- Plan and carry out application security testing in all phases of the software development life cycle.
- Assess discovered vulnerabilities and recommend risk-mitigating solutions, leveraging automation.
- Communicate findings, risks, and recommendations to stakeholders against defined SLAs.
- Lead AI security initiatives, including threat modeling production LLM stacks and auditing third-party models.
- Collaborate with architects and development teams to drive secure design practices.
- Monitor the security community for public-facing issues and new tactics for testing.
- Train developers and junior application security engineers on weaknesses to avoid.
AWSPythonJava+1 more