Lead Cloud Security/AppSec Engineer
$148k - $203.5kSeres Therapeutics, Inc.
Who We AreFlagship Pioneering is a biotechnology company that invents and builds platform companies that change the world. We bring together the greatest scientific minds with entrepreneurial company builders and assemble the capital to allow them to take courageous leaps. Those big leaps in human health and sustainability exponentially accelerate scientific progress in areas ranging from cancer detection and treatment to nature-positive agriculture. What sets Flagship apart is our ability to advance biotechnology by uniting life science innovation, company creation, and capital investment under one roof in a way that is largely without precedent. Our scientific founders, entrepreneurial leaders, and professional capital managers are each aligned around an institutionalized process that enables us to innovate and transform for the benefit of people and planet. Many of the companies Flagship has founded have addressed humanity’s most urgent challenges: vaccinating billions of people against COVID-19, curing intractable diseases, improving human health, preempting illness, and feeding the world by improving the resiliency and sustainability of agriculture. Flagship has been recognized twice on FORTUNE’s “Change the World” list, an annual ranking of companies that have made a positive social and environmental impact through activities that are part of their core business strategies, and has been twice named to Fast Company’s annual list of the World’s Most Innovative Companies.About the RoleThe Information Security team has strong detection and response capability and a maturing compliance program. This is a greenfield opportunity to build Flagship’s cloud security and application security engineering practice in earnest — with the CISO and Director of Security Engineering as your strategic partners and a well-resourced program behind you. You’ll define how cloud posture management, SSDLC security, and cloud-side DLP get done at Flagship — in deep partnership with the Infrastructure & Operations team, who are your primary counterparts for cloud architecture, network, and endpoint infrastructure. What makes this role distinctive is the expectation that you’ll build AI-augmented workflows from the start — using LLMs and agentic tooling to handle the routine 80% so your expertise stays focused on the 20% that actually requires human judgment. If you want to own a practice area rather than execute someone else’s playbook, this is that role. You'll own the technical execution of cloud security and AppSec across Flagship and its portfolio, working directly with engineering teams to embed security into their pipelines, not just review them after the fact.What You'll OwnCloud security posture management: own remediation execution against Wiz findings in close partnership with Infrastructure & Operations — building shared remediation playbooks, coordinating finding resolution across AWS environments, and ensuring security controls are implemented consistently with I&O’s infrastructure standardsCI/CD and SSDLC security: design and implement security guardrails in engineering pipelines — SAST, secrets scanning, IaC security, container scanning — working directly with portfolio engineering teams, and building AI-powered pipeline security automation (e.g., LLM-assisted code review, automated fix suggestions for SAST findings) that reduces developer friction and scales security coverage beyond what manual review allowsCloud-side DLP enforcement: build and operationalize data loss prevention controls at the cloud and application layer, not just policy definitionCloud identity and access: own technical execution on Entra/Azure AD conditional access, BYOD policy enforcement, and cloud identity governance in partnership with Infrastructure & Operations, who manage the underlying directory and endpoint infrastructureDetection engineering (cloud layer): write and tune cloud-side detection rules and contribute to alert fidelity improvements in partnership with the SOCAI platform security: contribute to security architecture reviews and guardrail design for AI-powered portfolio products, including Bedrock and EKS-based platformsServe as the embedded security engineering partner for portfolio company engineering teams — not a reviewer at the end of the process, but a collaborator throughout itDesign and maintain AI-augmented workflows across all functional areas you own — using LLMs, agentic tooling, and automation to multiply your own capacity. You'll be expected to treat AI as a core part of your engineering toolkit, not an experiment: building prompt-driven triage pipelines, automating remediation drafting, and continuously identifying where human judgment is the bottleneck versus where it's being wasted on pattern-matchable work.What We're Looking For5+ years in cloud security, application security, or a closely related security engineering disciplineDeep hands-on experience with AWS security services (Security Hub, GuardDuty, IAM, SCPs, CloudTrail) and cloud posture tooling — Wiz experience strongly preferredPractical AppSec experience: you've integrated SAST/DAST/SCA tooling into CI/CD pipelines and worked directly with developers to resolve findings, not just filed ticketsExperience with cloud identity platforms — Entra ID / Azure AD, including conditional access policy design and enforcementAbility to write infrastructure-as-code and scripting to automate security controls (Python, Terraform, or equivalent), including comfort working with LLM APIs, prompt engineering, and agentic orchestration frameworksDemonstrated experience building AI-augmented security workflows — you've used LLMs, agentic frameworks, or AI-assisted tooling to automate security tasks at scale, not just experimented with ChatGPT. You should be able to articulate which security problems are well-suited to AI automation and which aren't.Strong enough communication skills to be credible with engineering leadership and portfolio company CTOs — you’ll be in technical design reviews, not just security reviews Proven ability to build trusted working relationships with Infrastructure & Operations teams — you approach I&O as a partner, not a gatekeeper, and can influence security outcomes through collaboration rather than mandateComfort operating as a self-directed practitioner in a lean team; this role requires you to set your own execution priorities within a defined strategic directionNice to HaveExperience securing ML/AI platforms — Bedrock, SageMaker, or comparable environmentsAWS Security Specialty, GWEB, OSCP, or equivalent certificationExperience in a portfolio company or multi-entity security modelFamiliarity with HIPAA technical safeguard requirements and PHI data flows in cloud environmentsExperience designing or operating agentic AI workflows for security operationsContainer and Kubernetes security experience (EKS, image scanning, network policy)Why This RoleThis is a net-new capability role on a small team — you won't be executing someone else's existing playbook, you'll be building the cloud and AppSec program from a solid foundation. You’ll work directly with the CISO and collaborate closely with the Director of Security Engineering. Flagship's portfolio spans some of the most technically ambitious biology and AI work happening anywhere, and the security work reflects that complexity. If you want a role where the scope is real, the autonomy is genuine, and you have the freedom to build an AI-augmented security practice — this is it.We are an equal opportunity employer. All qualified applicants will be considered for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law. We recognize that great candidates often bring unique strengths without fulfilling every qualification. If you have some of the experience listed above but not all, please apply anyway. We are dedicated to building diverse and inclusive teams and look forward to learning more about your background and interest in Flagship. Recruitment & Staffing Agencies: Flagship Pioneering and its affiliated Flagship Lab companies (collectively, “FSP”) do not accept unsolicited resumes from any source other than candidates. The submission of unsolicited resumes by recruitment or staffing agencies to FSP or its employees is strictly prohibited unless contacted directly by Flagship Pioneering’s internal Talent Acquisition team. Any resume submitted by an agency in the absence of a signed agreement will automatically become the property of FSP, and FSP will not owe any referral or other fees with respect thereto. #LI-NM1 The salary range for this role is $148,000 - $203,500. Compensation for the role will depend on a number of factors, including a candidate’s qualifications, skills, competencies, and experience. Flagship Pioneering currently offers healthcare coverage, annual incentive program, retirement benefits and a broad range of other benefits. Compensation and benefits information is based on Flagship Pioneering's good faith estimate as of the date of publication and may be modified in the future.Privacy Notice for Applicants: When you apply for a role at Flagship Pioneering or one of its portfolio companies, we collect and use personal information you provide (such as your name, contact details, work history, and application materials) to evaluate your application, communicate with you, and comply with legal obligations. Your application data is processed through Greenhouse, our applicant tracking system, and may also be reviewed using AI-assisted screening tools. We do not sell your personal information. California residents have rights under the CCPA/CPRA including to know, delete, and opt out of the sharing of their personal information. If you are located in the EU or UK, we process your data under GDPR and you have rights to access, rectify, and erase your data. To exercise your rights or for questions, contact View email address on click.appcast.io.
