Staff Security Engineer, Product
Rogo AI
Staff Security Engineer
At Rogo, we are building Wall Street's first true AI analyst. Our mission is to empower finance professionals at the world's top investment banks, private equity funds, and investment firms with AI that delivers unparalleled speed, accuracy, and insight. We are not just improving financial workflows; we are redefining them from the ground up.
This is a unique opportunity to join a generational company at a key inflection point. With a rapidly growing client base, proven product-market fit, and backing from world-class investors, we are scaling quickly and defining a new category of enterprise AI.
Our team is sharp, motivated, and deeply committed to the mission. We operate with intensity, take ownership of complex problems, and stay relentlessly focused on our users. If you thrive in a fast-paced environment, demand excellence, and want to help build the future of finance, we invite you to join us.
What You Will Own
You will be Rogo's primary offensive security capability, finding, exploiting, and eliminating vulnerabilities across our products, APIs, and infrastructure before external attackers or penetration testers do.
- Conduct hands-on penetration testing and red team assessments against Rogo's applications, APIs, AI/ML pipelines, and cloud environments on a continuous basis, not just during annual engagements.
- Build agentic security tooling that finds, validates, and patches vulnerabilities end-to-end, minimizing manual intervention across code review, dependency management, and IaC.
- Develop and maintain custom offensive tooling, exploit chains, and attack simulations tailored to Rogo's AI platform and architecture.
- Build and operate automated security testing and remediation pipelines that scale offensive coverage without linearly scaling headcount.
- Perform deep adversarial testing of AI-specific attack surfaces: prompt injection, model manipulation, data poisoning vectors, agent-based workflows, and tenant isolation boundaries.
- Own vulnerability research and bug hunting across the product, go beyond scanner output to find the logic flaws, auth bypasses, and chained exploits that automated tools miss.
- Design and execute threat modeling sessions with engineering teams, translating offensive findings into concrete, prioritized remediation that ships in the same sprint.
- Build attack simulation environments and continuously validate security controls against real-world TTPs and customer-driven pen test scenarios.
- Contribute directly to backend codebases, fix critical vulnerabilities, harden authentication and authorization flows, and build security primitives into the platform.
- Lead purple team exercises: collaborate with infrastructure and engineering teams to test detection and response capabilities against your offensive scenarios.
- Own the relationship with external pen test firms and drive remediation of findings to closure.
- Share offensive tradecraft, emerging attack techniques, and lessons learned with engineering and leadership to continuously raise security awareness.
Great Candidates Often:
- Have professional penetration testing experience across web apps, APIs, cloud environments, and ideally AI/ML systems. You've written real exploits, not just run scanners.
- Have built or are excited to build agentic security tooling that autonomously finds, validates, and patches vulnerabilities, minimizing human-in-the-loop remediation.
- Have professional development experience in a strongly typed language (e.g., Rust, Go, Java, C++) alongside scripting languages (Python, Bash) for exploit development and tooling.
- Are comfortable with Burp Suite, Nuclei, Semgrep, custom fuzzing frameworks, and building your own tools when off-the-shelf doesn't cut it.
- Have integrated automated security checks into CI/CD pipelines (SCA, SAST, DAST) and understand how to give developers fast, actionable feedback without blocking velocity.
- Are comfortable with infrastructure automation (Terraform, Kubernetes) and can identify misconfigurations and attack paths in AWS/GCP environments.
- Communicate crisply and can collaborate effectively with developers, product teams, and leadership.
- Have applied knowledge of threat modeling, cryptography fundamentals, and compliance frameworks (SOC 2, ISO 27001/42001, NIST CSF).
Bonus:
- OSCP, OSWE, GXPN, GWAPT, CPTS, or similar offensive security certifications.
- Experience testing multi-tenant SaaS platforms serving regulated industries (financial services is a strong plus).
- Hands-on cloud penetration testing experience in AWS or GCP (privilege escalation, cross-account attacks, metadata abuse).
- Kubernetes security testing (RBAC abuse, container escapes, admission controller bypasses, network policy evasion).
- Bug bounty track record or published CVEs / security research.
- Experience in customer-facing security conversations, deep-dive technical sessions, pen test debrief calls, and security architecture reviews.
Who You Are
- You thrive in fast-paced environments. You are high-intensity and care a lot about what you do, and you're ecstatic to work at a startup.
- You are ambitious. You have fun solving problems that others think are impossible.
- You are curious. You find joy in learning about AI, technology, and finance.
- You are an owner. You are autonomous, self-directed, and comfortable working with ambiguity.
- You are collaborative, organized, thoughtful, and kind.
Why Join Rogo?
- Exceptional traction: strong PMF with the world's largest investment banks, hedge funds, and private equity firms.
- World-class team: we take talent density seriously. We like working with incredibly smart, driven people.
- Velocity: we work fast, which means you learn a lot and constantly take on more.
- Frontier technology: we're developing cutting-edge AI systems, pushing the boundaries of reinforcement learning and published research, redefining what's possible, and inventing the future.
- Cutting Edge Product: Our platform is state-of-the-art and crazily powerful. We're creating tools that make people smarter, reinventing finance works.
- ...point. With a rapidly growing, global client base, proven product-market fit, and backing from world-class investors, we are... ...finance, we invite you to join us. The Role As a Staff Security Engineer at Rogo, you'll be our hands-on offensive security practitioner...Suggested
- Finance is the engine of the global economy. It decides which ideas get built, which companies... ...will run on Rogo. The Role As a Security Engineer at Rogo, you’ll play a key role in strengthening the security of our products, applications, and cloud environments. You...Suggested
- ...RDQ226R605; This role can be based remotely anywhere in the United States. The Product Security Team's mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in Databricks (for Customer Use or Supporting Customer internally) to reduce...SuggestedRemote workShift work
$170k - $231k
...Chainguard is looking for a Staff Product Security Engineer in the United States. This individual-contributor role emphasizes designing secure CI/CD pipelines and ensuring software supply chain security. Candidates should have over 7 years of experience in software or...SuggestedRemote workFlexible hours$220k - $330k
Role Overview As a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in shaping how security is built into our AI platform from the ground up. We store and process our customers’ most sensitive data, and as a result, security is...SuggestedWork experience placement$184k - $252k
...BetterCloud is seeking a Staff Product Security Engineer to lead the secure design and implementation of trustworthy products across AI and cloud-native systems. This role involves collaborating with engineering and data teams to integrate security practices throughout...$200k - $250k
...convenient solution. By integrating cutting‑edge security features and launching innovative tools... ...Security is core to the product and the reason why millions of people trust... ...store their crypto assets. As a Security Engineer, you will be responsible for identifying...Live inRemote workFlexible hours$192k - $278k
...building the foundation for a safe, productive digital future. Our mission is to unleash... ...productivity without compromising security by ensuring every identity is authentic... ...work. Position We are looking for a Staff Security Engineer to found and lead the DevSecOps...Immediate startRemote work$180k - $247.5k
...Secure Every Identity, from AI to Human Identity is the key to unlocking the... ...talk. Join Okta's Defensive Cyber Engineering team as a Staff Engineer responsible for safeguarding... ...Business Technology Engineering and Product teams to implement and manage security...Local areaWorldwideFlexible hours$190k - $250k
...reach for our hundreds of sports partners globally by offering products and services across Fanatics Commerce, Fanatics... ...offices in Denver, Leeds and Dublin. The Role: As a Staff Security Engineer on the Fanatics Ecosystems Security team, you will lead security...Full timeTemporary workSeasonal work$147k - $253k
...not years. About the Team Anduril’s Application and Security Engineering team is looking for a Staff Security Engineer to focus on Identity and Access Management... ...we use to build our advanced defense technology products. What You’ll Do Build an identity engine that powers...Full timeWork experience placement$168k - $240k
...a wide range of simple, reliable, and secure crypto products and services to individuals and institutions... ...space. From security architecture and engineering to maintenance of cold storage systems... ..., secure, and supported. The Role: Staff Security Engineer We are seeking...Work at officeRemote workFlexible hours$239k - $275k
...growing healthcare technology companies in the country. Our products are trusted by the most sophisticated employers and... ...healthcare at scale.About the roleWe are seeking an exceptional Staff Security Engineer to serve as a technical anchor for our security function. This...Remote workFlexible hours$190k - $240k
...caregivers to triage response. Our company mission is to create a product that our client counterparts love, and this role is a key... .... About this Role We are looking for a Senior/Staff Security Engineer to own and advance the security posture of our platform as...ApprenticeshipWork at officeLocal areaRemote work2 days per week- ...to access high‑quality supplements and clinical insights. Staff Security Engineer Fullscript is seeking a seasoned Staff Security Engineer to... ...leader. In this role, you’ll shape the technical vision for product and AI security across the organization, mentoring teammates...Flexible hours
- ...Staff Security Engineer (Blue Team) at Olo Reporting to the Security Engineering Director, the Staff Security Engineer will act as the technical... ...and risks by providing actionable guidance to product teams. Information Protection Lead Olo’s Information Protection...Remote work
- ...About the Role: As a Staff Application Security Engineer at Confluent, you will join a team of security architects and engineers responsible for shaping... ...application security strategy across our on-premises products and cloud services. In this role, you will go beyond...
- ...OpenLoop Health is seeking a Staff Security Engineer (DevOps Integrations) to join our team remotely. This role involves leading DevSecOps practices across IT, software engineering, and product teams while ensuring implementation of secure practices in development lifecycles...Remote work
$140k - $200k
...come join us and let's Tango! About the Role: We’re hiring a Staff Security Engineer , a senior, polyglot, full-stack Application Security... ...infrastructure codebases to fix them. You will partner with product and engineering teams to champion secure design, automate developer...Work at officeRemote workVisa sponsorshipWork visaFlexible hours- ...in all 50 states. About The Role OpenLoop is looking for a Staff Security Engineer (DevOps Integrations) to join our team remotely. In this role... ...matter expert across the IT, software engineering and product teams. The ideal candidate is someone who has the ability to...Remote workShift work
$196k - $245k
...join us, and build real world value. THE WORK: As a Staff Security Engineer within the Secure Digital Asset Operations (SDAO) function,... ...collaborate with leadership and cross-functional Finance, Product, and Engineering teams to secure Ripple's digital assets. Your...Full timeContract workWork at officeLocal area- ...Staff Security Engineer (Blockchain) Remote (US) – Software Engineering – Full-Time – Remote About the Company Hi, we're Ondo Finance. Our mission... ...provide institutional-grade, blockchain-enabled investment products and services. We have both a technology arm that develops...Full timeContract workRemote workFlexible hours
$188k - $275k
...Staff Security Engineer, SOAR CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology... ...automations which will interact across multiple different products and services (both internal and external) to secure the...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$221k - $260k
...) Built In LGBTQIA+ Advocacy Award (2022) What You’ll Do Security Platform Engineering Design and implement scalable infrastructure supporting HIPAA... ...modeling and security architecture reviews for new products and services Partner with product and data teams to embed...Full timeContract workWork at officeImmediate startRemote workFlexible hours3 days per week$200k - $300k
...the role We're looking for Red Team Security Engineers. As a geolocation and compliance... ...SDKs and server side APIs. Our Protect product enforces precise jurisdictional inclusion... ...one of two molds, technically: either Staff level expertise in one stack, or "Multi...Full timeWork at office$188k - $275k
...Staff Security Engineer, Vulnerability Management Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential... ...triage automation, including integrations, decision logic, and production hardening Implement end-to-end workflow components from...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours- ...role: This isn’t one of those roles where “security” means running scans or writing policies... ...gather dust. We’re looking for a real engineer—someone who thinks like a builder and a... ...prevent security issues before they reach production. Harden authentication and access...Remote workFlexible hours
$188k - $275k
...Staff Security Engineer, PKI & Secrets Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA CoreWeave is The... ...Vault or similar secrets management platforms in production. ~ Experience with hardware security modules (HSMs), PKCS#...Temporary workCasual workWork at officeRemote workFlexible hours$237.6k
...We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the...Full time- ...at chain.link or chainlinklabs.com. The Security Team The security department is the guardian... ...a combination of specialized security engineering, the deployment of cutting-edge... ...community. About the Role The Chainlink Labs Product Security team is looking for a driven and...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer, Product. Be the first to apply!
- staff security engineer New York, NY
- staff devops engineer New York, NY
- assistant engineer New York, NY
- engineering aide New York, NY
- assistant chief engineer New York, NY
- staff engineer New York, NY
- technology administrator New York, NY
- senior staff systems engineer New York, NY
- assistant mechanical engineer New York, NY
- staff data engineer New York, NY

