02 ago
|
Medallia
|
Buenos Aires
02 ago
Medallia
Buenos Aires
OverviewMedallia is the pioneer and market leader in Experience Management.
Our award-winning SaaS platform, Medallia Experience Cloud, leads the market in the management of experiences, insights, and actions for candidates, customers, employees, patients, and residents alike.
We believe that every experience is a memory that can last a lifetime.
Experiences shape the way people feel about a company.
And they greatly influence how likely people are to advocate, contribute, and stay.
At Medallia, we are committed to creating a world where organizations are loved by their customers and their employees.We empower exceptional people to create extraordinary experiences together.
Bring your whole self.The Role and TeamWe are seeking a Senior Staff Product Security Engineer to lead Medallia's security strategy and assurance efforts for AI-powered products, agentic systems, next-generation platforms, and emerging technologies.This individual will serve as the technical leader for AI Security and Security Assurance, partnering with Product, Engineering, Architecture, Data Science, and Security teams to ensure security is embedded into the design, development, and deployment of modern AI-enabled capabilities.The idóneo candidate combines deep expertise in application security, threat modeling, and security architecture with a strong understanding of Generative AI, LLMs, AI agents, and secure system design.
They will identify emerging risks, establish scalable security practices, and help define Medallia's long-term approach to securing AI-enabled products and platforms.
ResponsibilitiesAI Security LeadServe as the technical authority for security reviews involving:Generative AI applicationsLLM-powered featuresAI agentsAgentic workflowsMCP (Model Context Protocol) integrationsAI skills and marketplacesAI coding assistantsBring Your Own Model (BYOM)
capabilitiesDefine security requirements and guardrails for AI-enabled products and services.Evaluate emerging AI technologies and assess associated security risks.Partner with engineering and product teams to ensure AI features are secure by design.Threat Modeling & Security ArchitectureLead threat modeling efforts for critical product and platform initiatives.Establish and scale a threat modeling program across engineering organizations.Conduct security architecture reviews for high-risk and strategic initiatives.Develop security reference architectures, design patterns, and guidance for engineering teams.Identify systemic security risks and drive long-term remediation strategies.Security AssuranceOwn and evolve Product Security assurance activities including:Security reviewsSecurity assessmentsAI security reviewsSecurity testing strategiesSecurity requirements and standardsDefine risk-based approaches for evaluating emerging technologies.Partner with engineering teams to embed security validation throughout the SDLC.Secure Development & Developer EnablementEstablish secure development standards for AI-enabled applications.Drive adoption of secure coding practices across engineering teams.Develop scalable developer guidance and security enablement programs.Evaluate and implement approaches to improve security feedback during development,
including AI-assisted security review capabilities.Security Automation & InnovationIdentify opportunities to automate security reviews and reduce manual effort.Partner with security tooling owners to improve developer experience and security coverage.Define metrics that measure effectiveness of AI security and security assurance programs.Evaluate emerging security technologies relevant to AI and modern software development.Cross-Functional InfluencePartner closely with Product, Engineering, Architecture, Data Science, Privacy, Legal, Compliance, and Operations teams.Influence technical direction through expertise and relationship-building.Mentor Staff and Senior Engineers in threat modeling, architecture reviews, and AI security.Candidates based in the Buenos Aires vicinity will be prioritized as this role is Hybrid, 3 days per week onsite.
QualificationsMinimum Qualifications12+ years of experience in Product Security, Application Security, Security Architecture, or Security Engineering.Proven experience operating at Staff or Senior Staff level within a technology organization.Demonstrated expertise in:Threat ModelingSecurity Architecture ReviewsApplication SecurityCloud SecuritySecure SDLCVulnerability ManagementSecure Design PrinciplesDemonstated experience securing modern architectures including:APIsMicroservicesKubernetesContainersCloud-native platformsDemonstrated understanding of security frameworks and standards including:OWASPNISTSOC 2ISO *****PCI DSS Demonstrated ability to influence engineering organizations and drive security outcomes without direct authority.Preferred QualificationsExperience securing:Generative AI applicationsLLM-based productsAI agentsAgentic workflowsMCP integrationsRetrieval-Augmented Generation (RAG) systemsFamiliarity with AI security concepts including:Prompt InjectionIndirect Prompt InjectionTool AbuseAgent AuthorizationData LeakageModel AbuseAI Threat ModelingExperience developing security guidance for AI-enabled software development.Security certifications such as CISSP, CSSLP, GIAC, AWS Security Specialty, or equivalent.
📌 Senior Staff Product Security Engineer, Ai Security & Security Assurance (Buenos Aires)
🏢 Medallia
📍 Buenos Aires