Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer

$150k - $245k
Full-time

Deepgram

Company Overview

Deepgram is the leading platform underpinning the emerging trillion-dollar Voice AI economy, providing real-time APIs for speech-to-text (STT), text-to-speech (TTS), and building production-grade voice agents at scale. More than 200,000 developers and 1,300+ organizations build voice offerings that are ‘Powered by Deepgram’, including Twilio, Cloudflare, Sierra, Decagon, Vapi, Daily, Cresta, Granola, and Jack in the Box. Deepgram’s voice-native foundation models are accessed through cloud APIs or as self-hosted and on-premises software, with unmatched accuracy, low latency, and cost efficiency. Backed by a recent Series C led by leading global investors and strategic partners, Deepgram has processed over 50,000 years of audio and transcribed more than 1 trillion words. There is no organization in the world that understands voice better than Deepgram.

Company Operating Rhythm

At Deepgram, we expect an AI-first mindset—AI use and comfort aren’t optional, they’re core to how we operate, innovate, and measure performance.

Every team member who works at Deepgram is expected to actively use and experiment with advanced AI tools, and even build your own into your everyday work. We measure how effectively AI is applied to deliver results, and consistent, creative use of the latest AI capabilities is key to success here. Candidates should be comfortable adopting new models and modes quickly, integrating AI into their workflows, and continuously pushing the boundaries of what these technologies can do.

Additionally, we move at the pace of AI. Change is rapid, and you can expect your day-to-day work to evolve just as quickly. This may not be the right role if you’re not excited to experiment, adapt, think on your feet, and learn constantly, or if you’re seeking something highly prescriptive with a traditional 9-to-5.

The Opportunity

Deepgram is looking for a Security Engineer to build and automate the technical controls behind our security program. Most of our infrastructure is bare metal in colocation datacenters — GPU-intensive, running containerized workloads on Docker, managed with Ansible, and shipped through CI/CD on GitHub Actions — with AWS used for overflow capacity and a small set of services. Our engineering culture is high-trust and fast-moving. That means controls have to be delivered as code, be reproducible, and produce their own audit evidence — anything that depends on someone remembering to do it manually will not survive.

You will own real surface area: host hardening and configuration management across the fleet, vulnerability and patch management, penetration testing, container security, detection and response, CI/CD and supply chain security, and the engineering work behind our SOC 2, PCI DSS, and ISO 27001 obligations. You will also be expected to use AI and agentic tooling aggressively to punch above your weight on a small team, and to help us secure the AI systems we build and the AI tools we adopt internally.

This is the hands-on technical seat. A GRC and Security Compliance Lead owns policy authorship, security questionnaires, and the auditor relationship; you own the controls themselves and the evidence they generate, and you give that role the technical answers it needs.

This role reports to the Director of Information Security.

Note: as reflected on our published compensation ranges, we are open on level. Strong mid-level and senior candidates are both in scope, and we will calibrate title, scope, and compensation to demonstrated experience.

About Deepgram

Deepgram builds foundational voice AI — speech-to-text, text-to-speech, and voice agent infrastructure — used by enterprises and developers to build production voice applications at scale. Our models are trained and served on our own infrastructure, and we offer hosted, dedicated single-tenant, and self-hosted deployment options so customers can meet their own data residency and retention requirements. Learn more at deepgram.com .

Responsibilities

  • Build, deploy, and maintain security controls across our bare-metal fleet and AWS footprint — access management, network segmentation and firewalling, encryption and secrets management, logging and detection coverage, endpoint security, and vulnerability management.

  • Own configuration management and host hardening as code with Ansible, so baselines are reproducible across hundreds of Linux hosts and drift is detectable rather than merely documented.

  • Secure containerized workloads: Docker image build pipelines, registry scanning, runtime hardening and detection, and secrets management.

  • Run vulnerability management end to end — discovery, prioritization by real exploitability rather than raw CVSS, driving remediation with engineering teams, and reporting on it.

  • Own patch and update management as a program: the server fleet, the endpoint fleet, base images, OS and package updates, firmware where it matters, and dependency upgrades. Set and hold patch SLAs, track exceptions, and automate the routine cases so they do not depend on anyone remembering.

  • Own the penetration testing lifecycle: scoping and vendor selection, scheduling, triaging findings into engineering work with real owners and dates, verifying fixes on retest, and producing the summary we can share with customers.

  • Write detections, tune out noise, and take part in incident response. Improve log, telemetry, and security-agent coverage where we are blind.

