Software Engineer, Security
Security Engineer · Senior · Full Time
Opens Notion's application page
Role
What you'll do.
Notion is seeking an experienced Security Engineer to lead critical security initiatives across product, infrastructure, and AI domains. The ideal candidate will drive authentication migrations, AI safety guardrails, and authorization platform development, working hands-on with core security primitives while coordinating across multiple engineering teams.
Responsibilities
- Authentication Modernization: Modernize and migrate authentication across Notion's product surfaces, including SAML/OIDC, OAuth flows, session semantics, passkeys, CSP, and redirect handling
- AI Safety Infrastructure: Build and operate Notion's AI safety guardrail stack, including prompt-injection protections and external-source provenance system for AI-generated content
- Authorization Platform Development: Advance authorization platform by driving architectural trade-offs and shipping reusable primitives for product team adoption
- Security Program Ownership: Own end-to-end security programs, including RFC development, rollout planning, partner alignment, and measurable risk reduction
Qualifications
What we look for.
Technical
Security Infrastructure
Proven experience shipping security-critical infrastructure in production systems
AI Security
Experience with AI/LLM security protections including prompt injection and policy enforcement
Authentication Technologies
Expertise in SAML, OIDC, OAuth, passkeys, and session management
Education
Degree
Bachelor's or Master's degree in Computer Science, Cybersecurity, or related technical field preferred
Experience
Industry Experience
10+ years of professional security engineering experience
Cross-functional Collaboration
Demonstrated ability to align and coordinate across multiple engineering teams
Skills
Required
Security Engineering
Deep understanding of authentication, authorization, and security infrastructure
Systems Thinking
Ability to proactively identify and resolve systemic security constraints
Cross-functional Communication
Strong skill in writing RFCs and aligning stakeholders across different teams
Preferred
AI Security
Nice to haveAdvanced knowledge of AI and LLM security mechanisms
Mentorship
Nice to haveExperience in guiding and enabling other engineers in security best practices
Tech stack
Languages
Frameworks
Tools
Other
Compensation
Pay and benefits.
Base·USD 290,000 – 350,000
Equity·Stock options
Benefits
Competitive Compensation
Highly competitive salary range with potential for equity
Hybrid Work Model
In-office collaboration on Mondays, Tuesdays, and Thursdays with flexible remote options
Professional Development
Opportunities for mentorship, cross-team collaboration, and cutting-edge security work
Process
Interview steps.
- 01
Initial Screening
Review of resume and initial qualification assessment
- 02
Technical Phone Screen
Detailed discussion of security engineering experience and technical capabilities
- 03
Security Design Challenge
Technical interview focusing on security infrastructure design and problem-solving
- 04
Onsite Interviews
Multiple rounds with engineering and security leadership, including system design and cultural fit evaluation
- 05
Final Executive Interview
Conversation with senior leadership to assess strategic thinking and alignment with company vision
Full posting
Original listing.
Who We Are
Notion is the collaborative AI workspace where teams and agents think together. We're building one place where your knowledge, projects, meetings, and AI tools live side by side, so work feels faster, clearer, and less fragmented. Millions of individuals, small teams, and large companies run their work on Notion.
Notinos (our employees) are customer zero in bringing this future of work to life. We care about craft, humanity, and building things that last — not just shipping the next feature, but setting a standard for how modern teams (with humans and agents working together) think and execute.
About Us:
Notion helps you build beautiful tools for your life’s work. In today's world of endless apps and tabs, Notion provides one place for teams to get everything done, seamlessly connecting docs, notes, projects, calendar, and email—with AI built in to find answers and automate work. Millions of users, from individuals to large organizations like Toyota, Figma, and OpenAI, love Notion for its flexibility and choose it because it helps them save time and money.
In-person collaboration is essential to Notion's culture. We require all team members to work from our offices on Mondays, Tuesdays, and Thursdays, our designated Anchor Days. Certain teams or positions may require additional in-office workdays.
