June 2026 archive · For research and skill exploration. Current job availability is unverified.
Notion
Application Security Engineer, AI Security
Secure AI products at scale by designing threat models and preventing agentic vulnerabilities.
NotionText summary from the June 2026 archive. original source →
The role
This senior individual contributor role focuses on embedding security into Notion's rapidly expanding AI and agentic features. The engineer will work across product and engineering teams to architect secure systems, perform red teaming, and educate developers on AI-specific risks like prompt injection attacks.
What you'd do
- Define security models for new AI products before launch, ensuring alignment with enterprise requirements
- Execute hands-on security testing and build automated red team tools targeting AI-specific attack vectors
- Advise product teams on secure design patterns that make security the default path
- Mentor developers on secure coding practices for AI-assisted tools and agentic systems
- Lead incident response and mitigation strategies for application security issues
What they're looking for
- Minimum six years designing and building secure software with product teams
- Strong ability to decompose complex problems and collaborate effectively
- Business-minded approach that balances security investments with organizational outcomes
- Clear communication of technical concepts to diverse audiences
- Comfort with rapid growth, ambiguity, and self-directed execution
- Familiarity with modern AI development tools and pragmatic technology adoption
Nice to have
- Production experience building LLM or ML applications with orchestration and retrieval
- Published security research or vulnerability disclosures related to AI
- Participation in bug bounty programs or capture-the-flag competitions
- Involvement in security communities, user groups, or conferences
Summary written by RoleDeck from the original posting. This is an extracted, own-words summary and may contain errors. The original source may have changed or expired.