About the Role
This role is for a highly technical Senior Security Engineer focused on building security capabilities from the ground up. The ideal candidate enjoys solving complex security challenges through engineering, automation, and AI, rather than relying solely on commercial tools. You will build, scale, and continuously evolve next-generation security capabilities across a cloud-native SaaS platform, with a strong focus on AI security, automation, and scalable security operations. The Security Engineering team values innovation, ownership, and scalable security solutions, seeking engineers who solve security problems across multiple domains. This is a hands-on engineering role for builders, innovators, and problem-solvers creating security solutions at scale.
Responsibilities
- Design, build, and maintain security platforms, services, APIs, automation, and internal tooling.
- Develop solutions for Cloud vulnerability management, Network Security, Detection engineering, Incident response, access governance, and security operations.
- Use software engineering principles to build detections-as-code, security workflows, internal platforms, and scalable security services.
- Leverage AI to accelerate investigations, automate workflows, improve decision making, and reduce operational overhead.
- Design and implement security controls for AI applications, LLM-powered services, agents, and AI development workflows.
- Build guardrails and security tooling to identify and mitigate risks like prompt injection, data leakage, model misuse, excessive permissions, insecure plugins, and unsafe AI interactions.
- Develop monitoring, detection, and response capabilities for AI systems and AI-generated content.
- Partner with product and engineering teams to securely enable AI innovation.
- Build and maintain detections-as-code across cloud, identity, endpoint, SaaS, and application environments.
- Design and implement security controls across SaaS platforms, workforce identities, privileged access, and machine identities.
- Partner with engineering teams to implement secure-by-design architectures and security best practices.
- Perform architecture reviews and threat modeling for cloud services, AI-enabled applications, APIs, and infrastructure changes.
- Continuously identify opportunities to leverage AI, automation, and modern engineering practices to solve security challenges.
- Develop custom security tools, dashboards, APIs, services, and integrations.
- Evaluate emerging technologies and drive adoption for measurable security and operational value.
Requirements
- Hands-on experience in Security Engineering or related cybersecurity roles.
- Strong software engineering mindset with demonstrated experience building production-grade tools, automation, and security platforms.
- Proven ability to build versus buy and create scalable internal solutions.
- Strong proficiency in Python or similar languages, with experience building tools, using open source, APIs, automation, and cloud-native services.
- Strong understanding of cloud architecture, identity systems, networking, operating systems, and modern security principles.
- Experience leveraging AI to transform security operations and engineering workflows.
- Hands-on experience securing AWS, Azure, or GCP environments.
- Experience with SIEM, EDR, WAF, Network Security, Cloud security, SaaS security, IAM, and Security monitoring technologies.
- Strong analytical, communication, and problem-solving skills.
- Experience building internal security products, platforms, and developer-focused security tooling.
- Strong understanding of AI/LLM technologies, AI security risks, and secure AI development practices.
- Knowledge of Zero Trust, modern identity architectures, and cloud-native security controls.
Skills
- Python
- Cloud architecture
- Identity systems
- Networking
- Operating systems
- Modern security principles
- AI
- AWS
- Azure
- GCP
- SIEM
- EDR
- WAF
- Network Security
- Cloud security
- SaaS security
- IAM
- Security monitoring technologies
- Analytical skills
- Communication skills
- Problem-solving skills
- AI/LLM technologies
- AI security risks
- Secure AI development practices
- Zero Trust
- Modern identity architectures
- Cloud-native security controls
Location
- San Francisco
- New York City
- London
- Sydney
Work Type
- Full-time
- In-office
Experience Level
- 5+ years of experience
Education Level
- Bachelor's in Computer Science, Cyber Security or similar
- Master's in Computer Science, Cyber Security or similar
- CISSP certification
- CCSP certification
- GCIH certification
- GCFA certification
Salary/Compensations
- $175,000 - $220,000 annually
Benefits
- Equity
- Generous health benefits
- Flexible time off policy
- Paid bonding time for all new parents
- Traditional 401k
- Roth 401k
- Commuter benefits
- FSA benefits
- Lunch Program
- Dog friendly office
About the Company
- Sigma is the AI Apps and agentic analytics platform built on the cloud data warehouse.
- Business and technical teams use Sigma to explore live data, build intelligent applications, and automate critical workflows without moving data or breaking governance.
- Sigma supports a spreadsheet interface, SQL, Python, and native AI in a single governed workspace.
- Sigma is trusted by over 2,000 customers, including AMD, Duolingo, Colgate-Palmolive, and JPMorgan Chase.
- Sigma announced $80M in Series E financing in May 2026, led by Princeville Capital with strategic investors Databricks Ventures, ServiceNow Ventures, and Workday Ventures.
- Returning investors include Altimeter Capital, Avenir Growth Capital, D1 Capital Partners, K5 Global, NewView Capital, Spark Capital, Sutter Hill Ventures, and XN.
- Sigma reached $200M in annual recurring revenue in April 2026, with over 100% year-over-year growth and 1.1 million new active users in the latest fiscal year.
Equal Opportunity
- Sigma is an equal opportunity employer.
- We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran, or any other protected status.
