Application Security Engineer
Core
Design and execute a multi-year application and platform security roadmap, hardening cloud infrastructure, identity, network, and the software supply chain for a SaaS platform serving accounting firms.
Role type
Senior Application Security Engineer (hands-on IC)
Builds
Shipped, operational security reality for cloud infrastructure, identity, network, application, observability, and the software supply chain
Domain
SaaS / Cloud Security / Accounting Industry
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cloud account/organization security (AWS), IAM and least-privilege design, Kubernetes and container security, network security and zero-trust access, web application security, security observability, secure SDLC/supply chain security, threat modeling, AI security landscape understanding
Preferred skills
Multi-tenant SaaS platform security, detection engineering programs, regulated/compliance-heavy environment experience, AI/LLM-powered features security
Technologies
AWS, Kubernetes, Tailscale, mTLS, WAF, CSP, SIEM, SAST, DAST, SBOM
Responsibilities
Harden AWS and Kubernetes environments; strengthen authentication and application-layer defenses; build out the security observability stack; embed security into the SDLC; evaluate and adopt AI-powered security tooling; serve as a trusted security resource for engineering teams
Seniority
Senior, hands-on IC