  • Run periodic log and access reviews as a standing control, and automate the collection so each cycle produces its own evidence rather than a scramble.

  • Automate compliance evidence collection for SOC 2, PCI DSS, and ISO 27001, and support audit fieldwork on technical questions — the GRC lead owns the auditor relationship and the narrative; you own the systems that make the evidence true and repeatable.

  • Harden GitHub Actions CI/CD and the software supply chain: dependency and secret scanning, action pinning, SBOM, artifact and image signing, least-privilege OIDC in place of long-lived credentials.

  • Apply AI and agentic tooling to security work — triage, evidence gathering, code review, detection engineering — and help secure how the rest of the company uses AI.

  • Provide the technical input behind customer-facing security work: questionnaire and architecture answers, penetration test summaries, and hardening guidance for customers running Deepgram self-hosted.

Skills Needed

  • Solid experience in security engineering or infrastructure engineering with a security focus — enough that you have owned controls in production, not just recommended them.

  • Deep Linux. You should be comfortable hardening, debugging, and reasoning about a large fleet of physical Linux hosts — users and sudo, SSH, systemd, kernel and package updates, host firewalls, and what a host-based agent is actually doing.

  • Ansible at fleet scale is required. You automate first and document second.

  • Strong scripting. Python and/or Go, plus real shell competence.

  • Production experience securing Docker containers and the pipelines that build them.

  • Hands-on experience securing GitHub and GitHub Actions: branch protection, CODEOWNERS, workflow permissions, secrets, and third-party action risk.

  • Experience running vulnerability and patch management as an ongoing program — including the unglamorous part, which is getting other teams to actually ship the fix.

  • Experience managing third-party penetration tests from the inside: scoping them well, and turning a report into closed engineering work rather than a PDF in a folder.

  • Hands-on involvement in at least one formal audit — ISO 27001, PCI DSS, or SOC 2 — as the engineer producing and defending evidence, not only as a reader of the report.

  • Comfortable using AI coding and agentic tools in daily work, and clear-eyed about their risks: prompt injection, secret leakage, and supply chain exposure.

  • Pragmatic. Controls that block shipping without a proportionate risk reduction get routed around, and we would rather you name the trade-off than pretend it does not exist.

Nice to Have

  • Datacenter or colocation experience: network segmentation, out-of-band management (IPMI/BMC), physical and vendor controls.

  • Detection engineering or SIEM/HIDS ownership at scale (for example Wazuh, OSSEC, Elastic).

  • Secrets management with HashiCorp Vault.

  • AWS security (IAM, SCPs, VPC) and Terraform.

  • Kubernetes security.

  • Offensive security background: penetration testing or red teaming.

  • PCI DSS work inside a cardholder data environment.

  • Ownership of a secure SDLC program.

  • Experience with GPU infrastructure, ML platforms, or multi-tenant inference workloads.

  • Certifications such as OSCP, GIAC, CISSP, or AWS Security Specialty.

Notice : We're aware of individuals impersonating Deepgram recruiters. All legitimate Deepgram recruiting communication comes from an @ deepgram.com email address. If you've received a message claiming to be Deepgram, please forward it to View email address on aiapply.co.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Security Engineer in Remote vacancy
  • $116k - $162.5k

     ..., evolve, and shape what comes next on our mission to make better food accessible to everyone. THE OPPORTUNITYAs the Senior Engineer, IT Security Engineering, under minimal supervision, you will participate in the efforts to implement and mature security capabilities that... 
    Suggested
    Work at office
    Local area
    Remote work
    Work from home
    Shift work

    Chipotle Mexican Grill

    Newport Beach, CA
    7 hours ago
  •  ...Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ENGINEER (OT)SpaceX is looking for a Security Engineer (OT) to join Information Security to help protect and drive the SpaceX mission.... 
    Suggested
    Permanent employment
    Remote work
    Weekend work

    SpaceX

    Cape Canaveral, FL
    2 days ago
  • $160k - $275k

     ...silicon to systems, including hardware and software, to train and run the largest ML workloads for AGI. MatX is seeking a Senior Security Engineer to join our team as we create best-in-class silicon for high-performance and sustainable GenAI. The successful candidate for... 
    Suggested
    Daily paid
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work
    Monday to Friday
    Flexible hours

    MatX

    Mountain View, CA
    1 day ago
  • $200k - $255k

     ...Instead of accepting the status quo, we decided to fix it. National security professionals, journalists, parents, and everyone in between...  ...a member of our team, you will collaborate with world-class engineers, architects, and visionaries, and work across organizational... 
    Suggested
    Odd job
    Immediate start
    Remote work

