AI Security Engineer

Wave
2dRemote

About The Position

Wave is now the largest financial institution in Senegal and Côte d'Ivoire, with millions of users, growing rapidly year-on-year. And, we’re still in the early days of our product roadmap and potential impact on people’s everyday lives. We’re looking for an experienced security engineer who’s independent, excited about getting things done, and ready to hit the ground running. You'll primarily be responsible for our application security, working with our product teams to work on new systems to enhance our security posture. Our customers trust us with their money, and you’ll be at the forefront of making sure we retain that trust! This broadly scoped role will allow you to get your hands on many different types of security projects, from direct application security to helping our infrastructure team think about security for our databases. As we integrate AI-powered agents into our engineering and operations workflows, you'll help define and enforce the guardrails around how we use them safely. This includes securing agentic tooling against prompt injection, excessive permissions, and data exfiltration — and building the policies and technical controls to govern AI usage across the company. Some experience with common industry certifications like ISO-27001 and PCI-DSS would be beneficial, although you won’t be expected to run or oversee audits. Our to-do list changes constantly, but here are some recent projects and activities: Design our agentic SIEM/SecOps pipelines to evaluate and tune AI-driven triage, alerting, and response automation Secure our MCP integrations against prompt injection, tool misuse, and credential exposure, tune and maintain code security review agents tailored to Wave's codebase, threat model, and regulatory environment Develop internal AI governance standards covering acceptable use, data handling, and audit requirements for LLM-powered tools Centralise application-level login and permissions enforcement Help us increase our posture around secret management Security review of our public-facing APIs

Requirements

  • Minimum of 5 years of professional experience with a minimum of 2 years of it spent in a security-related role.
  • Strong Experience with Python.
  • Fluent English.

Nice To Haves

  • Some experience with common industry certifications like ISO-27001 and PCI-DSS would be beneficial, although you won’t be expected to run or oversee audits.
  • Are excited about finding the right balance between security and velocity.
  • Have opinions on how to secure agentic AI systems and want to put them into practice.
  • Are interested in building governance frameworks for AI usage in a regulated financial services environment.
  • Have experimented with LLM-based security tooling and understand both the promise and the failure modes.
  • Push through hard problems without giving up.
  • Have experience remediating non-conformities.
  • Enjoy helping other engineers understand and implement secure patterns.
  • Are not afraid to take on complicated systems.
  • Are excited to work on lots of different security-related work, from audits to code refactors.
  • Work to make things easier for the next engineer who will touch your code.
  • Always try to improve as a programmer and colleague.
  • Are interested in security-focused source code review and penetration testing.
  • Have an interest in growing and mentoring a team.

Responsibilities

  • Design our agentic SIEM/SecOps pipelines to evaluate and tune AI-driven triage, alerting, and response automation
  • Secure our MCP integrations against prompt injection, tool misuse, and credential exposure, tune and maintain code security review agents tailored to Wave's codebase, threat model, and regulatory environment
  • Develop internal AI governance standards covering acceptable use, data handling, and audit requirements for LLM-powered tools
  • Centralise application-level login and permissions enforcement
  • Help us increase our posture around secret management
  • Security review of our public-facing APIs

Benefits

  • Wave provides a yearly $1,200 stipend to support coworking meetups with teammates.
  • Remote team members are expected to travel to our operational markets (e.g. Senegal or Côte d'Ivoire) at least once a year. Exceptions apply, but we’ve found this key to understanding our users and product.
  • Our salaries are competitive and are calculated using a transparent formula. For this role, depending on your level and location, we offer a salary of up to $227,900 USD, plus a generous equity package.
  • Subsidized health insurance for you and your dependents and retirement contributions (both vary from country to country).
  • 6 months of fully paid parental leave and subsidized fertility assistance.
  • Flexible vacation, with most folks taking between 21-30 days exclusive of statutory holidays.
  • $10,000 annual charitable donation matching.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

101-250 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service