Luma AI logo

Staff Security Software Engineer

Luma AI

Redwood City, CAJobNo compensation foundPosted 3w agoVerified open 3 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Redwood City, CA
Work Authorization
Not specified

Job overview

Luma AI is hiring a Staff Security Software Engineer. The role builds security foundations for Luma's AI models and products, focusing on identity, access control, secrets, encryption, and autonomous system authority. It is a hands‑on senior security‑builder position that designs secure‑by‑default systems, leads threat modeling, and drives enterprise security readiness.

Key focus areas include Design and govern access to production systems with scalable RBAC/ABAC across infrastructure and products, Build robust secrets management, credential lifecycle, encryption, and key‑management patterns, and Define how agents and automated systems receive, scope, and lose authority.

Important skills include Security Engineering, Identity Management Systems, Access Controls, Encryption, Key Management, and Threat Modeling. Preferred (not required): Scalable Security Architectures, Least-Privilege Access, Modern Identity Models, and Durable Secrets And Credential Lifecycle Practices.

Skills & qualifications

RequiredNice to have

Skills

Security EngineeringIdentity Management SystemsAccess ControlsEncryptionKey ManagementThreat ModelingIncident ResponseSystems ThinkingSoftware DevelopmentForensic SciencesAutomationEnterprise SecurityIdentity ManagementAccess ControlSecrets ManagementCryptographyRBAC/ABACCredential Lifecycle ManagementAuditabilityForensic VisibilityIncident Detection and ResponseEnterprise Security ReadinessWriting CodeReviewing InfrastructureShipping SystemsTrust BoundariesHigh AgencyBalancing Pragmatism With Long-Term RigorScalable Security ArchitecturesLeast-Privilege AccessModern Identity ModelsDurable Secrets and Credential Lifecycle PracticesSecuring Multi-Tenant AI PlatformsPermissioning Autonomous SystemsDetection and Response in High-Growth EnvironmentsRepresenting Security in Customer and Partner Discussions

Qualifications

Built and Operated Security Foundations in Production EnvironmentsExperience Evolving Organizations Toward Mature Security Architectures

Full job description

You'll build the security foundations under Luma's models and products: identity, access control, secrets, encryption, and how autonomous AI systems are granted and constrained in their authority. This is a hands-on, senior security-builder role.

As adoption scales, Luma's models are becoming critical infrastructure for enterprises, and AI systems are becoming actors that retrieve data, call tools, and take actions on their own. You'll design secure-by-default systems rather than bolt security on afterward. It fits an engineer who writes code, thinks in trust boundaries, and drives problems to resolution. If you want a policy-only or review-only security role, this is a builder seat instead.

What You'll Own

  • Design and govern how access to production systems is granted, with scalable RBAC/ABAC across infrastructure and products.

  • Build robust secrets management, credential lifecycle, encryption, and key-management patterns.

  • Define how agents and automated systems receive, scope, and lose authority.

  • Create auditability and forensic visibility for user and system actions.

  • Lead threat modeling across infrastructure, product, and research, and strengthen incident detection and response.

  • Make secure patterns easy and automatic for engineering teams, and drive enterprise security readiness.

First 90 Days

One way the first 90 could unfold.

  • Days 1–30 — Immerse & Diagnose: Map the current access, secrets, and trust boundaries, and where the biggest risks and enterprise gaps are.

  • Days 30–60 — Ship & Validate: Ship a foundational system (identity/access or secrets management) that engineers actually adopt.

  • Days 60–90 — Scale & Systemize: Extend to agent permissioning and audit, and build toward enterprise security readiness.

What You Bring

  • You've built and operated security foundations in real production environments.

  • Excellent at writing code, reviewing infrastructure, and shipping systems.

  • You think in systems and trust boundaries, and understand that software can act with real authority.

  • Deep thought about how services, automations, or models are scoped, constrained, and observed.

  • High agency, and the ability to balance pragmatism with long-term rigor.

Nice to Have

  • Experience evolving organizations toward mature, scalable security architectures.

  • Least-privilege access and modern identity models, and durable secrets and credential lifecycle practices.

  • Experience securing multi-tenant AI platforms and permissioning autonomous systems.

  • Detection and response in high-growth environments, and representing security in customer and partner discussions.

About Luma: Luma's mission is to build unified general intelligence that can generate, understand, and operate in the physical world. We believe multimodality is critical for intelligence — the next step beyond language models comes from vision. Luma is an equal opportunity employer.

You've read the whole posting — now see how you match it.