SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Snorkel AI is seeking a Security Engineer to evolve the company's security posture across cloud infrastructure, developer platform, and product ecosystem. You will partner with the security lead to secure cloud environments, build security automation, guide cross-functional initiatives, and embed security into engineering workflows.
Key responsibilities include building and scaling Infrastructure as Code (IaC) governance strategies that embed security while enabling developer velocity; operating and tuning Cloud Security Posture Management (CSPM) tooling and coordinating remediation through engineering teams; investigating security events, triaging incidents, identifying root causes, and owning remediation through resolution; architecting secure AWS cloud account structures including landing zones, multi-account patterns, network segmentation, and cross-account role strategies; designing and implementing network security architectures using security groups, NACLs, subnetting, routing layers, and egress controls; establishing secure-by-default design patterns across Kubernetes and containerized workloads; designing, maintaining, and governing Identity and Access Management (IAM) role and policy architectures for both human and machine identities; implementing encryption everywhere (data-at-rest, data-in-transit, and key rotation using AWS KMS); conducting threat modeling, architecture reviews, and secure design assessments; assessing and securing AI/ML product architectures including trust boundaries, API boundaries, and data flow through training and inference pipelines; building secure automation through Python, AWS-native services, and policy-as-code frameworks; owning complex security projects end-to-end from discovery and design through implementation and long-term ownership; and aligning cloud security strategy with relevant frameworks (NIST CSF, ISO 27001, SOC 2, CIS benchmarks).
This role succeeds by making the entire organization more secure through the people and teams around you. You will communicate security risks and trade-offs clearly to both technical and non-technical audiences; write concise, structured technical documentation; build alignment on security priorities across teams without relying on positional authority; build trust with engineering, product, and infrastructure teams by proposing solutions that balance security posture with developer velocity; default to collaboration over enforcement; seek to understand the workflows, constraints, and incentives of partner teams; and exercise broad ownership and judgment with self-direction in a growing startup environment.