Staff Engineer - Security
- AI
- AWS
- GCP
- IAM
- VPC
- Zero Trust
- Threat Modeling
- SIEM
- CI/CD
- System Design
- Python
- JavaScript
- TypeScript
- OWASP
- Kubernetes
- Secrets Management
- Network Security
- Unlimited time off
Emergent builds autonomous coding agents that replace traditional software development by generating, testing, and deploying production applications directly from plain-language intent. Our systems run in production at global scale and are used to build millions of real applications.
Since our public launch, we've crossed$130M in ARR and grown toover 10M users across 190+ countries, who have built12M+ applications on Emergent. We're backed byCreaegis, Claypond, Sentinel Global, Khosla Ventures, SoftBank, Google, Lightspeed, Prosus, Together, and Y Combinator.
We're solving the hard part of AI-driven software creation: correctness, reliability, security, and scale in real production systems. The team is built byrepeat founders, Olympiad medalists, IIT & IIM alumni, and leaders fromGoogle, Amazon, and Dropbox.
We're hiring builders who want ownership, speed, and impact at global scale.
The Role:
Emergent runs a massive, multi-tenant, AI-driven execution environment where code is generated and executed continuously. You will secure the infrastructure that powers autonomous software creation.
What You'll Do:
The Role
At Emergent, security goes beyond securing traditional applications and infrastructure. We are building AI systems that generate and execute software at massive scale.
As aStaff Security Engineer, you will own security across the full stack — fromAI-generated applications and agent pipelines to the cloud infrastructure and runtime environments where that code executes.
You will work across Application Security, Product Security, Cloud Security, Infrastructure Security, and Runtime Defense to build systems that are secure by design and resilient at scale.
What You’ll Do
Secure AI-Generated Applications
- Define security patterns and guardrails for applications generated by AI agents.
- Build secure-by-default frameworks across authentication, authorization, data access, APIs, and business logic.
- Identify and prevent vulnerabilities in dynamically generated applications.
- Build validation layers for AI-generated code, including static and semantic validation.
- Detect prompt injection, adversarial inputs, and other AI-specific attack patterns.
Secure Cloud & Runtime Infrastructure
- Design secure, multi-tenant environments for executing untrusted, AI-generated code.
- Build isolation across compute, network, and storage layers.
- Prevent container escapes, privilege escalation, lateral movement, and other runtime attacks.
- Harden AWS/GCP infrastructure across IAM, VPCs, secrets, workloads, and service-to-service communication.
- Design and implement zero-trust security architectures.
Own End-to-End Threat Modeling
- Threat model systems spanning AI agents, generated applications, APIs, cloud infrastructure, and runtime environments.
- Identify systemic security risks across multi-tenant and agent-driven architectures.
- Develop reusable threat models and security patterns for AI-native systems.
- Assess attack paths across both application and infrastructure layers.
Build Security Detection & Defense
- Build detection capabilities for abnormal execution, malicious workloads, and data-exfiltration attempts.
- Design logging, SIEM, monitoring, and real-time alerting systems.
- Develop security controls that detect and prevent attacks across application and infrastructure layers.
- Red-team AI-generated applications and execution environments to identify systemic weaknesses.
Secure CI/CD & Agent Pipelines
- Secure build and deployment pipelines used by AI agents.
- Prevent software supply-chain attacks and insecure code propagation.
- Ensure artifact integrity throughout the development and deployment lifecycle.
- Feed security learnings back into AI generation and engineering systems.
Build Security Engineering Primitives
- Design authentication and authorization frameworks.
- Build secure SDKs, APIs, gateways, rate limiting, and input/output validation layers.
- Develop reusable security tooling and frameworks that engineering teams can adopt at scale.
- Work closely with engineering and product teams to make security part of system design rather than a post-development review.
What We’re Looking For
- 8–15+ years of security engineering experience, with strong hands-on experience across bothApplication/Product Security and Cloud/Infrastructure Security.
- Strong coding and automation skills inPython, JavaScript/TypeScript, or backend systems.
- Deep understanding of application security fundamentals, including:
- OWASP Top 10
- Authentication & authorization
- API security
- Injection vulnerabilities
- Secure software development
- Threat modeling
- Strong cloud and infrastructure security experience across:
- AWS/GCP
- Kubernetes and containers
- IAM and secrets management
- Network security
- Container security
- Runtime protection
- Multi-tenant environments
- Experience designing and securing systems that executeuntrusted or user-generated code.
- Ability to work across application, infrastructure, and platform layers rather than operating within a single security domain.
- Experience partnering closely with engineering and product teams and driving security initiatives from architecture through implementation.
What Sets You Apart
- Experience securingAI/LLM or agentic systems.
- Experience with prompt injection, output validation, and AI-specific threat models.
- Experience with sandboxed or ephemeral execution environments.
- Experience securing high-scale, multi-tenant platforms.
- Experience building security systems rather than only identifying vulnerabilities.
- Strong systems thinking — you understand how an application vulnerability can become an infrastructure or runtime risk, and vice versa.
- Experience building scalable security solutions for environments wheremillions of applications or workloads may be generated and executed dynamically.
Why Emergent
- Build security forAI systems that build software.
- Solve security problems spanning application, cloud, infrastructure, and AI systems.
- Operate at global scale across millions of applications and users.
- Work directly with founders and core engineering teams.
- Solve security challenges that are emerging with autonomous software creation.
Benefits and Perks:
- Daily Meals: Lunch and Dinner provided
- Family Insurance: 5 Lakhs worth of coverage for you and your family
- Unlimited Paid Time Off: Take the time you need to recharge and come back refreshed
- Flexible Working Hours: Work arrangements that fit your life and commitments
Let's build the future of software together.
Staff Engineer - Security · Emergent Labs