热门公司

招聘

职位Mercor

Security Engineer, Automation

Mercor

Security Engineer, Automation

Mercor

San Francisco

·

On-site

·

Full-time

·

2d ago

About Mercor

Mercor is defining the future of work. We partner with leading AI labs and enterprises to provide the human intelligence essential to AI development.

Our vast talent network trains frontier AI models in the same way teachers teach students: by sharing knowledge, experience, and context that can't be captured in code alone. Today, more than 30,000 experts in our network collectively earn over $2 million a day.

Mercor is creating a new category of work where expertise powers AI advancement. Achieving this requires an ambitious, fast-paced and deeply committed team. You’ll work alongside researchers, operators, and AI companies at the forefront of shaping the systems that are redefining society.

Mercor is a profitable Series C company valued at $10 billion. We work in-person five days a week in our San Francisco, NYC, or London offices.

You'll be the force multiplier for a security team that needs to operate like it's three times its size. There are secrets to migrate to Vault, detection rules to write, SAST/DAST pipelines to tune, lifecycle workflows to automate, and security tooling to integrate across every surface. This is not a DevOps role with a security label. You'll build the automation layer that makes a lean security team operate at multiples of its size - writing the pipelines, integrations, and tooling that eliminate manual work and accelerate every security function.

We use AI heavily in our own security work. You should be comfortable building alongside AI code-gen tools, using LLMs to accelerate development, and treating automation as the default answer to any repeatable process. If you see a manual workflow and immediately think about how to script it, you'll fit in here.

We're in-person five days a week at our SF headquarters, with first Fridays remote.

What You'll Build:

  • Secrets migration pipelines - moving application secrets into Hashi Corp Vault with zero downtime

  • Security orchestration and automated response (SOAR) workflows - connecting alerts from Panther SIEM, Sentinel One EDR, and Wiz CSPM into automated investigation and response playbooks

  • SAST/DAST pipeline tuning - reducing false positives, integrating findings into developer workflows, and building feedback loops that improve signal over time

  • Identity lifecycle automation - onboarding/offboarding workflows that provision and deprovision access across 53+ SaaS applications via Okta

  • Detection-as-code pipelines - version-controlled detection rules that deploy through CI/CD, with testing and validation built in

  • Security metrics and reporting dashboards - automated collection of KPIs that give leadership visibility without manual spreadsheet work

What We're Looking For

  • You've built automation that a security team relies on daily - not just proof-of-concept scripts

  • Strong software engineering skills in Python, TypeScript, or Go - you write production-quality code with tests, error handling, and documentation

  • Experience with CI/CD systems (GitHub Actions, CircleCI, or similar) - you've built pipelines, not just used them

  • Familiarity with secrets management (Hashi Corp Vault, AWS Secrets Manager) - migration, rotation, and dynamic credential patterns

  • Experience integrating security tools via APIs

  • SIEMs, EDR, CSPM, identity providers, ticketing systems

  • You understand detection engineering well enough to write and tune rules, even if it's not your primary focus

  • 5+ years of professional experience in security engineering, security automation, Dev Sec Ops, or software engineering with a security focus

Bonus Points

  • Experience with SOAR platforms or building custom orchestration workflows

  • Familiarity with infrastructure-as-code (Terraform, CloudFormation) and Git Ops patterns

  • Experience automating compliance evidence collection (SOC 2, ISO 27001)

  • You've built integrations between identity providers (Okta, Azure AD) and downstream systems

  • Background in detection engineering - writing Sigma rules, Panther detections, or similar

  • You've measured and demonstrated the ROI of security automation in a previous role

Why Mercor

  • Maximum leverage. Every automation you build multiplies the output of the entire security team. You'll see direct, measurable impact on team capacity.

  • AI-native automation. You'll use frontier AI tools daily - for code generation, pipeline development, and anything that benefits from an AI co-pilot.

  • Ownership from day one. You'll own the entire security automation domain - from secrets management to SOAR to detection pipelines.

  • See the future early. Working alongside AI labs means you'll understand frontier model capabilities months before the market.

Benefits

  • Equity ownership in a high-growth, profitable company

  • Relocation support to San Francisco, NYC, or London as needed

  • Housing support near our SF office

  • Daily meal stipend

  • Premium fitness membership at Equinox

  • Comprehensive health insurance

总浏览量

0

申请点击数

0

模拟申请者数

0

收藏

0

关于Mercor

Mercor

Mercor

Seed

Mercor is an AI-powered platform that connects companies with vetted software engineers and technical talent through automated screening and matching processes.

1-50

员工数

San Francisco

总部位置

评价

4.0

10条评价

工作生活平衡

3.2

薪酬

3.5

企业文化

4.3

职业发展

3.4

管理层

4.2

72%

推荐给朋友

优点

Supportive management

Great team culture and collaboration

Good benefits and vacation policy

缺点

Heavy workload and overtime

Communication issues

Non-competitive pay

薪资范围

6个数据点

Mid/L4

Mid/L4 · Machine Learning Engineer

1份报告

$210,126

年薪总额

基本工资

$161,637

股票

-

奖金

-

$210,126

$210,126

面试经验

3次面试

难度

3.0

/ 5

录用率

67%

体验

正面 0%

中性 67%

负面 33%

面试流程

1

Application Review

2

AI Interview

3

Domain Expertise Assessment

4

Offer

常见问题

Domain Knowledge

Behavioral/STAR

Leadership Experience

Industry Expertise