Lightningai

Open

Senior Application Security Engineer, AI and Machine Learning

Location
San Francisco, California, United States; Seattle, Washington, United States
Posted
Jul 29, 2026
Last seen
Aug 7, 2026

About the role

Who We Are

Lightning AI is the company behind PyTorch Lightning. Founded in 2019, we build an end-to-end platform for developing, training, and deploying AI systems—designed to take ideas from research to production with less friction.

Through our merger with Voltage Park, a neocloud and AI Factory, Lightning AI combines developer-first software with cost-efficient, large-scale compute. Teams get the tools they need for experimentation, training, and production inference, with security, observability, and control built in.

We serve solo researchers, startups, and large enterprises. Lightning AI operates globally with offices in New York City, San Francisco, Seattle, and London, and is backed by Coatue, Index Ventures, Bain Capital Ventures, and Firstminute.

The Way We Work

The people who thrive here are builders who move fast, communicate openly, take ownership, and continuously improve themselves, their teams, and our company. Here's what that looks like in practice:

  • Move with Urgency: We move quickly, make thoughtful decisions, and keep momentum. We value action over perfection and learn by shipping.
  • Take Ownership: We own outcomes, not just our individual work. We make decisions that move the company forward and follow through.
  • Communicate Openly: We communicate directly, seek to understand, and create clarity for others. Honest conversations help us move faster together.
  • Build Great Teams: We lead by example, empower others, and create healthy teams where people can do their best work.
  • Raise the Bar: We're always improving ourselves. We learn from feedback, consistently challenge ourselves to grow, and focus on the work that matters most.
  • Think Long-Term: We design for what's next. We create scalable systems, simplify complexity, and use AI and automation to amplify our impact.

What We're Looking For

We are looking for a Senior Application Security Engineer to help secure our AI, machine learning, and inference platforms. This is a hands on technical role focused on building security into modern AI infrastructure, inference systems, and developer platforms.

You will work closely with platform engineers, ML engineers, and infrastructure teams to identify risks, design secure architectures, and build security tooling that enables engineers to move quickly and safely.

This role is execution focused. You will drive technical implementation, perform deep security reviews, and help build out our application security capabilities alongside the CISO and engineering leadership.

This role is hybrid out of our Seattle or San Francisco offices, with an in-office requirement of at least 2 days per week and occasional team and company offsites. We are not able to provide visa sponsorship for this role at this time.

What You’ll Do

Secure AI and Machine Learning Systems

  • Perform threat modeling across AI platforms, inference services, and ML pipelines
  • Identify risks such as prompt injection, model extraction, adversarial inputs, and data leakage
  • Review model serving architectures and inference pipelines
  • Partner with ML engineers to secure training, fine tuning, and deployment workflows
  • Help design isolation and security controls for multi tenant AI workloads

Application Security Engineering

  • Perform architecture and design security reviews
  • Conduct targeted code reviews for high risk components
  • Identify security gaps in APIs, micro-services, and distributed systems
  • Build secure patterns for authentication, authorization, and service to service communication
  • Help engineering teams implement secure defaults and guardrails

Inference Platform Security

  • Secure customer facing inference APIs and services
  • Protect against abuse, model extraction, and adversarial behavior
  • Design rate limiting, isolation, and workload protection controls
  • Build monitoring and detection for anomalous inference behavior

AI Supply Chain and Model Security

  • Evaluate open source models and dependencies
  • Secure model artifacts and distribution pipelines
  • Implement integrity validation and provenance controls
  • Help secure container images and runtime environments

Security Automation and Tooling

  • Build security automation for AI and application pipelines
  • Integrate security scanning into CI/CD workflows
  • Develop tooling to help engineers detect and fix issues early
  • Improve developer experience with security guardrails

What You'll