远程工作雷达

安全运营工程师

Security Operations Engineer

开发工程职能支持全球可投
公司AssemblyAI
薪资未公开
工作地点不限地点
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间5 天前
数据来源Real Work From Anywhere
前往 Real Work From Anywhere 查看并投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

<div class="content-intro"><h3><strong>为什么选择AssemblyAI</strong></h3>
<p>AssemblyAI构建了行业领先的语音AI模型,为下一代语音应用提供支持。我们的模型每月处理超过6亿次推理调用,每天处理超过100万小时的音频,并为20亿+终端用户提供体验。语音AI领域正处于转折点;我们正在寻找真正热衷于加入一个小团队并帮助定义行业未来的人。</p>
<p>我们是地球上最高效利用资本的AI公司之一——员工数量不到100人,每位员工的年经常性收入(ARR)约为50万美元,我们位列当今增长最快的AI公司中最富有成效的前五名团队之中。这不是偶然;这是有意保持精简、快速行动,并赋予每个团队成员巨大的所有权和影响力。拥有Granola、Fireflies、Figure AI和CallRail等数千家客户,公司已具备真正的规模——每天处理超过200万小时的音频,每天处理超过100万次API调用。这是一个罕见的成长阶段机会,业务已被验证,发展轨迹陡峭,但团队仍小到你的每一份努力都能被看到。</p>
<p>如果你曾感到被层层官僚主义压得喘不过气,缺乏真正的所有权,或沮丧地看着自己的工作消失在缓慢运转的组织中,AssemblyAI的运作方式不同。公司以真正的才能为本,没有繁重的计划或审批流程,也没有对所需工具或信息的限制。对于任何真正关心语音AI的人,不是作为追逐趋势,而是作为构建技术,这里是解决最有趣问题的地方,由一个足够小的团队,你实际上会认识每个人的姓名。</p>
<p>我们致力于创造一个让员工能够带来完整的自我并拥有平等成功机会的空间。无论你的种族、性别认同或表达、性取向、宗教、出身、能力、年龄、退伍军人身份如何,如果加入这个使命打动了你,我们鼓励你申请!</p></div><h2><strong>职位介绍:</strong></h2>
<p>AssemblyAI运行着成熟、多框架的安全与合规程序,包括SOC 2(所有信任标准)、ISO 27001和PCI 4.0,保护我们行业领先的语音AI API背后的基础设施和客户数据。我们正在招聘一名安全运营工程师加入我们的IT &amp; 安全团队。

查看英文原文

<div class="content-intro"><h3><strong>Why AssemblyAI</strong></h3>
<p>AssemblyAI builds the best-in-class Voice AI models powering the next generation of voice applications. Our models serve 600M+ inference calls monthly, process 1M+ hours of audio daily, and power 2 billion+ end-user experiences. The Voice AI space is at an inflection point; we’re looking for folks truly excited to join a small team and help define the future of the industry.</p>
<p>We are one of the most capital-efficient AI companies on the planet - with under 100 people generating roughly $500K ARR per employee, we sit among the top 5 most revenue-dense teams within the fastest-growing AI companies today. That's not an accident; it's a deliberate choice to stay lean, move fast, and give every person on the team outsized ownership and impact. With thousands of customers including Granola, Fireflies, Figure AI, and CallRail, the company has real scale - processing over 2 million hours of audio daily and handling more than 1 million API calls every day. This is a rare growth-stage opportunity where the business is proven and the trajectory is steep, but the team is still small enough that your fingerprints are on everything.</p>
<p>If you've ever felt buried under layers of bureaucracy, starved of real ownership, or frustrated watching your work disappear into a slow-moving org, AssemblyAI is built differently. The company operates as a true meritocracy, with no heavy planning or approval processes and no gatekeeping on the tools or information you need. For anyone who genuinely cares about voice AI, not as a trend to chase, but as a technology to build,&nbsp; this is the place where the most interesting problems at the most interesting scale are being solved by a team small enough that you'll actually know everyone's name.</p>
<p>We’re committed to creating a space where our employees can bring their full selves to work and have equal opportunity to succeed. No matter your race, gender identity or expression, sexual orientation, religion, origin, ability, age, veteran status, if joining this mission speaks to you, we encourage you to apply!</p></div><h2><strong>About the role:</strong></h2>
<p>AssemblyAI runs a mature, multi-framework security and compliance program—including SOC 2 (all trust criteria), ISO 27001, and PCI 4.0—that protects the infrastructure and customer data behind our industry-leading Voice AI API. We're hiring a Security Operations Engineer to join our IT &amp; Security team and take day-to-day ownership of the operational backbone of that program.</p>
<p>&nbsp;</p>
<p>This role is centered on security operations and GRC: running compliance audit cycles end to end, gathering and organizing evidence, enforcing and verifying controls, executing access reviews, managing vulnerability triage and remediation follow-up, and responding to customer security questionnaires. It's the work that turns a security program on paper into one that demonstrably runs. You'll also have room to grow the technical side of the role. We automate wherever we can, and you'll be encouraged to build scripts, integrations, and tooling that reduce manual toil and improve the program.</p>
<p>&nbsp;</p>
<p>This is a high-ownership role on a small team. You'll work closely with engineers across the company, partner with sales and legal on customer-facing security needs, and have a direct hand in how AssemblyAI enforces security across its products, infrastructure, and internal tools—including a rapidly growing landscape of agentic AI development.</p>
<h2><strong>What You'll Do:</strong></h2>
<ul>
<li>Drive SOC 2, ISO 27001, PCI 4.0, and other compliance audit cycles: gather and organize evidence, document, design, and build controls, coordinate directly with auditors through fieldwork, and collaborate with internal teams on remediation.</li>
<li>Own the compliance automation platform (Vanta): monitor control status, chase down failing checks, keep integrations healthy, and update the risk register as the business and infrastructure evolve.</li>
<li>Run vendor and third-party risk reviews, security assessments of new tools, periodic re-reviews, and track subprocessor and vendor inventories.</li>
<li>Partner with sales and legal responding to customer and vendor security questionnaires, RFP security sections, and trust-and-safety inquiries.</li>
<li>Drive vulnerability triage and prioritization across teams, tracking remediation against SLAs and reporting metrics to stakeholders.</li>
<li>Monitor and respond to alerts from endpoint, cloud, identity, and application security tools; investigate, escalate, and close the loop.</li>
<li>Support incident response for security events: evidence collection, timeline construction, documentation, and tracking of post-incident action items.</li>
<li>Maintain and improve security runbooks, process documentation, and operational playbooks.</li>
<li>Build automation to reduce the manual burden via scripts, integrations, reporting, and tooling.</li>
</ul>
<h2><strong>What You'll Need:</strong></h2>
<ul>
<li>3+ years of experience in security operations, GRC, IT security, or a related role</li>
<li>2+ years of experience with compliance audit cycles—you've gathered evidence, documented controls, and worked with auditors</li>
<li>One or more security certifications—CISA, Security+, AWS Security Specialty, or equivalent</li>
<li>Experience executing recurring security operations work: security reviews, vulnerability tracking, alert triage, or control monitoring</li>
<li>Strong organization—you can run a multi-week evidence collection cycle across many stakeholders without dropping threads</li>
<li>Strong written communication skills—you'll write audit documentation, security questionnaire responses, policy documents, and runbooks regularly</li>
<li>Proficiency in Python and comfort reading code written by others</li>
<li>Experience using AI-assisted development tools (e.g., Claude Code, Copilot, or similar) to write scripts, build automations, and accelerate documentation—AI tool fluency is a core expectation at AssemblyAI</li>
</ul>
<h3><strong>Nice to have</strong></h3>
<ul>
<li>Application security fundamentals: threat modeling, secure code review, or familiarity with common vulnerability classes (OWASP Top 10, CWE)</li>
<li>Experience with security tooling across the development lifecycle—SAST, SCA, DAST, secret scanning, or IaC scanning—and routing findings to the right owners</li>
<li>Familiarity with infrastructure-as-code (Terraform preferred) and CI/CD pipeline security</li>
<li>Working knowledge of cloud infrastructure (AWS preferred), including IAM concepts, and of identity and SaaS administration</li>
<li>Experience building or maintaining SIEM detections, queries, and alerting pipelines</li>
<li>Familiarity with endpoint security platforms and cloud security posture tooling</li>
<li>Experience securing AI/ML systems or inference infrastructure</li>
<li>Experience at a high-growth startup in a security role</li>
</ul>
<p><strong>Pay Transparency:</strong></p>
<p>AssemblyAI strives to recruit and retain exceptional talent from diverse backgrounds while ensuring pay equity for our team. Our salary ranges are based on paying competitively for our size, stage, and industry, and are one part of many compensation, benefit, and other reward opportunities we provide.</p>
<p>There are many factors that go into salary determinations, including relevant experience, skill level, qualifications assessed during the interview process, and maintaining internal equity with peers on the team. The range shared below is a general expectation for the function as posted, but we are also open to considering candidates who may be more or less experienced than outlined in the job description. In this case, we will communicate any updates in the expected salary range.</p>
<p>The provided range is the expected salary for candidates in the U.S. Outside of those regions, there may be a change in the range which will be communicated to candidates throughout the interview process.</p>
<p><strong>Salary range: </strong>$180,000 - $220,000 USD</p>
<p>The expected base compensation for this role is listed above. Our total compensation package includes competitive equity grants, 100% employer-paid benefits, and the flexibility of being fully remote. A 401k match up to 4% is offered to all US-based full time team members.</p><div class="content-conclusion"><h3><strong>AI to Interview:</strong></h3>
<p>If you’re selected for an interview, please review this <a href="https://www.assemblyai.com/candidate-ai-guidance">resource</a> to better understand how AssemblyAI approaches the use of AI in our interview process.</p>
<h3><strong>GDPR privacy notice:</strong></h3>
<p>Candidates from the EU should review <a href="https://www.assemblyai.com/legal/gdpr-job-applicant-and-worker-privacy-notice">this job applicant privacy notice</a> before applying.&nbsp;</p>
<h3><strong>Keep Exploring AssemblyAI:</strong></h3>
<p><a href="https://www.assemblyai.com/products/speech-to-text">Speech-to-text</a> | <a href="https://www.assemblyai.com/products/streaming-speech-to-text">Streaming speech-to-text</a> | <a href="https://www.assemblyai.com/products/speech-understanding">Speech Understanding</a> | <a href="https://www.assemblyai.com/products/llm-gateway">LLM Gateway<br></a><a href="https://www.assemblyai.com/playground/source">Try the Playground</a><br><a href="https://www.assemblyai.com/blog/announcing-our-50m-series-c-to-build-superhuman-speech-ai-models/">Our $50M Series C fundraise</a><br><a href="https://www.youtube.com/@AssemblyAI">Check us out on YouTube!</a></p></div>

本页面信息整理自 Real Work From Anywhere,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

高级软件工程师,推理

AssemblyAIUnited States$190,000 - $225,000/年permanent14 天前
AI开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级研究工程师

AssemblyAIUnited States$270,000 - $310,000/年permanent14 天前
AI开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级GTM工程师

AssemblyAIUnited States$180,000 - $220,000/年permanent18 天前
AI开发工程市场运营限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级设计工程师

AssemblyAIUnited States$180,000 - $240,000/年permanent26 天前
开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

创始企业客户经理

AssemblyAIUnited States$300,000 - $370,000/年permanent2026-04-28
市场运营职能支持限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

← 返回全部职位