$150k - $180k
...both the Defensive Platform Builder (AppSec & CloudSec) and Active Operational Defender... ...priorities. Job Summary As Lead Security Engineer, you will set the technical direction for... ...across secure software design, cloud infrastructure defense, offensive testing...CloudFull timeLocal areaImmediate start$148k - $203.5k
...About the Role The Information Security team has strong detection and response... ...opportunity to build Flagship's cloud security and application security engineering practice in earnest - with the... ...execution of cloud security and AppSec across Flagship and its portfolio...Cloud- ...Snyk is seeking a Senior Product Security Engineer (Platform) to strengthen cloud security across GCP and AWS. You will pair infrastructure expertise with AI coding agents to translate threat models into Terraform, Kubernetes, and pipeline fixes, collaborating with platform...Cloud
- ...Security Engineer PCT partners with venture-backed technology companies looking for Security Engineers to help build secure products, infrastructure... ...may focus on product security, application security, cloud and infrastructure security, detection and response, security...Cloud
- ...Purple Drive Network Security Engineer Share Contractual Boston, MA Overview: Key Responsibilities: Design, implement, and... ...Palo Alto), CCSA/CCSE (CheckPoint), F5-CTS. Experience with cloud networking security (AWS, Azure, GCP). Knowledge of...Cloud
$112k - $130k
...Senior Security EngineerRemote - United StatesJR013945 At Ensono,... ...The Senior Information Security Engineer is responsible for designing,... ...global cybersecurity initiatives, leads incident response activities,... ...deployment using Azure Cloud. ~ Background in Security-as...CloudFull timeTemporary workRemote workWork from homeFlexible hours$149k - $235k
...wait to meet you. Braze is a modern, cloud-first SaaS company running entirely on cloud... .... We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function... ...patterns other engineers build on, lead cross-team security initiatives end to end...CloudWork at officeLocal areaFlexible hours- Security Engineer PCT partners with venture-backed technology companies looking for Security Engineers to help build secure products, infrastructure... ...may focus on product security, application security, cloud and infrastructure security, detection and response, security...Cloud
- ...troubleshooting skills, CLI proficiency, security mindset, ability to solve complex... ...experience are less important than demonstrated engineering capability. Candidates transitioning... ...experience and technical ownership. AI & Cloud AI experience is considered a bonus, not...Cloud
- Senior Security Engineer Location: Boston, MA Type: Hybrid 3 days onsite required Contract: 6+ months with extensions Roles and Responsibilities... ...such as Python, Go, or similar Hands-on experience with cloud platforms and modern infrastructure (AWS, Kubernetes, containers...CloudContract work
- ...investment organization in Boston, MA that is seeking a hands-on Senior Security Engineer to join a small, high-impact engineering team focused on building and deploying enterprise security solutions across cloud, identity, data, and infrastructure environments. Summary: This...CloudFull time
$170k - $200k
...$175,000 base + 15% bonus Title Senior Security Engineer (US) Overview We are seeking a hands‑on,... ...proactively strengthen our security posture across cloud‑native and hybrid environments. This highly technical, strategic role will lead security platform integration, governance...CloudFull timeContract workWork at officeRemote workFlexible hours- ...Responsibilities Define cloud security standards, guardrails, and reference architectures for Infrastructure, SRE, and Product Engineering. Set the roadmap for high-impact cloud security work and lead cross-functional initiatives from scoping through delivery....CloudFull timeWork at officeFlexible hours
$40k
...mission-critical programs across national security, defense, and public service delivery.... ...at a national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity operations... ...with security operations processes, cloud and infrastructure fundamentals, and the...CloudContract workRemote work$99k - $120k
...unshakeable, this role is built for you. As a Security Engineer II on our Active Operational Offensive... ..., building the technical depth needed to lead independent engagements over time. Key Responsibilities & Impact Cloud Infrastructure PenTesting: Execute manual...CloudFull timeLocal areaImmediate start$106.3k - $234.6k
...Job Description The Oracle Cloud Infrastructure (OCI) team can provide you the opportunity... ...challenges. As a Principal Hardware Security Engineer you will be involved in ensuring that... .... Discover your potential at a company leading the way in AI and cloud solutions that...CloudTemporary workFlexible hours$121k - $226k
