- Location
- Singapore, Singapore
- Employment
- Full time
- Level
- Mid level
- Posted
- 3 months ago
About this role
Where multiple locations are listed for this role, the position may be based in any of those locations, with priority determined according to the order of listing.
At Simular, we're building the next generation of computer use agents - AI systems that operate computers exactly as humans do. As our first dedicated security hire in Singapore, you'll own security end-to-end: hardening the applications our users touch, the infrastructure our agents run on, and the new and evolving attack surface introduced by autonomous AI agents themselves.
This is a hands-on, builder-style role. You won't be writing policy documents from an ivory tower; you'll be reading code, fixing it, and shipping the tooling that keeps Simular safe as we scale.
What you'll do
• Own application security across our product surface: threat modeling, secure code review, SAST/DAST, dependency and supply-chain hygiene
• Harden our cloud and infrastructure: AWS/GCP configuration, Kubernetes, secrets management, network boundaries, CI/CD pipeline security
• Build the security foundation for our agent platform: sandboxing, permission boundaries, prompt-injection defenses, data exfiltration controls, and safe tool execution
• Partner with engineering and research to bake security into product design from day zero, not bolted on later
• Run incident response and lead investigations when things go wrong; build the playbooks so the next one is faster
• Drive vendor reviews, customer security questionnaires, and the compliance work needed as we move upmarket (SOC 2, ISO, etc.)
• Establish the security culture: lightweight processes, useful tooling, clear ownership; scrappy, not bureaucratic
You might be a fit if
• You have a BS/MS in Computer Science or equivalent experience, with 3-6 years in security engineering
• You're a strong engineer first: comfortable shipping code in Python, Go, or TypeScript, not just reviewing others'
• You have hands-on experience across two or more of: AppSec, cloud security (AWS/GCP), container/Kubernetes hardening, CI/CD security
• You understand modern threat models: supply-chain attacks, identity and secrets, web app vulnerabilities, infrastructure misconfiguration
• You're genuinely curious about AI and agent security: how prompt injection works, how to sandbox autonomous tool use, how to reason about data flow in agentic systems
• You thrive as the first security hire: you can prioritize ruthlessly, build from zero, and earn trust by shipping rather than blocking
• Bonus: red-team or offensive security background, experience securing ML/AI pipelines, or prior early-stage startup experience
As published by Simular. Applications are handled on their site.
Skills this posting mentions
About Simular
Simular is a research-driven AI company building autonomous computers to free human work and enhance life. Our first product is Sai, an always-on AI agent that uses computers just like humans do. Founded by former AI researchers at Google DeepMind, Simular develops computer-using agents (CUA) that operate across digital environments with human-level capabilities, backed by our benchmark-topping agentic framework. Simular is backed by investors including Felicis, NVentures (Nvidia), South Park Commons, and Lenny Rachitsky.
All 22 openings at SimularOne click, then it is written
Apply to Simular with a resume written for this role.
Queue Security Engineer and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Simular’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at Simular
See all- 7 weeks ago
- 7 weeks ago
- 7 weeks ago
- 7 weeks ago
- 7 weeks ago
- 7 weeks ago
Similar roles elsewhere
See more- Yesterday
- 2 days ago
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board Simular publishes. Refolk is not the employer and does not handle their hiring. Applications go to Simular directly.