Staff Application Security Engineer
Core
Build and scale modern application security capabilities, automation, and developer-facing security tools across the enterprise.
Role type
Staff Application Security Engineer (hands-on IC with thought leadership)
Builds
Reusable security automations, integrations, APIs, golden paths, secure AI guardrails, and developer tooling
Domain
Media & Entertainment / Application Security / DevSecOps / Secure AI
Deliverable
production ML models | product features | infrastructure
Required skills
Application security engineering, secure software development, vulnerability management, software supply chain security, security automation, API design, Python scripting, SAST/SCA integration, container security, CI/CD security
Preferred skills
Snyk, Wiz Code, GitHub Advanced Security, Checkmarx, Veracode, secure developer platforms, Kubernetes, infrastructure as code, CSPM, CNAPP, SBOM, AI-driven vulnerability management
Technologies
Python, SAST, SCA, secrets detection, containers, Kubernetes, CI/CD, IaC, GitHub, ticketing systems
Responsibilities
Design and build application security capabilities supporting secure software development; Build reusable security automations and developer tools; Implement secure-by-default golden paths and engineering patterns; Partner with Cloud Security on code, containers, and supply chain workflows; Improve vulnerability prioritization and remediation speed; Build integrations between AppSec platforms and engineering tools; Create telemetry and reporting pipelines; Serve as a senior technical expert and mentor engineers
Seniority
Staff, hands-on IC with strategic influence
