
Security Engineer (Full Remote
EverAIPortugalFull Time2w ago
Job description
)
About the role
EverAI is on the lookout for a dedicated Security Engineer to enhance the security framework of our innovative AI companionship platform. In this role, you will be responsible for ensuring the safety of our products, users, and partners as we continue to grow. This position requires a hands-on approach to application security, risk management, and fostering security awareness, particularly in relation to threats specific to artificial intelligence.
Key facts
What you'll do
- Perform regular code reviews to detect and rectify security vulnerabilities prior to deployment, ensuring a application security posture.
- Oversee the entire lifecycle of security vulnerabilities, from identification to resolution, across our diverse technology stack.
- Coordinate and manage external security assessments and penetration testing efforts, ensuring that all identified issues are effectively addressed.
- Maintain and regularly update our risk register, documenting potential threats and prioritizing exposures related to all company services.
- Communicate new and emerging security threats to the team, documenting findings and sharing updates across the organization to enhance security awareness.
- Conduct phishing simulations and lead security training sessions to educate employees on best practices and potential threats.
- Monitor security alerts and channels, ensuring rapid response to incidents and maintaining a proactive security posture.
- Set up and secure devices for new employees using Mobile Device Management (MDM) solutions, while managing user access permissions effectively.
- Investigate and track new attack vectors that specifically target generative AI, including prompt injection and content filter bypass techniques.
- Keep an eye on security incidents and vulnerabilities reported by third-party AI service providers, ensuring that our systems remain secure.
Requirements
- Proven experience in application security, with a strong focus on code reviews and vulnerability management practices.
- Demonstrated ability to coordinate and execute penetration tests and security audits effectively.
- Proficiency in using Git and GitHub workflows for efficient code management and collaboration.
- Strong skills in scripting and automation to enhance security processes.
- Excellent command of English, with the ability to communicate effectively and collaborate with team members.
- A proactive and goal-oriented mindset, demonstrating a strong sense of ownership over security initiatives.
- A results-driven approach that balances execution with strategic planning and foresight.
- An eagerness to learn and a willingness to accept constructive feedback for continuous improvement.
- Comfort in navigating an environment that may include uncensored content and models.
Nice to have
- Familiarity with security concepts related to AI and large language models (LLMs), including prompt injection, jailbreaking techniques, and adversarial testing methodologies.
Skills & tools
- Application Security
- Vulnerability Management
- Penetration Testing
- Code Review
- Governance, Risk, and Compliance (GRC)
- Scripting and Automation
- Git/GitHub
- AI Security Concepts (Prompt Injection, Jailbreaking)
Practical notes
- Contract Type: Preference for B2B arrangements, but we are flexible for candidates seeking long-term commitments.
- Work From Anywhere: This position is fully remote, allowing you to work from any location.
- Paid Time Off: Enjoy 4 weeks (equivalent to 20 working days) of paid vacation annually.
- Annual Gathering: Participate in a yearly in-person team meetup to foster collaboration and connection.
- Health & Wellness Support: Receive a monthly allowance of $100 for health insurance and access to unlimited one-on-one sessions with psychologists and lifestyle experts through OpenUp, which is also available for up to three family members.
- Co-Working Space Budget: Up to two visits per month are covered (35 EUR / 40 USD per visit) to support your work environment.
- Learning Budget: We provide funds for your professional development, including courses, books, and conference attendance.
- Company Laptop & Equipment: A laptop will be provided, along with budgets for a monitor ($250 USD) and peripherals ($150 USD) to set up your workspace.
- AI Tools Access: Gain premium access to essential tools such as ChatGPT, Cursor, Hugging Face, Claude Code, and more.
- Visa Sponsorship: While not explicitly stated, there is potential flexibility in contract types that may accommodate visa sponsorship.
- Application Deadline: No specific deadline has been mentioned for applications.
- Referral Bonus: Earn up to $2,500 USD for successful referrals through the EverAI External Referral Program.
About the company
EverAI is a decentralized AI compute platform that enables developers to deploy and run AI workloads at scale. The platform provides GPU infrastructure for machine learning training and inference.