Notion is defining security foundations for its AI products in San Francisco, working on agent runtimes, tool permissions, content writes, retrieval and auditability, with office presence required.
Responsibilities
- ▹Define and build security architecture for product surfaces operating across customer workspace content: tool execution, content writes, retrieval, permission checks, provenance, auditability
- ▹Ship reusable libraries, review patterns, test fixtures, and guardrails that make the secure path the easy path for product teams
- ▹Build automated red-team and regression testing for risks such as prompt injection, indirect instruction following, data exfiltration, tool misuse, and unsafe workspace mutations
- ▹Translate threat models for new product surfaces into concrete engineering requirements, production checks, and launch criteria
- ▹Use production signals, incident learnings, and targeted experiments to harden Notion over time, feeding learnings back into architecture and developer workflows
- ▹Help define the security bar for how engineers use coding agents, MCP-enabled tools, hooks, and internal automation
Requirements
- ▹8-10+ years designing, building, or securing complex software systems, comfortable working in production code with product and platform engineers
- ▹Security architecture judgment: ability to reason about permissions, data flow, and trust boundaries in complex systems and redesign them
- ▹Security product strategy: turning a complex security risk into a buildable product design or architecture
- ▹Builder mindset: leaves behind a useful tool, test, library, or pattern rather than a task for someone else
Nice to have
- ▹Experience building or securing products with tool use, retrieval, workflow automation, content writes, or complex permission boundaries
- ▹Hands-on experience with prompt-injection testing, red teaming, model behavior evaluation, or abuse-resistant application design
- ▹Experience with enterprise SaaS security models: permissions, sharing, audit logs, data residency, encryption, compliance
- ▹Experience building developer tooling, CI checks, coding-agent workflows, MCP integrations, or internal frameworks
- ▹Public security research, vulnerability writeups, conference talks, or open-source work related to product security
Soft skills
Systems thinking around permission and trust boundariesCross-functional collaboration with product and engineering teamsProactive, builder-oriented mindset
What we offer
- ▹Highly competitive cash compensation, equity, and benefits
- ▹Office presence on Mondays, Tuesdays and Thursdays (Anchor Days)
About the company
Notion is the collaborative AI workspace where teams and agents think together — one place for knowledge, projects, meetings, and AI tools. Millions of individuals, small teams, and large companies run their work on it.
Languages: Angol: Felsőfok
Similar jobs

Job
C# Software Developer (.NET) - NYC
Talan
Bitbucket
+5
💰 Salary: not specified
🏢 On-site
New York
🗣️ EN

Job
Software Engineer, Infrastructure
OpenAI
Cpp
+1
💰 Salary: not specified
🏢 On-site
San Francisco
🗣️ EN

Job
Developer Relations Education Engineer
Arize AI
Llm
💰 Salary: not specified
🔀 Hybrid
San Francisco
🗣️ EN

Job
Developer Relations Documentation Engineer
Arize AI
Llm
💰 Salary: not specified
🔀 Hybrid
San Francisco
🗣️ EN

Job
Software Engineer, IAM
Postman
Postman
💰 Salary: not specified
🏢 On-site
Cupertino
🗣️ EN

Job
Software Engineer
ServiceNow
AI/MLCppLlm
+1
$125,700–$194,800/yr
gross
🏢 On-site
Santa Clara
🗣️ EN
