Colossus Technologies Group logo

Staff AI Security Engineer

Colossus Technologies Group

RemoteleadPosted 4h ago

Job description

Senior / Staff Product Security Engineer

Colossus Technologies Group is partnering with a rapidly growing technology company operating at the intersection of financial services and emerging technology to expand its Product Security organization.

We’re looking for a hands-on Product Security Engineer who enjoys building security into products rather than simply reviewing them after the fact. This person will work closely with software engineers on secure architecture and design, perform deep technical security assessments, and build tooling that makes security easier to scale across the engineering organization.

This is a highly technical role for someone who can move comfortably between application security and software engineering.

What you’ll work on:

  • Threat modeling and security architecture reviews for new products and services

  • Hands-on code review, vulnerability research and application penetration testing

  • Building internal security tooling and automation in Python, Go or similar languages

  • Developing automated approaches to vulnerability discovery and remediation

  • Improving SAST, DAST and software supply-chain security

  • Security controls and tooling integrated directly into CI/CD and the SDLC

  • Applying AI/agentic systems to security engineering, code analysis and security automation

  • Partnering directly with engineering teams to develop secure-by-default patterns

What we’re looking for:

  • 5+ years of hands-on application, product or software security experience

  • Strong software engineering or scripting ability

  • Experience building security tooling rather than exclusively operating commercial products

  • Strong understanding of modern web applications, APIs and cloud-native architectures

  • Experience with threat modeling, secure code review and offensive application testing

  • Ability to work directly with senior software engineers on complex technical problems

Especially interesting:

  • AI/LLM or agent security

  • Building AI-assisted security tooling

  • Software supply-chain security

  • AWS and Kubernetes

  • Fintech, payments, crypto or another highly regulated environment

Remote – United States

Full-time

Senior and Staff-level opportunities available

Highly competitive base + bonus + equity