Security Engineer
Jobleads-US
Company Overview
Deepgram is the leading platform underpinning the emerging trillion-dollar Voice AI economy, providing real-time APIs for speech-to-text (STT), text-to-speech (TTS), and building production-grade voice agents at scale. More than 200,000 developers and 1,300+ organizations build voice offerings that are ‘Powered by Deepgram’, including Twilio, Cloudflare, Sierra, Decagon, Vapi, Daily, Cresta, Granola, and Jack in the Box. Deepgram’s voice-native foundation models are accessed through cloud APIs or as self-hosted and on-premises software, with unmatched accuracy, low latency, and cost efficiency. Backed by a recent Series C led by leading global investors and strategic partners, Deepgram has processed over 50,000 years of audio and transcribed more than 1 trillion words. There is no organization in the world that understands voice better than Deepgram.
Company Operating Rhythm
At Deepgram, we expect an AI-first mindset—AI use and comfort aren’t optional, they’re core to how we operate, innovate, and measure performance.
Every team member who works at Deepgram is expected to actively use and experiment with advanced AI tools, and even build your own into your everyday work. We measure how effectively AI is applied to deliver results, and consistent, creative use of the latest AI capabilities is key to success here. Candidates should be comfortable adopting new models and modes quickly, integrating AI into their workflows, and continuously pushing the boundaries of what these technologies can do.
Additionally, we move at the pace of AI. Change is rapid, and you can expect your day-to-day work to evolve just as quickly. This may not be the right role if you’re not excited to experiment, adapt, think on your feet, and learn constantly, or if you’re seeking something highly prescriptive with a traditional 9-to-5.
The Opportunity
Deepgram is looking for a Security Engineer to build and automate the technical controls behind our security program. Most of our infrastructure is bare metal in colocation datacenters — GPU-intensive, running containerized workloads on Docker, managed with Ansible, and shipped through CI/CD on GitHub Actions — with AWS used for overflow capacity and a small set of services. Our engineering culture is high-trust and fast-moving. That means controls have to be delivered as code, be reproducible, and produce their own audit evidence — anything that depends on someone remembering to do it manually will not survive.
You will own real surface area: host hardening and configuration management across the fleet, vulnerability and patch management, penetration testing, container security, detection and response, CI/CD and supply chain security, and the engineering work behind our SOC 2, PCI DSS, and ISO 27001 obligations. You will also be expected to use AI and agentic tooling aggressively to punch above your weight on a small team, and to help us secure the AI systems we build and the AI tools we adopt internally.
This is the hands-on technical seat. A GRC and Security Compliance Lead owns policy authorship, security questionnaires, and the auditor relationship; you own the controls themselves and the evidence they generate, and you give that role the technical answers it needs.
This role reports to the Director of Information Security.
Note: as reflected on our published compensation ranges, we are open on level. Strong mid-level and senior candidates are both in scope, and we will calibrate title, scope, and compensation to demonstrated experience.
About Deepgram
Deepgram builds foundational voice AI — speech-to-text, text-to-speech, and voice agent infrastructure — used by enterprises and developers to build production voice applications at scale. Our models are trained and served on our own infrastructure, and we offer hosted, dedicated single-tenant, and self-hosted deployment options so customers can meet their own data residency and retention requirements. Learn more at deepgram.com.
Responsibilities
Build, deploy, and maintain security controls across our bare-metal fleet and AWS footprint — access management, network segmentation and firewalling, encryption and secrets management, logging and detection coverage, endpoint security, and vulnerability management.
Own configuration management and host hardening as code with Ansible, so baselines are reproducible across hundreds of Linux hosts and drift is detectable rather than merely documented.
Secure containerized workloads: Docker image build pipelines, registry scanning, runtime hardening and detection, and secrets management.
Run vulnerability management end to end — discovery, prioritization by real exploitability rather than raw CVSS, driving remediation with engineering teams, and reporting on it.
Own patch and update management as a program: the server fleet, the endpoint fleet, base images, OS and package updates, firmware where it matters, and dependency upgrades. Set and hold patch SLAs, track exceptions, and automate the routine cases so they do not depend on anyone remembering.
Own the penetration testing lifecycle: scoping and vendor selection, scheduling, triaging findings into engineering work with real owners and dates, verifying fixes on retest, and producing the summary we can share with customers.
Write detections, tune out noise, and take part in incident response. Improve log, telemetry, and security-agent coverage where we are blind.
Run periodic log and access reviews as a standing control, and automate the collection so each cycle produces its own evidence rather than a scramble.
Automate compliance evidence collection for SOC 2, PCI DSS, and ISO 27001, and support audit fieldwork on technical questions — the GRC lead owns the auditor relationship and the narrative; you own the systems that make the evidence true and repeatable.
Harden GitHub Actions CI/CD and the software supply chain: dependency and secret scanning, action pinning, SBOM, artifact and image signing, least-privilege OIDC in place of long-lived credentials.
