Databricks
Staff Security Software Engineer, AI Security
Remote - California · Staff+
Sponsorship not specifiedDetected 1 day ago
PythonJavaGoScalaDatabricksAWSGCPAzureCloud PlatformsCI/CDMachine LearningSparkLLMsRAGCybersecurityUnityResearchLeadershipMentoringPublic Speaking
About the role
- The AI Security team at Databricks sits at the frontier of securing the AI/ML services in the Databricks platform.
- As a Staff Security Software Engineer on the AI Security team, you are a senior technical leader who sets the standards for how Databricks secures its AI and ML capabilities.
- Contribute to the evolution of the Databricks AI Security Framework (DASF), maintaining and extending the risk taxonomy, control library, and testing methodology as AI capabilities evolve
Responsibilities
- Partner directly with AI and ML engineering teams to identify security risks early in the design process and define practical, scalable controls
- Contribute to internal knowledge assets, including training materials, design patterns, and threat model templates, that raise AI security fluency across the engineering organization
- As we ship AI capabilities at the leading edge of the industry, including Agent Bricks, the Genie suite, AI Model Serving, MLflow, and Unity AI Gateway, the AI Security team ensures these systems are designed, built, and operated securely.
- Our work also extends to securing our own usage of AI: building the right guardrails that enable Databricks employees to innovate and deliver securely.
- The team combines offensive security depth with AI/ML engineering knowledge to identify novel threats, build scalable defenses, and influence how AI products are architected from the ground up.
- We lead AI Red Team exercises, build security tooling for AI workloads, and partner directly with AI Product teams to embed security into the development lifecycle.
- Design and execute adversarial attack scenarios: prompt injection, jailbreaking, memory poisoning, cross-tenant data leakage in multi-tenant serving, and sandbox bypasses
- Develop proof-of-concept exploits for AI-specific vulnerability classes and perform variant analysis to identify the full scope of exposure across the AI platform
Requirements
- working knowledge of at least one additional language (Go, Java, Scala, Rust)
- Track record of driving cross-team AI security improvements and influencing product architecture decisions
Nice to have
- Published research on AI/ML security topics or experience presenting at AI security venues (DEF CON AI Village, NeurIPS workshops, Black Hat)
- Experience with OWASP Top 10 for LLMs, MITRE ATLAS, or similar AI security frameworks
- Familiarity with MLflow, Unity Catalog, Delta Lake, or Databricks platform internals
- OSCP or equivalent offensive security certification
- On the AI Security team, you'll work on a class of security problem that didn't exist five years ago, and that the industry is still figuring out.
- The problems are novel, the stakes are real, and the team working on them is exceptional.
- About Databricks
- Databricks is the data and AI company.
Benefits
- At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees.
- For specific details on the benefits offered in your region click here.
- Drive cross-team remediation for significant AI security findings, defining fix requirements, validating patches, and ensuring regression coverage in CI/CD pipelines
Company info
- At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel.
Equal opportunity
- Our Commitment to Diversity and Inclusion
Apply directly at Databricks →Create a free account for alerts like thisView Databricks immigration profile
This listing is sourced directly from Databricks's careers page and normalized into a canonical job model.