Skip to content
S

Security Engineer

Full Time Remote USA - Remote, US Mid

Opens in a new tab on website.

Job Description

COMPANY OVERVIEW Deepgram is the leading platform underpinning the emerging trillion-dollar Voice AI economy, providing real-time APIs for speech-to-text (STT), text-to-speech (TTS), and building production-grade voice agents at scale. More than 200,000 developers and 1,300+ organizations build voice offerings that are ‘Powered by Deepgram’, including Twilio, Cloudflare, Sierra, Decagon, Vapi, Daily, Cresta, Granola, and Jack in the Box. Deepgram’s voice-native foundation models are accessed through cloud APIs or as self-hosted and on-premises software, with unmatched accuracy, low latency, and cost efficiency. Backed by a recent Series C led by leading global investors and strategic partners, Deepgram has processed over 50,000 years of audio and transcribed more than 1 trillion words. There is no organization in the world that understands voice better than Deepgram. COMPANY OPERATING RHYTHM At Deepgram, we expect an AI-first mindset—AI use and comfort aren’t optional, they’re core to how we operate, innovate, and measure performance. Every team member who works at Deepgram is expected to actively use and experiment with advanced AI tools, and even build your own into your everyday work. We measure how effectively AI is applied to deliver results, and consistent, creative use of the latest AI capabilities is key to success here. Candidates should be comfortable adopting new models and modes quickly, integrating AI into their workflows, and continuously pushing the boundaries of what these technologies can do. Additionally, we move at the pace of AI. Change is rapid, and you can expect your day-to-day work to evolve just as quickly. This may not be the right role if you’re not excited to experiment, adapt, think on your feet, and learn constantly, or if you’re seeking something highly prescriptive with a traditional 9-to-5. THE OPPORTUNITY Deepgram is looking for a Security Engineer to build and automate the technical controls behind our security program. Most of our infrastructure is bare metal in colocation datacenters — GPU-intensive, running containerized workloads on Docker, managed with Ansible, and shipped through CI/CD on GitHub Actions — with AWS used for overflow capacity and a small set of services. Our engineering culture is high-trust and fast-moving. That means controls have to be delivered as code, be reproducible, and produce their own audit evidence — anything that depends on someone remembering to do it manually will not survive. You will own real surface area: host hardening and configuration management across the fleet, vulnerability and patch management, penetration testing, container security, detection and response, CI/CD and supply chain security, and the engineering work behind our SOC 2, PCI DSS, and ISO 27001 obligations. You will also be expected to use AI and agentic tooling aggressively to punch above your weight on a small team, and to help us secure the AI systems we build and the AI tools we adopt internally. This is the hands-on technical seat. A GRC and Security Compliance Lead owns policy authorship, security questionnaires, and the auditor relationship; you own the controls themselves and the evidence they generate, and you give that role the technical answers it needs. This role reports to the Director of Information Security. Note: as reflected on our published compensation ranges, we are open on level. Strong mid-level and senior candidates are both in scope, and we will calibrate title, scope, and compensation to demonstrated experience. ABOUT DEEPGRAM Deepgram builds foundational voice AI — speech-to-text, text-to-speech, and voice agent infrastructure — used by enterprises and developers to build production voice applications at scale. Our models are trained and served on our own infrastructure, and we offer hosted, dedicated single-tenant, and self-hosted deployment options so customers can meet their own data residency and retention requirements. Learn more at deepgram.com http://deepgram.com. RESPONSIBILITIES - Build, deploy, and maintain security controls across our bare-metal fleet and AWS footprint — access management, network segmentation and firewalling, encryption and secrets management, logging and detection coverage, endpoint security, and vulnerability management. - Own configuration management and host hardening as code with Ansible, so baselines are reproducible across hundreds of Linux hosts and drift is detectable rather than merely documented. - Secure containerized workloads: Docker image build pipelines, registry scanning, runtime hardening and detection, and secrets management. - Run vulnerability management end to end — discovery, prioritization by real exploitability rather than raw CVSS, driving remediation with engineering teams, and reporting on it. - Own patch and update management as a program: the server fleet, the endpoint fleet, base images, OS and package updates, firmware where it matters, and dependency upgrades. Set and hold patch SLAs, track exceptions, and automate the routine cases so they do not depend on anyone remembering. - Own the penetration testing lifecycle: scoping and vendor selection, scheduling, triaging findings into engineering work with real owners and dates, verifying fixes on retest, and producing the summary we can share with customers. - Write detections, tune out noise, and take part in incident response. Improve log, telemetry, and security-agent coverage where we are blind. - Run periodic log and access reviews as a standing control, and automate the collection so each cycle produces its own evidence rather than a scramble. - Automate compliance evidence collection for SOC 2, PCI DSS, and ISO 27001, and support audit fieldwork on technical questions — the GRC lead owns the auditor relationship and the narrative; you own the systems that make the evidence true and repeatable. - Harden GitHub Actions CI/CD and the software supply chain: de

Skills & Technologies

PythonGoKubernetesagentAWS
Posted Oct 1, 2026

Find your next opportunity

Get new tech jobs delivered to your inbox every week.

Join 3,559 builders reading daily.

Also get