Responsibilities
- Conduct application security reviews — threat modeling, code review, and risk assessment — for new features and major product changes across Monarch's Django/Python stack
- Perform and improve SAST/DAST operations including triage, validation, and remediation tracking of findings in CI/CD pipelines
- Work through the vulnerability backlog with urgency — maintaining triage criteria, remediation tracking, and escalation paths in partnership with engineering squads
- Perform and coordinate penetration testing and security assessments against Monarch's web and API surfaces
- Apply and improve AI security review processes for LLM-integrated features and agentic attack surfaces — covering prompt injection, data leakage, model abuse, and supply chain risk
- Build and maintain security automations and AI-powered tooling, and define and assess security requirements for AI workflows and agentic systems.
- Participate in the weekly security on-call rotation
Benefits
- Work wherever you want! As a fully remote company with no central office, we want you to work wherever you are happiest and most productive. Whether that’s out of your home, a co-working space, or elsewhere.
- Competitive cash and equity compensation in a hyper growth, early stage company.
- Stipend to set-up your ideal working environment.
- Competitive Benefit Plans for employees based on your location (e.g. in the US we offer: Medical, dental and vision benefits and the ability to contribute to a 401k plan).
- Unlimited PTO.
- 3 day weekend every month! We take off the “First Friday” every month to focus on rest, recuperation, or just having fun!
Additional Information
- Team collaborates synchronously mostly from 9 AM – 2 PM PT and embraces asynchronous work to stay connected across time zones.
- Applicants from almost anywhere are welcome.
- Equal opportunity employer valuing diversity, no discrimination on various bases.
- Compliance with California Fair Chance Act and San Francisco Fair Chance Ordinance.