NerdWallet
Engineering
SecuritySoftwareEngineer,AI&Automation
Neural analysis suggests this role is
optimal for Mid candidates.
“Security Software Engineer, AI & Automation at NerdWallet. Skills: Security Software Engineering, AI, Automation. Design AI-powered security systems. Build automation and AI-powered solutions”
What You'll Achieve.
make secure software development more scalable and effective; help identify vulnerabilities; improve security reviews; reduce risk across our platforms; solve meaningful problems at scale; deliver practical, measurable security outcomes; make security more accessible, scalable, and actionable; Improve the speed and quality of security reviews; Strengthen customer trust by helping protect NerdWallet's products, systems, and sensitive data
Industry & Context.
thoughtful problem-solving; solve meaningful problems at scale; thoughtful automation and security-first design
on-call needs
What They're Looking For.
Must Have
3+ years of software engineering or security engineering experience, proficiency in Python or Go for building production-grade backend services, APIs, and data, Experience building and maintaining backend services including REST APIs, authentication, authorization, rate limiting, streaming, and observability, Working knowledge of application security concepts including common vulnerability classes such as injection, broken authentication, cross-site scripting, insecure authorization, and secrets, experience with threat modeling and SSDLC practices, Hands-on experience building AI-powered systems using LLM APIs, including retrieval-augmented generation (RAG) pipelines, multi-agent architectures, and semantic, working understanding of AI-specific security risks such as prompt injection, sensitive data exposure, and secure handling of model inputs and outputs, Genuine interest in AI and how it applies to security, not just as a tool to use, but as a domain to understand deeply, including its limitations and risks, Experience developing and operating distributed systems and cloud-based environments, including message queues, NoSQL databases, AWS, containers, Kubernetes or ECS, serverless, and infrastructure as code, Understanding of caching and performance patterns including Redis, semantic caching, TTLs, and cache invalidation
Nice to Have
comfort moving between languages is expected, Kubernetes or ECS
What You'll Do.
Design AI-powered security systems
Build automation and AI-powered solutions
Identify vulnerabilities
Improve security reviews
Reduce risk across platforms
Take ownership of security engineering initiatives
Develop REST APIs and platform services
Design and maintain scalable data processing pipelines
Improve AI application security
Enhance secure software development lifecycle
Partner with engineering teams
Remediate application and infrastructure security risks
Support incident response
Contribute security engineering expertise
Identify new opportunities for automation
Serve as technical lead
Take ownership of technically complex work
Collaborate across teams
Deliver security outcomes
Shape AI and automation adoption
Build tools and platforms
Improve speed and quality of security reviews
Strengthen customer trust
Advise on AI use cases
How You'll Work.
Team & Collaboration
Partner closely with security engineering and infrastructure teams; Collaborate across teams to deliver practical, measurable security outcomes; Partnering with engineering teams to prioritize and remediate application and infrastructure security risks; Advising stakeholders on tradeoffs and limitations
Communication Scope
communication skills, able to explain complex AI and security concepts clearly to both technical and non-technical audiences
Process & Methodology
Take ownership of security engineering initiatives, Serve as technical lead on high-priority initiatives
Full Job Description
At NerdWallet, we're building tools and experiences that help people make smarter financial decisions. As a Security Software Engineer focused on AI and Automation, you'll help strengthen the security, reliability, and trust behind those experiences by designing AI-powered security systems that make secure software development more scalable and effective across our engineering organization. In this role, you'll partner closely with security engineering and infrastructure teams to build automation and AI-powered solutions that help identify vulnerabilities, improve security reviews, and reduce risk across our platforms. You'll take ownership of security engineering initiatives that combine software development, AI systems experience, and security-first thinking to solve meaningful problems at scale. You'll have room to bring new ideas, influence how AI and automation practices evolve at NerdWallet, and shape the future of security tooling within a team that values curiosity, informed risk-taking, and thoughtful problem-solving. This role reports to the AI Security Manager. PROJECTS YOU MAY BE WORKING ON IN THIS POSITION INCLUDE: - Designing and building multi-agent LLM systems and routing logic that automate threat modeling, security design review, policy Q&A, and vulnerability analysis at scale - Developing retrieval-augmented generation (RAG) pipelines and semantic search systems across large code and documentation repositories - Creating automated code review capabilities that help identify insecure patterns and improve software quality earlier in the development lifecycle - Designing integrations with tools such as GitHub, Slack, Jira, Confluence, and cloud platforms to embed security guidance into everyday engineering workflows - Developing REST APIs and platform services with authentication, authorization, rate limiting, observability, and secure handling of sensitive data - Designing and maintaining scalable data processing pipelines for large codebases and do
Applying for this Security Software Engineer, AI & Automation role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about NerdWallet?
Real rants from real employees. Read before you apply.