
Mongodb · Dublin; Ireland
We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security controls an...
We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build
scalable security controls and services within MongoDB Atlas multi-cloud infrastructure.
The team sits within the Site Reliability Engineering organization and works with other engineering teams to ensure that our
infrastructure adheres to the highest security standards.
This role can be based out of our Dublin office, or work fully remotely in Ireland.
Azure, and GCP
eBPF to enforce runtime policies and gain deep visibility into systems behaviour
and provide monitoring, logging, and alerting pipelines that integrate with our tooling (Grafana, Splunk, Victoria Metrics.)
reviewed, and deployed just like any other code
You might be a great fit if you match some of the following:
security work
infrastructure-as-code tools (Terraform) to automate security configurations and processes
systems
correctness
non-technical stakeholders
MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the
data platform for the AI era, enabling builders to create, transform, and disrupt industries with software. MongoDB’s unified data
platform, the most widely available, globally distributed data platform on the market, helps organizations modernize legacy
workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed,
multi-cloud data platform and is available across AWS, Google Cloud, and Microsoft Azure.
With offices worldwide and over 67,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for
their most important applications, we’re powering the next era of software.
Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s
what makes us MongoDB.
To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching
culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our
employees’ wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what
it’s like to work at MongoDB, and help us make an impact on the world!
MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and
interview process. To request an accommodation due to a disability, please inform your recruiter.
MongoDB is an equal opportunities employer.
Req ID: 426183
We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security controls and services within MongoDB Atlas multi-cloud infrastructure. The team sits within the Site Reliability Engineering organization and works with other engineering teams to ensure that our infrastructure adheres to the highest security standards. This role can be based out of our New York City, Austin, Seattle or San Francisco offices, or work fully remotely on standard East Coast business hours. RESPONSIBILITIES: * Design and build core security primitives and services that protect MongoDB Atlas compute, networking, and identity across AWS, Azure, and GCP * Build secure-by-default infrastructure using Linux security mechanisms (AppArmor, SELinux, seccomp, cgroups), Kubernetes, and eBPF to enforce runtime policies and gain deep visibility into systems behaviour * Develop APIs, automation, and tooling that manage security posture at scale (CSPM, vulnerability management, workload identity) and provide monitoring, logging, and alerting pipelines that integrate with our tooling (Grafana, Splunk, Victoria Metrics.) * Integrate security into our CI/CD and infrastructure-as-code workflows (Terraform) so that security controls are versioned, reviewed, and deployed just like any other code * Lead complex projects end‑to‑end, from problem discovery and design docs to implementation, rollout, and long‑term ownership * Collaborate with SRE, platform and product engineering teams to define secure architectures for new infrastructure and services QUALIFICATIONS: You might be a great fit if you match some of the following: * 5+ years of experience in Software Engineering, Site Reliability Engineering, or similar roles, preferably with relevant security work * Proficiency with at least one programming language (Java, Golang, Rust, Python, or C/C++) and experience with infrastructure-as-code tools (Terraform) to automate security configurations and processes * A deep understanding of Linux and networking concepts, including low-level fundamentals, and how they work together in complex systems * Experience building security-related features or platforms such as runtime monitoring, CSPM, or vulnerability management * Experience with a cloud provider (AWS, GCP, or Azure) and their security best practices and building blocks * Hands-on experience with Kubernetes and its security ecosystem (e.g. RBAC, OPA/Gatekeeper, Kyverno, eBPF, Falco, Tetragon) * A systems mindset: you think about failure modes, performance, observability, and operability alongside security and correctness * Strong communication skills and the ability to explain complex security concepts and tradeoffs to both technical and non-technical stakeholders ABOUT MONGODB MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the data platform for the AI era, enabling builders to create, transform, and disrupt industries with software. MongoDB’s unified data platform, the most widely available, globally distributed data platform on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud data platform and is available across AWS, Google Cloud, and Microsoft Azure. With offices worldwide and over 67,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, we’re powering the next era of software. Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s what makes us MongoDB. To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what it’s like to work at MongoDB, and help us make an impact on the world! MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter. MongoDB, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type and makes all hiring decisions without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Req ID: 2263171228 MongoDB’s base salary range for this role is posted below. Compensation at the time of offer is unique to each candidate and based on a variety of factors such as skill set, experience, qualifications, and work location. Salary is one part of MongoDB’s total compensation and benefits package. Other benefits for eligible employees may include: equity, participation in the employee stock purchase program, flexible paid time off, 20 weeks fully-paid gender-neutral parental leave, fertility and adoption assistance, 401(k) plan, mental health counseling, access to transgender-inclusive health insurance coverage, and health benefits offerings. Please note, the base salary range listed below and the benefits in this paragraph are only applicable to U.S.-based candidates. MongoDB’s base salary range for this role in the U.S. is: $127,000—$249,000 USD
RDQ426R108 This role is open to candidates in the US (any location) ABOUT THE TEAM The AI Security team at Databricks sits at the frontier of securing the AI/ML services in the Databricks platform. As we ship AI capabilities at the leading edge of the industry, including Agent Bricks, the Genie suite, AI Model Serving, MLflow, and Unity AI Gateway, the AI Security team ensures these systems are designed, built, and operated securely. Our work also extends to securing our own usage of AI: building the right guardrails that enable Databricks employees to innovate and deliver securely. The team combines offensive security depth with AI/ML engineering knowledge to identify novel threats, build scalable defenses, and influence how AI products are architected from the ground up. We lead AI Red Team exercises, build security tooling for AI workloads, and partner directly with AI Product teams to embed security into the development lifecycle. --- THE ROLE As a Staff Security Software Engineer on the AI Security team, you are a senior technical leader who sets the standards for how Databricks secures its AI and ML capabilities. You combine deep offensive security expertise with practical knowledge of AI/ML systems to identify and drive resolution of the most significant security risks in Databricks' AI platform. You lead AI red team engagements against production AI systems, conduct security architecture reviews for complex, multi-system AI features, and build the tooling and frameworks that scale the team's impact. You are a subject matter expert in at least two AI security domains and you operate with significant autonomy- driving cross-team remediation, setting technical standards, and mentoring teammates in both offensive techniques and secure AI design. --- THE IMPACT YOU WILL HAVE AI RED TEAM & ADVERSARIAL TESTING * Lead AI red team engagements against Databricks' production AI systems, including Foundation Model APIs, Genie and natural language query systems, Model Serving infrastructure, MCP-connected agents, and RAG pipelines * Design and execute adversarial attack scenarios: prompt injection, jailbreaking, memory poisoning, cross-tenant data leakage in multi-tenant serving, and sandbox bypasses * Develop proof-of-concept exploits for AI-specific vulnerability classes and perform variant analysis to identify the full scope of exposure across the AI platform * Contribute to the evolution of the Databricks AI Security Framework (DASF), maintaining and extending the risk taxonomy, control library, and testing methodology as AI capabilities evolve AI PRODUCT SECURITY & ARCHITECTURE REVIEWS * Lead comprehensive security architecture reviews for complex AI features: threat modeling agentic workflows, RAG pipelines, multi-model serving chains, and MCP-based tool integrations * Partner directly with AI and ML engineering teams to identify security risks early in the design process and define practical, scalable controls * Assess and drive resolution of cross-cutting AI security risks: Unity Catalog permission enforcement in AI contexts, inference data isolation, model artifact integrity, fine-tuning pipeline security, and external model API governance via AI Gateway * Identify recurring security patterns across AI features; advocate for class-level architectural fixes rather than feature-by-feature point solutions AI SECURITY TOOLING & AUTOMATION * Design and build automated AI security testing tooling, including adversarial prompt libraries, agent behavior analysis frameworks, and continuous testing harnesses * Build AI-assisted automation that scales security reviews, threat modeling, and vulnerability triage for AI features * Develop and maintain security guardrails and enforcement mechanisms: LLM-as-judge review, prompt delimiting, output validation, rate limiting, and audit logging CROSS-TEAM REMEDIATION & STANDARDS * Set technical standards for how AI security risks are assessed, prioritized, and remediated across the engineering organization * Drive cross-team remediation for significant AI security findings, defining fix requirements, validating patches, and ensuring regression coverage in CI/CD pipelines * Produce high-quality threat models, security advisories, and post-mortems