
Plaud · Singapore, SG · 10 days ago
About Plaud Inc.
Plaud is building the world's most trusted AI work companion for professionals to elevate productivity and performance through note-taking solutions, loved by over 2,000,000 users worldwide since 2023. With a mission to amplify human intelligence, Plaud is building the next-generation intelligence infrastructure and interfaces to capture, extract, and utilize what you say, hear, see, and think.
Plaud Inc. is a Delaware-incorporated, San Francisco-based company pushing the boundary of human–AI intelligence through a hardware–software combination. With ISO 27001, ISO 27701, GDPR, SOC 2, HIPAA, and EN 18031 compliance, Plaud is committed to the highest standards of data security and privacy protection.
To learn more about Plaud, please visit https://www.plaud.ai and follow along on Instagram https://www.instagram.com/plaud_official/, X https://twitter.com/PLAUDAI, Facebook https://www.facebook.com/plaudai, Linkedin https://www.linkedin.com/company/plaudai/?viewAsMember=true, and YouTube https://www.youtube.com/@PLAUDAI
Plaud is building the next generation intelligence infrastructure and interfaces to capture, extract, and utilize intelligence from what people say, hear, see, and think.
You will own one or more of the following security domains.
Deep expertise in 1-2 areas is what we look for — you don't need to cover all six. Tell us your primary domain(s) when you apply.
Secure Plaud's AWS/GCP environments: remediate credential exposure, deploy CSPM, embed IaC security gates (Checkov/Terraform in CI/CD), and implement Zero Standing Privileges (JIT/CIEM).
Build the data protection foundation: design L1-L5 classification for audio/transcription/PII, map data flows, implement WORM access audit logs, and govern Snowflake/database permissions.
Own secure SDLC: integrate SAST/DAST into CI/CD, defend against Prompt Injection and LLM threats (OWASP LLM Top 10), and conduct security reviews for product releases.
Validate Plaud's hardware (Sigma) against EN 18031: own Secure Boot, OTA dual-key signing, PKI lifecycle, HBOM+CVE supply chain scanning, and PSIRT operations.
Build and run the SIEM platform (30+ MITRE ATT&CK-mapped; detection rules), establish IR playbooks, own MTTD/MTTR metrics, and produce monthly security reports for leadership.
Drive 100% EDR and MDM coverage, roll out Okta SSO/SCIM across the SaaS stack, and build a measurable security awareness program alongside the IT team.
Skills, qualifications and experience we look for
Headquarters
Singapore
Work Location
on-site
Job Category
Cybersecurity
Application Deadline
Not specified
Job Type
full-time
Experience Level
senior-level
Application Method
Apply via Website
Salary
Not specified
No related jobs found