About the Role
Airtable is seeking a Product Security Engineer to safeguard the application layer of its platform, with a focus on accelerating business processes and expanding AI/LLM offerings. The role involves partnering with product engineering teams to build secure frameworks and automated controls, making security the easy path for engineers and ensuring products are secure by design.
Responsibilities
- Develop self-service security frameworks and "paved roads" enabling engineering teams to ship secure code by default.
- Implement automated guardrails for common vulnerabilities and conduct deep-dive design reviews for complex issues like multi-tenant isolation and authorization bypasses.
- Partner with product and engineering teams to review designs, contribute to threat modeling for new features, and provide actionable security guidance.
- Research emerging threats and best practices in AI and LLM safety, implementing controls to secure these workflows.
- Manage and evolve external penetration testing and bug bounty programs, driving remediation and treating vulnerability management as an engineering problem.
- Contribute to the long-term roadmaps, metrics, and strategic planning for the security team.
- Lead complex threat modeling sessions for major product launches and define secure coding standards.
- Mentor other engineers to raise the technical security bar across the organization.
Requirements
- 4+ years of experience in product security or application security, with experience shipping production code.
- Strong background in computer science or a related field.
- Proficiency in writing clean, maintainable code.
- Deep familiarity with JavaScript or TypeScript, Node.js, and modern web application frameworks.
- Hands-on experience securing LLM integrations and identifying prompt injection or data leakage risks.
- Proficiency in writing and reviewing code, treating security as an engineering problem solvable with software.
- Ability to communicate complex security risks to non-security stakeholders.
- Enjoy collaborating cross-functionally to balance security with engineering velocity.
- Comfortable working in a fast-paced environment, navigating ambiguity, and continuously learning.
- Ability to contribute to long-term security strategy.
Skills
- JavaScript
- TypeScript
- Node.js
- Web application frameworks
- LLM integrations
- Prompt injection
- Data leakage
- Threat modeling
- Vulnerability management
- Secure coding standards
Location
- Remote
Work Type
- Remote
- Full-time
Experience Level
- Senior/Staff L5+
Education Level
- Computer science or related field background
Salary/Compensations
- $187,000—$260,000 USD
Benefits
- Benefits
- Restricted stock units
- Incentive compensation
About the Company
- Airtable is the no-code app platform that empowers people closest to the work to accelerate their most critical business processes.
- More than 500,000 organizations, including 80% of the Fortune 100, rely on Airtable to transform how work gets done.
Equal Opportunity
- Airtable is an equal opportunity employer. We embrace diversity and strive to create a workplace where everyone has an equal opportunity to thrive. We welcome people of different backgrounds, experiences, abilities, and perspectives. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status or any characteristic protected by applicable federal and state laws, regulations and ordinances.
- VEVRAA-Federal Contractor
