Senior Security Engineer

Synthbee
Synthbee

Software Engineering · Full-time

Posted on Oct 8, 2026

ABOUT SYNTHBEE

SynthBee was founded to build safe, scalable, and reliable Collaborative Intelligence™ to amplify human innovation. We apply our novel computing intelligence platform to complex, mission-critical systems across healthcare, defense, aerospace, automotive, robotics, security, climate, and more—for customers who demand reliability, transparency, and ethics above all.

ABOUT THE ROLE

We’re looking for a Senior Security Engineer to design, build, and operate the technical controls that make our posture real and durable. This role will own the security stack end to end, SIEM, EDR, DLP, vulnerability management, identity, and cloud configuration, along with the automation that ties it together.

You will engineer the technical controls behind SOC 2 and CMMC / NIST SP 800-171 so that audit readiness is built into the systems instead of assembled by hand. You'll also support security for AI platforms, lead as a senior responder during incidents, and automate identity, access and remediation work so it scales without constant manual effort.

This is a hands-on engineering role where you will spend most of your time in code, configuration, and architecture.

WHAT YOU'LL DO

Build and operate the security stack

  • Own the architecture, deployment, tuning, and daily operation of security tooling, e.g., SIEM, EDR, DLP, and vulnerability management platforms
  • Automate response to routine alerts so engineering judgment goes to the cases that need it
  • Close logging and telemetry gaps across cloud, endpoint, applications, and network before incidents

Engineer controls, not just document them

  • Design and implement the technical controls behind SOC 2 and CMMC / NIST SP 800-171, such as access control, encryption, logging, configuration management, and change control.
  • Automate evidence generation and continuous control monitoring so audit readiness is a property of the system rather than a quarterly scramble
  • Define and enforce hardened baselines for servers, endpoints, and cloud resources, and detect and correct drift
  • Build security into infrastructure-as-code and CI/CD pipelines alongside the engineering and software development teams

Secure the AI stack

  • Support security for the AI platforms (model supply chain, inference serving, retrieval pipelines and agent tooling) across the cloud environment and the isolated enclaves
  • Contribute to inference-layer security, including endpoint authentication and authorization, tenant and sensitivity isolation, and resource limits that hold up when an agent loop misbehaves
  • Support controls on what agents can do: least-privilege tool access, sandboxed code execution, human approval for consequential actions, and audit logging
  • Partner with software development on AI product threat modeling: Advise on guardrails for AI coding assistants in the SDLC, including secret exposure, CI/CD permission scope and provenance of generated code

Identity and Access Management

  • Engineer and maintain SSO, MFA, privileged access, and least-privilege enforcement across the environment
  • Automate provisioning, deprovisioning, and access reviews

Vulnerability and exposure management

  • Run vulnerability management as an engineering function: scan coverage, risk-based prioritization, patch automation, and a time-to-remediate number that moves
  • Track exposure across cloud, endpoint, and third-party components, and drive it down

Incident response

  • Act as a senior technical responder: investigation, containment, eradication, recovery, and root cause
  • Build the tooling, runbooks, and forensic readiness the team needs before an incident rather than during one

Partner and advise

  • Be the security engineering partner to IT and development teams supporting threat modeling, design review, and practical guidance early enough to change the outcome
  • Supply the technical substance behind System Security Plans, POA&Ms, and control narratives owned by the VP of Information Security
  • Translate framework and regulatory changes into engineering work, with a clear read on effort, risk, and trade-offs

WHAT YOU'LL BRING

  • 6+ years in security engineering, infrastructure security, or a closely related hands-on technical role
  • Demonstrated ownership of security tooling; you have deployed, tuned, and run SIEM, EDR, and vulnerability management in production, not just worked a console someone else built
  • Strong scripting and automation skills (Python, PowerShell, Bash, or similar) and working comfort with infrastructure-as-code such as Terraform or Ansible
  • Deep working knowledge of at least one major cloud platform (AWS, Azure, or GCP), including identity, networking, security, and logging architecture. Strong AWS and AWS GovCloud experience is highly preferred.
  • Hands-on experience implementing technical controls against a formal framework e.g., SOC 2, NIST SP 800-171 / CMMC, ISO 27001, or comparable
  • Solid grounding in operating system and network internals, and the ability to run an investigation down to root cause
  • Working understanding of AI and LLM security, model supply chain risk, prompt injection, unsafe output handling, retrieval authorization, and agent permission design.
  • Ability to explain a technical risk and its trade-offs to a non-technical stakeholder, and to document a design well enough that someone else can operate it

Not sure you check every box? Apply anyway. At SynthBee, we value unique perspectives, transferable skills, and a genuine growth mindset. If this work excites you and your experience aligns with the core responsibilities, we want to hear from you.

YOU SHOULD APPLY IF

You love solving problems that don't have textbook answers. You build as naturally as you think, and you want your work to matter—for people, for the planet, for the future of intelligence. You're creative, imaginative, and deeply ethical. You believe in decency and collaboration. You are not here to follow the crowd.

WORKING CONDITIONS

This is a full-time, in-person role at SynthBee HQ in Pembroke Pines, FL, Monday through Friday. The role requires extended periods of computer use, research, and code development. Our office is a dynamic, high-energy environment built for the kind of deep collaboration and creative problem-solving that thrives in person. Reasonable accommodations will be provided in accordance with the ADA. Please refer to the BeeKeeper's Guide for details.

OUR COMMITMENT TO YOU

SynthBee is proud to be an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, gender identity or expression, sexual orientation, national origin, age, disability, veteran status, or any other protected characteristic under applicable federal, state, or local law. We offer competitive compensation, comprehensive benefits, and generous paid time off.