Information Security Engineer 4

LAM RESEARCH Corporation

Fremont (CA)

Hybrid

USD 92,000 - 211,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

LAM RESEARCH Corporation in Fremont, California is seeking an Application Security professional to enhance the security of Lam-developed applications. This role will involve contributing to secure design and executing Secure SDLC practices while assisting with vulnerability assessments and penetration testing.

The ideal candidate will have a Bachelor's degree in a related field, 3+ years in information security, and familiarity with application security frameworks. The position offers flexibility with hybrid work models for collaboration and individual productivity.

Qualifications

  • 3+ years of experience in information security, application security, or related fields.
  • Working knowledge of vulnerability assessment and secure coding practices.
  • Basic understanding of CI/CD pipelines and developer tools.

Responsibilities

  • Support secure design and Secure SDLC execution.
  • Assist with application risk assessments and penetration testing.
  • Document findings and work with cross-functional teams.

Skills

Information Security
Application Security
DevSecOps
Secure SDLC practices
Vulnerability Assessment
Cross-functional collaboration

Education

Bachelor’s degree in computer science, Information Security, or related field

Tools

SAST
DAST
CI/CD
Git
Azure DevOps

Job description

The group you’ll be a part of

This position will be part of Lam Information Security’s Application Security team, supporting Secure SDLC, product security, application risk assessments, threat modeling, vulnerability validation, penetration testing, and AI-related security initiatives across Lam-developed applications and AI-enabled solutions.

The impact you’ll make

This position will increase Lam’s Application Security and Product Security capacity by helping scale Secure SDLC reviews, application risk assessments, threat modeling, vulnerability validation, penetration testing, and AI-related security reviews. The role will help reduce security risk earlier in the development lifecycle, improve consistency across Lam-developed applications and AI-enabled solutions, and support engineering teams in delivering secure software with appropriate controls for data, access, AI model usage, logging, and human oversight.

What you’ll do
  • Support the objectives of the Application Security team by contributing to secure design, Secure SDLC execution, and product security reviews.
  • Assist with application risk assessments, secure design reviews, threat modeling, code review, vulnerability assessment, and penetration testing.
  • Support the integration and operational use of application security tools, including SAST, SCA and DAST, and other DevSecOps capabilities in CI/CD pipelines.
  • Work with development teams to identify and document security requirements, common application risks, and required controls based on application risk level, data sensitivity, exposure, and system interconnections.
  • Help engineering teams interpret and apply secure coding standards, OWASP guidance, internal Secure SDLC requirements, and product security best practices.
  • Assist in reviewing AI-related security risks, including prompt injection, insecure model/tool integration, data leakage, excessive autonomy, insecure AI outputs, model sourcing, sensitive data exposure, and lack of human-in-the-loop controls.
  • Participate in AI-related security initiatives, including secure AI model usage, AI-assisted development governance, AI-enabled application review, and secure MLOps process improvement.
  • Research, evaluate, and help pilot new security capabilities, automation, and AI-assisted AppSec workflows under guidance from senior security engineers.
  • Document findings, recommendations, and review outcomes clearly for application teams, security leadership, and governance tracking.
  • Partner with cross‑functional teams to improve secure development practices and reduce application and product security risk.
Who we’re looking for
  • Bachelor’s degree in computer science, Information Security, Information Technology, Engineering, or related field, or equivalent practical experience.
  • 3+ years of experience in information security, application security, product security, software engineering, DevSecOps, or related technical field.
  • Working knowledge of Secure SDLC practices, including threat modeling, secure design review, code review, vulnerability assessment, and security testing.
  • Familiarity with common application security frameworks and risks, including OWASP Top 10, API security, authentication/authorization, input validation, secrets management, and secure coding practices.
  • Hands‑on or working experience with one or more application security tools such as SAST, DAST, SCA, secrets scanning, container scanning, or vulnerability management platforms.
  • Basic understanding of CI/CD pipelines and developer tools such as Git, Bitbucket, Jenkins, Azure DevOps, Artifactory, or similar platforms.
  • Ability to analyze technical information, identify security risks, and communicate findings clearly to engineering and security stakeholders.
  • Strong collaboration skills and ability to work with cross‑functional global teams.
Preferred qualifications
  • Experience supporting security reviews for cloud, product, or manufacturing/engineering software environments.
  • Experience with Azure, Microsoft DevOps, Kubernetes, containers, APIs, or modern application architectures.
  • Exposure to AI/ML security concepts, including generative AI, RAG, AI agents, model governance, prompt injection, model/data leakage, AI-assisted coding, and secure MLOps.
  • Familiarity with security requirements for AI‑enabled applications, including approved model usage, data minimization, access control, logging, monitoring, human oversight, and secure tool/plugin integration.
  • Experience helping engineering teams remediate application vulnerabilities and validate fixes.
  • Security certifications such as Security+, CSSLP, CISSP, GIAC, or similar are preferred but not required.
  • Ability to break down complex security problems, document practical recommendations, and contribute to repeatable security review processes.
Our commitment

