Senior Application Security Engineer (Remote)
Core
Finding and responding to security vulnerabilities across the Brex platform, including AI-driven features, by performing penetration testing, code reviews, and building automated security tooling.
Role type
Senior Application Security Engineer (Penetration Testing & AI Security)
Builds
Internal security tooling (SAST/DAST), secure product features, and AI security capabilities for a global financial platform.
Domain
Fintech / Application Security / AI Security
Deliverable
production ML models | product features
Required skills
Penetration testing, vulnerability identification, exploit development, threat modeling, incident response, secure development practices, Python scripting, AI/agentic workflow security
Preferred skills
Kotlin, gRPC, GraphQL, Kubernetes, distributed systems security, AWS, bug bounty program experience, open source contributions
Technologies
Python, Kotlin, gRPC, GraphQL, Kubernetes, AWS, SAST, DAST
Responsibilities
Identify vulnerabilities and demonstrate business impact through custom attack chains; Perform penetration testing and design reviews to find insecure designs; Maintain and build internal tools to automate security efforts; Build a culture of collaborative security excellence through technical leadership and mentorship
Seniority
Senior, hands-on IC with technical leadership
