Skip to main content

Staff+ Security Engineer, Risk Engineering

Anthropic
Hybrid - SF, NYC or Seattle, at least 25% in officeUpdated 1d ago
Compensation
$320k–$405k
Published range · Top quartile for Security (73 listings)
Location
Hybrid - SF, NYC or Seattle, at least 25% in office
Remote eligibility
Employment
Full-time
Staff / Principal
Role family
Security
AI / ML
Role skills
Apply on job-boards.greenhouse.io
Job actionsApply now
Job actionsApply now

About the job

About the role

Anthropic's Security Risk team is responsible for how the company identifies, prioritizes, and drives treatment of its most important security risks. The team is rebuilding risk management to operate as an engineering function through automation and AI-native platforms, working in deep partnership with Security Engineering to define the security program. This is largely greenfield work with a direct line to CISO-level decisions.

Key responsibilities

  • Take ownership of Anthropic's most complex security risk problems and drive them end to end with minimal oversight, turning ambiguous signals into a defensible view of severity and likelihood.
  • Build systems that make risk measurable and scalable, including quantification tooling, automated intake and triage, and observability for partner teams.
  • Work alongside Security Engineering as a calibrated technical peer, pressure-testing architectures and treatment plans and translating findings into prioritized remediation roadmaps.
  • Mentor engineers and risk practitioners and help build a risk engineering culture.
  • Work across identity and secrets management, developer security and supply chain, infrastructure security, and secure frameworks.
  • Identify systematic risks through threat modeling and structured assessment, applying methods such as calibrated estimation and Monte Carlo simulation.
  • Design and build AI-native risk tooling that uses Claude to classify incoming risks, augment triage, and continuously sense changes in the risk landscape.
  • Create dashboards and data pipelines that give engineering and product teams real-time visibility into their risk posture.

Minimum qualifications

  • At least 8 years of software engineering or security engineering experience, including leading and remediating complex security risks independently.
  • Bachelor's degree in a related field or equivalent experience.
  • Strong programming skills in Python or at least one systems language such as Go, Rust, or C/C++.
  • Broad knowledge across core security engineering domains, with depth in at least one.
  • Calibrated risk judgment and experience leading cross-functional security initiatives.
  • Outstanding communication skills and a track record of bringing clarity and ownership to ambiguous technical problems.
  • Passion for AI safety and the role security and risk management play in building trustworthy AI systems.

Preferred qualifications

  • Owned a named security risk and driven it from discovery through remediation across multiple teams.
  • Briefed executives on risk decisions and defended recommendations under challenge.
  • Built security automation, detection, or risk platforms adopted across an engineering organization.
  • Shipped LLM or agent-powered tooling and workflows that automate security or risk activities.
  • Built or operated a quantified security risk program (FAIR-style decomposition, Monte Carlo simulation, loss exceedance analysis).
  • Familiarity with SOC 2, ISO 27001, or FedRAMP.

Compensation and logistics

Annual salary: $320,000—$405,000 USD. Minimum education: Bachelor's degree or equivalent. Location-based hybrid policy: all staff are expected to be in one of Anthropic's offices at least 25% of the time. Visa sponsorship is offered.

Skills & tags

What you can verify before applying

Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.