Engineering Manager, Anti-Abuse & Security
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
We're hiring a hands-on Engineering Manager to build and lead Replit's Anti-Abuse team from the ground up. This is a foundational 0-to-1 role: you'll define the anti-abuse roadmap, hire a small team of engineers and data analysts, and ship the systems that protect Replit's platform, users, and economics from adversarial actors. You'll partner across Support, Legal, Security, Infrastructure, and the Money and Growth teams to make abuse economically unviable while keeping friction low for legitimate users. Replit sits at the frontier of AI-native abuse. Our platform is a target for phishing and scam hosting, cryptomining, LLM token farming, card and coupon fraud, and increasingly, abuse driven by AI agents themselves. The team you build will define how Replit defends against all of it.
Responsibilities
- Build the anti-abuse roadmap from scratch : Define the threat model, prioritize across abuse vectors (phishing/scam hosting, cryptomining, token farming, payment fraud, AI agent exploitation), and translate it into a shipping plan with clear sequencing and tradeoffs.
- Ship as a hands-on EM : Stay in the code. Use the latest AI coding tools (including Replit Agent) to prototype detections, build internal tooling, and unblock your team. This role is for someone who multiplies their output with AI rather than stepping away from the craft.
- Make abuse economically unviable : Design adaptive friction systems that escalate verification only when risk signals warrant it. The goal isn't elimination; it's making Replit an unprofitable target while keeping the path clear for legitimate users.
Requirements
- 6 to 10+ years of engineering experience with 2+ years managing teams, ideally in anti-abuse, trust and safety engineering, fraud, or an adjacent adversarial domain.
- A hands-on orientation: you still write code, review PRs, and prototype. Comfort using AI coding tools (Claude Code, Cursor, Replit Agent, or similar) as part of your daily workflow.
- Experience building detection and enforcement systems at scale: rules engines, ML-based risk scoring, reputation systems, identity and device signals, or similar.
- Experience with identity, KYC, or progressive verification systems is a significant plus. You've thought about how to layer trust signals and gate capabilities without wrecking conversion.
- Strong product and metrics intuition. You've defined success metrics for ambiguous problems and built the data infrastructure to measure them.
- Experience operating cross-functionally with Support, Legal, Security, and Growth teams. Comfort translating between technical detections and business impact.
- Crisp written communication and the ability to build clarity in an ambiguous, 0-to-1 environment.
- Experience with AI-native abuse vectors (prompt injection, LLM token farming, agent-driven abuse) or a track record of adapting quickly to novel threat categories.
- Familiarity with payment fraud, card testing, coupon abuse, referral abuse, or promotional abuse.
- Experience integrating KYC and identity verification providers (Prove, Persona, Socure, Stripe Identity, or similar).
- Experience at a consumer platform,
Benefits
Additional Information
Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at replit? Share your experience