    Cape

    United States
    2 days ago
  •  ...description:Come join a growing team that is responsible for the design/engineering/operation of the following foundational infrastructure...  ...established strategies and patterns.Performs threat modeling, security testing, and penetration testing for the platforms and... 
    Suggested
    Permanent employment
    Full time
    Part time
    Work experience placement
    H1b
    Work at office
    Remote work
    Work visa
    Shift work
    Day shift

    Truist

    Charlotte, NC
    2 days ago
  •  ...defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover...  ...: ASRC Federal is actively hiring an Intermediate Okta Engineer in support of our Defense Counterintelligence Security Agency (... 
    For contractors
    Work experience placement
    Work at office
    Remote work
    2 days per week

    ASRC Federal Holding Company

    Quantico, VA
    7 hours ago
  • $189k - $255.5k

     ...continuing to invest heavily in building the best creator platform with the best team in the creator economy and are looking for a Security Engineer to support our mission.This role is Fully Remote (US only), or can be based in New York or San Francisco (where it is open to... 
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours
    3 days per week

    Patreon

    San Francisco, CA
    3 days ago
  • $10k

     ...billions, Ramp is the place to do it.About the RoleThe Product Security team helps make Ramp the most secure place for our customers...  ...issues across our technology stack: collaborating with other engineers to triage and fix vulnerabilities discovered internally, through... 
    Full time
    Work at office
    Home office
    Flexible hours

    Ramp

    New York, NY
    13 hours ago
  • $72k - $129k

     ...the #VTeamLife.What you'll be doing: Our Dynamic Application Security Testing (DAST) team is a group of talented, creative thinkers...  ...security testing environments using Docker and AWS.Partnering with engineering teams to guide them through identifying and remediating OWASP... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Remote work
    Work from home
    Shift work

    Verizon

    Livingston, NJ
    3 days ago
  • $145.9k - $234.2k

    The Role: As a Cybersecurity Engineer, you will help design, implement, and mature Moderna’s approach to API security across modern applications, platform services, and AI-enabled use cases. This role is primarily focused on securing APIs and the systems that expose and... 
    Permanent employment
    Full time
    Work at office
    Work from home

    Moderna Therapeutics

    Cambridge, MA
    1 day ago
  • $162k - $198k

     ...mission operations environment. You will contribute to cyber engineering and produce RMF authorization documentation, build and sustain...  ...mission systems work throughout, not traditional enterprise IT security.We are open to candidates from ISSE, SSE, ISSM, or ISSO backgrounds... 
    Full time
    Internship
    Work at office

    Apex Technology

    Los Angeles, CA
    7 hours ago
  •  ...solar and energy storage assets. Our Operational Technology (OT) Security Program protects the control and monitoring systems that keep...  ...shape OT security across a growing renewables fleet.As OT Security Engineer, you are the hands-on technical owner of the Program’s... 
    Contract work
    Work at office
    Remote work
    3 days per week

    Cypress Creek Renewables

    Durham, NC
    7 hours ago
  • $102.1k - $202.2k

     ...officeRole type: Individual ContributorTravel: Less than 25%Profession: Security EngineeringDiscipline: Security Operations EngineeringCompany:...  ...’s Cloud Operations & Innovation (CO+I) is the engine that powers our cloud services. As a Physical Security Engineer... 
    Ongoing contract
    Work at office
    Local area
    Worldwide
    3 days per week

    Microsoft

    Milwaukee, WI
    1 day ago
  •  ...Job Description Fragomen is seeking a Security Engineer – Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh.  Our industry-leading, immigration specific software and supporting infrastructure... 
    Local area
    Remote work

    Fragomen Worldwide

    United States
    2 days ago
  • $180k - $220k

     ...Security Engineer Cape is America's privacy-first mobile carrier. Our mission is to be a force for good in global wireless. Cape was founded in 2022 by people who believe privacy is a fundamental right, not a luxury to be traded away. Our journey began when our founder... 
    Odd job
    Contract work
    Immediate start
    Remote work

    Private Tech

    United States
    4 days ago
  •  ...delivering enterprise transformation across cloud, data, software engineering, and artificial intelligence . We work with industry-leading...  ...and effectively. We are looking for an Application Security Engineer to join a greenfield digital news platform build for... 
    Remote work

