The posting, in Cockroach Labs's own words
archived Oct 5, 2026Category-defining tech. Career-defining work.
For more than a decade, Cockroach Labs has built database technology trusted to power some of the world's most mission-critical applications. Now, as AI transforms how software is created and operated, the infrastructure behind it has to keep pace. Cockroach Continuum is built to meet this moment, bringing individual databases together into one fleet designed for agentic applications, where AI agents help teams provision, scale, and optimize workloads at machine speed. At Cockroach Labs, you'll solve problems that didn't exist five years ago alongside people who believe the simplest solutions often require the most sophisticated thinking. Your work will run in production at some of the most innovative companies in the world. The people who thrive here are the ones who want to own that opportunity.
The Role
Cockroach Labs is looking for a Senior Corporate Security Engineer to help protect our endpoints, cloud platforms, internal applications, and enterprise SaaS environment. This is a hands-on, cross-functional role with a particular focus on AI governance, data protection, and corporate security operations. You’ll help shape how Cockroach Labs securely adopts AI tools and agents, strengthen our DLP and SaaS security controls, and lead security initiatives from design through implementation. We’re looking for a well-rounded security engineer who can balance strong security practices with the needs of the business. You should be comfortable working across IT and security systems, partnering with teams throughout the company, and navigating emerging risks in a rapidly changing AI landscape. This role offers the opportunity to take meaningful ownership of our corporate security program while working on a wide range of high-impact projects. To be eligible for this role, you must be based in the NYC area.
Read the full posting ↓
You Will
Help build and manage our AI governance program, including security controls for AI tools, agents, MCP connections, and data flows. Develop and secure internal applications hosted on GCP, including our internal LLM gateway. Design and maintain DLP, data classification, and governance controls that protect sensitive data while enabling the business. Administer and optimize CASB and SaaS security controls across cloud applications. Assess security risks for internal applications, AI use cases, and third-party tools. Monitor and respond to security alerts and incidents across email, endpoints, SaaS applications, and cloud environments. Identify and reduce risks related to Shadow IT, Shadow AI, and SaaS sprawl. Build automations that improve security visibility, response, and operational efficiency. Partner with IT, Legal, Compliance, and Security teams on access management, endpoint security, regulatory requirements, and third-party risk. Lead corporate security projects from design through implementation.