Join Ambient as a Senior Security Engineer to enhance security posture and drive improvements across products and infrastructure.
Posted by employer 3 days ago
First seen on Joblaze 1 day ago
Last verified on the company career page 1 day ago
What you'll build
Must have
Nice to have
AI in the day-to-day
Powered by Ambient Pulsar, the first reasoning Vision-Language Model purpose-built for physical security.
Requirements
Not disclosed in this posting: compensation, work arrangement, visa sponsorship.
Benefits
Joblaze summary
In this role, the Senior Security Engineer at Ambient focuses on enhancing the company's security posture through hands-on initiatives that include security reviews, vulnerability management, and compliance support. The position requires expertise in cloud security, endpoint protection, and risk assessment, along with strong communication skills to convey security practices to both technical and non-technical stakeholders. Ideal candidates will have over five years of relevant experience, particularly in a SaaS environment, and a collaborative mindset to balance security needs with business objectives.
Joblaze insights
Quick facts
From the original posting
We’re looking for a Security Engineer to help strengthen Ambient.ai’s security posture as we grow. As part of our India Technology Engineering team, you’ll work across engineering, IT, and business teams to implement security improvements, support compliance programs, and help customers and partners understand our security practices.
This is a hands-on role spanning security reviews, cloud and endpoint protection, vulnerability management, and customer security assurance. You’ll combine technical expertise with clear communication and practical judgment to identify risks and drive improvements through completion.
Help plan and execute security initiatives across our products, infrastructure, and corporate environment.
Conduct security reviews of systems, architecture, and proposed changes, providing actionable recommendations to engineering and IT teams.
Improve security policies, technical standards, and operational processes.
Contribute to SOC 2 and ISO 27001 programs through control implementation, evidence collection, audit preparation, and remediation tracking.
Coordinate internal stakeholders, auditors, and external testing partners to support assessments and penetration tests.
Work with engineering teams to address findings and validate fixes.
Implement and maintain security controls across cloud infrastructure and employee endpoints.
Improve identity and access management, secure configuration, endpoint protection, logging, and monitoring.
Help strengthen network and application defenses, including DDoS protection and web application firewall controls.
Investigate security alerts and support incident response and follow-up improvements.
Identify, assess, and prioritize vulnerabilities across applications, infrastructure, endpoints, and third-party dependencies.
Partner with system owners to establish remediation timelines and track findings through closure.
Improve scanning coverage, reporting, and automation to reduce recurring risks.
Complete information security questionnaires and respond to security due diligence requests from customers and partners.
Partner with Sales, Legal, and Engineering on security reviews and security-related contract requirements.
Provide accurate documentation of our controls and practices, flagging gaps or commitments that require further review.
Maintain reusable responses and supporting evidence to improve consistency and turnaround time.
5+ years of relevant experience in security engineering, information security, or infrastructure engineering with substantial security responsibilities.
Hands-on experience securing cloud environments such as AWS, Google Cloud.
Working knowledge of endpoint security, identity and access management, network security, encryption, and security monitoring.
Experience with vulnerability assessment, risk prioritization, remediation tracking, and verification.
Familiarity with SOC 2 and ISO 27001 controls, audit evidence, and compliance workflows.
Understanding of application security fundamentals, including authentication, authorization, secure coding, and common web application vulnerabilities.
Ability to write scripts or automation in Python, Go, or a similar language.
Strong written and verbal communication skills, including the ability to explain security risks to technical and nontechnical audiences.
A practical, collaborative approach to balancing security requirements with business needs.
A degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
Supporting customer security questionnaires, enterprise security reviews, or security-related contract discussions.
Coordinating penetration tests and working with engineering teams to remediate findings.
Implementing DDoS protection, web application firewalls, or endpoint detection and response tools.
Working in a growing SaaS company.
Security initiatives deliver measurable improvements across our cloud, endpoint, and application environments.
Vulnerabilities and assessment findings are prioritized appropriately and resolved within agreed timelines.
Compliance evidence is accurate, organized, and available when needed.
Customers and partners receive timely, consistent, and well-supported security responses.
Engineering and business teams have a trusted security partner who helps them make informed decisions.
We are creating an entirely new category within a 120+ billion-dollar physical security industry and looking for team members who are also passionate about our mission to prevent every security incident possible
We have an impressive customer roster of F500 companies, including Adobe, SentinelOne, and TikTok
You’ll receive everything you need to hit the ground running, including cutting-edge equipment and branded gear
Standard company text repeated across Ambient's postings is omitted here.