    Solvd

    United States
    1 day ago
  •  ...Security Engineer Company: Game Plan Tech Work Type: Remote Employment: Full Time Location: US Seniority: Senior Level Technologies: Google Cloud Security Command Center, AWS Security Hub, Azure Security Center, Tenable Products, firewalls, intrusion detection systems,... 
    Full time
    Remote work

    Game Plan Tech

    United States
    2 days ago
  • $200k - $240k

     ...City, CA, Liftoff has a diverse, global presence. The Liftoff Security team protects Liftoff's customers, users, and employees. We...  ...build the tools and systems that defend it, and partner with engineering teams as they ship new products and features. Our work spans the... 
    Full time
    Remote work

    Liftoff Inc

    United States
    2 days ago
  •  ...and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges,...  ...the Role As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling... 
    Local area

    Cloudflare Inc

    Eastern, KY
    1 day ago
  • $175k - $227.5k

     ...truly matters: judgment, creativity, and big thinking. That is magic at work, and it’s what we show up for every day.The Sr. Security Engineer I is a critical technical role focused on deal acceleration, platform security evangelism, and the development of security features... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work

    Smartsheet

    Bellevue, WA
    3 days ago
  • $160k - $200k

     ...attacker's mindset. The things you find get triaged, remediated, fixed. Security that ships as code Your work produces pull requests, hardened configs, detection rules, and tests. Engineers see you as someone who makes their systems better, not someone who slows... 
    Work at office
    Remote work
    Work from home
    Home office

    Stacks Labs

    United States
    13 hours ago
  •  ...Your Role: Security Engineer We're looking for an experienced, hands-on Security Engineer to secure XBOW's product, cloud, and platform as we scale. This is a technical individual contributor role focused on building security into how we design, ship, and operate... 
    Full time
    Contract work
    Remote work

    XBOW

    United States
    13 hours ago
  • $65 - $72 per hour

     ...recruiter to learn more. Base pay range $65.00/hr - $72.00/hr Software Guidance & Assistance, Inc., (SGA), is searching for a IAM Security Engineer (GCP) for a Contract assignment with one of our premier Regulatory clients in Rockville, MD. Candidate must be in the DMV area... 
    Full time
    Contract work
    Remote work
    2 days per week
    3 days per week

    Software Guidance & Assistance

    Rockville, MD
    1 day ago
  •  ...rooms full of people. If you want to build things that matter (not just maintain them), this is a good time to join. Position: Security Engineer – Cloud & Infrastructure Security AWS Location: Remote Role Overview: The Security Engineer is a member of... 
    Remote work

    HealthMark Group

    United States
    3 days ago
  • $138.68k - $182.3k

     ...operate complex technology ecosystems. We build shared platforms, engineering foundations, and reusable services that enable mission teams...  ...that enable teams across Medicare and Medicaid to deliver secure, resilient digital experiences. We're a remote-first team... 
    Contract work
    Immediate start
    Remote work

    Corbalt

    Eastern, KY
    3 days ago
  •  ...IAM Security EngineerClient: BSNFLocation: Dallas, TXDuration: 24 MonthsThe first 2-3 weeks will be 100% on site with team members. Candidates will be required and must agree to work on-site 50% of the time after that. Up to 2 onsite interviews. The technical interviews... 
    Work experience placement
    Work at office
    Remote work

    Staffing the Universe

    Dallas, TX
    3 days ago
  •  ...GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and...  ...integrate best-fit solutions that mitigate risk. Endpoint Security Engineer General Description We are looking for a skilled Endpoint... 
    Permanent employment
    Interim role
    Casual work
    Remote work
    Flexible hours

    Socket

    Eastern, KY
    3 days ago
  •  ...Security Engineer Company: NuHarbor Security Work Type: Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: Splunk, Tenable One, CrowdStrike, Microsoft Sentinel Requirements: Bachelor’s degree or 2 years related experience with certifications;... 
    Full time
    Remote work

    NuHarbor Security Inc

    United States
    2 days ago
  •  ...Discord is seeking a Senior Software Engineer for the Application Security team to protect user accounts. You will design and implement full‑stack security solutions, strengthen session security, and own authentication services for hundreds of millions of users. With... 
    Remote job

    Jobleads-US

    San Francisco, CA
    1 day ago
  •  ...Security Engineer Company: Secur-Serv Work Type: Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: Palo Alto Networks NGFW, Cisco, Checkpoint, Juniper, Fortinet, Symantec/Blue Coat, Zscaler, Prisma Access, AWS, GCP, Azure, tcpdump, Wireshark,... 
    Full time
    Remote work

    Secur-Serv

    United States
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!