The opportunity
Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems.
What you'll do
Serve as trusted advisor to team’s leadership and partner teams by clearly: articulating business risks associated with security issues
Execute the long-term vision for the Security team in alignment with Cohere’s product and business goals.
Collaborate closely with leadership to prioritize high-impact initiatives and strategic customer engagements.
Vulnerability Management: Develop and implement enterprise-wide vulnerability management processes and tooling, including identification, prioritization, remediation tracking, and reporting, including customer artifacts
Static Application Security Testing (SAST): Establish SAST programs, integrate tools into CI/CD pipelines, and analyze results to identify and remediate security flaws in source code
Dynamic Application Security Testing (DAST): Implement DAST methodologies, configure scanning tools, and conduct regular assessments of running applications
What they're looking for
- Penetration Testing: Lead and oversee internal and external penetration testing engagements, including web application, API, network and agentic AI platform including managing our bug bounty program
- Security Architecture Review: Collaborate with development teams to review and validate security architecture and design patterns
- Secure SDLC Integration: Embed security practices throughout the software development lifecycle, working closely with engineering and product teams
- Team Leadership: Lead and grow a high-performing team of Security engineers through hiring, coaching, and mentorship