Security Operations Engineer

AssemblyAI · Remote · $180k - $220k
full-time senior Posted 1 day ago

Before you apply

Build my evidence-backed draft — free Apply on company site →

Paste your relevant resume section or 2–4 true bullets. See supported requirements and honest gaps. No account and no application sent.

Get weekly job alerts like this →

About this role

Why AssemblyAI AssemblyAI builds the best-in-class Voice AI models powering the next generation of voice applications. Our models serve 600M+ inference calls monthly, process 1M+ hours of audio daily, and power 2 billion+ end-user experiences. The Voice AI space is at an inflection point; we’re looking for folks truly excited to join a small team and help define the future of the industry. We are one of the most capital-efficient AI companies on the planet - with under 100 people generating roughly $500K ARR per employee, we sit among the top 5 most revenue-dense teams within the fastest-growing AI companies today. That's not an accident; it's a deliberate choice to stay lean, move fast, and give every person on the team outsized ownership and impact. With thousands of customers including Granola, Fireflies, Figure AI, and CallRail, the company has real scale - processing over 2 million hours of audio daily and handling more than 1 million API calls every day. This is a rare growth-stage opportunity where the business is proven and the trajectory is steep, but the team is still small enough that your fingerprints are on everything. If you've ever felt buried under layers of bureaucracy, starved of real ownership, or frustrated watching your work disappear into a slow-moving org, AssemblyAI is built differently. The company operates as a true meritocracy, with no heavy planning or approval processes and no gatekeeping on the tools or information you need. For anyone who genuinely cares about voice AI, not as a trend to chase, but as a technology to build,  this is the place where the most interesting problems at the most interesting scale are being solved by a team small enough that you'll actually know everyone's name. We’re committed to creating a space where our employees can bring their full selves to work and have equal opportunity to succeed. No matter your race, gender identity or expression, sexual orientation, religion, origin, ability, age, veteran status, if joining this mission speaks to you, we encourage you to apply! About the role: AssemblyAI runs a mature, multi-framework security and compliance program—including SOC 2 (all trust criteria), ISO 27001, and PCI 4.0—that protects the infrastructure and customer data behind our industry-leading Voice AI API. We're hiring a Security Operations Engineer to join our IT & Security team and take day-to-day ownership of the operational backbone of that program.   This role is centered on security operations and GRC: running compliance audit cycles end to end, gathering and organizing evidence, enforcing and verifying controls, executing access reviews, managing vulnerability triage and remediation follow-up, and responding to customer security questionnaires. It's the work that turns a security program on paper into one that demonstrably runs. You'll also have room to grow the technical side of the role. We automate wherever we can, and you'll be encouraged to build scripts, integrations, and tooling that reduce manual toil and improve the program.   This is a high-ownership role on a small team. You'll work closely with engineers across the company, partner with sales and legal on customer-facing security needs, and have a direct hand in how AssemblyAI enforces security across its products, infrastructure, and internal tools—including a rapidly growing landscape of agentic AI development. What You'll Do: Drive SOC 2, ISO 27001, PCI 4.0, and other compliance audit cycles: gather and organize evidence, document, design, and build controls, coordinate directly with auditors through fieldwork, and collaborate with internal teams on remediation. Own the compliance automation platform (Vanta): monitor control status, chase down failing checks, keep integrations healthy, and update the risk register as the business and infrastructure evolve. Run vendor and third-party risk reviews, security assessments of new tools, periodic re-reviews, and track subprocessor and vendor inventories. Partner with sales and legal responding to customer and vendor security questionnaires, RFP security sections, and trust-and-safety inquiries. Drive vulnerability triage and prioritization across teams, tracking remediation against SLAs and reporting metrics to stakeholders. Monitor and respond to alerts from endpoint, cloud, identity, and application security tools; investigate, escalate, and close the loop. Support incident response for security events: evidence collection, timeline construction, documentation, and tracking of post-incident action items. Maintain and improve security runbooks, process documentation, and operational playbooks. Build automation to reduce the manual burden via scripts, integrations, reporting, and tooling. What You'll Need: 3+ years of experience in security operations, GRC, IT security, or a related role 2+ years of experience with compliance audit cycles—you've gathered evidence, documented control

Similar Jobs

Related searches:

Remote Jobs Senior Jobs Remote Senior Jobs Senior AI Safety & SecuritySenior Machine LearningSenior NLP & Language AISenior AI Agents & RAGSenior AI Infrastructure code-generationllmsecurityspeechcloudagents

Get jobs like this delivered weekly

Free AI jobs newsletter. No spam.