About the Role:
We are hiring an experienced security engineer with 10+ years of experience to own cross-cutting programs at the intersection of product, infrastructure, and AI. You will be hands-on with core security primitives while coordinating across 5–10+ engineering teams to land multi-quarter changes safely—often in customer-facing, enterprise-critical surfaces (identity, authz, domain posture, and AI agent safety).
In this role, you will be the primary owner for key authentication migrations, AI guardrail infrastructure, and authorization platform direction—work that directly unblocks enterprise security commitments, AI-agent launches, and the next milestone in our authz architecture.
What You'll Achieve:
Modernize and migrate authentication across Notion’s product surfaces (SAML/OIDC, OAuth flows, session semantics, passkeys, CSP, redirect handling), landing multi-quarter changes with clear rollout plans and minimal customer disruption.
Build and operate Notion’s AI safety guardrail stack, including prompt-injection protections (vendor evaluation, deployment model decisions, integration with agents) and an external-source provenance system for AI-generated content across Mail, Calendar, and MCP.
Advance our authorization platform direction by driving crisp architectural trade-offs (e.g., SpiceDB vs. Macaroons) and shipping reusable primitives that product teams can adopt without bespoke security work.
By day 90: own one P0 security program end-to-end—RFC, rollout plan, partner alignment, execution, and measurable risk reduction—plus ship one piece of AI leverage (e.g., an internal security agent for triage/verification/continuous checks) that improves correctness and reduces time-to-resolution.
By end of year 1: raise the bar on security engineering craft by setting clearer standards for secure primitives (auth/authz, provenance, domain posture), improving adoption paths for partner teams, and reducing recurring classes of vulnerabilities through better systems—not heroics.
Skills You'll Need to Bring:
Demonstrated ability to ship security-critical infrastructure in production systems (identity/authentication, authorization, platform primitives), including migrations that affect customers and require careful rollout and backwards compatibility.
Strong judgment navigating ambiguous trade-offs (security vs. product velocity, correctness vs. ergonomics, centralized platforms vs. local autonomy), with a track record of writing clear RFCs and aligning cross-functional stakeholders.
Experience building or operating AI/LLM security protections (e.g., prompt injection, tool/data provenance, policy enforcement) or a clear ability to ramp quickly and lead in an emerging domain.
High agency and systems mindset: you proactively find the real constraint, unblock partner teams, and build primitives that compound across the org (not one-off fixes).
Comfort mentoring and multiplying others—through intern/project ownership, enablement sessions, and pragmatic security guidance that engineers actually adopt.
We hire talented and passionate people from a variety of backgrounds because we want our global employee base to represent the wide diversity of our customers. If you’re excited about a role but your past experience doesn’t align perfectly with every bullet point listed in the job description, we still encourage you to apply. If you’re a builder at heart, share our company values, and enthusiastic about making software toolmaking ubiquitous, we want to hear from you.
Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.
Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role’s scope and complexity, and the candidate’s experience and expertise, and may vary from the range provided below. For roles based in San Francisco, the estimated base salary range for this role is $290,000 - $350,000 per year.
By clicking “Submit Application”, I understand and agree that Notion and its affiliates and subsidiaries will collect and process my information in accordance with Notion’s Global Recruiting Privacy Policy.
#LI-Onsite
A Note on AI
You don’t need deep AI expertise for every role, but we do expect every Notino to be intellectually curious, drawn to tinkering and discovery, and excited to use AI as a real collaborator in their work. For some roles, AI fluency is a core requirement — when that’s the case, we’ll make it explicit in the qualifications. People who thrive here don’t treat AI as a novelty. They use it to think better, move faster, and build more creatively.
Equal Opportunity & Accommodations
We hire talented and passionate people from a variety of backgrounds because we want our teams to reflect the wide diversity of our customers. If you’re excited about a role but your experience doesn’t align perfectly with every bullet point listed, we still encourage you to apply.
Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.
Redirects to Notion's application page.
Other roles
More at Notion.
Software Engineer, AI Platform
Mid
Software Engineer, Data Product Platform
Mid
Software Engineer, Developer Experience (Go Lead)
Staff
Engineering Manager, Search & Context Platform
Manager
Software Engineer, Web Infrastructure
Senior