- Страна
- США
- Зарплата
- 186 000 $ – 222 000 $
Откликайтесь
на вакансии с ИИ

Security Software Engineer, Product and AI
Отличная вакансия в известной компании с прозрачной вилкой зарплаты, интересным стеком (AI/LLM) и сильной инженерной культурой. Высокий балл за четкие требования и социальную значимость продукта.
Сложность вакансии
Высокая сложность обусловлена требованием более 7 лет опыта в backend-разработке и глубокой экспертизы в специфических протоколах безопасности (SAML, RBAC, ABAC), а также необходимостью работать на стыке безопасности и ИИ.
Анализ зарплаты
Предлагаемая зарплата ($186k - $222k) полностью соответствует рыночным ожиданиям для Senior-позиций в Сан-Франциско, находясь в верхнем сегменте медианы для инженеров по безопасности.
Сопроводительное письмо
I am writing to express my strong interest in the Senior Security Software Engineer position at Gusto. With over 7 years of experience in backend engineering and a deep focus on authentication and authorization systems, I am excited about the opportunity to strengthen the security foundations of Gusto’s products and AI initiatives. My background in building highly available distributed systems and implementing RBAC/ABAC models aligns perfectly with your team's mission to harden core services while enabling rapid delivery.
In my previous roles, I have successfully integrated modern security tooling and tackled complex identity challenges at scale. I am particularly drawn to Gusto's proactive approach to AI/LLM security and threat modeling. I am confident that my proficiency in Ruby and Python, combined with my experience in cloud-native security practices, will allow me to contribute immediately to your Product & AI Security Engineering team and help protect the 400,000+ small businesses you serve.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в gusto уже сейчас
Присоединяйтесь к Gusto, чтобы создавать безопасное будущее для малого бизнеса с помощью передовых технологий ИИ!
Описание вакансии
About Gusto
At Gusto, we're on a mission to grow the small business economy. We handle the hard stuff—like payroll, health insurance, 401(k)s, and HR—so owners can focus on their craft and customers. With teams in Denver, San Francisco, and New York, we’re proud to support more than 400,000 small businesses across the country, and we’re building a workplace that represents and celebrates the customers we serve. Learn more about our Total Rewards philosophy.
About the Role:
We’re hiring two Senior Software Engineers for our Product & AI Security Engineering team. You’ll own and evolve the security foundations behind Gusto’s products and AI/LLM experiences, from authentication and authorization at scale to securing core services and data. You’ll partner across the company to solve high-impact security problems and ship secure, reliable, AI-powered features quickly and safely.
About the Team:
The Product & AI Security Engineering team sits at the intersection of product, platform, and AI at Gusto. We prioritize high‑leverage projects that reduce risk, harden our foundations, and unlock faster delivery for other teams. We build security tools and services, embed with partner teams when needed, and set best practices for authentication, authorization, and safe data handling, especially as we adopt AI and LLMs.
Here’s what you’ll do day-to-day:
- Design, build, and operate authentication and authorization systems that work at Gusto scale.
- Strengthen core services and data protections, including access control, storage, and APIs.
- Detect and mitigate account takeover and other abuse, improving safety for our customers.
- Build security platforms and tooling that help product and AI teams move quickly and safely.
- Own and improve high-availability security and identity services that other teams depend on.
- Tackle ambiguous AI/LLM security problems from threat modeling to practical mitigations.
- Provide leadership in promoting security and software engineering excellence.
Here’s what we're looking for:
- 7+ years of experience as a backend engineer, building and operating large-scale server-side services and APIs
- Deep experience with authentication and authorization, such as SAML/SSO, RBAC, and ABAC.
- Proven track record building secure, highly available distributed systems and services.
- Hands-on experience with modern security tooling and practices (e.g., SAST, DAST, SIEM, SCA).
- Proficiency in one or more of: Ruby, Python, Kotlin, JavaScript/TypeScript
- Experience with AI tools for coding (ex: Cloud Code, Cursor, Github Copilot)
- Bonus: experience with authorization platforms/policy engines (e.g., Open Policy Agent, SpiceDB) and technologies like GraphQL, gRPC, Kubernetes, Terraform, Traefik, Flask, Okta.
- Strong collaboration skills and comfort breaking down complex, cross‑cutting security and AI problems into clear, practical solutions.
Our cash compensation amount for this role is targeted at $186,000-222,000 in the San Francisco Bay Area. Stock equity is additional. Final offer amounts are determined by multiple factors including candidate experience and expertise and may vary from the amounts listed above.
Gusto has physical office spaces in Denver, San Francisco, and New York City. Employees who are based in those locations will be expected to work from the office on designated days approximately 2-3 days per week (or more depending on role). The same office expectations apply to all Symmetry roles, Gusto's subsidiary, whose physical office is in Scottsdale.
Note: The San Francisco office expectations encompass both the San Francisco and San Jose metro areas.
When approved to work from a location other than a Gusto office, a secure, reliable, and consistent internet connection is required. This includes non-office days for hybrid employees.
Our customers come from all walks of life and so do we. We hire great people from a wide variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger. If you share our values and our enthusiasm for small businesses, you will find a home at Gusto.
Gusto is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Gusto considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Gusto is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. We want to see our candidates perform to the best of their ability. If you require a medical or religious accommodation at any time throughout your candidate journey, please fill out this form and a member of our team will get in touch with you.
Gusto takes security and protection of your personal information very seriously. Please review our Fraudulent Activity Disclaimer.
Personal information collected and processed as part of your Gusto application will be subject to Gusto's Applicant Privacy Notice.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Ruby
- Python
- Kotlin
- JavaScript
- TypeScript
- SAML
- SSO
- RBAC
- ABAC
- SAST
- DAST
- SIEM
- SCA
- GraphQL
- gRPC
- Kubernetes
- Terraform
- Traefik
- Flask
- Okta
- Open Policy Agent
- LLM
Возможные вопросы на собеседовании
Проверка глубоких знаний протоколов аутентификации, указанных в требованиях.
Расскажите о наиболее сложной проблеме масштабирования системы аутентификации или авторизации (например, SAML или RBAC), с которой вы столкнулись, и как вы её решили?
Вакансия подразумевает работу с ИИ-сервисами. Важно понять, как кандидат оценивает новые риски.
Какие специфические угрозы безопасности вы видите при внедрении LLM в продукт и какие превентивные меры вы бы предложили для защиты данных пользователей?
Оценка навыков проектирования отказоустойчивых систем.
Как вы обеспечиваете высокую доступность (high availability) для критически важных сервисов идентификации, которые являются блокирующими для остальных команд?
Проверка практического опыта использования инструментов безопасности.
Опишите ваш опыт интеграции инструментов SAST/DAST в CI/CD пайплайны. Как вы минимизируете количество ложноположительных срабатываний для разработчиков?
Оценка лидерских качеств и умения работать в команде.
Как вы подходите к продвижению культуры безопасности среди продуктовых команд, которые стремятся выпускать фичи как можно быстрее?
Похожие вакансии
Senior Cybersecurity Engineer
Sr. Manager, Identity & Access Management
Senior Physical Security Manager
Senior Security Engineer - GRC
Senior IT Auditor – PCI QSA
Senior Security Architect (Raleigh, NC) - Mid-Atlantic region
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США
- Зарплата
- 186 000 $ – 222 000 $