SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Ambient.ai is the category creator and leader in Agentic Physical Security, powered by Ambient Pulsar, a reasoning Vision-Language Model purpose-built for physical security. The platform integrates with existing security cameras and physical access control systems to unify monitoring, access control, threat assessment, response, and investigations. The company has doubled new ARR in FY26 and serves world-class customers including Cisco, ServiceNow, SentinelOne, TikTok, Bayer, and MoMA. Founded in 2017 and backed by Andreessen Horowitz, Y Combinator, and Allegion Ventures, Ambient.ai recently ranked #71 out of 500 on the Forbes best startup employers list.
As a Senior Security Engineer on the India Technology Engineering team, you will work across engineering, IT, and business teams to implement security improvements, support compliance programs, and help customers and partners understand security practices. This is a hands-on role spanning security reviews, cloud and endpoint protection, vulnerability management, and customer security assurance.
Key responsibilities include:
• Support security initiatives and reviews: Plan and execute security initiatives across products, infrastructure, and corporate environment. Conduct security reviews of systems, architecture, and proposed changes, providing actionable recommendations. Improve security policies, technical standards, and operational processes.
• Support compliance programs and penetration testing: Contribute to SOC 2 and ISO 27001 programs through control implementation, evidence collection, audit preparation, and remediation tracking. Coordinate internal stakeholders, auditors, and external testing partners. Work with engineering teams to address findings and validate fixes.
• Strengthen cloud and endpoint security: Implement and maintain security controls across cloud infrastructure and employee endpoints. Improve identity and access management, secure configuration, endpoint protection, logging, and monitoring. Strengthen network and application defenses, including DDoS protection and web application firewall controls. Investigate security alerts and support incident response.
• Drive vulnerability management: Identify, assess, and prioritize vulnerabilities across applications, infrastructure, endpoints, and third-party dependencies. Partner with system owners to establish remediation timelines and track findings through closure. Improve scanning coverage, reporting, and automation.
• Support customer and partner security assurance: Complete information security questionnaires and respond to security due diligence requests. Partner with Sales, Legal, and Engineering on security reviews and contract requirements. Provide accurate documentation of controls and practices. Maintain reusable responses and supporting evidence.
Success looks like: Security initiatives deliver measurable improvements across cloud, endpoint, and application environments. Vulnerabilities and assessment findings are prioritized appropriately and resolved within agreed timelines. Compliance evidence is accurate, organized, and available when needed. Customers and partners receive timely, consistent, and well-supported security responses. Engineering and business teams have a trusted security partner who helps them make informed decisions.
REQUIREMENTS:
• 5+ years of relevant experience in security engineering, information security, or infrastructure engineering with substantial security responsibilities
• Hands-on experience securing cloud environments such as AWS or Google Cloud
• Working knowledge of endpoint security, identity and access management, network security, encryption, and security monitoring
• Experience with vulnerability assessment, risk prioritization, remediation tracking, and verification
• Familiarity with SOC 2 and ISO 27001 controls, audit evidence, and compliance workflows
• Understanding of application security fundamentals, including authentication, authorization, secure coding, and common web application vulnerabilities
• Ability to write scripts or automation in Python, Go, or a similar language
• Strong written and verbal communication skills, including the ability to explain security risks to technical and nontechnical audiences
• A practical, collaborative approach to balancing security requirements with business needs
• A degree in Computer Science, Information Security, or a related field, or equivalent practical experience
VALUED ADDITIONAL EXPERIENCE:
• Supporting customer security questionnaires, enterprise security reviews, or security-related contract discussions
• Coordinating penetration tests and working with engineering teams to remediate findings
• Implementing DDoS protection, web application firewalls, or endpoint detection and response tools
• Working in a growing SaaS company