Arize AI - DevSecOps Engineer (TypeScript & Agentic AI)
Requirements
• 4+ years of hands-on experience in DevSecOps, application security, or platform security roles. • Strong working knowledge of TypeScript and the Node.js ecosystem. • Practical experience securing cloud infrastructure (AWS, GCP, or Azure), containers, and Kubernetes. • Fluency with modern CI/CD tooling (GitHub Actions, or similar) and IaC (Terraform, Pulumi). • Genuine curiosity about — and ideally hands-on experience with agentic AI systems: LLM tool use, function calling, MCP, agent frameworks (LangGraph, OpenAI Agents SDK, Anthropic SDK, etc.), and the emerging security patterns around them. • A collaboration-first mindset. You write clearly, give feedback kindly, and would rather pair on a problem than throw a Jira ticket over the wall. • Comfort with ambiguity — the security playbook for agentic systems is being written in real time, and you want to help write it. • Experience with prompt-injection research, LLM red-teaming, or AI safety/evals work. • Contributions to open-source, especially in the TypeScript or AI or Security ecosystems. • Familiarity with SOC 2, ISO 27001, or similar compliance frameworks — and opinions on how to satisfy them without crushing engineering velocity. • Background in incident response or detection engineering at a fast-moving company. • The estimated annual salary for this role is between $150,000 - $200,000, plus a competitive equity package. Actual compensation is determined based upon a variety of job related factors that may include: transferable work experience, skill sets, and qualifications. Total compensation also includes a comprehensive benefit package, including: medical, dental, vision, 401(k) plan, unlimited paid time off, generous parental leave plan, and others for mental and wellness support. • While we are a remote-first company, we have opened offices in New York City and the San Francisco Bay Area, as an option for those in those cities who wish to work in-person. For all other employees, there is a WFH monthly stipend to pay for co-working spaces.
Responsibilities
• 🔧Technical Support & Systems Management • Provide Tier 1 and Tier 2 support for a fully remote workforce using MacBooks exclusively. • Manage and support user accounts, access provisioning, and integrations across: - Google Workspaces (SSO-enabled) - Office 365 - Zoom - Atlassian tools (Jira, Confluence, etc.) - GitHub • Administer and enforce device security and compliance policies through Kandji MDM and Bitdefender. • Handle troubleshooting of hardware, software, VPN (OpenVPN), and cloud service issues. • Maintain and document standard operating procedures for IT systems and user support. • 🔐 Security & Compliance • Support audits and evidence gathering for ISO 27001, SOC 2 Type II, and PCI DSS compliance. • Assist in responding to security questionnaires from prospects and partners as part of the sales process. • Monitor system logs and alerts to detect and remediate potential threats. • Ensure compliance with identity and access management protocols across all integrated platforms. • 📊 Process Improvement & Automation • Assist in tracking and reporting IT and security metrics for internal review and audits. • Identify opportunities for automating manual tasks and improving operational efficiency. • Help manage asset inventory, software licenses, and endpoint lifecycle tracking. • 🤝 Collaboration & Communication • Work closely with InfoSec, Sales, and Engineering to support cross-functional initiatives. • Collaborate with internal stakeholders to understand support needs and implement best practices for tooling and security. • Contribute to internal documentation and user training materials.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT