Jobs Companies Apolloresearch Product Security Engineer

Über diese Product Security Engineer Stelle bei Apolloresearch

Apolloresearch · Vor Ort · London & San Francisco

THE OPPORTUNITY

Apollo Research works with most frontier AI companies (OpenAI, Anthropic, Google, Meta, Thinking Machines and others) to test their models before deployment and collaborate on fundamental scheming research. Our coding agent security product, Watcher, is deployed in production and monitors billions of agent tokens per month across engineering teams at agent-building scale-ups and enterprises. 

We’re hiring a Product Security Engineer to make Watcher safe to deploy at enterprises. You will own the day to day of Watcher’s security posture, from product security  standards to the security conversations with our customers. You will work closely with the internal Infra & Security team who owns Apollo’s overall security roadmap and priorities . 

KEY RESPONSIBILITIES

Security Engineering & Operations

  • Design, build, and operate Watcher’s core security controls: identity and access management, infrastructure and cloud security, endpoint management, and incident response.

  • Build paved roads that make the secure path the default, easy path

  • Establish and advocate for security practices across Apollo, and build the organizational trust needed for people to adopt them, communicating security decisions and tradeoffs clearly along the way.

  • Evaluate vendors and tooling, make build-vs-buy calls on security infrastructure, and assess vendor security posture before adoption.

  • Lead major security projects end to end, from ideation through implementation and rollout.

  • Own security questionnaire responses, product security whitepapers, and support for customer pen-tests.

  • Own the technical content of customer-facing communications during incidents.

  • Collaboratively define and shape Watcher’s security roadmap and priorities with the Apollo Infrastructure & Security team

  • Support Product Strategy

  • Join customer/prospect calls to understand security needs firsthand, and map them onto the AI Security & Control Researcher's threat models and failure mode library.

  • Maintain awareness of how enterprises currently secure coding agents (or don't), what tools they use (SIEM, DLP, CSPM), and how Watcher fits into their existing stack.

  • Understand which failure modes are the biggest problems for security buyers, and prioritize systematically what's most useful to solve; feeding that buyer signal into the AI Security & Control Researcher's failure mode prioritization.

  • JOB REQUIREMENTS

    Must-haves

  • 5+ years in security roles in a hands-on technical capacity (not purely GRC/compliance). Able to read code, understand infrastructure, and evaluate technical controls, not just write policies.

  • Engineering mindset: you treat security as an engineering problem, capable of building custom solutions rather than gluing together off-the-shelf tools. You prioritize automation and systems-level thinking, and are comfortable leveraging AI to accelerate development.

  • Direct experience with application security, cloud security, or product security. ideally having owned or significantly contributed to the security posture of a product handling sensitive customer data.

  • Experience in a security vendor or security product company. Building security products is different from consuming them, and someone who has done both will bridge the gap between "what CISOs want" and "what we can actually build" more effectively.

  • Comfortable working in a small, fast-moving team, context-switching between hands-on security work and strategic product thinking within the same week.

  • Strong written communication,  this role produces security questionnaire responses, whitepapers, and incident communications that need to be clear and precise.

  • Nice-to-haves

  • Strong understanding of enterprise security buyer concerns,  ideally from having been a security engineer or leader at an organization that buys security tooling, or from working closely enough with those buyers to internalize their priorities.

  • Experience with incident response, specifically leading a real security incident through to resolution and customer communication.

  • Experience with AI/ML systems security or LLM security. 

  • REPRESENTATIVE PROJECTS

  • Design a security roadmap for keeping Watcher's customer data secure: Watcher runs on top of coding agents and accesses highly sensitive information;  ensure that data is stored securely and the attack surface Watcher itself introduces is as small as possible.

  • Stand up product security standards for the product engineering team: code review security checklists, dependency scanning, secrets management in CI/CD, and container hardening that engineers will actually use.

  • BENEFITS

  • This role offers market competitive salary, equity, and competitive benefits.

  • Salary: San Francisco: $227,000 – $296,000; London: £152,000 – £199,000. We will be looking to meaningfully raise salaries soon.  

  • Our engineers effectively have an unlimited token budget. If a better result costs more compute, use it.

  • Flexible work hours and schedule

  • Unlimited vacation

  • Unlimited sick leave

  • Up to 6 months of paid parental leave

  • Comprehensive health, dental and vision insurance

  • Retirement savings with competitive employer matching (e.g. 401(k) for US employees)

  • Lunch, dinner, and snacks are provided for all employees on workdays

  • Paid work trips, including staff retreats, business trips, and relevant conferences

  • A yearly $1,000 (USD) professional development budget

  • Relocation support and visa fees (if applicable)

  • LOGISTICS

  • Time Allocation: Full-time

  • Location: This is an in-person role working out of our London or San Francisco office. We offer flexible working hours and some wfh arrangements.

  • Visa sponsorship: We sponsor visas in both the UK and US. Sponsorship isn't guaranteed for every role or candidate, but if we make you an offer, we'll work with you to find the right visa route.


  • ABOUT THE TEAM

    The product team consists of product engineers: Jeremy Neiman, Zak Walters, Zen van Riel, Srdjan Miletic and Gustavo Bicalho; research scientists: Victor Gillioz, Monika Jotautaitė, Dmitrii Volkov; and our GTM lead: Kyle Dai. Marius Hobbhahn (CEO) advises the team. Furthermore you will interact with our other SWEs and researchers, since we intend to be "our own customer" by using our products internally for our research work. You can find our full team here.

    ABOUT APOLLO RESEARCH

    The rapid rise in AI capabilities offers tremendous opportunities, but also presents significant risks. At Apollo Research, we're primarily concerned with risks from Loss of Control, i.e. risks coming from the model itself rather than e.g. humans misusing the AI. We're particularly concerned with deceptive alignment / scheming, a phenomenon where a model appears to be aligned but is, in fact, misaligned and capable of evading human oversight. 

    We work on the science of scheming, detection of scheming (e.g. building evaluations), and scheming mitigations (e.g. anti-scheming). We also work on control and monitoring research (see our scalable monitoring agenda). We work closely with many frontier AI companies, such as OpenAI, Anthropic, Google, Meta, Thinking Machines and others, e.g. to test their models and collaborate on the science of scheming. At Apollo, we aim for a culture that emphasizes truth-seeking, being goal-oriented, giving and receiving constructive feedback, and being friendly and helpful. If you're interested in more details about what it's like working at Apollo, you can find more information here.

    We also build a coding agent security product called Watcher that secures agent deployments in companies. Our goal is to reduce the probability of catastrophic incidents by securing coding agents, learning about their real-world risks, and publishing our research on how to build these control systems most effectively.

    Equality Statement: Apollo Research is an Equal Opportunity Employer. We value diversity and are committed to providing equal opportunities to all, regardless of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, or sexual orientation.

    HOW TO APPLY

    Please complete the application form with your CV. The provision of a cover letter is neither required nor encouraged. Please also feel free to share links to relevant work samples.

    About the interview process: Our multi-stage process includes a screening interview, a take-home test (3 hours), 3 technical interviews, and a final interview with Marius (CEO). There are no leetcode-style general coding interviews. You may use AI tools on the take-home; we judge the result the way we'd judge any contributor's work, so you are responsible for the quality of everything you submit. If you want to prepare, we suggest building simple monitors for coding agents and running them on your own Claude Code / Cursor / Codex / etc. traffic.

    Your Privacy and Fairness in Our Recruitment Process: We are committed to protecting your data, ensuring fairness, and adhering to workplace fairness principles in our recruitment process. To enhance hiring efficiency, we use AI-powered tools to assist with tasks such as resume screening. These tools are designed and deployed in compliance with internationally recognized AI governance frameworks. Your personal data is handled securely and transparently. All resumes are screened by a human and final hiring decisions are made by our team. If you have questions about how your data is processed or wish to report concerns about fairness, please contact us at [email protected].

    Bereit, sich bei Apolloresearch zu bewerben?
    Bei Apolloresearch bewerben

    Wie sich dieses Gehalt für Application Security vergleicht

    Diese Stelle zahlt $261,500/yrüber der üblichen Spanne für Application Security Stellen.

    $115,762 dem Median $194,750 $274,900

    Übliche Spanne $158,550–$237,952/yr, aus 173 vergleichbaren Application Security Anzeigen auf JobsRadar (Vergütung auf USD hochgerechnet). Gehaltseinblicke für Application Security ansehen →

    Ähnliche Jobs

    VE
    Product Security Engineer
    Vercel
    ⚡ Früh bewerben Hybrid - San Francisco, New Yo... Hybrid $208,000–$312,000
    ● Neu 👁 Gesehen ✓ Beworben vor 1 Wo.
    Anduril Industries
    Technical Security Application Engineer, Manufacturing
    Anduril Industries
    ⚡ Früh bewerben Ashville, Ohio, United States Vor Ort $126,000–$167,000
    ● Neu 👁 Gesehen ✓ Beworben vor 7 Std.
    Anduril Industries
    Product Security Engineer, Programs
    Anduril Industries
    ⚡ Früh bewerben Costa Mesa, California, United... Vor Ort $156,000–$253,000
    ● Neu 👁 Gesehen ✓ Beworben vor 7 Std.
    Anduril Industries
    Senior Product Security Engineer
    Anduril Industries
    ⚡ Früh bewerben London, England, United Kingdo... Vor Ort
    ● Neu 👁 Gesehen ✓ Beworben vor 7 Std.
    SA
    Security Engineer, Product Security
    Scale AI
    ⚡ Früh bewerben New York, NY; San Francisco, C... Vor Ort $237,600–$297,000
    ● Neu 👁 Gesehen ✓ Beworben vor 10 Std.
    Esri
    Sr. Application Security Engineer
    Esri
    ⚡ Früh bewerben Vienna, Virginia, United State... Vor Ort $93,600–$157,560
    ● Neu 👁 Gesehen ✓ Beworben vor 10 Std.
    Esri
    Sr. Application Security Engineer
    Esri
    ⚡ Früh bewerben Redlands, CA Vor Ort $93,600–$157,560
    ● Neu 👁 Gesehen ✓ Beworben vor 10 Std.
    EG
    Application Security Engineer
    EQT Group
    ⚡ Früh bewerben Stockholm, Stockholm, Sweden Vor Ort
    ● Neu 👁 Gesehen ✓ Beworben vor 11 Std.
    Wispr Flow
    Platform Engineer, Product Security
    Wispr Flow
    ⚡ Früh bewerben San Francisco Vor Ort $220,000–$350,000
    ● Neu 👁 Gesehen ✓ Beworben vor 11 Std.

    Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

    Mehr Jobs bei Apolloresearch

    Alle Jobs bei Apolloresearch ansehen →

    Jetzt bewerben
    🤖

    Moment — langsam

    JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

    Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

    Catch your next role the second it’s posted.

    Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

    Create free account

    Free forever · takes 30 seconds · already have one?

    Verschaffe dir einen Vorsprung bei der Jobsuche.

    Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

    Dem Kanal beitreten — kostenlos