security
Posted May 1Security Engineer
at Cognition
San Francisco, United StatesOn-site
Responsibilities
- - Own product and infrastructure security: Lead threat modeling, secure design reviews, and vulnerability management across Devin, Windsurf, and the underlying infrastructure they run on.
- - Build security tooling that engineers actually use: Create internal systems for secrets management, identity and access, dependency security, and detection that integrate naturally into how the team ships.
- - Lead incident response and detection: Build the detection pipeline, run incident response, and turn every event into systemic improvements.
- Build the controls that customers expect from a tool deeply embedded in their engineering workflow.
Requirements
- Who We Are Cognition is an applied AI lab building end-to-end software agents.
- We are behind Devin, the first AI software engineer, and Windsurf, an AI-native IDE.
- Our vision is AI that works alongside engineers as a genuine teammate, not a tool.
- We are a small, talent-dense team of competitive programmers, former founders, and researchers from Scale AI, Palantir, Cursor, Google DeepMind, and others.
- You will help define what security looks like for AI-native developer tools and build the controls, systems, and culture that let Cognition ship fast without compromising on safety.
- experience across product security, infrastructure security, and detection and response. - Strong software engineering fundamentals: Security at Cognition means writing real code; proficiency in Python, Rust, Go, and comfort owning complex systems codebases. - Cloud security expertise: Practical
- experience securing Kubernetes, cloud platforms (AWS, GCP, or Azure), and multi-tenant compute environments. - Web security expertise: Hands-on
- experience leading incidents end to end and driving the fixes that follow. - Comfort with novel problem spaces: You are excited rather than intimidated by the security challenges unique to autonomous agents and AI-native developer tools. - Relevant industry experience: Prior
- experience at a frontier AI lab, applied AI company, or developer tools company.