Secure autonomous vessels and supporting infrastructure via vulnerability assessments, penetration testing, network architecture/hardening (VPN/mesh, firewalls), AWS security, SAST/SCA integration into CI/CD, monitoring (Datadog), incident response, security tooling, documentation, and DevOps support to embed security into the SDLC.
Sea Machines is a fast-growing startup that is leading the new high-tech sector of autonomous
technology for marine vessels. We are passionate about applying practical A.I. to the massive
global ocean transportation market. Our products provide ships and workboats the intelligence to
work remotely and give maritime operators the tools to effectively communicate with them.
Based in Boston and operating globally, the company is crewed by an experienced team of
mariners, engineers, coders, and autonomy scientists.
Sea Machiners get the unique opportunity to work in a very dynamic domain (the ocean world),
serve and visit people and places around the planet, and solve challenges not seen in most other
robotics sectors.
Job Summary
We are seeking a Product Security Engineer with strong networking expertise to secure our fleet
of autonomous vessels and supporting infrastructure. This role owns vulnerability management,
secure development practices, and network security across our distributed, remote-connected
systems (VPN/mesh networking, vessel-to-shore links).
Responsibilities and Duties
● Conduct vulnerability assessments and penetration testing on applications, systems, and
network infrastructure
● Design, harden, and maintain network security architecture, including segmentation,
VPN/mesh networks (e.g., Tailscale) and firewalls across vessel-side and cloud-side
systems
● Secure and harden our AWS cloud infrastructure, including IAM policies, VPC/network
configuration, and cloud-native security tooling
● Integrate and manage SAST and SCA tooling (e.g., SonarQube) into the development
pipeline to catch vulnerabilities and dependency risks pre-deployment
● Build and maintain security monitoring using observability platforms such as Datadog,
including alerting on anomalous network and application behavior
● Integrate security gates into CI/CD pipelines (Jenkins), working with development teams
to embed security best practices into the SDLC
● Monitor and respond to security incidents and breaches, with particular attention to
network-layer threats
● Develop and maintain security tools and frameworks
● Create and maintain comprehensive documentation related to security practices and
protocols
● Provide security and software development support to the DevOps team.
Qualifications and Skills
● Bachelor's degree in Computer Science, Cybersecurity, or a related field; Master's degree
preferred
● 3+ years working in Product Security and CI/CD or software development
● Strong, demonstrable networking security experience — VPNs, routing, and firewalls
● Strong hands-on experience with AWS (IAM, VPC, cloud-native security services)
● Hands-on experience with SAST/SCA tools (SonarQube or equivalent) and integrating
them into CI/CD (Jenkins or equivalent)
● Experience with observability/monitoring platforms (Datadog or equivalent) for security
use cases
● Deep understanding of software-security principles and cloud-infrastructure security
● Strong knowledge of security protocols, cryptography, secure coding practices, and
OAuth/auth protocols
● Experience with security tools such as IDS/IPS, firewalls, and vulnerability scanners
● Proficiency in programming languages such as Python, Java, C++, or similar
● Proficiency in common operating systems (Linux, Windows) and deep familiarity with
networking protocols
● Understanding of compliance and security frameworks (e.g., CMMC, CIS Benchmarks)
● Excellent problem-solving skills and attention to detail
● Strong communication skills and ability to work collaboratively across teams
● Comfortable with a fast-paced development schedule
● Experience collaborating with other functional teams to define requirements and goals.
● Comfortable with a fast-paced development schedule
Job Type: Full-time
Benefits:
401(k)
Dental insurance
Disability insurance
Flexible spending account
Health insurance
Life insurance
Paid time off
Parental leave
Vision insurance
technology for marine vessels. We are passionate about applying practical A.I. to the massive
global ocean transportation market. Our products provide ships and workboats the intelligence to
work remotely and give maritime operators the tools to effectively communicate with them.
Based in Boston and operating globally, the company is crewed by an experienced team of
mariners, engineers, coders, and autonomy scientists.
Sea Machiners get the unique opportunity to work in a very dynamic domain (the ocean world),
serve and visit people and places around the planet, and solve challenges not seen in most other
robotics sectors.
Job Summary
We are seeking a Product Security Engineer with strong networking expertise to secure our fleet
of autonomous vessels and supporting infrastructure. This role owns vulnerability management,
secure development practices, and network security across our distributed, remote-connected
systems (VPN/mesh networking, vessel-to-shore links).