that inform organizational risk decisions for AI products MENTORSHIP & COMMUNITY * Mentor engineers on the AI Security team in adversarial ML techniques, AI threat modeling, and security tooling development * Contribute to internal knowledge assets, including training materials, design patterns, and threat model templates, that raise AI security fluency across the engineering organization * Represent Databricks in the external AI security community through publications, conference talks, or open-source contributions --- WHAT WE LOOK FOR * 7–10 years of combined experience in offensive security, AI/ML security research, or product security engineering, with demonstrated leadership in securing complex systems * Subject matter expert in at least two of the following AI security domains: - LLM and generative AI security (prompt injection, jailbreaking, training data extraction) - AI agent and orchestration security (MCP, memory sharing, multi-agent systems) - ML infrastructure and serving security (model serving multi-tenancy risks, training infrastructure security) - AI data governance and privacy (fine-grained access control, data residency, inference data isolation) * Demonstrated ability to design and execute adversarial attacks against production AI systems * Deep understanding of AI/ML platform architecture- how models are trained, served, and integrated, and where the trust boundaries between components lie * Expert in at least one major cloud platform (AWS, Azure, GCP) and its AI/ML security model * Proficient in Python; able to read and analyze ML model code, training scripts, and API serving code; working knowledge of at least one additional language (Go, Java, Scala, Rust) * Track record of driving cross-team AI security improvements and influencing product architecture decisions * Experience building automated security tooling for AI systems * Strong communicator- translates AI security risks into actionable guidance for engineers, product managers, and leadership * Pragmatic approach to risk- distinguishes real-world exploitable AI risk from theoretical concerns NICE TO HAVE * Published research on AI/ML security topics or experience presenting at AI security venues (DEF CON AI Village, NeurIPS workshops, Black Hat) * Experience with OWASP Top 10 for LLMs, MITRE ATLAS, or similar AI security frameworks * Familiarity with MLflow, Unity Catalog, Delta Lake, or Databricks platform internals * OSCP or equivalent offensive security certification * Academic or research background in machine learning, adversarial ML, or AI safety --- WHY DATABRICKS On the AI Security team, you'll work on a class of security problem that didn't exist five years ago, and that the industry is still figuring out. You'll run red team engagements against a live AI platform used by over 12,000 organizations, build tooling that has no precedent to copy, and drive security decisions that shape how AI products are built across the company. The problems are novel, the stakes are real, and the team working on them is exceptional. About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
At Joko, we help consumers shop smarter. Our mission is to revolutionize shopping, empowering people to find what they need, make informed decisions, and save money. Founded in Paris, Joko is a tech company and certified B Corp with over 105 talents across Paris, Barcelona, and New York (and beyond). More than 6 million users already save money every day at 10,000+ merchants with Joko. From cashback and automatic coupons to price alerts and carbon tracking, we keep expanding our products to make shopping smarter. We’re now building an AI-powered shopping assistant to help users find the best products by price, quality, and environmental impact. Having reached profitability in our core market, we’re now scaling globally, with a strong focus on the US. It’s still day 1, come build the future of shopping with us! This position is remote-friendly (France and Spain). 📱OUR ENGINEERING TEAM Our Engineering team excels at solving cutting-edge technical challenges with elegant solutions. With a strong focus on product innovation and design, they are shaping the future of the shopping experience. Their ambition is to have a positive impact on the everyday lives of hundreds of millions of users around the world. Software Engineers in the Engineering team work hand-in-hand with the Product team, from exploration, design, and roadmap prioritization to implementation, and deployment in production. At Joko, we have firsthand experience that teams with engineers who possess a diverse range of skills, and where engineering and product collaborate closely, are able to deliver a truly delightful and innovative user experience. The Engineering team is currently growing fast to continuously innovate on all parts of our product and tech stack and to empower the revolution of the way people shop online. 