← Back to list
Job

AI Software Engineer, Security

Software Engineer • Remote • Full-time United States USA

Notion is defining security foundations for its AI products in San Francisco, working on agent runtimes, tool permissions, content writes, retrieval and auditability, with office presence required.

Responsibilities

  • Define and build security architecture for product surfaces operating across customer workspace content: tool execution, content writes, retrieval, permission checks, provenance, auditability
  • Ship reusable libraries, review patterns, test fixtures, and guardrails that make the secure path the easy path for product teams
  • Build automated red-team and regression testing for risks such as prompt injection, indirect instruction following, data exfiltration, tool misuse, and unsafe workspace mutations
  • Translate threat models for new product surfaces into concrete engineering requirements, production checks, and launch criteria
  • Use production signals, incident learnings, and targeted experiments to harden Notion over time, feeding learnings back into architecture and developer workflows
  • Help define the security bar for how engineers use coding agents, MCP-enabled tools, hooks, and internal automation

Requirements

  • 8-10+ years designing, building, or securing complex software systems, comfortable working in production code with product and platform engineers
  • Security architecture judgment: ability to reason about permissions, data flow, and trust boundaries in complex systems and redesign them
  • Security product strategy: turning a complex security risk into a buildable product design or architecture
  • Builder mindset: leaves behind a useful tool, test, library, or pattern rather than a task for someone else

Nice to have

  • Experience building or securing products with tool use, retrieval, workflow automation, content writes, or complex permission boundaries
  • Hands-on experience with prompt-injection testing, red teaming, model behavior evaluation, or abuse-resistant application design
  • Experience with enterprise SaaS security models: permissions, sharing, audit logs, data residency, encryption, compliance
  • Experience building developer tooling, CI checks, coding-agent workflows, MCP integrations, or internal frameworks
  • Public security research, vulnerability writeups, conference talks, or open-source work related to product security

Soft skills

Systems thinking around permission and trust boundariesCross-functional collaboration with product and engineering teamsProactive, builder-oriented mindset

What we offer

  • Highly competitive cash compensation, equity, and benefits
  • Office presence on Mondays, Tuesdays and Thursdays (Anchor Days)

About the company

Notion is the collaborative AI workspace where teams and agents think together — one place for knowledge, projects, meetings, and AI tools. Millions of individuals, small teams, and large companies run their work on it.

Languages: Angol: Felsőfok

Similar jobs