Apply AI and agentic tooling to security work — triage, evidence gathering, code review, detection engineering — and help secure how the rest of the company uses AI.
Provide the technical input behind customer-facing security work: questionnaire and architecture answers, penetration test summaries, and hardening guidance for customers running Deepgram self-hosted.
Skills Needed
Solid experience in security engineering or infrastructure engineering with a security focus — enough that you have owned controls in production, not just recommended them.
Deep Linux. You should be comfortable hardening, debugging, and reasoning about a large fleet of physical Linux hosts — users and sudo, SSH, systemd, kernel and package updates, host firewalls, and what a host-based agent is actually doing.
Ansible at fleet scale is required. You automate first and document second.
Strong scripting. Python and/or Go, plus real shell competence.
Production experience securing Docker containers and the pipelines that build them.
Hands‑on experience securing GitHub and GitHub Actions: branch protection, CODEOWNERS, workflow permissions, secrets, and third‑party action risk.
Experience running vulnerability and patch management as an ongoing program — including the unglamorous part, which is getting other teams to actually ship the fix.
Experience managing third‑party penetration tests from the inside: scoping them well, and turning a report into closed engineering work rather than a PDF in a folder.
Hands‑on involvement in at least one formal audit — ISO 27001, PCI DSS, or SOC 2 — as the engineer producing and defending evidence, not only as a reader of the report.
Comfortable using AI coding and agentic tools in daily work, and clear‑eyed about their risks: prompt injection, secret leakage, and supply chain exposure.
Pragmatic. Controls that block shipping without a proportionate risk reduction get routed around, and we would rather you name the trade‑off than pretend it does not exist.
Nice to Have
Datacenter or colocation experience: network segmentation, out‑of‑band management (IPMI/BMC), physical and vendor controls.
Detection engineering or SIEM/HIDS ownership at scale (for example Wazuh, OSSEC, Elastic).
Secrets management with HashiCorp Vault.
AWS security (IAM, SCPs, VPC) and Terraform.
Kubernetes security.
Offensive security background: penetration testing or red teaming.
PCI DSS work inside a cardholder data environment.
Ownership of a secure SDLC program.
Experience with GPU infrastructure, ML platforms, or multi‑tenant inference workloads.
Certifications such as OSCP, GIAC, CISSP, or AWS Security Specialty.
Notice: We're aware of individuals impersonating Deepgram recruiters. All legitimate Deepgram recruiting communication comes from an @deepgram.com email address. If you've received a message claiming to be Deepgram, please forward it to View email address on click.appcast.io.
#J-18808-Ljbffr Jobleads-US$300k - $320k
...whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the Team The Security Engineering team's mission is to safeguard our AI systems and...SuggestedVisa sponsorship$10 per hour
...configuration drift across our critical SaaS applications. Own security configuration for the SaaS tools hundreds of Flexporters use... ...years of experience in corporate, enterprise, or IT security engineering — we care more about what you've shipped than the exact number...SuggestedWork at officeImmediate startFlexible hours- ...and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges,... ...the Role As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling...SuggestedLocal area
- ...Security is at the foundation of Zizy’s mission to ensure that artificial general intelligence benefits all of humanity. The Security... ...a robust security culture. About the Role As a Software Engineer focused on Security Partnerships on the Security Platform and Products...Suggested
- ...provenance, consent, licensing and payment history associated with data records can be verified. We are looking for a hands-on Security Engineer to own and strengthen security across PIP Labs’ cloud environment, endpoints and internal systems, while also supporting...Suggested
$300k - $400k
...Member of Technical Staff, Security Engineer About Fleet Fleet studies how environments produce intelligence. We believe intelligence is an emergent property of environmental pressures: the environment determines what capabilities develop, what behaviors survive...Full time- ...customers, and what they find interesting and motivating to work on. Engineers lead product teams and make product decisions. Teams are... .... Who we're looking for We are looking for an expert security generalist (in EU/UK) to assist with all things security at PostHog...Remote workFlexible hoursNight shift
- ...Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced Security Engineer to support enterprise cybersecurity operations and IT administrative and operational support services for a federal government client. This position requires an active...Local areaRemote workFlexible hours
- ...Security is a core part of the Medplum platform. We build open source healthcare infrastructure that stores and processes sensitive health... ...ranging from startups to large enterprises. As a Security Engineer at Medplum, you will work across our application, cloud...Flexible hours
$138.68k - $182.3k
...operate complex technology ecosystems. We build shared platforms, engineering foundations, and reusable services that enable mission teams... ...that enable teams across Medicare and Medicaid to deliver secure, resilient digital experiences. We're a remote-first team...Contract workImmediate startRemote work- ...Description The Security Engineer is responsible for protecting the organization’s information systems, infrastructure, networks, cloud environments, endpoints, identities, data, and approved AI-enabled technologies through proactive monitoring, risk reduction, incident...Work experience placement
- ...leading a movement. As pioneers in blockchain scalability and security, we're at the forefront of transforming how the world interacts... ...of transactions seamlessly. The Role As a Security Engineer at Offchain, you will play a key role in defining and improving...Work at officeRemote workHome office
$230k - $290k
...teams to run agents across organizations without compromising security or reliability. Continue cloud agent runs that were triggered... ...at a company where your work reaches hundreds of thousands of engineers every day, we'd love to have you. The Role This is a rare...Work at officeRemote workFlexible hours- ...or if you’re seeking something highly prescriptive with a traditional 9-to-5. The Opportunity Deepgram is looking for a Security Engineer to build and automate the technical controls behind our security program. Most of our infrastructure is bare metal in...
