Jobs
>
California

    Lead - Security Engineer (AI Security) - California, United States - Cyber Crime

    Cyber Crime
    Cyber Crime California, United States

    3 weeks ago

    Default job background
    Description
    About Freshworks

    Freshworks makes it fast and easy for businesses to delight their customers and employees.

    We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end user.

    More than 50,000 companies from startups to public companies around the world use Freshworks software-as-a-service to enable a better customer experience (CRM) and employee experience (ITSM, HRSM).

    Headquartered in San Mateo, California, Freshworks has a dedicated team operating from 13 global locations to serve 50,000+ customers including Bridgestone, Chargebee, DeliveryHero, ITV, Klarna, Multichoice, OfficeMax, TaylorMade and Vice Media.

    Freshworks transforms the way world-class organizations collaborate with customers and co-workers.

    The suite includes Freshdesk (omni-channel customer support), Freshsales (sales automation), Freshmarketer (marketing automation), Freshservice (IT service desk), Freshteam (HR management system).

    Freshworks has received numerous accolades including 2019 Startup of the Year form Economic Times, #16 ranking on the Forbes' Cloud 100 list and #22 on the Battery Ventures/Glassdoor Best Places to Work in 2020.

    Our suite of products has also been recognized by analysts including the Gartner Magic Quadrants for CRM Customer Engagement, IT Service Management and Sales Force Automation.


    While Freshworks has had incredible organic growth over the last few years, the company also has made targeted acquisitions that add critical capabilities to the portfolio including Natural Language Processing, Chatbots, Machine Learning, Social and Messaging Transformation.

    Freshworks has raised over $400 million in capital and is funded by Accel, CapitalG, Sequoia Capital and Tiger Global Management.

    More information is available at


    At Freshworks, we are creating a global workplace that enables everyone to find their true potential, purpose and passion, irrespective of their background, gender, race, sexual orientation, religion or ethnicity.

    We are committed to providing equal opportunity for all and believe that diversity in the workplace creates a more vibrant, richer work environment that advances the goals of our employees, our communities and our business.

    Job Description

    Job Description
    Purpose of the Role
    In today's world, any organisation or individual are constantly threatened by cyber attacks. This is proven
    through a yearly rise in security incidents and data breaches.
    We at Freshworks are committed to preventing such incidents and providing a secure environment for our
    customers to run their businesses.
    Freshworks is looking for a passionate and self-driven application security engineer who can work
    independently and collaboratively to enable development teams to build secure products. You will be
    pivotal in integrating and advancing security by working with Developers, Product Owners, Program
    Managers, and Security Engineers.
    As part of the security engineering team, you will advocate secure AI design principles, build frameworks
    to automate AI security testing and conduct security assessments on LLMs/GenAI features to unearth
    critical vulnerabilities. We also expect you to deliver pieces of training to development and QA teams.
    Responsibilities

    Security Assessments:

    • Examine the products in detail to discover vulnerabilities and collaborate with the other security
    engineers to practically demonstrate the exploitability and risk factors.

    • Be on the forefront of emerging vulnerabilities/threats which could affect Freshworks products
    through independent research and study. Engage with the developers in developing AI security
    solutions and mitigation plans and ensure they are implemented per policy.

    • Drive thematic security/privacy assessments on LLMs/GenAIs to discover and exploit unique
    risks having a severe business impact.

    • Engage with the development teams to conduct secure design reviews/threat modelling
    exercises to enumerate threats and mitigation strategies in the AI/ML services.

    • Enable developers to gain knowledge of AI security best practices by conducting focused
    workshops.

    Secure Coding:

    • Manage integration and automation of AI security checks in the DevOps pipeline.
    • Build secure coding principles for AI/ML services and propagate them across the development
    community.

    • Be the go-to person for developers in solving critical issues relating to secure product
    development.

    Training:

    • Deliver training programs at various levels in the organisations.
    • Conduct workshops/security tech talks to disseminate security knowledge and awareness.
    Lead Responsibilities

    • Be a role model for the team and provide a healthy platform for the team to learn and grow.
    • Collaborate and engage with the cyber security leadership team and provide inputs for decision
    support.

    • Play the role of solution architect in designing and implementing security engineering programs.
    Qualifications

    Basic Qualification

    • Master or Bachelor of Engineering in Computer Science / Engineering, Masters in Computer
    Science, Bachelor of Science in Computer Science.

    • 7 to 10 years of application security experience; 4+ years of software development experience is
    desirable.

    • Prior experience in building and deploying ML systems Familiarity with Machine learning
    algorithms

    • Proficiency with database systems and schema design encompassing SQL and NoSQL
    databases.

    • Good knowledge of multiple vulnerability classes, including cross-site scripting, SQL Injection,
    code injection,prompt injection, and Model Poisoning.

    • Good knowledge of SAML / OAuth / Open ID Connect.
    • Good knowledge of programming/scripting languages such as Java and Python.
    • Good knowledge relating to services/technology relating to the cloud .
    • Ability to automate security testing and improve productivity in security assessments.
    • Good understanding and knowledge of web frameworks and architecture.
    • Ability to communicate and interpret security vulnerabilities to various audiences, such as
    development and management teams.

    Advanced Qualification (Good to have, not a Must have)

    • Experience in deploying ML projects in production systems with substantial individual
    contributions

    • Experience conducting security assessments in cloud platforms (SaaS, PaaS, IaaS).
    • Published CVEs / research papers/articles about the security of the application layer and related
    protocols.
    Additional Information


    At Freshworks, we are creating a global workplace that enables everyone to find their true potential, purpose, and passion irrespective of their background, gender, race, sexual orientation, religion and ethnicity.

