SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Software Engineer, Security

AssemblyAI - Remote - Remote - posted 2026-05-26

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

AssemblyAI is hiring a Senior Software Engineer for Security to join its IT & Security team as the company's first dedicated security engineering role. The company builds industry-leading Voice AI models, processing 1M+ hours of audio daily and serving 600M+ monthly inference calls across 2B+ end-user experiences. With under 100 employees and ~$500K ARR per employee, AssemblyAI operates as a lean, high-ownership organization with proven product-market fit and steep growth trajectory. This role bridges security engineering and security operations. You'll conduct threat modeling and security design reviews for new features and architectural changes, working closely with product and platform engineers early in the design phase. You'll perform secure code reviews focusing on authentication, authorization, input handling, secrets management, and data protection. You'll deploy and maintain security tooling across the development lifecycle—SAST, SCA, DAST, secret scanning, IaC scanning, and CI/CD security guardrails. You'll support secure-by-default libraries, frameworks, and paved-road patterns to reduce vulnerability classes across the codebase. On the infrastructure side, you'll partner with platform engineering on AWS resource hardening, Terraform-managed infrastructure reviews, network segmentation, and environment isolation. You'll contribute to incident response for security events, including investigation, root cause analysis, and post-incident hardening. Operationally, you'll drive vulnerability triage and prioritization, tracking remediation against targets and reporting metrics. You'll step in to remediate directly through patches and PRs where high-impact opportunities exist. You'll partner with sales and legal responding to customer and vendor questionnaires, RFP security sections, and trust-and-safety inquiries. You'll support SOC 2, ISO 27001, PCI 4.0, and other compliance audit cycles by gathering evidence, documenting controls, and coordinating with auditors. You'll monitor and respond to alerts from endpoint, cloud, and application security tools, manage vulnerability tracking and remediation follow-up, execute recurring user access reviews and IAM hygiene tasks, and maintain security runbooks and operational playbooks.

Similar roles