Senior Application Security Engineer
Core
Lead application security projects, conduct threat modeling and security architecture reviews for applications, APIs, and AI/ML systems, and design secure-by-default controls across the software development lifecycle.
Role type
Senior Application Security Engineer
Builds
Secure-by-default controls, vulnerability detection services, and automation for the software development lifecycle
Domain
Application Security, Cloud-Native/Distributed Systems, AI/ML Security
Deliverable
production ML models | product features | infrastructure
Required skills
Threat modeling, Security architecture reviews, API security, Secure coding standards, SAST/DAST/SCA, CI/CD security, Secrets management, Cloud-native security, Vulnerability remediation, Security automation development
Preferred skills
Building reusable security guardrails/platforms, Securing frontend frameworks and event-driven architectures, AI/ML and GenAI security risk assessment, Application security mentoring
Technologies
Java, Python, Ruby, Go, REST, GraphQL, Microservices
Responsibilities
Lead application security projects involving multiple contributors, Conduct threat modeling and security architecture reviews, Design and implement secure-by-default controls, Identify and drive remediation of application vulnerabilities, Build services and automation for vulnerability detection, Provide technical leadership during high-severity security incidents
Seniority
Senior, hands-on IC with leadership responsibilities