Responsibilities and Duties
● Conduct vulnerability assessments and penetration testing on applications, systems, and
network infrastructure
● Design, harden, and maintain network security architecture, including segmentation,
VPN/mesh networks (e.g., Tailscale) and firewalls across vessel-side and cloud-side
systems
● Secure and harden our AWS cloud infrastructure, including IAM policies, VPC/network
configuration, and cloud-native security tooling
● Integrate and manage SAST and SCA tooling (e.g., SonarQube) into the development
pipeline to catch vulnerabilities and dependency risks pre-deployment
● Build and maintain security monitoring using observability platforms such as Datadog,
including alerting on anomalous network and application behavior
● Integrate security gates into CI/CD pipelines (Jenkins), working with development teams
to embed security best practices into the SDLC
● Monitor and respond to security incidents and breaches, with particular attention to
network-layer threats
● Develop and maintain security tools and frameworks
● Create and maintain comprehensive documentation related to security practices and
protocols
● Provide security and software development support to the DevOps team.
Qualifications and Skills
● Bachelor's degree in Computer Science, Cybersecurity, or a related field; Master's degree
preferred
● 3+ years working in Product Security and CI/CD or software development
● Strong, demonstrable networking security experience — VPNs, routing, and firewalls
● Strong hands-on experience with AWS (IAM, VPC, cloud-native security services)
● Hands-on experience with SAST/SCA tools (SonarQube or equivalent) and integrating
them into CI/CD (Jenkins or equivalent)
● Experience with observability/monitoring platforms (Datadog or equivalent) for security
use cases
● Deep understanding of software-security principles and cloud-infrastructure security
● Strong knowledge of security protocols, cryptography, secure coding practices, and
OAuth/auth protocols
● Experience with security tools such as IDS/IPS, firewalls, and vulnerability scanners
● Proficiency in programming languages such as Python, Java, C++, or similar
● Proficiency in common operating systems (Linux, Windows) and deep familiarity with
networking protocols
● Understanding of compliance and security frameworks (e.g., CMMC, CIS Benchmarks)
● Excellent problem-solving skills and attention to detail
● Strong communication skills and ability to work collaboratively across teams
● Comfortable with a fast-paced development schedule
● Experience collaborating with other functional teams to define requirements and goals.
● Comfortable with a fast-paced development schedule
Job Type: Full-time
Benefits:
401(k)
Dental insurance
Disability insurance
Flexible spending account
Health insurance
Life insurance
Paid time off
Parental leave
Vision insurance
Sea Machines Robotics Boston, Massachusetts, USA Office
256 Marginal St, Boston, MA, United States, 02128
Similar Jobs
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Secure CrowdStrike’s software supply chain and code-hosting environments by assessing GitHub organizations, open-source integrations, repositories, dependencies, and third-party packages. Implement repository guardrails, secret scanning, access controls, and automation; investigate supply-chain threats such as typosquatting and dependency confusion; promote secure coding and open-source compliance; and collaborate with engineering teams on security initiatives.
Top Skills:
Amazon S3Argo CdArtifactoryBitbucketCi/CdDatadogGitGithub ActionsGitlabGoJavaScriptJenkinsLinuxLogscalePrometheusPythonSecret ScanningShellSoftware Composition Analysis (Sca)SplunkUnix
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Partners with engineering teams to identify and remediate product security risks across the software development lifecycle. Responsibilities include threat modeling, secure architecture and coding guidance, security testing, vulnerability prioritization, penetration testing coordination, bug bounty remediation, application monitoring, developer training, and secure deployment practices. The role also advances AI-assisted security tooling, DevSecOps practices, security champions, Kubernetes and container security, and scalable risk-based remediation frameworks.
Top Skills:
Ci/CdContainer Security ScannersCybersecurity AiDastDevsecopsGoJavaJavaScriptKubernetesNist Ai Risk Management FrameworkOpenssf Ai/Ml Security FrameworkOwasp Ai Security And Privacy GuidePythonRubySastScaTypescript
Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Designs and implements security for embedded consumer electronics products, including ARM TrustZone applets, cryptographic device identity, secure boot, firmware protection, key management, and trust chains. Defines security requirements, performs assessments and testing, supports compliance audits, mitigates vulnerabilities, and advises engineering teams through architecture and code reviews. Collaborates with firmware, DevOps, cloud, manufacturing, and program management teams to strengthen product security and incident response.
Top Skills:
Arm TrustzoneCC++CryptographyEtsi En 303 645Eu CraFirmware EncryptionHardware Security Modules (Hsms)Iec 62443IotIso 27001JwkLinuxNistSecure BootX.509
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories



