Member of Technical Staff - Security Engineer
OUR MISSION
Reflection is a research lab making intelligence open and accessible for everyone to use, customize, and build on. We build open models that let anyone control their intelligence and help shape the future of AI. Our mission: make intelligence open and accessible to all.
ROLE OVERVIEW
Reflection.AI http://Reflection.AI is looking for a Member of Technical Staff - Security Software Engineer to build our Application Security function from the ground up while contributing to a broad array of projects across the entire Security Engineering organization. You will have a high level of autonomy to architect solutions and drive them through both technical and organizational adversity. This role is ideal for an engineer who thrives in high-ownership, low-structure environments and has a strong "0 to 1" mindset.
KEY RESPONSIBILITIES
- Contribute engineering cycles to a broad array of key projects across the Security organization ranging from our agentic AI incident detection & response SOC to long-running internal AI agents
- Implement security controls around AI agents, including sandboxes, identity, and authorization systems
- Define software supply chain security strategy, tooling, and infrastructure including SCA/SBOM analysis
- Roll out controls to rapidly ingest and act on emerging supply chain attacks
- Develop and maintain a comprehensive threat model of our software stack
- Drive our pentesting program with prioritization guided by your threat model
- Define and socialize foundation secure coding practices and architecture patterns relevant to AI/ML systems
- Integrate SAST tools into CI/CD pipelines for continuous vulnerability analysis
- Define and implement a comprehensive Secure Software Development Lifecycle
REQUIRED QUALIFICATIONS
- Strong proficiency with Python or Golang
- Track record of architecting and building complex software systems
- Familiarity with common application logic exploit vectors
- Experi...