Sr Application Security Engineer
Core
Lead hands-on application security testing, secure code review, and secure SDLC enablement across modern application environments to reduce security risks from design through production.
Role type
Senior IC application security engineer
Builds
Secure, resilient applications and scalable AppSec programs
Domain
Education technology / Application Security
Deliverable
production ML models | product features | dashboards & analysis
Required skills
manual source code review, SAST/DAST/SCA/container scanning, threat modeling, CI/CD security integration, vulnerability reporting, AI-assisted tooling evaluation
Preferred skills
AI/LLM application security, mobile security, reverse engineering, advanced AppSec certifications
Technologies
SAST, DAST, SCA, container scanning, CI/CD pipelines, OWASP Top 10 methodologies
Responsibilities
Lead manual source code review focusing on business logic and access control; Perform and guide application security testing using various methodologies; Expand and support the Security Champions program; Develop automated source code review processes and CI/CD security checks; Partner with engineering teams to embed secure SDLC practices; Create clear vulnerability reports for technical and non-technical audiences; Evaluate and apply AI-assisted tooling to accelerate workflows; Advise teams on threat modeling for web, API, mobile, cloud, and AI-enabled applications
Seniority
Senior, hands-on IC
