Staff Security Engineer at Box

Warsaw, Masovian Voivodeship, Poland

Box Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Technology, Content Management, AIIndustries

Requirements

  • Experienced security engineer with 5+ years in application security, DevSecOps, or security tooling
  • Ideally with exposure to AI/ML security challenges
  • Deep understanding of AI agent architectures, generative AI models, and associated security risks such as prompt injection, adversarial attacks

Responsibilities

  • Lead the design and implementation of security architectures specifically tailored for Generative AI and Agentic AI systems, including agentic identity models, least privilege access, runtime guardrails, and audit logging
  • Develop threat modeling approaches adapted for dynamic, non-deterministic AI agent behaviors, identifying autonomy-related risks such as prompt injection, tool misuse, agent impersonation, and multi-agent system attacks
  • Build and integrate advanced security tooling and automation to detect, prevent, and respond to AI-specific vulnerabilities across the development lifecycle, including adversarial testing frameworks for AI agents
  • Spearhead the strategy for integrating LLMs into the secure development lifecycle, including code review automation, vulnerability detection, and security documentation generation
  • Design and implement AI-powered security tools that can analyze code, identify potential vulnerabilities, and recommend secure coding patterns at scale
  • Lead proof-of-concept initiatives to demonstrate how generative AI can improve security posture through automated threat modeling, security testing, and developer education
  • Collaborate closely with product, engineering, and compliance teams to embed secure-by-default configurations and user consent checkpoints for sensitive AI actions involving PII, PHI, or critical business decisions
  • Drive continuous improvement of AI security posture by researching emerging attack vectors like model poisoning, untrusted code execution, and supply chain risks related to open-source AI frameworks
  • Mentor and guide other engineers on secure AI development practices and contribute to organizational knowledge sharing around AI risk mitigation strategies

Skills

Security Engineering
Generative AI
Agentic AI
LLMs
Security Controls
Secure Development Lifecycle
Security-by-Design

Box

Cloud-based content management and collaboration solutions

About Box

Box provides cloud-based content management and collaboration solutions that enable businesses to securely manage, share, and collaborate on their content. The platform offers features such as secure file storage, sharing, and collaboration tools, along with advanced functionalities like Box AI for Notes and Box AI for Documents, which utilize artificial intelligence to enhance productivity by providing instant answers and content creation capabilities. Unlike many competitors, Box focuses on a subscription-based model that allows clients to choose tailored pricing plans based on their specific needs, ensuring a good return on investment. The company's goal is to transform how people work together by offering a simple, secure, and efficient way to manage content in the cloud, while fostering a customer-centric approach and encouraging diverse ideas within its workforce.

Redwood City, CaliforniaHeadquarters
2005Year Founded
$548.7MTotal Funding
IPOCompany Stage
Enterprise Software, AI & Machine LearningIndustries
1,001-5,000Employees

Benefits

Health and Wellness
Family Support
Generous Time Off
Financial Benefits
Community
Evolving Workplace

Risks

Box faces strong competition from Amazon, Alphabet, and Microsoft.
Economic downturns may lead to reduced subscription revenue for Box.
AI integration may face data privacy and regulatory compliance challenges.

Differentiation

Box integrates AI to enhance content management and collaboration capabilities.
Box offers tailored solutions for diverse industries, including legal and government sectors.
Box's global presence, especially in APAC, strengthens its market position.

Upsides

Box's AI integration with Microsoft 365 Copilot enhances user experience and data management.
Box's collaboration with Bubo Defense expands its AI capabilities and partnerships.
Box Hubs streamlines enterprise content management with advanced AI technologies.

Land your dream remote job 3x faster with AI