Startups · AI

Founding Security Engineer

Schemata · San Francisco · Remote

← All jobs
About Schemata

Schemata is a spatial intelligence company that is building the world's AI interface. Immersive, AI-native training built for the speed and scale of modern operations. Backed by a16z speedrun.

About the role

Own the security architecture: define and implement how identity, authorization, tenancy isolation, encryption and audit logging work across our platform, and review designs before they become expensive to change Red team our AI systems: probe the LLM and spatial reasoning surfaces the way an adversary would through prompt injection, jailbreaks, tool-use and agent abuse, retrieval and training data poisoning, model extraction, and the failure modes specific to grounding models in customer documents and 3D scenes..

What they're looking for

  • Strong experience in security engineering, application security or cloud security with hands-on implementation ownership, not purely policy or GRC
  • Deep AWS security expertise: IAM design, VPC and network controls, KMS, GuardDuty/Security Hub, and least-privilege at scale
  • Strong applied knowledge of application security: authN/authZ design, common vulnerability classes, secure code review, threat modeling
  • Ability to write real code (Python) to automate controls, evidence collection and tooling
  • Working knowledge of at least one major compliance framework (NIST 800-53/RMF, FedRAMP, SOC 2, or ISO 27001) and the practical work of evidencing controls
  • Container and Kubernetes security experience: image hardening, runtime policy, supply chain integrity
More about this role

At Schemata, we are transforming the $400 B virtual‑training and simulation market by fusing 3D computer vision, neural rendering and large multimodal models inside highly regulated industries. Our platform delivers photorealistic, intelligent 3D experiences, demanding robust spatial reasoning, high‑performance data pipelines and seamless integration between traditional graphics and AI‑driven perception.

Own the security architecture: define and implement how identity, authorization, tenancy isolation, encryption and audit logging work across our platform, and review designs before they become expensive to change

Red team our AI systems: probe the LLM and spatial reasoning surfaces the way an adversary would through prompt injection, jailbreaks, tool-use and agent abuse, retrieval and training data poisoning, model extraction, and the failure modes specific to grounding models in customer documents and 3D scenes..

Implement continuous security monitoring: own the security pipeline (SAST/DAST, dependency and container scanning, secrets detection, IaC policy checks) and the vulnerability management that follows from it.

Run detection and response: own the security monitoring...

Read the full posting on Schemata's site ↗

Engineering

Build your edge while you search

Free tools for founders and investors, plus VC Unfiltered, our take on startups, venture and the people who build them.