Application Security Engineer
New
J
JobgetherCybersecurity
Based in the United StatesFull-TimeMiddle
Salary82,000 - 118,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- At least 3 years
- Required Skills
- CI/CD
Requirements
- Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or a related discipline preferred; equivalent education and experience may be considered.
- At least 3 years of experience as a software developer or in a comparable technical role.
- Experience with application security, secure software development, vulnerability management, code review, or security testing.
- Experience with AI/LLM security concepts, including prompt injection, jailbreaks, RAG security, agentic workflows, and AI guardrails.
- Familiarity with OWASP application security principles and emerging AI security frameworks such as OWASP Top 10 for LLM Applications and MITRE ATLAS.
- Certifications such as Burp Suite Certified Practitioner, Hack The Box Certified Web Exploitation Specialist (HTB CWES), or Practical Web Pentest Professional (PWPP) are preferred.
- Strong analytical, troubleshooting, organizational, and problem-solving skills.
- Excellent written and verbal communication skills.
- Ability to work effectively both independently and collaboratively in a fast-paced environment.
Responsibilities
- Apply and maintain secure software development practices, including code reviews and security testing integrated into CI/CD pipelines.
- Identify, validate, prioritize, and triage application vulnerabilities using automated security tools and manual testing techniques.
- Support Shift Left security initiatives by helping development teams adopt secure coding practices and remediate identified vulnerabilities.
- Collaborate with product, engineering, DevOps, and compliance stakeholders to incorporate security requirements into application architecture and design.
- Apply secure development standards to AI-enabled applications, including LLM integrations, RAG pipelines, and agentic workflows.
- Conduct AI red-team testing covering prompt injection, jailbreaks, and sensitive-data exposure using frameworks like OWASP Top 10 for LLM Applications and MITRE ATLAS.
View Full Description & ApplyYou'll be redirected to the employer's site