Lead Security Engineer

3 Hours ago • 6 Years + • Cyber Security

Job Summary

Job Description

interface.ai is seeking a Lead Security Engineer to lead and scale application and cloud security programs. The role involves designing and enforcing security best practices across the codebase, cloud infrastructure, development lifecycle, and production environments. Key responsibilities include performing security assessments, building secure SDLC practices, guiding teams in secure design patterns, monitoring and remediating vulnerabilities, and designing secure AWS configurations. The engineer will champion a shift-left security approach, collaborate on architectural decisions, define secure defaults, and support compliance initiatives. This role requires a developer-centric approach, continuous security testing integration, and proactive updating of controls.
Must have:
  • 6+ years in security engineering (app & cloud)
  • Proficiency in Java, Python, JavaScript
  • In-depth app security, threat modeling, SDLC knowledge
  • Deep AWS security architecture and services knowledge
  • Experience with DevSecOps tools (SAST, DAST)
  • Hands-on access control, encryption, observability
  • Excellent communication skills
  • Bachelor's in Computer Science/Info Security
Good to have:
  • Experience in financial services, healthcare, government
  • Familiarity with policy-as-code
  • Familiarity with secrets management tools
  • Familiarity with container security
  • OSCP, AWS Security Specialty, or CISSP certifications
Perks:
  • Security is fundamental to success and product trust
  • Empowered to define best-in-class standards
  • Work in an organization that values speed and security
  • Backed by world-class engineering team and product-first culture

Job Details

interface.ai is the industry's-leading specialized AI provider for banks and credit unions, serving over 100 financial institutions. The company's integrated AI platform offers a unified banking experience through voice, chat, and employee-assisting solutions, enhanced by cutting-edge proprietary Generative AI.

Our mission is clear: to transform the banking experience so every consumer enjoys hyper-personalized, secure, and seamless interactions, while improving operational efficiencies and driving revenue growth.

interface.ai offers pre-trained, domain-specific AI solutions that are easy to integrate, scale, and manage, both in-branch and online. Combining this with deep industry expertise, interface.ai is the AI solution for banks and credit unions that want to deliver exceptional experiences and stay at the forefront of AI innovation.

About the Role

We are seeking a Lead Security Engineer to own and scale our Application and Cloud Security programs. You will be responsible for designing and enforcing security best practices across our codebase, cloud infrastructure, development lifecycle, and production environments.

This role will partner closely with engineering, product, and compliance teams to embed security into every stage of our build, deploy, and delivery processes. You are expected to drive a shift-left security culture, where secure design, secure development, and proactive detection are core to how we build and operate.

Key Responsibilities

Application Security

  • Perform security assessments across our application stack, including threat modeling, code reviews, dynamic scanning, and penetration testing.
  • Build and maintain secure SDLC practices, including integration of security checks into CI/CD pipelines.
  • Guide teams in secure design patterns, including secure authentication, input validation, access control, session management, and secure storage.
  • Continuously monitor and remediate vulnerabilities in source code and dependencies (SCA, SAST, DAST).
  • Partner with engineering teams to define and enforce coding standards aligned with OWASP and CWE guidelines.

Cloud & Infrastructure Security

  • Design and maintain secure configurations for AWS environments, including networking, identity management (IAM), encryption, and logging.
  • Implement and manage security services such as GuardDuty, Inspector, Security Hub, and other cloud-native tools.
  • Define and enforce infrastructure-as-code (IaC) security controls using tools such as Terraform, CloudFormation, or policy-as-code frameworks (e.g., OPA, Sentinel).
  • Lead efforts in runtime protection, including workload scanning, intrusion detection, and anomaly alerting.
  • Ensure centralized, secure log collection, monitoring, and alerting across all infrastructure components.

Security Architecture & Best Practices

  • Champion a shift-left approach to security—collaborating with developers early in the SDLC and providing actionable feedback during design, build, and review phases.
  • Collaborate with product managers and infrastructure leads to ensure security is embedded into architectural decisions, particularly for high-risk features or regulated workflows.
  • Define and promote secure defaults, least-privilege access, and zero-trust architectural principles.
  • Ensure strong key management and encryption standards are applied across data at rest, in transit, and in use.

Governance, Risk & Compliance

  • Support compliance initiatives by building and documenting enforceable security controls.
  • Work with auditors and risk teams to demonstrate maturity of security processes and ongoing improvements.
  • Establish internal security policies, operational procedures, and regular audit activities.

What We Expect

  • Lead the adoption of security by design across engineering functions.
  • Embed continuous security testing into our CI/CD pipelines.
  • Maintain a developer-centric approach to security—minimizing friction while enforcing strong protections.
  • Build scalable policies and automation for secrets management, code signing, and environment hardening.
  • Keep pace with evolving security threats, technologies, and tools, proactively updating controls and detection mechanisms.
  • Represent security posture to executive and customer stakeholders with clarity and confidence.

What You Bring

Required

  • 6+ years of experience in security engineering with a primary focus on application and cloud security
  • Proficiency with programming languages like, Java, Python, JavaScript and web technologies (e.g., HTML, CSS, SQL).
  • In-depth knowledge of application security vulnerabilities, threat modeling, and SDLC integrations
  • Deep familiarity with Cloud security architecture and services (AWS - IAM, VPC, KMS, GuardDuty, CloudTrail, etc.)
  • Experience with DevSecOps tools and practices, including SAST, DAST, container scanning, and infrastructure scanning
  • Hands-on experience in implementing industry best practices in access control, encryption, and security observability
  • Excellent communication skills, with the ability to collaborate across engineering, product, and compliance teams
  • Bachelor's degree in Computer Science, Information Security, or a related field.

Preferred

  • Experience in high-compliance industries such as financial services, healthcare, or government
  • Familiarity with policy-as-code, secrets management tools, and container security
  • Certifications such as OSCP, AWS Security Specialty, or CISSP

Why Join Us

  • Security is not a checkbox—it is fundamental to our success and product trust.
  • You will be empowered to define best-in-class standards that scale across financial AI products, and dynamic customer environments.
  • You will work in an organization that values speed and security, backed by a world-class engineering team and product-first culture.

At interface.ai, we are committed to providing an inclusive and welcoming environment for all employees and applicants. We celebrate diversity and believe it is critical to our success as a company. We do not  discriminate on the basis of race, color, religion, national origin, age, sex, gender identity, gender expression, sexual orientation, marital status, veteran status, disability status, or any other legally protected status. All employment decisions at Interface.ai are based on business needs, job requirements, and individual qualifications. We strive to create a culture that values and respects each person's unique perspective and contributions. We encourage all qualified individuals to apply for employment opportunities with Interface.ai and are committed to ensuring that our hiring process is inclusive and accessible.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in India

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Cyber Security Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Interface AI is a leading Conversational AI SaaS company focused on providing cutting-edge solutions to the financial services industry. We serve close to 100 financial institutions today. We are one of the fastest-growing AI + financial technology companies in the industry, and we were recently featured as one of the top 100 fastest-growing fintech companies in Silicon Valley. Our mission is to empower every financial institution to scale efficiently and help its customers achieve financial wellness.

San Jose, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (Remote)

San Jose, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Interface AI

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug