远程工作雷达

资深安全工程师

Principal Security Engineer

AI开发工程限定地区(需当地身份)
公司Bonterra
薪资$145,000 - $185,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

美国薪资:145,000 - 185,000 美元 USD 根据经验而定
关于我们
Bonterra 的使命是帮助每个行善者达到最大的影响力。我们以 2033 年将捐赠率从 GDP 的 2% 提升到 3% 为愿景来衡量这种影响力。我们知道这个目标很高,但我们相信正确的技术和专业知识将增强该领域的信任,使社会公益行业加速增长并实现最大影响力。Bonterra 的差异化端到端解决方案共同支持一个独特的网络,包括超过 20,000 名客户,其中包含超过 16,000 家非营利组织以及超过 50% 的财富 100 强公司。了解更多请访问 bonterratech.com。
职位介绍
作为 Bonterra 的高级安全工程师,你将嵌入工程团队中,直接与开发团队合作,推动漏洞修复,建立安全责任意识,并缩小已发现和已修复之间的差距。你还将构建和运营 AI 代理和工作流程,使这项工作能够在产品组合中扩展。

这是一个技术性很强的职位。理想的候选人具备工程直觉,能够构建 AI 驱动的工作流程,并且知道如何与开发团队协作,而不是从外部进行审计。

你将负责

  • 直接向应用安全主管汇报。
  • 构建、扩展和运营 AI 驱动的代理和工作流程,自动化漏洞修复任务。
  • 与开发团队直接合作,推动漏洞关闭。
  • 作为安全倡导者嵌入 Bonterra 的工程组织中,建立信任并推广安全开发实践。
  • 对 SAST、SCA、IaC 扫描器的发现进行分类和优先级排序,过滤噪音并突出需要立即关注的内容。
  • 将安全验证集成到 CI/CD 管道和开发人员工作流程中。
  • 在需要时支持 SOC 2、PCI-DSS、HIPAA 等审计。

要求

  • 有构建 AI 代理、LLM 驱动的工作流程或自动化流水线的实际经验。
  • 熟悉软件漏洞类型,了解 CVE 如何评估,以及良好的修复应该是什么样子。
  • 理解软件是如何构建的,以及安全如何融入开发过程。
  • 能够将安全发现转化为开发人员可以执行的语言,而无需安全背景。

脱颖而出的条件

  • 在构建 AI 代理以解决实际操作问题并加速成果方面有丰富的经验。
查看英文原文

US Based Salary: $145,000 - $185,000 USD DOE
About Us
Bonterra exists to propel every doer of good to their peak impact. We measure that impact against our vision to increase the giving rate as a percentage of GDP from 2% to 3% by 2033. We know that this goal is lofty, but we are confident that the right technology and expertise will strengthen trust in the sector, allowing the social good industry to accelerate growth and reach peak impact. Bonterra's differentiated, end-to-end solutions collectively support a unique network of over 20,000 customers, including over 16,000 nonprofit organizations and over 50 percent of Fortune 100 companies. Learn more at bonterratech.com.
About the Role
As a Principal Security Engineer at Bonterra, you will be embedded across the Engineering organization, partnering directly with development teams to drive vulnerability remediation, build security ownership, and close the gap between identified and fixed. You will also build and operate AI agents and workflows that make that work scale across the product portfolio.

This is a technical role. The ideal candidate has engineering instincts, can build AI-powered workflows, and knows how to work alongside development teams rather than audit them from the outside.

What you'll do

  • Report directly to the Head of Application Security.
  • Build, extend, and operate AI-powered agents and workflows that automate vulnerability remediation tasks.
  • Drive vulnerabilities to closure by working directly with development teams.
  • Act as a security champion embedded across Bonterra's engineering organizations, building trust and normalizing secure development practices.
  • Triage and prioritize findings from SAST, SCA, IaC scanners, filtering noise and surfacing what needs immediate attention.
  • Integrate security validation into CI/CD pipelines and developer workflows.
  • Support SOC 2, PCI-DSS, HIPAA, and other audits as needed.

Requirements

  • Demonstrated experience building AI agents, LLM-powered workflows, or automated pipelines.
  • Working knowledge of software vulnerability classes, how CVEs are assessed, and what good remediation looks like.
  • Understand how software gets built and where security integrates into the development process.
  • You can translate a security finding into language a developer can act on without a security background.

What sets you apart

  • An extensive track record of building AI agents to solve real operational problems that accelerate outcomes.
  • Experience with SAST/SCA platforms at an engineering team level.
  • Prior work building or running a security champion program.
  • Familiarity with AWS security services or cloud environment security.
  • Knowledge of application security frameworks -- OWASP Top 10, NIST, CVSS scoring.
  • Previous software development experience.

At Bonterra, we’re building AI-powered tools to solve real human challenges—and we want teammates who share that enthusiasm. We value people who will champion AI and bring diverse perspectives from different industries, backgrounds, and cultures. Together, we create AI that breaks down barriers, empowers communities, and delivers better outcomes
At this time, we are unable to consider candidates who require current or future sponsorship for employment authorization.
Our Culture
At Bonterra, we’re innovating with a higher purpose: to increase giving to 3% of US GDP by 2033, creating $573 billion more in global impact every year. At Bonterra, we foster an inclusive, equitable culture where every team member belongs and contributes to meaningful impact. Read more about our values and culture here.
Compensation & Benefits
We offer a comprehensive benefits package that supports your health, well-being and growth - explore full details here.
Compensation and benefits for this role apply to full-time employees in the United States and may vary based on local standards, laws and norms. Pay is determined by location, skills, experience, and education, and is one part of Bonterra’s total rewards package, which may also include bonuses, incentives, equity, and a comprehensive benefits program.
Equal Opportunity & Accommodations
At Bonterra, we are proud to be an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We provide equal employment opportunities without regard to race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, veteran status, or any other characteristic protected by law.
If you require a reasonable accommodation during the application process, please submit a request.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位