Haystack
← Back to Jobs
Technology
JT

Lead Information Security Engineer

Javen Technologies, IncUnited States🇺🇸United StatesPosted 28 Aug 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
United States
Posted
20 hours ago
AWSSplunkAgileJenkinsLLMPythonTerraform

Job Description

JOB DESCRIPTION:

AI Developer Security Scanning

Must Have:

  • 1+ year(s) of Gen AI related development
  • DevOps practices and tools (Jenkins, Github, CI/CD, Terraform)
  • Security

Nice To Have:

  • Agile
  • Amazon Bedrock
  • AWS
  • AWS ECS Fargate
  • Python

Summary:

The Lead Information Security Engineer (Lead ISE) will be responsible for delivering and supporting the enterprise security tools.

This role is specifically responsible for implementing, operating, and continuously improving an LLM-based code vulnerability detection and reporting capability.

The initial phase is build: deliver the scanner, evaluation harness, and CI/CD pipelines to an architecture defined with Principal Engineering.

Once operational, the role shifts to run: patching, tuning, feature development, and sustained operational support. This position is one of four engineers providing rotating coverage for a 24/7 operational capability.

ESSENTIAL DUTIES & RESPONSIBILITIES:

  1. Implement and operate an LLM-based code vulnerability detection capability on AWS Bedrock, including prompt/agent implementation, model invocation patterns, cost and token controls, and result normalization.
  2. Build and maintain the evaluation harness used to measure scanner quality, including regression corpora, repeatable test execution, and reporting on detection performance over time.
  3. Build and maintain scanning pipelines integrated with GitHub and Jenkins, deployed to ECS and provisioned through Terraform.
  4. Deliver findings and operational telemetry into Splunk; build dashboards and alerting for scanner health, coverage, and throughput.

SUPERVISORY RESPONSIBILITIES: None.

REQUIRED KNOWLEDGE, SKILLS & ABILITIES:

  1. 2+ years of related engineering experience, including hands-on information security or software development work.
  2. Exposure to AWS Bedrock or equivalent hosted LLM platforms, including model invocation and guardrail configuration.
  3. Working knowledge of Infrastructure as Code best practices and ability to build and modify Terraform modules.
  4. Experience working within CI/CD pipelines, preferably Jenkins, integrated with GitHub.
  5. Familiarity with application security concepts, common vulnerability classes, and SAST/SCA tooling behavior.
  6. Willingness and availability to work an assigned shift within a rotating 24/7 schedule, including nights, weekends, and holidays.

PREFERRED KNOWLEDGE, SKILLS & ABILITIES:

  1. Hands-on experience building on AWS, including IAM, ECS, and service-to-service authentication patterns.
  2. Hands-on experience with AWS Bedrock, including model selection and inference optimization.
  3. Experience with agentic or multi-step LLM workflows, including context management across large repositories.
  4. Experience with RESTful APIs and event-driven architectures.
  5. Splunk development experience, including data onboarding, search, and dashboarding.
  6. Experience with containerized workloads and Linux systems.
  7. Experience working in Agile methodologies and development.
  8. Prior experience in a regulated financial services environment.
  9. Industry standard certifications such as AWS Solutions Architect Associate, AWS Security Specialty, or CompTIA Security+.

Similar jobs