Senior Application Security Engineer
Core
Design, build, and operate deterministic security gates for AI-authored code and pull requests in a SaaS engineering environment, ensuring AI-generated code meets the same security standards as human-authored code.
Role type
Senior AI Application Security Engineer (hands-on IC)
Builds
AI-native features, agentic workflows, MCP integrations, and AI coding assistants
Domain
SaaS, AI/ML, Application Security
Deliverable
production ML models | product features | infrastructure
Required skills
Python, TypeScript/JavaScript, Java/Kotlin, Go, Terraform, Helm, Kubernetes, SAST/SCA pipeline operation, agentic AI/MCP development, threat modeling, developer security training
Preferred skills
API security, DAST, container security, AWS security, compliance frameworks (SOC 2, ISO 27001)
Technologies
Snyk, Semgrep, GitHub Advanced Security, Checkmarx, Veracode, Claude Code, Cursor, Copilot, MCP servers, Kubernetes, AWS
Responsibilities
Operate and tune SAST/SCA/secrets-detection pipelines; Review human and agent-authored PRs for semantic violations; Author and enforce AI-assisted development security policies; Threat model new AI features and agent architectures; Scale threat modeling frameworks and developer security training programs; Act as primary technical responder for application-layer incidents
Seniority
Senior, hands-on IC