security at a high-growth SaaS company
- Depth in multiple security specializations
- Experience with strict data confidentiality, data residency, or professional secrecy requirements
- External representation of security through research, speaking, or enterprise customer engagement