Why Conduct
The world's largest enterprises are burdened by the software they run on. Conduct is pioneering the AI operating system that tackles this complexity, unlocking unprecedented levels of speed, output, and ambition. We are at the cusp of this revolutionary mission and are closing a M+ Series A from top-tier investors, further solidifying our position. Our team is small but talent-dense, and we value extreme ownership, high velocity, and low-ego collaboration. If you bring the same drive, this is where your life's work will be defined.
Who We Hire
Our security is foundational to earning and maintaining trust. We seek someone who is deeply invested in our security posture and genuinely cares about getting it right. This is a builder's role as much as an operator's: you'll design and ship security features that meet the demands of our enterprise customers, not just run controls and tooling.
You'll Stand Out If
You have shipped security features as a software engineer, such as BYOK per tenant, SSO/SCIM, or SIEM-compatible audit logging - not just configured or audited them.
You have hands-on experience with enterprise security requirements, completing security questionnaires and navigating customer requirements around data handling and contractual agreements.
You are confident acting as the technical point of contact for developers, CISOs, and clients during security due diligence conversations.
You bring pragmatic judgement, balancing security rigour with the speed a startup needs to move at.
You are genuinely excited about InfoSec and motivated to keep growing; we are open to less experience if the drive and aptitude are clearly there.
What You'll Own
You'll take the lead on our security posture end to end: the day-to-day operational work of keeping us secure, the security capabilities our enterprise customers demand, and the bigger initiatives on our security roadmap as we build out the function. This is as much a software engineering role as a security ops one: expect to spend real time in our codebase building features, alongside hands-on investigation, remediation, and shaping how security scales as we grow from 20 to 40+ engineers.
Day to Day, You'll
Design and build security features that ship in our product, like BYOK per tenant, SIEM-compatible audit logs, and SSO/SCIM, working directly in the codebase alongside product engineers.
Own enterprise security end to end, completing customer security questionnaires, working through requirements around data handling and contractual agreements, and acting as the technical point of contact for our clients' CISOs and security teams.
Monitor and harden our cloud environment, tracking security recommendations, driving remediation, and making pragmatic risk-acceptance calls where they're justified.
Investigate and respond to security alerts across our endpoint, cloud, and application stack.
Build out our detection and monitoring capabilities, evolving our SIEM with alerting that cuts through the noise.
Own vulnerability management end to end, triaging, tracking, and driving issues through to resolution.
Proactively hunt for threats, from unusual behavior in our environment to emerging risks like package and supply chain compromises.
Run and refine security scanning across our infrastructure, applications, and dependencies.
<