Staff/Sr. Staff Application Security Engineer
Core
Securing mission-critical software systems for Next-Generation Missile Warning and OPIR sensor data processing by identifying, analyzing, and mitigating application-level vulnerabilities.
Role type
Staff/Sr. Staff Application Security Engineer
Builds
Secure software systems for missile defense, battlespace awareness, and technical intelligence
Domain
Defense / Cybersecurity
Deliverable
production ML models | product features | infrastructure
Required skills
Application security analysis, Static code analysis (SAST), Software composition analysis (SCA), Fuzzing, Manual code and design reviews, CI/CD pipeline security integration, Threat modeling, Secure design reviews
Preferred skills
Active DoD Secret clearance, CVE publication history, Reverse engineering, Runtime instrumentation, eBPF, Ghidra/IDA Pro, MITRE ATT&CK frameworks
Technologies
C++, Python, JavaScript, Rust, Coverity, Klocwork, SonarQube, Snyk, Sonatype, Anchore, JFrog Xray, AFL, AFL++, honggfuzz, strace, eBPF, Ghidra, IDA Pro
Responsibilities
Perform automated and manual application security analysis, Identify and remediate application vulnerabilities, Integrate security tooling into CI/CD pipelines, Support threat modeling and secure design reviews, Tune security tools to reduce false positives, Document security findings and best practices
Seniority
Senior, hands-on IC