登录获取应用

职位 › 职位详情

Product Security Engineer, North Security

Cohere · Canada

全职远程英语

职位介绍

摘自雇主发布的职位信息 · Cohere · 发布于2026年9月11日

Who are we? Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems. We’re training and deploying frontier models for enterprises who are building AI systems. We believe that our work is instrumental to the widespread adoption of AI and we are looking for folks that want to be part of that. We obsess over what we build. Each one of us is responsible for contributing to increasing the capabilities of our models and the value they drive for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all passionate about their craft. We are a global technology company headquartered in Toronto with key offices in London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul. Join us! Why this role Enterprises hand Cohere their most sensitive data and put our models inside workflows they can't afford to get wrong. Securing that means working on problems the industry hasn't settled yet, what authorization means when an agent acts on a user's behalf, how to contain tools that consume untrusted input, and whether tenant boundaries hold when a model can be steered by the data it reads. The established playbooks only take you so far. We're hiring a Senior Product Security Engineer to work these problems alongside the engineers building the products, reviewing architecture and code, threat modeling before implementation, testing what ships, and turning what you learn into defaults other teams inherit. This is a hands-on engineering role, not an advisory one. What you’ll do Lead security reviews. Review architecture, code, and security-sensitive changes. Identify both individual vulnerabilities and the recurring design patterns behind them. Secure AI-powered products. Evaluate risks such as prompt injection, unsafe tool use, identity and delegation failures, excessive agency, data exposure, tenant isolation, and sandbox escapes. Threat model new capabilities. Identify trust boundaries, abuse cases, and high-impact failure modes before implementation. Translate findings into practical, prioritized mitigations. Perform hands-on testing. Investigate suspected vulnerabilities, develop proofs of concept, assess exploitability and impact, and partner with engineers through remediation. Build scalable guardrails. Develop secure defaults, approved patterns, reusable controls, review requirements, and automated checks that reduce recurring risks. Strengthen engineering capability. Pair with engineers, document practical guidance, and help product teams develop durable security expertise. Influence risk decisions. Explain technical findings, business impact, and remediation options clearly to engineers, product leaders, and executives. You may be a good fit if You have strong software engineering fundamentals and can independently understand, test, and contribute fixes to production codebases. You are prof

提及的技能

Engineering & InfraProduct Security

每个职位,都有你的匹配分

BabZituna按六个真实维度,将每个职位与你的资料对照评分,并告诉你为什么得出这个分数,公平性经过审计(阅读公开的偏见审计)。

获取应用 → ✓ 求职者100%免费
一个职位如何评分 示例
技能96经验90地点84工作方式74工作类型61薪资无数据

示例数据,并非真实候选人。每个维度根据你本人的资料按100分制评分;无法衡量的维度会如实标明,而不是猜测。