An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Altimetrik / S&P Global is seeking a Senior Application Security Engineer with a strong software engineering background and hands-on Python automation, AI/ML/LLM, and AI agent security. The role emphasizes building and shipping production security tooling, automating workflows, and addressing new security risks from AI/LLM applications.
The ideal candidate will have 12+ years of experience in software engineering and security, with demonstrated hands-on capabilities rather than governance roles,
HIRING: Senior Application Security Engineer AI/ML & LLM Security
Location: Princeton, NJ / New York City, NY Hybrid
Client: Altimetrik / S&P Global
Employment: Full-Time
Experience: 12+ Years Required
Work Authorization: USC / H-4 EAD Only
We are looking for a Senior Application Security Engineer with a strong software engineering background and hands-on experience in Python automation, AI/ML, LLMs, AI agents, and application security. The ideal candidate is not security-adjacent you have built and shipped production code, developed security tooling, automated security workflows, and understand how modern AI/LLM applications introduce new security risks.
12+ years of overall professional experience in Software Engineering and Application Security, with substantial hands-on development experience.
Strong hands-on Python development and automation experience for building security tools, workflows, scripts, and reusable frameworks.
Strong experience with Application Security / Product Security / Software Security Engineering.
Hands-on experience with Claude Code, including its extensibility capabilities such as:
Experience using Claude Code or comparable AI coding/agent platforms to develop reusable security workflows and automation.
Strong understanding of AI/ML, LLMs, Generative AI, and AI agents.
Working knowledge of agentic frameworks and architectures and emerging security risks associated with AI agents.
Understanding of OWASP LLM Top 10, including prompt injection, insecure output handling, model-related risks, and sensitive information disclosure.
Understanding of AI agent security, including tool permissions, excessive agency, agent-to-agent interactions, prompt injection, and authorization boundaries.
Understanding of AI/LLM supply-chain security, including model, library, dependency, tool, and MCP-related risks.
Strong experience with Secure SDLC, threat modeling, security architecture, vulnerability management, and application security testing.
Ability to determine what should be automated, what requires escalation, and what can be directly remediated.
Experience securing production LLM, GenAI, or agentic applications.
Experience building internal AI/LLM security tooling or security automation platforms.
Experience with MCP security and AI agent tool integrations.
Experience with AI/ML security frameworks and emerging AI security best practices.
Contributions to open-source security tools or projects.
Relevant certifications such as OSCP, GWAPT, CSSLP, or equivalent preferred but not required.
Software Engineering + Application Security + Python Automation + AI/ML/LLM + AI Agent Security. Candidates should have 12+ years of overall experience and demonstrate strong hands-on engineering capabilities rather than purely governance, compliance, audit, or security-management experience.
Please share only candidates who closely match the hands-on software engineering, application security, Python automation, and AI/LLM requirements.