
Who We Are
Notion is the collaborative AI workspace where teams and agents think together. We're building one place where your knowledge, projects, meetings, and AI tools live side by side, so work is faster, clearer, and less fragmented. Millions of individuals, small teams, and large companies run their work on Notion.
Notinos (our employees) are customer zero in bringing this future of work to life. We care about craft, building things that last, and the belief that great work is still fundamentally human. Our goal isn’t to ship the next feature. Each and every team of Notinos is working to set the standard for how humans work together in the AI era.
About the Role
Notion is looking for an experienced engineer who has designed and built secure software systems to help define the security foundations for our AI products. You’ll work with product and engineering teams on agent runtimes, tool permissions, retrieval, content writes, observability, and abuse-resistant design. You’ll turn product risks into clear architecture, reusable guardrails, automated tests, and production systems that help teams ship new features safely.
This role is based in San Francisco. We work from our offices on Mondays, Tuesdays, and Thursdays (our Anchor Days) because we do our best thinking and building together in person.
What You'll Achieve
- Define and build security architecture for product surfaces that operate across customer workspace content, including tool execution, content writes, retrieval, permission checks, provenance, and auditability.
- Make the secure path the easy path for product teams by shipping reusable libraries, review patterns, test fixtures, and guardrails that prevent classes of vulnerabilities.
- Build automated red-team and regression testing for risks such as prompt injection, indirect instruction following, data exfiltration, tool misuse, cross-tenant leakage, and unsafe workspace mutations.
- Translate threat models for new product surfaces into concrete engineering requirements, production checks, and launch criteria.
- Use production signals, incident learnings, and targeted experiments to harden Notion over time, then feed those learnings back into architecture and developer workflows.
- Help define the security bar for how engineers use coding agents, MCP-enabled tools, hooks, and internal automation without introducing new risk.
Skills You'll Bring
- Secure software engineering craft: 8-10+ years of experience designing, building, or securing complex software systems, working directly in production code with product and platform engineers.
- Security architecture judgment: Ability to analyze complex systems, reason about trust boundaries, data flows, and permissions, and redesign them for improved security.
- Security product strategy: Proven ability to turn complex security risks into actionable product designs or engineering architectures.
- Builder mindset: A preference for delivering reusable tools, automated tests, libraries, and design patterns that empower other engineers.
Nice to Haves
- Experience building or securing products with tool use, retrieval, workflow automation, content writes, or complex permission boundaries.
- Hands-on experience with prompt-injection testing, red teaming, model behavior evaluation, or abuse-resistant application design.
- Experience with enterprise SaaS security models: permissions, sharing, audit logs, data residency, encryption, compliance, or customer-facing trust guarantees.
- Experience building developer tooling, CI checks, coding-agent workflows, MCP integrations, or internal frameworks.
- Public security research, vulnerability writeups, conference talks, or open-source work related to product security or secure developer infrastructure.
Benefits
Open to
San Francisco · United States
Sign in to track applications and earn points.