371,660open jobs
9,621companies
49,388added this week
Browse all
Salary
$180k – $210k per year
Location
In office (San Francisco)
Seniority
Senior · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Anyscale is an artificial intelligence infrastructure company headquartered in San Francisco, California, and founded in 2019 by the creators of Ray at the UC Berkeley RISELab. The company offers a managed platform for running Ray, the open source framework used to scale model training, batch inference, and reinforcement learning across clusters. It sells to machine learning engineering teams that need to move distributed AI workloads from laptops to production without rebuilding their stack.

At Anyscale, we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray, a popular open-source project that's creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI, Uber, Spotify, Instacart, Cruise, and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world.

With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert.

Proud to be backed by Andreessen Horowitz, NEA, and Addition with $250+ million raised to date.

About the Role

Anyscale's product security needs are growing as we ship to larger and more demanding customers. We're looking for a Senior Product Security Engineer to own our secure software development lifecycle and to be engineering's partner on building security into the product. Reporting to the Head of Security, you will work in close partnership with engineering.

This is a senior, high-ownership role. You will own and operate a scalable SSDL, partner with engineering on security features and secure design, review the security of existing systems and new initiatives, and own how we find, track, drive to resolution and report on vulnerabilities in what we ship. This role is based in India.

In your first year, success looks like an SSDL that scales with engineering rather than gating it, security review embedded in how new initiatives ship, and accurate, on-demand vulnerability reporting backed by a working path to resolution.

What You'll Do

  • Own and operate a scalable secure software development lifecycle: threat modeling, security requirements, secure design practices, and scanning that engineering can readily adopt.

  • Partner with engineering on security features and secure-by-design architecture, from early design through implementation.

  • Review the security of existing systems and new initiatives, and turn findings into prioritized, actionable work.

  • Own vulnerability management for what we ship: enumerate components, map known vulnerabilities, and produce accurate posture reporting on demand.

  • Drive vulnerabilities to resolution with engineering against defined SLAs.

  • Own software composition analysis, secret scanning, and SAST across product repositories, and set the bar for secure-development checks.

  • Mentor other engineers and raise the security bar across the organization.

What You'll Bring

  • 8+ years in product or application security, with senior-level depth, ideally at a high-growth startup.

  • Demonstrated ownership of a secure software development lifecycle at scale, including threat modeling and secure design review.

  • A strong hands-on background partnering with engineering on security features and architecture, not just reporting findings.

  • Deep experience with software composition analysis, secret scanning, and SAST or secure-development tooling in real repositories.

  • A solid understanding of software supply chain security and how to enumerate what an organization ships, including SBOM approaches.

  • Experience triaging vulnerabilities using CVSS and business context and driving them to resolution with engineering.

  • The communication and seniority to set direction, review others' work, and raise the bar for those around you.

Nice to Have

  • Experience producing vulnerability or security posture reporting for enterprise or regulated customers.

  • Familiarity with container artifact security, including image scanning, signing, and SBOM generation.

  • Experience building or maturing an SSDL program at scale.

  • Background in AI or ML platforms or distributed systems.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
371,660 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
San Francisco
In office • Full-Time • Bachelor's Degree • Singapore
Cybersecurity
SBOM
Apply
$215k – $240k per year • In office • Full-Time • 5+ years exp • Seattle
Python
Rust
AI/ML
Flyte
OpenAI
DevOps
ArgoCD
AWS
Azure
Buildkite
CI/CD
Docker
GCP
Helm
Kubernetes
Terraform
Apply
$170k – $190k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Seattle
TypeScript
JavaScript
AI/ML
Amazon SageMaker
Flyte
Ray
Frontend
Headless UI
Next.js
React.js
Tailwind CSS
Vite
Webpack
Zustand
DevOps
gRPC
Kubernetes
Apply
$136k – $295k per year (Estimated) • In office • Plano
Python
DevOps
Akamai
Amazon EC2
API Gateway
AWS
AWS Step Functions
CI/CD
Cloudflare
Terraform
Cybersecurity
AWS WAF
Threat Modeling
Apply
$197k – $374k per year (Estimated) • In office • Full-Time • 8+ years exp • PhD • New York
AI/ML
AI Agents
Claude
LangChain
OpenAI
Vertex AI
Management
n8n
Zapier
Apply
$226k – $283k per year • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • San Francisco
AI/ML
Fine-tuning
LLM
MLFlow
PyTorch
Ray
OpenAI
Post-training
Model Context Protocol
DevOps
OpenTelemetry
Apply
$200k – $240k per year • Remote/Hybrid • Full-Time • 8+ years exp • San Francisco
AI/ML
Ray
OpenAI
DevOps
AWS
Azure
Kubernetes
Cybersecurity
ISO 27001
SOC 2
Apply
IT Specialist 6 days ago
$171k – $211k per year • Equity • In office • Full-Time • San Francisco
AI/ML
Ray
CoreWeave
OpenAI
DevOps
Azure
GCP
GitHub
Cybersecurity
Okta
Management
Google Workspace
Apply
$200k – $240k per year • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • San Francisco
Go
Python
AI/ML
Ray
OpenAI
TPU
DevOps
AWS
Azure
GCP
Grafana
Kubernetes
Prometheus
Apply
$215k – $230k per year • In office • Full-Time • 3+ years exp • San Francisco
Python
AI/ML
Multimodal AI
Ray
Edge AI
OpenAI
Apply
$100k – $150k per year • In office • Full-Time • San Francisco
AI/ML
AI Agents
DevOps
GitHub
Apply
$100k – $150k per year • In office • Full-Time • San Francisco
AI/ML
AI Agents
DevOps
GitHub
Apply
$106k – $215k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • Bachelor's Degree • San Francisco
Databases
Snowflake
AI/ML
AI Agents
Claude
OpenAI
DevOps
CI/CD
Incident Management
GitHub
Management
Linear
Notion
Marketing
Zendesk
Apply
$120k – $204k per year • In office • Internship • San Francisco
AI/ML
Post-training
RLHF
Apply
$140k – $180k per year • Equity 0.1–1% • In office • Full-Time • 3+ years exp • San Francisco
Python
TypeScript
JavaScript
Frontend
Next.js
React.js
Apply
See all jobs
This is one of many
371,660 more open roles from verified company boards, updated every day.