Security Engineer
Role summary
Variance is seeking a Security Engineer to build and maintain a secure foundation for their AI agents focused on fraud, scam, and abuse prevention. This role involves hardening cloud infrastructure, internal systems, and product surfaces, integrating security into CI/CD pipelines, and reviewing architectural decisions. You will partner with engineering to identify and fix vulnerabilities, design abuse-resistant systems, and support customer trust initiatives. The ideal candidate thinks like an engineer, focuses on real risk, and is comfortable working across the stack. This is an onsite role in San Francisco.
Role
At Variance, we are teaching machines to make the hardest judgment calls at scale. We build AI agents for the high-precision gray area of stopping fraud, scams, and abuse.
We’re a small, talent-dense team in San Francisco tackling problems that touch billions of events and entities. Our customers include Fortune 500s, global marketplaces, and regulated financial instutions and a huge part of winning in this market is earning trust.
We’re looking for a Security Engineer to help build that foundation. You’ll work across product, infrastructure, and internal systems to make Variance secure by design and help us meet the bar required to deploy AI into critical workflows at the largest companies in the world.
### You’re a fit if you:
- Care deeply about craftsmanship and have strong opinions about building secure, reliable systems
- Think like an engineer first: practical, fast-moving, and focused on real risk instead of theater
- Are comfortable working across the stack, from cloud infrastructure to application security to developer workflows
- Know how to build guardrails that make the company safer without making it slower
- Can partner closely with engineers, founders, and customers when security questions get technical or high stakes
- Are excited by the challenge of securing agentic AI systems to help protect our customers
What you’ll do
- Harden our cloud infrastructure, internal systems, and product surfaces
- Build security into how we ship: CI/CD, secrets management, access control, dependency hygiene, logging, and monitoring
- Review product and architecture decisions with a security lens, especially around APIs, auth, data access, and tenant isolation
- Partner with engineering to find and fix real vulnerabilities quickly
- Help us design abuse-resistant, trustworthy systems for AI-powered decisioning
- Improve our security posture in ways that matter to Fortune 500 customers
- Support customer security reviews, audits, and technical trust conversations
- Create pragmatic security processes, documentation, and defaults that scale with the company
Preferred background
- Experience in security engineering, application security, cloud security, or DevSecOps
- Strong fundamentals in cloud infrastructure, identity and access management, networking, and web security
- Experience securing modern product teams and development workflows
- Ability to go from finding a problem to helping implement the fix
- Clear written communication and strong judgment
- Familiarity with GCP, infrastructure as code, CI/CD systems, and common security tooling is a plus
Our culture
We believe in ownership, urgency, and craft. We enjoy spirited debate, wild ideas, and building things we’re proud of. We’re fully in-person in San Francisco.
### What we offer
- Competitive salary and meaningful equity
- Platinum-level medical, dental, and vision insurance
- Unlimited PTO, sick leave, and parental leave
- Up to $100 per month in reimbursement for personal health and wellness expenses
- 401(k) plan
Similar roles
Staff Security EngineerPivotal Health · Los Angeles, California, United States · Hybrid- Security EngineerLawrence Harvey · Toronto, Ontario, Canada · Hybrid
- Security EngineerARQ · New York, New York, United States · Remote
Security EngineerAP Professionals · United States · Remote- Senior Security EngineerSystems Integration Solutions · Cupertino, California, United States · Onsite