Application Security Engineer

Cybersecurity Jobs

Sunnyvale (CA)

On-site

USD 69,000 - 76,000

Part time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Compest Solutions Inc seeks an Application Security Engineer / AI Security Engineer for a contract role onsite in Seattle, WA and Sunnyvale, CA. The candidate will strengthen security across apps, cloud services, APIs, and AI integrations.

Responsibilities include security/privacy design reviews, threat modeling, AI adversarial testing, and documentation with actionable remediation guidance for engineering teams. 8+ years of security experience required.

Qualifications

  • 8+ years of professional experience in security engineering or related security discipline.
  • Experience reviewing complex designs and identifying security risks in applications, APIs, cloud services, microservices, and distributed systems.
  • Strong understanding of threat modeling, vulnerability assessment, and risk modeling.
  • Strong understanding of authentication, authorization, least-privilege, and data protection.
  • Strong understanding of security architecture.
  • Hands-on experience with security testing, vulnerability investigation, penetration testing, adversarial testing, or security-control validation.
  • Excellent technical communication skills, with ability to explain findings to engineers and business stakeholders.
  • Experience assessing AI/LLM applications and autonomous AI agents (preferred).

Responsibilities

  • Conduct security and privacy design reviews for applications, APIs, cloud services, engineering proposals, and AI integrations.
  • Review system architecture and data flows, including access controls, trust boundaries, and authentication/authorization safeguards.
  • Perform threat modeling for critical services and AI agents, documenting attack surfaces, scenarios, paths, mitigations, and residual risks.
  • Lead hands-on security and adversarial testing for AI/LLM agents, including prompt injection, tool misuse, excessive agency, unauthorized data access, and external integrations.
  • Identify, validate, and document security vulnerabilities, providing practical remediation recommendations.
  • Collaborate with engineering, security, privacy, and third-party teams to drive remediation and validate controls.
  • Develop reusable security assessment artifacts such as methodologies, checklists, threat models, test cases, and reporting templates.
  • Support security automation and AI-assisted security workflows where appropriate.

Skills

Threat modeling
Vulnerability assessment
Risk modeling
Authentication and authorization
Least-privilege
Data protection
Security architecture
Security testing
Adversarial testing
Security-control validation
Technical communication

Tools

Python
Go
Bash

Job description

Compest Solutions Inc is seeking an Application Security Engineer / AI Security Engineer on a contract basis to strengthen security engineering across applications, cloud services, APIs, and AI or LLM integrations. This onsite role focuses on turning security and privacy risk into practical testing, clear documentation, and actionable remediation guidance for engineering teams.

The work spans security and privacy design reviews, threat modeling, and hands-on assessment, including adversarial testing of AI agents for common failure modes such as prompt injection and unsafe tool behavior. The position is based on-site in the Seattle, Washington and Sunnyvale, California area, with local candidates required.

Responsibilities
  • Conduct security and privacy design reviews for applications, APIs, cloud services, engineering proposals, and AI integrations.
  • Review system architecture and data flows, including access controls, trust boundaries, and authentication and authorization safeguards.
  • Perform threat modeling for critical services and AI agents, documenting attack surfaces, attack scenarios, attack paths, mitigations, and residual risks.
  • Lead hands-on security and adversarial testing for AI/LLM agents, including:
    • Prompt injection
    • Tool misuse
    • Excessive agency
    • Unauthorized data access
    • Permission and access-control issues
    • External integrations
    • Sensitive-data exposure
  • Identify, validate, and document security vulnerabilities, and provide practical remediation recommendations.
  • Collaborate with engineering, security, privacy, and third-party teams to drive remediation and validate security controls.
  • Develop reusable security assessment artifacts such as methodologies, checklists, threat models, test cases, and reporting templates.
  • Support security automation and AI-assisted security workflows when appropriate.
Requirements
  • 8+ years of professional experience in security engineering, application security, product security, offensive security, systems architecture, or a related technical security discipline.
  • Experience reviewing complex technical designs and identifying security risks in:
    • Applications
    • APIs
    • Cloud services
    • Microservices
    • Distributed systems
  • Strong understanding of threat modeling, vulnerability assessment, and risk modeling.
  • Strong understanding of authentication and authorization, least-privilege, and data protection.
  • Strong understanding of security architecture.
  • Hands-on experience with security testing, vulnerability investigation, penetration testing, adversarial testing, or security-control validation.
  • Strong technical communication skills, with the ability to explain security findings to engineering and business stakeholders.
Preferred Qualifications
  • Experience assessing AI/LLM applications and autonomous AI agents.
  • Knowledge of prompt injection, jailbreaks, unsafe tool use, excessive agency, and AI data-security risks.
  • Experience with privacy and security design reviews.
  • Experience securing cloud environments.
  • Security automation experience using Python, Go, Bash, or similar languages.
  • Familiarity with application-security frameworks and industry security practices.
Tech
  • Python
  • Go
  • Bash

Location: Onsite in Seattle, Washington and Sunnyvale, California (local candidates required).
Position type: Contract
Compensation: USD 50 - 55 per hour
Minimum experience: 8 years

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Engineer / Application Security Engineer
AI Security Engineer / Application Security Engineer

Cybersecurity Jobs • Sunnyvale (CA), Seattle (WA)

On-site
USD 62,000 - 69,000
Onsite Contract: Application & AI Security Engineer
Onsite Contract: Application & AI Security Engineer

Cybersecurity Jobs • Sunnyvale (CA)

On-site
USD 69,000 - 76,000
Senior AI & Cloud Security Engineer (Onsite)
Senior AI & Cloud Security Engineer (Onsite)

Cybersecurity Jobs • Sunnyvale (CA), Seattle (WA)

On-site
USD 62,000 - 69,000
Senior AI Security Engineer
Senior AI Security Engineer

Cybersecurity Jobs • Seattle (WA)

On-site
USD 155,000 - 200,000
full benefits
PTO
holiday
+1
Application Security Engineer
Application Security Engineer

Prediktive • New York (NY)

Remote
USD 130,000 - 190,000
Security Engineer
Security Engineer

Talentify • Seattle (WA)

On-site
USD 140,000 - 190,000
Application & AI Security Engineer
Application & AI Security Engineer

Hydrogen Group • United States

On-site
USD 140,000 - 190,000
Application Security Engineer (App Sec)
Application Security Engineer (App Sec)

Pyramid Consulting, Inc • Irving (TX)

On-site
USD 83,000 - 90,000
Health insurance
401(k) plan
Paid sick leave
Application Security Engineer
Application Security Engineer

Akkodis • Charlotte (NC)

On-site
USD 83,000 - 90,000
Security Engineer – Engineering Security
Security Engineer – Engineering Security

TechDigital Group • Seattle (WA)

On-site
USD 140,000 - 200,000