Application Security Engineer

Pantera Capital

Palo Alto (CA)

On-site

USD 100,000 - 258,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Medical coverage
401(k)

Job summary

xAI in Palo Alto is seeking an Application Security Engineer to strengthen our cloud-native applications and AI systems across the software development lifecycle. You will focus on code security, CI/CD pipelines, and emerging AI technologies while collaborating with engineering teams to embed security by design.

We expect 3–5 years in application security, expertise in secure coding with Python or Rust, and experience with security testing tools and SBOMs.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field.
  • 3–5 years of experience in application security with focus on code security.
  • Deep understanding of secure coding practices, OWASP Top 10.
  • Proficiency in Python or Rust and secure coding practices in these languages.
  • Experience securing CI/CD pipelines and DevSecOps practices.
  • Familiarity with software supply chain security and SBOM generation tools.
  • Experience with security testing tools (Burp Suite, OWASP ZAP) and static/dynamic analysis.
  • Understanding of AI/ML security implications, OWASP LLM Top 10.
  • Excellent communication skills to explain security to technical and non-technical audiences.

Responsibilities

  • Conduct in-depth code reviews and static analysis to identify vulnerabilities.
  • Design and implement secure coding guidelines for development teams.
  • Collaborate with development teams to integrate security into the CI/CD pipeline.
  • Perform threat modeling and risk assessments for applications.
  • Manage vulnerability tracking and remediation guidance for development teams.
  • Support incident response activities related to application security.
  • Stay current on emerging security threats in cloud-native tech and AI.
  • Evaluate and secure software supply chains, SBOMs.
  • Address security concerns for AI/ML models, focusing on OWASP LLM Top 10.

Skills

Python or Rust
Secure coding practices
Communication skills
DevSecOps
Threat modeling

Education

Bachelor’s degree in Computer Science, Cybersecurity, or related field

Tools

Burp Suite
OWASP ZAP
SBOM generation tools

Job description

ABOUT xAI

xAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands‑on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.

ABOUT THE ROLE:

We are seeking a skilled and innovative Application Security Engineer to join our technology-driven company. In this role, you will be responsible for ensuring the security and integrity of our cloud‑native applications and systems throughout the software development lifecycle, with a particular focus on code security, CI/CD pipelines, and emerging AI technologies.

RESPONSIBILITIES:
  • Conduct in‑depth code reviews and static analysis to identify and mitigate security vulnerabilities in our applications
  • Design and implement secure coding guidelines and best practices for development teams
  • Collaborate closely with development teams to integrate security practices throughout the CI/CD pipeline
  • Perform threat modeling and risk assessments for applications, developing mitigation strategies for potential risks
  • Manage vulnerability tracking and remediation efforts, providing guidance to development teams
  • Support incident response activities related to application security
  • Stay current on emerging security threats and trends in cloud‑native technologies and AI, continuously enhancing our security measures
  • Evaluate and secure software supply chains, including producing and maintaining Software Bills of Materials (SBOMs)
  • Address security concerns specific to AI and machine learning models, with a focus on the OWASP LLM Top 10
BASIC QUALIFICATIONS:
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field
  • 3‑5 years of experience in application security, with a strong focus on code security practices
  • Deep understanding of secure coding practices, application security frameworks, and common vulnerabilities (e.g., OWASP Top 10)
  • Proficiency in Python or Rust programming languages and experience with secure coding practices in these languages
  • Experience securing CI/CD pipelines and implementing DevSecOps practices
  • Familiarity with software supply chain security and SBOM generation tools
  • Experience with security testing tools (e.g., Burp Suite, OWASP ZAP) and static/dynamic code analysis
  • Understanding of AI/ML security implications, particularly those outlined in the OWASP LLM Top 10
  • Excellent communication skills, able to explain complex security issues to both technical and non‑technical audiences
PREFERRED SKILLS AND EXPERIENCE:
  • Experience with cloud platforms (e.g., GCP, AWS, Azure) and their security features
  • Relevant security certifications (e.g., CSSLP, OSWE)
  • Background in data privacy and compliance regulations relevant to cloud‑native applications and AI systems
  • Experience with GitOps and infrastructure‑as‑code security
  • Familiarity with federated learning and privacy‑preserving machine learning techniques
  • Experience in building custom security tooling to enhance and automate security processes
  • Interest in leveraging AI to automate security tasks and improve efficiencyContributions to open‑source security projects or tools
  • Experience in securing AI/ML models and data pipelines
COMPENSATION AND BENEFITS:

$100,000 - $258,000 USD

Base salary is just one part of our total rewards package at xAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long‑term disability insurance, life insurance, and various other discounts and perks.

xAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

xAI • Palo Alto (CA)

On-site
USD 200,000 - 340,000
Equity
Comprehensive medical coverage
401(k) retirement plan
Infrastructure Security Engineer
Infrastructure Security Engineer

Pantera Capital • Palo Alto (CA)

On-site
USD 200,000 - 340,000
Equity
Comprehensive medical coverage
401(k) retirement plan
+2
Software Engineer - Platform Security
Software Engineer - Platform Security

Xai • Palo Alto (CA)

On-site
USD 100,000 - 258,000
Equity
Medical coverage
401(k) plan
AIApplication Security Engineer
AIApplication Security Engineer

duvari group • St. Louis (MO)

On-site
USD 135,000 - 165,000
Application Security Engineer II
Application Security Engineer II

Abnormalsecurity • United States

On-site
USD 130,000 - 187,000
Bonus potential
Equity
Benefits package
Application Security Engineer II
Application Security Engineer II

Socket.dev • United States

On-site
USD 130,000 - 187,000
Application Security Engineer II
Application Security Engineer II

Abnormal • United States

On-site
USD 130,000 - 187,000
Application Security Engineer II
Application Security Engineer II

Abnormal AI, Inc. • United States

On-site
USD 130,000 - 187,000
Application Security Engineer II
Application Security Engineer II

Abnormal AI • United States

On-site
USD 130,000 - 187,000
Infrastructure Security Engineer
Infrastructure Security Engineer

xAI • Palo Alto (CA)

On-site
USD 100,000 - 258,000
Equity
Medical coverage
Dental coverage
+5