Agentic Security Engineer
Fully Remote • Development
Job Type
Full-time
Description
At ClassLink, we believe learning should be accessible, engaging, and empowering for every student, every educator, everywhere. That’s why we build secure, intuitive tools that empower more than 26 million students and educators worldwide. From simplifying access with single sign-on, to advancing equity with usage analytics, to automating secure rostering, our platform helps schools focus on what matters most: teaching and learning.
We’re not just building tools, we’re building what’s next in education. By removing barriers and enabling data-driven decisions, our solutions help educators lead with confidence and students thrive in and out of the classroom every day.
Our team is driven by purpose and grounded in three core values:
- Strive to Grow - always learning, improving, and innovating.
- Deliver Worthwhile Experiences - for our users, our partners, and each other.
- Contribute with Heart - putting people first in everything we do.
These values shape how we work, innovate, and support the communities we serve. If you’re ready to do work that makes a real difference, and grow alongside a team that values collaboration, support, and continuous improvement. ClassLink is the place for you.
ClassLink is seeking an Agentic Security Engineer to revolutionize how we approach application security and infrastructure protection. In this role, you'll build and deploy AI-powered security systems that autonomously scan code, identify vulnerabilities, and suggest or implement fixes across our multi-tenant educational platform. You'll work at the intersection of cybersecurity, AI engineering, and DevSecOps, creating intelligent agents that make our systems more secure while accelerating our development velocity.
Why This Role Matters
K-12 educational institutions trust ClassLink with their students' data and digital learning environments. Your work will directly protect millions of students' privacy while enabling faster, more secure software development. You'll be at the forefront of applying AI to cybersecurity in a meaningful, mission-driven context.
Responsibilities:
- Design and build AI-powered security scanning agents using Claude Code, LLM APIs, and custom tooling to continuously monitor codebases and infrastructure for vulnerabilities
- Develop automated remediation workflows that can propose fixes, create pull requests, and integrate security improvements directly into development pipelines
- Create evaluation frameworks to measure the effectiveness of AI security agents against known vulnerability databases (CVE, OWASP Top 10, CWE)
- Build CLI tools and integrations that embed security scanning into developer workflows, CI/CD pipelines, and production monitoring systems
- Establish benchmarks and metrics for AI-driven security detection, including false positive rates, coverage analysis, and remediation success rates
- Collaborate with development teams to improve AI agent performance through custom skills, prompt engineering, and model fine-tuning
- Maintain security compliance standards for K-12 educational data (FERPA, COPPA, state privacy laws) through automated verification systems
- Research and implement emerging AI security techniques, including adversarial testing of AI systems and LLM-specific vulnerabilities
This role is 100% remote eligible, with quarterly strategy meetings that are in-person.
NOTE: This job description is not intended to be all-inclusive. Employees may be asked to perform other related duties as negotiated to meet the ongoing needs of the organization.
Requirements
Requested Experience:
- Senior Level: 5+ years of professional experience in application security, infrastructure security, or DevSecOps roles
- Principal Level: 8+ years of professional experience in application security, infrastructure security, or DevSecOps roles
- Strong understanding of common vulnerability classes (injection attacks, authentication flaws, cryptographic failures, misconfigurations
- Hands-on experience with security scanning tools (SAST, DAST, SCA, container scanning)
- Proficiency in at least one programming language (Python, JavaScript/Node.js, or similar for building automation tools)
- Experience with CI/CD platforms and integrating security into development workflows
- Familiarity with cloud infrastructure security (AWS, Azure, or GCP)
- Understanding of OAuth2, SAML, SSO, and authentication/authorization security patterns
Requested Education:
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, Software Engineering, or a related technical field (required). Equivalent practical experience will be considered.
- Master's or Ph.D. in a related discipline with a focus on security, AI/ML, or both
It would be great if you have or are pursuing the following:
- Experience working with LLM APIs (Anthropic Claude, OpenAI, AWS Bedrock) for building AI-powered applications
- Background in prompt engineering and designing evaluation systems for AI agents
- Familiarity with AI development tools like Cursor, Claude Code, or GitHub Copilot
- Knowledge of Angular, React, Node.js, or modern web application frameworks
- Experience in educational technology or platforms handling sensitive student data
- Understanding of multi-tenant SaaS security architecture
- Contributions to open-source security tools or AI projects
What Success Looks Like in Year One
- Deploy AI agents scanning 100% of code commits for security vulnerabilities before production
- Achieve greater than 90% accuracy in vulnerability detection with less than 10% false positive rate
- Reduce average time-to-remediation for critical vulnerabilities by 50% through automated fix suggestions
- Build comprehensive evaluation suite measuring AI agent performance against industry benchmarks
- Integrate security scanning into developer workflows with minimal friction
Technical Environment You'll work with: Angular 20, Node.js, PostgreSQL, AWS infrastructure, Git workflows, modern CI/CD pipelines, Claude API, custom AI agents and tools, OAuth2/SAML authentication systems.
This role is 100% remote eligible, with quarterly strategy meetings that are in-person.
Benefits:
- Generous Paid Time Off: 4+ weeks of vacation and 13+ paid holidays
- Parental Leave: 12 weeks fully paid for all parents
- Retirement: 401(k) with 0.5:1 company match
- Comprehensive Health Coverage: Medical, dental, and vision plans
- Insurance: Company-paid life, short-term disability, and long-term disability, plus voluntary options including supplemental life, accident, and pet insurance
Perks:
- Volunteer Time Off: Give back through ClassLink Cares paid volunteer days
- Lifelong Learning: Tuition reimbursement for continued education
- Growth & Development: Coaching and internal programs to support career and personal growth
- Supportive Culture: A workplace that values curiosity, compassion, and continuous learning
- Connection & Community: Annual company retreats and team events with bright, fun coworkers
At ClassLink, we believe the best ideas come from bringing together diverse perspectives. We are committed to building a team that reflects the diversity of the communities we serve and fostering a workplace where every team member feels valued, respected, and empowered to grow.
ClassLink is proud to be an equal opportunity employer. We welcome candidates of all identities, backgrounds, and experiences, and we do not discriminate on the basis of race, color, religion, sex, gender identity, sexual orientation, national origin, age, disability, veteran status, or any other legally protected characteristic.
ClassLink is powered by passionate people dedicated to improving learning in classrooms everywhere. We do this by creating and delivering great products and having fun along the way. Learn more about us at
www.classlink.com.
Salary Description
120,000.00-165,000.00 plus bonus