Senior Security Engineer - AI Security
at Datadog
Madrid, Paris, France, Spain
As a Senior Security Engineer within Platform Security at Datadog, you will play a vital role in securing our infrastructure for agentic applications. This role will be critical in establishing and enforcing robust security controls to mitigate risks associated with LLMs such as prompt injection, hallucinations etc. that can lead to unintended executions.
The ideal candidate will have a deep understanding of LLM threats and practical experience in network segmentation, implementing strict data access controls, and defining runtime hardening measures. You'll collaborate closely with platform teams to implement secure-by-default controls across widely used platforms, with a specific focus on multi-agent systems.
You will be at the forefront of ensuring the security of Datadog’s AI platform and products by establishing standards, developing secure solutions, performing threat modeling, and remediating AI-specific vulnerabilities.
Responsibilities
- Design and implement solutions to harden agentic application infrastructure, reducing the impact of unintended execution.
- Enforce strict data access controls following least privilege principles to reduce the risk of unauthorized access.
- Implement and monitor robust runtime hardening measures to constrain and monitor agent actions, preventing unintended code execution, resource exhaustion, privilege escalation, and bypass of security controls.
- Define and implement security policies for agents and tools, outlining hardening requirements, data permissions, and service access.
- Work closely with platform teams to integrate security best practices throughout the multi-agent system's lifecycle.
- Perform threat modeling with engineering teams for new and existing AI products, focusing on emerging AI-specific threats.
- Prioritize and remediate LLM threats, such as prompt injection by developing and maintaining continuous testing frameworks for prompt injection vulnerabilities.
Who We're Looking For:
- 5+ years experience in software engineering or development within a collaborative setting, with a preference for Go and Python experience, and familiarity with LLM frameworks and protocols (A2A, MCP).
- Proven experience in security and/or infrastructure engineering, with a focus on distributed systems or agent-based architectures.
- Proven experience in implementing security controls within application infrastructure including zero-trust networking, runtime hardening and workload protection solutions.
- Familiar with common vulnerabilities, and mitigation techniques, particularly concerning LLM applications (OWASP Top 10 for LLM applications).
- Excellent problem-solving skills and the ability to work independently and as part of a team.
- Track record of successfully driving security initiatives with leadership and engineering buy-in.
- Stays current with the latest security best practices, technologies, and emerging threats, especially in the generative AI space.
About Datadog:
Datadog (NASDAQ: DDOG) is a global SaaS business, delivering a rare combination of growth and profitability. We are on a mission to break down silos and solve complexity in the cloud age by enabling digital transformation, cloud migration, and infrastructure monitoring of our customers’ entire technology stacks. Built by engineers, for engineers, Datadog is used by organizations of all sizes across a wide range of industries. Together, we champion professional development, diversity of thought, innovation, and work excellence to empower continuous growth. Join the pack and become part of a collaborative, pragmatic, and thoughtful people-first community where we solve tough problems, take smart risks, and celebrate one another. Learn more about #DatadogLife on Instagram, LinkedIn, and Datadog Learning Center.
Equal Opportunity at Datadog:
Datadog is proud to offer equal employment opportunity to everyone regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, and other characteristics protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. Here are our Candidate Legal Notices for your reference.
Datadog endeavors to make our Careers Page accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please complete this form. This form is for accommodation requests only and cannot be used to inquire about the status of applications.
Privacy and AI Guidelines:
Any information you submit to Datadog as part of your application will be processed in accordance with Datadog’s Applicant and Candidate Privacy Notice. For information on our AI policy, please visit Interviewing at Datadog AI Guidelines.