About the role
Emergent builds autonomous coding agents that replace traditional software development by generating, testing, and deploying production applications directly from plain-language intent. Our systems run in production at global scale and are used to build millions of real applications.
Since our public launch, we've crossed $130M in ARR and grown to over 10M users across 190+ countries, who have built 12M+ applications on Emergent. We're backed by Creaegis, Claypond, Sentinel Global, Khosla Ventures, SoftBank, Google, Lightspeed, Prosus, Together, and Y Combinator.
We're solving the hard part of AI-driven software creation: correctness, reliability, security, and scale in real production systems. The team is built by repeat founders, Olympiad medalists, IIT & IIM alumni, and leaders from Google, Amazon, and Dropbox.
We're hiring builders who want ownership, speed, and impact at global scale.
The Role:
Emergent runs a massive, multi-tenant, AI-driven execution environment where code is generated and executed continuously. You will secure the infrastructure that powers autonomous software creation.
What You'll Do:
What You’ll Do
Secure AI-generated applications at scale
• Define security patterns for applications generated by AI agents
• Enforce guardrails across auth, data access, APIs, and business logic
• Build frameworks to ensure secure-by-default app generation
Design “secure generation” systems
• Work directly with AI/agent pipelines to prevent insecure code from being produced
• Build validation layers for generated code (static + semantic)
• Detect prompt injection and adversarial input patterns
Own application threat modeling
• Identify vulnerabilities in dynamic app creation flows
• Analyze risks in multi-tenant user-generated environments
• Build reusable threat models for agent-driven systems
Build developer-facing security primitives
• Auth systems, permission frameworks, secure SDKs
• Secure API gateways and rate limiting
• Input/output validation layers for LLM-driven flows
Red team AI-generated apps
• Break applications generated by Emergent agents
• Identify systemic weaknesses vs one-off bugs
• Feed learnings back into generation systems
What We’re Looking For
• 5–10+ years in Application Security
• Strong coding ability (Python, JS/TS, backend systems)
• Deep understanding of:
• OWASP Top 10
• Auth & session management
• API security
• Injection & sandbox escape vectors
• Experience working closely with product/engineering teams
What Sets You Apart
• You think in systems, not vulnerabilities
• You want to prevent insecure code from ever existing
• Experience with:
• AI/LLM systems
• Prompt injection & output validation
• Secure code generation systems
Why Emergent
• Build security for AI systems that build software
• Operate at global scale (millions of apps, millions of users)
• Work directly with founders and core engineering
• Solve problems that don’t exist anywhere else yet