Cribl does differently.
What does that mean? It means we are a serious company that doesn’t take itself too seriously; and we’re looking for people who love to get stuff done, and laugh a bit along the way. We’re growing rapidly - looking for collaborative, curious, and motivated team members who are passionate about putting customers first. As a remote-first company we believe in empowering our employees to do their best work, wherever they are.
As the data engine for IT and Security many of the biggest names in the most demanding industries trust Cribl to solve their most pressing data needs. Ready to do the best work of your career? Join the herd and unlock your opportunity.
Why You’ll Love This Role
We are seeking a talented and experienced Staff AI Security Engineer to help build Cribl’s new AI Systems team. In this pivotal role, you will design, implement, and operationalize security and governance frameworks that enable rapid AI adoption to scale safely across Cribl’s internal systems and workflows. This is a foundational role on a newly established team tasked with providing the shared infrastructure, security guardrails, and reusable patterns needed to turn AI from fragmented experimentation into durable company capabilities.
You will be instrumental in bringing security, governance, and safety to Cribl’s rapidly expanding AI footprint, including API tokens, secrets management, MCP security, shadow AI mitigation, AI telemetry, and compliance readiness. The team’s mandate is to provide the “paved road” for AI at Cribl: secure access, governed integrations, reusable workflows, and a platform that enables teams to move faster without creating security, compliance, or operational risk.
This role will be part of the Corporate AI Systems team and will report directly to the Chief Information Security Officer (CISO). It will partner closely with stakeholders across Security, Enterprise Applications, Product, Engineering, IT, Legal, and the various business teams adopting AI to ensure Cribl’s AI capabilities scale securely and pragmatically.
As An Active Member Of Our Team, You Will...
As the Staff AI Security Engineer, you will be the foundational builder of Cribl’s AI security and governance layer. Your key responsibilities will include:
- AI Security Architecture & Governance: Define, threat model, and operationalize the security architecture for Cribl’s internal AI platform, including standards, controls, approval patterns, and secure-by-design guidance for AI use cases before they scale into production.
- Shadow AI Discovery & Remediation: Partner with Business Operations to maintain visibility into AI tools, licenses, API tokens, MCP servers, and ad hoc workflows in use across the company, and monitor for ungoverned or high-risk patterns that require remediation.
- MCP Security & Registry Management: Own the framework for vetting MCP servers, maintaining an approved registry, defining risk tiers, and enforcing secure connection patterns as MCP adoption expands across teams.
- Secrets, Identity & Token Protection: Establish secure patterns for secrets management, non-human identities, scoped credentials, OAuth-based access, and token governance to enforce least-privilege access and reduce credential exposure in AI builds.
- Prompt Injection Defense & Safe Execution Controls: Design and deploy guardrails for prompt injection defense, deterministic validation, human-in-the-loop approvals, and additional controls for high-risk workflows that combine sensitive data, untrusted content, and external action.
- AI Telemetry, Detection & Incident Response: Partner on building Cribl as the observability backbone for AI systems, including telemetry pipelines, abuse detection, audit trails, threat hunting, and incident response patterns for AI-specific security events.
- Compliance & Customer Governance Readiness: Partner with Cribl’s Compliance team to drive documentation and control readiness for AI-related obligations and customer scrutiny, including NIST AI RMF, ISO 42001, EU AI Act readiness, AI acceptable use standards, and customer-facing AI governance materials.
- Secure AI-Assisted Corporate Engineering Enablement: Establish the security controls required for AI-assisted internal development, secure coding practices, secrets management, SCA/SAST/DAST expectations, and review patterns for AI-generated code and workflows.
- Risk Metrics & Security Effectiveness: Define and track the metrics that matter most for AI security, including shadow AI exposure, control coverage, incident trends, security review turnaround, and reduction of high-risk patterns as the platform scales across the company.
- We are a remote-first company and work happens across many time-zones - you may be required to occasionally perform duties outside your standard working hours.
If You’ve Got It - We Want It
- Staff-level security engineering experience: 7+ years of experience in security engineering, application security, cloud security, identity and access management, detection engineering, or related technical security roles, with a track record of building practical controls that scale.
- AI security fluency: Strong hands-on experience with modern LLM and agentic systems, including threat models for prompt injection, tool use, model access, RAG, AI coding tools, and API-driven integrations.
- Identity, secrets, and governance depth: Proven experience with OAuth, service identities, secrets management, RBAC / ABAC / scoped permissions, auditability, and secure-by-default architecture patterns.
- Security architecture judgment: Experience designing risk-tiered controls, approval models, and protective guardrails that balance innovation with real-world compliance and operational needs.
- Detection and incident response mindset: Ability to operationalize telemetry, define actionable detections, investigate security signals, and build pragmatic response paths for new threat surfaces.
- Compliance and customer trust orientation: Familiarity with frameworks and customer expectations relevant to enterprise AI governance, including NIST AI RMF, ISO 42001, SOC 2, GDPR, SOX, or adjacent control environments.
- Cross-functional communication: Strong written and verbal communication skills, with the ability to simplify risk, controls, and tradeoffs for engineers, business stakeholders, and senior leaders alike.
- Builder mentality: You are comfortable creating the first version of the registry, the standards, the playbooks, and the guardrails. Ambiguity energizes you.
- Outcome orientation: You care about materially reducing risk while enabling useful AI adoption. You understand that security only works if it is practical enough to be used.
- Preferred Qualifications
- Experience with AI development tools like Claude Code, AWS Bedrock, or similar enterprise AI platforms.
- Experience with MCP, skills, API security, gateway technologies, or tool-use architectures for AI agents.
- Familiarity with multi-agent workflow design, workflow security patterns, and human-in-the-loop orchestration controls.
- Experience with SCA / SAST / DAST, secrets management, SIEM / telemetry pipelines, and secure software delivery controls.
- Familiarity with enterprise systems such as Salesforce, NetSuite, Workday, Jira, Confluence, Slack, Google Drive, and Glean, especially where AI workflows introduce differentiated risk.
- Experience operating in a high-growth, remote-first B2B SaaS environment.
- Comfort partnering closely with Security, IT, GTM Ops, Finance, People, Legal, and Support stakeholders.
- Good jokes, or maybe better, bad jokes.
- A love for goats.
Salary Range ($128,000 - $200,000)
The salary for this role is dependent on geographic location. The salary offered within the range described will be based on the individual candidate’s job-related knowledge, skills, and experience. In addition to a competitive salary, Cribl also offers a generous benefits package which includes health, dental, vision, short-term disability, and life insurance, paid holidays and paid time off, a fertility treatment benefit, 401(k), equity, and eligibility for a discretionary company-wide bonus.
#LI-KJ1
#LI-Remote
Bring Your Whole Self
Diversity drives innovation, enables better decisions to support our customers, and inspires change for the better. We’re building a culture where differences are valued and welcomed, and we work together to bring out the best in each other. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or any other applicable legally protected characteristics in the location in which the candidate is applying.
Interested in joining the Cribl herd? Learn more about the smartest, funniest, most passionate goats you’ll ever meet at cribl.io/about-us.