We believe it is important for every person to feel valued, included, and empowered to achieve their full potential. By bringing unique individuals and viewpoints together, we achieve extraordinary results.

Lam Research ("Lam" or the "Company") is an equal opportunity employer. Lam is committed to and reaffirms support of equal opportunity in employment and non-discrimination in employment policies, practices and procedures on the basis of race, religious creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex (including pregnancy, childbirth and related medical conditions), gender, gender identity, gender expression, age, sexual orientation, or military and veteran status or any other category protected by applicable federal, state, or local laws. It is the Company’s intention to comply with all applicable laws and regulations. Company policy prohibits unlawful discrimination against applicants or employees.

Work location models

Lam offers a variety of work location models based on the needs of each role. Our hybrid roles combine the benefits of on‑site collaboration with colleagues and the flexibility to work remotely and fall into two categories – On‑site Flex and Virtual Flex. ‘On‑site Flex’ you’ll work 3+ days per week on‑site at a Lam or customer/supplier location, with the opportunity to work remotely for the balance of the week. ‘Virtual Flex’ you’ll work 1-2 days per week on‑site at a Lam or customer/supplier location, and remotely the rest of the time.

Salary

CA SanFrancisco Bay Area Salary Range for this position: $92,000.00 – $211,000.00. The above salary range for this position is relevant to applicants that reside or work onsite in the California, San Francisco Bay Area only. Salary offers will depend on factors that include the location you work from, your level, education, training, specific skills, years of experience and comparison to other employees already in this role. Actual salary may vary from salary offered due to numerous factors including but not limited to unpaid time off, unpaid leave, company mandated shutdown, and other relevant factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer 4
Information Security Engineer 4

Lam Research • Fremont (CA)

Hybrid
USD 92,000 - 211,000
Comprehensive set of outstanding benefits
Information Security Engineer 4
Information Security Engineer 4

Lam Research Salzburg GmbH • Fremont (CA)

Hybrid
USD 92,000 - 211,000
Information Security Engineer
Information Security Engineer

LAM RESEARCH Corporation • Fremont (CA)

Hybrid
USD 92,000 - 211,000
On-site Flex
Virtual Flex
Hybrid work options
Information Security Engineer
Information Security Engineer

Lam Research Salzburg GmbH • Fremont (CA)

Hybrid
USD 92,000 - 211,000
Information Security Engineer - Silverfort
Information Security Engineer - Silverfort

LAM RESEARCH Corporation • Fremont (CA)

Hybrid
USD 92,000 - 211,000
Information Security Engineer - Silverfort
Information Security Engineer - Silverfort

Lam Research Salzburg GmbH • Fremont (CA)

Hybrid
USD 92,000 - 211,000
Information Security Engineer - Silverfort
Information Security Engineer - Silverfort

Lam Research • Fremont (CA)

Hybrid
USD 92,000 - 210,000
Software Engineer Sys 5
Software Engineer Sys 5

Lam Research Salzburg GmbH • Fremont (CA)

Hybrid
USD 141,000 - 307,000
Sr. Applied Intelligence Architect
Sr. Applied Intelligence Architect

LAM RESEARCH Corporation • Fremont (CA)

On-site
USD 149,000 - 183,000
Software Engineer Sys 5
Software Engineer Sys 5

LAM RESEARCH Corporation • Fremont (CA)

Hybrid
USD 141,000 - 307,000