Application Security Engineer
Core
Drive product security posture improvements through strategic planning, design reviews, threat modeling, and security testing for web-scale applications.
Role type
Application Security Engineer
Builds
Production-grade security designs, security tools, and secure software development lifecycle integration
Domain
Cybersecurity, Application Security, Cloud Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Python, Go, Java, DevOps, distributed systems, web application penetration testing, security tooling automation, cloud technologies, container technologies, threat modeling, risk assessments, OWASP Top 10
Preferred skills
CISSP, Offensive Security, SANS Institute certifications, Data Protection Act, ISO 27001, PCI-DSS, public security research, blogging, presentations
Technologies
AWS, GCP, Kubernetes, Docker
Responsibilities
Perform design reviews, threat modeling, vulnerability assessments, security testing, and code reviews; Partner with development teams on design and security education; Contribute to security strategy and tooling selection
Seniority
Mid-Senior, hands-on IC
