Senior Software Engineer, Product & AI Security

Gusto, Inc.San Francisco, CA
5h$186,000 - $210,000Hybrid

About The Position

We’re hiring two Senior Software Engineers for our Product & AI Security Engineering team. You’ll own and evolve the security foundations behind Gusto’s products and AI/LLM experiences, from authentication and authorization at scale to securing core services and data. You’ll partner across the company to solve high-impact security problems and ship secure, reliable, AI-powered features quickly and safely. The Product & AI Security Engineering team sits at the intersection of product, platform, and AI at Gusto. We prioritize high‑leverage projects that reduce risk, harden our foundations, and unlock faster delivery for other teams. We build security tools and services, embed with partner teams when needed, and set best practices for authentication, authorization, and safe data handling, especially as we adopt AI and LLMs.

Requirements

  • 7+ years of experience as a backend engineer, building and operating large-scale server-side services and APIs
  • Deep experience with authentication and authorization, such as SAML/SSO, RBAC, and ABAC.
  • Proven track record building secure, highly available distributed systems and services.
  • Hands-on experience with modern security tooling and practices (e.g., SAST, DAST, SIEM, SCA).
  • Proficiency in one or more of: Ruby, Python, Kotlin, JavaScript/TypeScript
  • Experience with AI tools for coding (ex: Cloud Code, Cursor, Github Copilot)
  • Strong collaboration skills and comfort breaking down complex, cross‑cutting security and AI problems into clear, practical solutions.

Nice To Haves

  • experience with authorization platforms/policy engines (e.g., Open Policy Agent, SpiceDB) and technologies like GraphQL, gRPC, Kubernetes, Terraform, Traefik, Flask, Okta

Responsibilities

  • Design, build, and operate authentication and authorization systems that work at Gusto scale.
  • Strengthen core services and data protections, including access control, storage, and APIs.
  • Detect and mitigate account takeover and other abuse, improving safety for our customers.
  • Build security platforms and tooling that help product and AI teams move quickly and safely.
  • Own and improve high-availability security and identity services that other teams depend on.
  • Tackle ambiguous AI/LLM security problems from threat modeling to practical mitigations.
  • Provide leadership in promoting security and software engineering excellence.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service