- ...Job Summary We are seeking a Security Engineer to design, implement, and maintain technical security controls across infrastructure, cloud, SaaS, and endpoint platforms. The role will support security architecture, baseline security configuration, cloud and SaaS security...
$70.8k - $131.4k
...The Opportunity Service Management & Transformation Do you want to get hands‐on securing a global estate? Thomson Reuters™ is building a dedicated security engineering capability, and this role is where the work gets shipped. This role sits on our Service Management...Work at officeLocal areaFlexible hours- ...Artemis Solutions is recruiting an experienced Infrastructure & Security Engineer for a growing Lexington-based technology services company. This isn’t simply a support or ticket-resolution role. We’re looking for an engineer who can look at an environment, recognize...Local area
$200k - $250k
...real-time analytics, machine learning, and advanced AI solutions. The Security Team is responsible for securing Auger, our platform, and most importantly, our customer’s data. As a Security Engineer at Auger, you will own the definition and implementation of...$159.3k - $202.4k
...Security Engineer II, Amazon Stores Security Healthcare Job ID: 10565802 | Amazon.com Services LLC Amazon Healthcare Security's (HealthSec) team is hiring a Security Engineer II to protect Amazon One Medical's network infrastructure. As a team lead you will assess...Flexible hours- ...globally. Working at Arvato means: Together, we’re on it.Job DescriptionWe are looking for an experienced and knowledgeable System Security Engineer to join our team! As a System Security Engineer, you will be responsible for implementing and managing the overall system...Work at officeLocal areaFlexible hours
- ...Maven Clinic is seeking a Staff Software Engineer focused on product security to design and scale secure, cloud-native systems across HIPAA/SOC 2/ISO 27001. You will build identity and access controls, implement observability, and drive secure-by-default patterns with...Remote job
- ...compliance assessments.* Oversees the response to information system security incidents, including investigation of, countermeasures to, and... ...technical guidance, coaching, and mentorship to other ISO Engineers in executing their tasks & responsibilities* Oversees the...Work at officeLocal areaWorldwide
$165k - $175k
...technology & product development, on-boarding, customer support, information technology, and more. About the Position: As a Security Engineer you will be responsible for designing, implementing, maintaining, and enhancing the Company's information security controls...Full timeWork at officeRemote work- ...ThoughtSpot cultivates a respectful culture that pushes norms to create world-class products. The Role: We're looking for a Security Engineer to join our AI Platform Security team. It is a high-ownership, low-oversight role for an application/product security...Work at officeLocal areaShift work3 days per week
- ...Amazon Stores Security Healthcare is seeking a Security Engineer II to protect One Medical’s network infrastructure. You will lead security investigations, assess risks, and implement controls across evolving systems, working with security engineers and product teams....
- GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and... ...integrate best-fit solutions that mitigate risk. Endpoint Security Engineer General Description We are looking for a skilled Endpoint...Permanent employmentInterim roleCasual workRemote workFlexible hours
- ...Position Summary Base-2 Solutions is seeking a Senior Security Engineer to serve as the technical lead for day-to-day security activities supporting enterprise and isolated environments. This hands‑on technical lead will provide technical leadership and oversight for...Work experience placement
$160k - $180k
...and next-generation manufacturing. We are a team of builders, engineers, and operators who believe nuclear energy should be fast to deploy... ...digital tools that power Valar's operations. The team ensures secure, reliable, and scalable technology solutions that support every...Permanent employmentRemote work$174.25k - $205k
...Fortune 500. Founded in 2021, Jasper has team members across the U.S., Australia, and France. About The Role As a Senior Security Engineer at Jasper, you'll be the first true generalist on our Security Engineering team—someone equally comfortable securing and...Local areaRemote workWorldwideHome officeFlexible hoursShift work- ...here owns real surface area, works in the open, and ships at pace. The engineers on this team are the people market makers call when milliseconds matter. About the Role We’re growing our security team and looking for an engineer who can own a broad operational and...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- application security engineer Kentucky
- principal security engineer Kentucky
- senior cloud security engineer Kentucky
- cloud security engineer Kentucky
- aws cloud security engineer Kentucky
- security software engineer Kentucky
- sr information security engineer Kentucky
- physical security engineer Kentucky
- network security engineer Kentucky
- dlp security engineer Kentucky