...continue to grow, we're looking for a Sr. AI Security Engineer. Hi Marley is building an AI-native... ...across the internal environment. Lead threat modeling for new AI capabilities... ...controls for inference APIs, isolation for cloud-hosted agentic workloads, and endpoint/DLP...CloudWork at officeFlexible hours3 days per week- We Are:Accenture Security is one of the fastest growing areas of our business, and our global... ...network topology, storage architecture, cloud infrastructure - you speak this language... ...offering, and growing the practice.The Work:Lead enterprise recovery engagements during...CloudFull timeLive inWork at officeLocal areaShift work
$130k - $170k
...Incident Response Lead At WHOOP, we're on a mission to unlock human performance and... ...seeking an Incident Response Lead to drive security incident response across the enterprise.... ...and eradication efforts Conduct host, cloud, and log-based investigations, and coordinate...CloudFull timeWork at officeRelocation$192k - $230k
...Summary Snyk is the leader in secure AI software development,... ...dependencies to containers and cloud. Our mission is to empower... ...works consultatively with the engineering teams that build and run our... ...where fostering collaboration, leading with empathy, driving business...CloudWork at officeWork from homeFlexible hoursEarly shift$150k - $190k
...sophisticated cyber and AI-driven threats, securing their AI transformation. Our... ...first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI... ...What you bring to the table ~5+ years of engineering and pre-sales experience ~ Possess...CloudTemporary workWorldwide- ...Cloud Security Engineer Experience in Amazon security solutions Expert in cyber security Should be able to do assessment of security risks, threats, vulnerabilities, monitoring and risk mitigation Should be able to use Nessus and other container scanning tools...Cloud
- ...and physical sites with OS hosted on Prem and/or Azure/AWS/GCP cloud. Prefer to have prior experience managing Financial Services customers... ...on VXLAN, IPsec, GRE, MPLS. Basic Understanding of Security concepts - Content filtering, Threat Protection, Firewalls, VPNs...CloudPermanent employmentFlexible hours
$170k - $205k
Staff Security Engineer Snyk is the leader in secure AI software development, helping millions of... ...and dependencies to containers and cloud. Our mission is to empower every developer... ...reporting posture as a trend over time. Leading cloud IAM and least privilege....CloudWork at officeRemote workWork from homeFlexible hours$190k
...to change transforming strategies into leading-edge tech platforms, at scale. What You... ...strong working relationships across engineering, data, product, and client teams to drive... ...function-calling. ~ Understanding of Cloud architecture, data platforms, and API-based...CloudWork at officeLocal area- Kforce's client in Boston, MA is seeking a Product Security Engineer. Summary: We're partnering with a highly respected global organization that is investing heavily in modern application security, cloud technologies, and secure software development practices. This is...CloudFull time
- ...Information Technology Manager/Information Security Officer to oversee hybrid IT operations... ...serve as ISO, align with central ITS, and lead staff, policy, and security initiatives... ...compliance, you will manage on-site and cloud environments, coordinate with partners, and...Cloud
- ...week, primarily remote with about 10% on-site work to support workshops and stakeholder meetings. You will lead technology delivery across cybersecurity, cloud optimization, AI/ML applications, and systems integrations for life sciences clients, translating complex technical...Cloud16 hoursPart timeRemote work
- Technology Sourcing Manager | Software, Cloud & Cyber | Contract Looking for experienced technology procurement professionals to lead strategic sourcing and negotiations across software, cloud and cyber security spend. Key responsibilities include managing complex vendor...CloudContract workRemote work
- ...clients use data, AI, and modern cloud platforms to solve their most... ...a Databricks Partner Solution Lead, you will sit at the... ...Slalom's broader consulting, engineering, industry, and delivery capabilities... ...are achievable, well-scoped, secure, governed, and aligned to client...CloudTemporary workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Cloud Security/AppSec Engineer. Be the first to apply!
- lead engineer Cambridge, MA
- lead algorithm engineer Cambridge, MA
- senior cloud solutions architect Cambridge, MA
- cloud engineer Cambridge, MA
- senior principal cloud computing engineer Cambridge, MA
- aws cloud architect Cambridge, MA
- software engineer - cloud services Cambridge, MA
- google cloud engineer Cambridge, MA
- senior cloud network engineer Cambridge, MA
- principal cloud computing engineer Cambridge, MA




