AYN

Security Engineer

LiveKit · United States (Remote) · remote

USD 135,000 to 300,000 a year

About LiveKitLiveKit is building the infrastructure layer for the agentic era of computing. Our platform gives developers everything they need to build, test, deploy, scale, and observe AI agents in production. Founded in 2021, LiveKit powers voice and agentic AI applications for OpenAI, Salesforce, Spotify, Meta, and tens of thousands of other developers, collectively facilitating billions of calls each year.

About This RoleOur customers trust us with audio, video and data belonging to their own end users, so a security failure on our side puts their data and their business at risk. We are hiring Security Engineers to build the security foundations for that infrastructure. You will join a small Trust team that covers security, IT and compliance, and you will own real parts of the program from your first week. Depending on your background, you will focus either on infrastructure security posture or vulnerability management & security operations.

You'll Thrive Here If You- think like both a builder and a breaker, and understand security from first principles

- take an automation-first and pragmatic approach to risk mitigation

- translate security concerns into engineering action

- can clearly explain complex technical concepts to others

- are a fast learner and thrive in ambiguity

What You'll Do- Map the security posture of our cloud and production infrastructure, find the gaps that could lead to customer data loss or infrastructure compromise, and close them in priority order.

- Operationalize scanning tooling across cloud, containers, hosts and dependencies, and run vulnerability management end to end: triage, owner assignment, remediation SLAs and reporting.

- Harden identity, secrets and network boundaries, including environment separation and credential hygiene.

- Build automation that removes manual security work and keeps pace with engineering growth.

- Build engineering-first triage and remediation workflows with engineering teams, and make the secure path the easy one.

- Automate collection of the technical evidence our PCI-DSS and ISO 27001 programs depend on, in partnership with our Compliance team.

- Take part in incident response and a shared security escalation rotation.

Who You Are- 5+ years in security engineering, infrastructure engineering or SRE, with a significant share of that focused on security.

- For infrastructure security: hands-on experience securing a major cloud provider (AWS, GCP or Azure) and containerized workloads including Kubernetes, a track record of owning infrastructure security for a production platform, and experience supporting compliance audits such as PCI-DSS, ISO 27001 or SOC 2.

- For vulnerability management and security operations: hands-on experience building or running vulnerability management or software security tooling, with an engineering-first approach to triage and remediation.

- Strong scripting and automation skills in a language such as Go or Python, and fluency with infrastructure as code such as Terraform.

- A pragmatic approach to risk: you can explain why a finding matters to the business and how fast it needs to be fixed.

Nice to Have- Experience with real-time media, networking or WebRTC systems.

- Experience in AI security, such as securing LLM applications or agent infrastructure.

- Incident response or application security experience.

- Experience supporting compliance audits.

Our Commitment to You- An opportunity to build something truly impactful to the world

- Contribute to open source alongside world-class engineers

- Competitive salary and equity package

- Health, dental, and vision benefits

- Flexible vacation policy

LiveKit is an equal opportunity employer and does not discriminate on the basis of any characteristic protected by applicable law. If you require a reasonable accommodation during the application or interview process, please contact recruiting@livekit.io.

Apply on the employer’s site