companyProfound logo

Security Engineer at profound | New York City

ProfoundNew York City
On-site Full-time $100K/yr - $170K/yr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Mid to Senior

Qualifications

Key ResponsibilitiesDesign, implement, and maintain both role-based and attribute-based access control across production systems, cloud infrastructure, and corporate tools. Lead identity and access management efforts, including SSO, SCIM provisioning, and lifecycle automation across Google Workspace, AWS, and internal systems. Conduct regular access reviews and enforce least-privilege principles across all environments. Develop automated workflows for onboarding, offboarding, and role change provisioning. Establish and oversee a vulnerability management program across infrastructure, applications, and dependencies. Integrate security scanning into CI/CD pipelines, incorporating SAST, DAST, SCA, and container image scanning. Triage and respond to security findings from automated tools, bug bounty programs, and third-party assessments. Manage SOC 2 Type II compliance from start to finish, including defining controls, collecting evidence, managing auditor relationships, and closing any gaps. Develop and maintain security policies, standards, and procedures that align with operational realities. Assist with customer security reviews, vendor assessments, and due diligence processes. Conduct risk assessments and maintain a risk register to inform prioritization decisions. Secure AWS infrastructure, including VPC architecture, security groups, IAM policies, and network segmentation. Implement and maintain logging, monitoring, and alerting for security-relevant events across cloud and corporate systems. Oversee physical security controls for the Union Square office, including access management and visitor policies.

About the job

At profound, we are dedicated to empowering organizations with the insights and control they need over their AI presence. We are seeking a proactive Security Engineer to spearhead the security framework of our platform, infrastructure, and corporate environment. You will collaborate closely with our Engineering and Operations teams to establish and uphold security controls, compliance procedures, and threat mitigation strategies that safeguard customer data while facilitating our rapid expansion.

This position is perfectly suited for an individual who perceives security as a catalyst for business growth, rather than an impediment, and who is passionate about constructing practical, scalable security systems from the ground up. As our inaugural dedicated security hire, you will play a pivotal role in shaping our strategies for access control, vulnerability management, compliance, and incident response as we grow.

About Profound

Profound is a forward-thinking company committed to helping businesses comprehend and manage their AI footprint effectively. We pride ourselves on fostering an innovative environment where security and growth go hand in hand, and our team is dedicated to creating solutions that drive success.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.