🎯 WHAT YOU WILL DO At Joko, we’re entering a new stage of scale: over half a million active daily users, and zero-downtime expectations. As our Platform Engineer, you’ll shape and lead our platform efforts. You’ll be the first senior engineer focused on these topics, building on work currently spread across the team and turning it into a clear, reliable, high-leverage platform that helps everyone ship faster and safer. * Infrastructure & reliability: Own our production infrastructure end-to-end: resilience, capacity, and cost. You'll make our systems more robust as we grow, simplify where it makes sense, and turn infrastructure efficiency into a real business lever — not just an engineering concern. * Observability & incident response: Build the visibility layer that lets us catch problems before users do. You'll centralize logs and alerts across our tools, define what "healthy" looks like, and design an on-call experience that's sustainable — clear signals, fast response, no noise. * Security & access control: Raise the security bar in a way that scales with the team. From access management and secrets handling to compliance work and release hardening — you'll make security a natural part of how we ship, not a checkpoint at the end. * Developer experience & release quality: Treat engineering workflows as a product. You'll improve how we build, test, and release — making the right way the easy way, and giving teams the confidence that what they ship is solid before it reaches users. * AI-powered internal tooling: Help shape how we use AI internally: automation, agents, and tooling that multiply the execution capacity of every team. You'll contribute to a real shift in how we work — not by replacing engineers, but by removing the friction that slows them down. * Technical leadership: Define the platform roadmap, align stakeholders, and lead cross-team initiatives end-to-end. Bring structure and mentorship so platform practices become shared — not heroic individual efforts. 👀 WHO WE'RE LOOKING FOR * Experience: 5+ years of software engineering experience, with significant time spent on platform, infrastructure, or reliability at scale. You've operated at a senior or staff level and you're ready to be the first dedicated owner of these topics. * Production reliability & scale: Strong track record operating and evolving production systems (observability, incident response, scalability, reliability patterns) in environments with real traffic and high expectations. * DevOps & automation mindset: You consistently improve how engineers ship—CI/CD, releases, automation, tooling—and you care about fast feedback loops and day-to-day developer productivity. * Strong software engineering foundations: You are a strong engineer first — you write clean, testable, maintainable code and bring that rigor to platform work. You're comfortable rolling up your sleeves and contributing directly to the codebase when needed, and you see that as a natural part of the job. * Cost/performance tradeoffs: You're comfortable making pragmatic architectural decisions that balance reliability, latency, and cloud costs, with a clear focus on impact. * Security fundamentals: You have solid infrastructure security basics (permissions/IAM, secrets, least privilege, hardening). You don't need to be a full-time security specialist, but you know how to raise the baseline. * Cloud & modern infrastructure: Experience with AWS (we run a server-less setup) or equivalent; familiarity with IaC and modern deployment patterns is a strong plus. * Product-minded: Strong sensitivity to user experience, performance metrics, and real-world usage at scale. * Problem solver: Comfortable working in complex, evolving codebases, with the patience and pragmatism to improve them incrementally. * Collaboration & influence: You communicate clearly, raise the bar through reviews and mentorship, and partner well with engineers and product stakeholders. * Languages: Fluent in English, both written and spoken. French is not required. 💎 OUR PERKS (Some of the benefits listed below are available to full-time positions only) At Joko, we believe that flexibility and trust are essential. Our work environment reflects this through: * Flexible remote : If you live in Paris, you can choose to work from our office or from home with no constraints. If you live elsewhere, we can provide access to a coworking space and a coworking budget. * Work from anywhere : Want to spend a month in Italy while working? You can work from most countries in the world for up to 3 months per year. On top of that, we offer plenty of perks: * 💸 Top-market compensation * 📈 Equity for everyone with the chance to own a piece of what you build * 🤖 Half-day each week dedicated to leveling up with AI by exploring new tools, iterating hard, and sharpening your skills * 🌴 Yearly offsite in amazing locations and budget for team-building events & monthly in-person gatherings * 💪 Contribution to your ClassPass subscription * 🍼 8-week leave paid 100% for the second parent * …and much more, check the full list here! 🤝 OUR HIRING PROCESS 1. Intro call: Quick screening with the Hiring Manager or the Talent team. 2. Step 1 – Team interview (45 min): Conversation with two Joko team members (could include the Hiring Manager, people from the team you’d join, or colleagues from other teams). 3. Step 2 – Role-specific assessments * For non-engineering roles: A take-home case study followed by a 45-min interview. We assess both your output and how you think in real time. The exercise will be relevant to your role (e.g. analysis, strategy, or process design). * For engineering roles: A 90-min live technical interview on CoderPad covering code understanding, review, system design, and product thinking (with AI serving as a collaboration tool). 4. Step 3 – Leadership interview (45 min): Conversation with a SteerCo member and a Founder. 5. References: Up to 3 calls with former colleagues or managers. ☕ You may also be invited for coffee with team members to get a feel for our culture.