    We are committed to providing equal opportunity for all and believe that diversity in the workplace creates a more vibrant, richer work environment that advances the goals of our employees, communities and the business.

    Explore more InfoSec / Cybersecurity career opportunities


    Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

    #J-18808-Ljbffr

  • Owasp10

    Security Engineer

    9 hours ago


    Owasp10 California, United States

    Databook stands at the cutting edge of generative AI, driving a revolution in strategic sales and relationship management with our groundbreaking innovation, DatabookGPT. DatabookGPT represents a significant leap forward, building on the success of our Strategic Relationship Mana ...


  • Amazon California, United States

    Security Engineer II, Application Security · Job ID: | Services LLC · In Amazon Stores, we ship some of the widest arrays of technology found at any company. From to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the ...


  • Oportun California, United States

    Oportun (Nasdaq: OPRT) is a digital banking platform that puts its 1.9 million members' financial goals within reach. With intelligent borrowing, savings, budgeting, and spending capabilities, Oportun empowers members with the confidence to build a better financial future. Since ...

  • NerdWallet

    Security Engineer II

    2 weeks ago


    NerdWallet California, United States

    San Francisco, CA or Remote (Based in the U.S.) · NerdWallet · Make smarter financial decisions with NerdWallet's side-by-side comparisons, objective ratings and reviews, customized insights, and trusted expertise. · View company page · We are seeking a Security Engineer II t ...


  • Cyber Crime California, United States

    The Wikimedia Foundation is looking for a Senior Security Engineer to join the Product Security team to build new security technologies to protect Wikipedia and our other projects. This is a very hands-on engineering role working alongside our other security team members to desig ...


  • Fdhaero California, United States

    Salary Range: · $140,000.00 To 150,000.00 Annually · FDH Aero · is a trusted global supply chain partner for aerospace and defense companies. With more than 55 years of experience, it specializes in c-class components that include hardware, electrical, chemical, and consumable ...


  • Oath Inc California, United States

    Security Software Engineer page is loaded · Security Software Engineer · Apply · locations · Ireland - Remote · time type · Full time · posted on · Posted 9 Days Ago · job requisition id · JR · It takes powerful technology to connect our brands and partners with an aud ...


  • Everlaw California, United States

    With our career opportunities we offer competitive compensation and a comprehensive benefits package that includes medical, dental, wellness program, paid parental leave, professional development, and a fully stocked kitchen. · Everlaw is looking for a Staff Security Engineer. Re ...


  • EmergencyMD California, United States

    Evolver is seeking a Network Security Engineer. Candidate must be local to San Francisco Bay area to physically support installations and troubleshoot incidents at the local office communication rooms and data centers. This position will require candidate to be on an onsite/remot ...


  • Wikimedia Foundation California, United States

    Senior Security Engineer · Summary · The Wikimedia Foundation is looking for a Senior Security Engineer to join the Product Security team to build new security technologies to protect Wikipedia and our other projects. This is a very hands-on engineering role working alongside o ...


  • City of New York California, United States

    The City of New York Department of Sanitation's Bureau of Information Technology (BIT) is responsible for the data processing functions and operations of systems that provide operational, analytical, and managerial support functions, as well as IT resource management, for DSNY. W ...


  • Material Security, Inc. California, United States

    Job Description · As a · Staff Security Engineer · at Material Security, you'll be part of an early, fast-growing team of experienced, world-class engineers. You'll be analyzing Material attack surface area, working to understand viable attack paths, and using first-class meth ...


  • San Francisco Bay Area Rapid Transit District (BART) California, United States

    Pay Rate · Non-Represented Pay Band E07 · Annual Salary: $113, Minimum) - $172, Maximum) · The negotiable starting salary offer will be between $113,621.00/annually - $164,346.25/annually, commensurate with education and experience. · Reports To · Manager of Cyber Security · ...


  • Upwind Security, Inc. California, United States

    Upwind is a place where · opportunities · happen · At Upwind, we are a team of hands-on, problem solvers and doers. · We believe in empowering organizations to run their cloud environments securely and efficiently to accelerate their businesses. · Working at Upwind is an exhil ...


  • Evidation Health California, United States

    ** Work from where you are · - considering candidates in San Mateo, Santa Barbara, or US-based remote** · About Evidation · Evidation creates new ways to measure and improve health in everyday life—making proactive, personalized, and truly human-centered healthcare possible. B ...


  • Infojini California, United States

    Job Title: Network Administrator (ITS Administrator, Sr.) · Location: Orange, 92868 California · Duration: Full time · Work Arrangement: Partial Telework-2 days in office (Tues/Thurs) · Description: · Client is seeking a highly motivated and experienced Network Administrator (ITS ...


  • RingCentral California, United States

    Security Ops Infrastructure Engineer page is loaded · Security Ops Infrastructure Engineer · Apply · locations · Bangalore, India · time type · Full time · posted on · Posted Yesterday · job requisition id · R071315 · Say hello to possibilities. · It's not everyday tha ...


  • Parsons Company California, United States

    In a world of possibilities, pursue one with endless opportunities. Imagine NextWhen it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with intelligent, diverse people sharing a common quest. Imagine a workplace wh ...


  • ActioNet California, United States

    Information System Security Engineer (ISSE) · | · Req#3380 · ActioNet has an opportunity for an · Information System Security Engineer (ISSE) · requiring a · Secret clearance · located in San Diego County, CA.. ActioNet is an IT service provider and solutions integrator he ...


  • Binti Inc California, United States

    Binti builds modern software to help every child have a safe, loving, and stable family. Working with county and state governments across 36 states, Binti's tools improve the child welfare system. The 500+ agencies using Binti serve about 42% of children in child welfare in the U ...