Claylabs

Claylabs

Security Engineer

New York · Staff+

Sponsorship not specifiedDetected 97 days ago
Code ReviewAWSCloud PlatformsTerraformCybersecuritySOC OperationsDetection Engineering

About the role

  • We see growth as a creative practice, not a formula.
  • As AI makes execution faster and tactics easier to copy, creativity is the only lasting advantage.
  • In 2025, we raised a $100M Series C https://www.nytimes.com/2025/08/05/business/dealbook/clay-ai-marketing-fundraise.htmlbacked by world-class investors including Sequoia, CapitalG, and First Round - and crossed $100M in revenue.

Responsibilities

  • Build security primitives, tooling, and automation that scale with the product and engineering org
  • Define and implement our strategy for modern security workflows: AI-assisted vulnerability discovery, automated code review, threat detection, and remediation
  • Collaborate with Infrastructure and Product Engineering to make secure defaults the easiest path
  • Own projects end to end: design, implementation, rollout, and measurement
  • Develop preventative controls and safe deployment patterns that reduce the probability and blast radius of incidents.
  • Lead secure design and secure coding practices, and prevent common vulnerability classes.
  • Perform architecture reviews and code-level security reviews, and work hands-on with engineers to ship fixes.
  • Own the vulnerability discovery and validation lifecycle: static and dynamic analysis, dependency checks, pen tests, and bug bounties. Integrate modern automated detection systems (including Claude Mythos-class models) to find vulnerabilities at scale.
  • Build and deploy security agents and automated workflows that can scan codebases, propose fixes, and in some cases autonomously deploy security patches.
  • Build frameworks and reusable components for authentication, authorization, and secure-by-default patterns.

Requirements

  • Strong software engineering fundamentals and a track record of shipping production systems
  • Deep expertise in either cloud security or application security, with the ability to flex into the adjacent domain

Skills

  • Secure our cloud environment (IAM, network policies, container security, secrets management, and misconfiguration prevention).
  • Define and enforce least-privilege access patterns across services and humans.

Benefits

  • We also launched a community equity round https://www.clay.com/blog/community-equity-offering, for our customers, agency partners, and club members.

Company info

  • Our community http://community.clay.com includes 11,000+ customers, 150+ integration partners, 125+ agencies, 50+ Clay clubs https://luma.com/claylive, and 30k members on Slack.
  • Our culture https://nextplayso.substack.com/p/spotlight-clay is unique inside and outside of work. Our team members are also DJs, activists, writers, clowns, marathoners, skydivers, psychedelic therapists, social workers, and more.
  • All employees can work for free with world-class coaches who specialize in creativity, management, and more.
  • Our operating principles - including negative maintenance and non-attached action - guide our work. Read more about them here https://cdn.prod.website-files.com/61477f2c24a826836f969afe/685d83a71452245cc1129791_4d770abfd83e276ec15315a2e06945bd_Clay2025_OperatingPrinciples.pdf.
  • Read about us in the NYT https://www.nytimes.com/2025/08/05/business/dealbook/clay-ai-marketing-fundraise.html, Forbes http://google.com/search?q=forbes+clay&rlz=1C5OZZY_enUS1155US1155&oq=forbes+clay&gs_lcrp=EgZjaHJvbWUyBggAEEUYOTIHCAEQABiABDIHCAIQABiABDIHCAMQABiABDIHCAQQABiABDIHCAUQABiABDIHCAYQABiABDIHCAcQABiABDIHCAgQABiABDIHCAkQABiABNIBBzkzM2owajSoAgOwAgHxBVAe8UAxJx_p&sourceid=chrome&ie=UTF-8, First Round Review https://review.firstround.com/podcast/inside-clays-unconventional-path-to-1-25b/, and more https://www.clay.com/press.
  • Hear from our employees directly on our Glassdoor https://www.glassdoor.com/Overview/Working-at-Clay-EI_IE9850794.11,15.htm page!
  • SECURITY ENGINEERING @ CLAY
  • We're building a modern security organization from the ground up.
  • We're hiring senior or staff-level security engineers who are strong software engineers first, with deep expertise in either Cloud Security or Application Security and working knowledge across both.
  • This is a hands-on role.
  • You'll spend significant time writing production code-security tooling, detection systems, remediation pipelines, and frameworks that make secure defaults the easiest path.
  • You'll also help define how we leverage modern automation, including frontier AI models (e.g. Mythos), to scale security operations: autonomously discovering vulnerabilities, reviewing AI-generated code, and building detection systems that understand context and intent.

This listing is sourced directly from Claylabs's careers page and normalized into a canonical job model.