Senior Application Security Engineer
New
J
JobgetherSecurity & IT
Based in United StatesFull-TimeSenior
Salary109,000 - 156,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- At least 5 years of experience
- Required Skills
- CI/CDLLM
Requirements
- Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or a related discipline is preferred, or equivalent professional experience.
- At least 5 years of experience as a software developer or in a closely related technical role, with strong application security expertise.
- Strong knowledge of secure software development, application vulnerability management, threat modeling, risk assessment, and security testing.
- Experience integrating security controls into CI/CD pipelines and software development workflows.
- Familiarity with AI and LLM security concepts, including prompt injection, jailbreaks, RAG security, agentic workflows, tool-use risks, and sensitive data protection.
- Experience applying or working with security frameworks such as OWASP, MITRE ATLAS, and NIST AI Risk Management Framework.
- Ability to assess complex security problems, prioritize risks, and develop practical mitigation strategies.
- Strong organizational skills with the ability to manage multiple priorities, initiatives, and deadlines simultaneously.
- Excellent verbal and written communication skills.
- Ability to work Monday through Friday primarily from a home environment, with travel of approximately 5% or less.
Responsibilities
- Define and implement secure software development practices, including secure coding standards, code reviews, and security integration within CI/CD pipelines.
- Lead Shift Left security initiatives and work with software engineering teams to incorporate security requirements early in the development lifecycle.
- Identify, assess, prioritize, and remediate application vulnerabilities using automated security tools and manual testing techniques.
- Serve as the application security subject matter expert, helping developers reproduce vulnerabilities, understand risks, and implement effective mitigation strategies.
- Manage and optimize tools supporting the application security program, including open-source security solutions.
- Develop and lead threat modeling exercises, risk assessments, security audits, vulnerability assessments, and application security reviews.
- Establish secure design standards for AI-enabled applications, including LLM integrations, retrieval-augmented generation pipelines, agentic workflows, and model tool-use interfaces.
- Design and validate AI security guardrails covering prompt injection defenses, input and output validation, least-privilege access, rate and cost controls, and data loss prevention.
- Lead AI red-team exercises addressing prompt injection, jailbreaks, sensitive data exposure, insecure outputs, excessive agency, and AI/model supply-chain risks.
- Support application-related security incidents by collaborating with incident response teams to investigate, contain, and remediate issues.
View Full Description & ApplyYou'll be redirected to the employer's site