Enable job alerts via email!

Lead Application & Platform Security Engineer

Zeta Global

San Francisco (CA)

Hybrid

USD 140,000 - 175,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in AI-powered marketing is seeking a Lead Application & Platform Security Engineer. This hybrid role in San Francisco involves embedding security in the development lifecycle and safeguarding high-performance systems. Candidates should have a strong background in application security and experience with modern frameworks. The position offers a competitive salary range and excellent benefits including unlimited PTO and comprehensive health coverage.

Benefits

Unlimited PTO
Excellent medical, dental, and vision coverage
Employee Equity
Employee Discounts
Virtual Wellness Classes
Pet Insurance

Qualifications

  • 5+ years of experience in Application Security or secure software development.
  • In-depth understanding of OWASP Top 10 and MITRE ATT&CK for ML.

Responsibilities

  • Lead threat modeling and security architecture reviews.
  • Collaborate with engineers to embed security into the SDLC.
  • Monitor modern threat vectors and implement proactive defenses.

Skills

Communication
Stakeholder Management

Education

Bachelor’s degree in Computer Science
Bachelor’s degree in Cybersecurity

Tools

Semgrep
Veracode
Burp Suite

Job description

Lead Application & Platform Security Engineer

Join to apply for the Lead Application & Platform Security Engineer role at Zeta Global

Lead Application & Platform Security Engineer

2 days ago Be among the first 25 applicants

Join to apply for the Lead Application & Platform Security Engineer role at Zeta Global

Direct message the job poster from Zeta Global

Who We Are

Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to www.zetaglobal.com.

About The Role

We’re looking for a highly skilled Lead Application & Platform Security Engineer to lead our application and platform security initiatives. You’ll be responsible for embedding security into every stage of the development lifecycle, from threat modeling through deployment, ensuring secure-by-design practices are consistently applied. Zeta operates at significant scale, supporting billions of consumer profiles and petabytes of data across real-time, AI-powered marketing platforms. In this role, you'll help safeguard our high-performance systems by driving best practices, evaluating emerging threats, and enabling cross-functional teams to build secure, reliable applications.

This is a high-impact position with visibility across engineering, product, and executive leadership.

This is a hybrid role based out of our San Francisco, CA office.

Key Responsibilities

Threat Modeling & Security Validation

  • Lead threat modeling and security architecture reviews for distributed, event- driven systems.
  • Integrate security code reviews, SAST/DAST, Software Composition Analysis (SCA), and container scanning into CI/CD and AI/ML pipelines.
  • Coordinate and lead incident simulations specific to AI systems; oversee red/blue team exercises to validate defensive posture.
  • Conduct security reviews of third-party vendors and tools to ensure alignment with enterprise security standards.

Embedding Security into the SDLC

  • Collaborate with engineers and product teams to build secure features without impeding innovation.
  • Establish and lead security checkpoints across the software development lifecycle.
  • Review system designs, architecture, and data flow diagrams to identify and mitigate risks early.
  • Collaborate with key stakeholders to drive informed Go/No-Go security decisions for all major production deployments.

Emerging Threat Monitoring & Proactive Defense

  • Stay on the forefront of security innovations, including OWASP, cloud-native, and API security practices.
  • Monitor modern threat vectors like LLM jailbreaks, prompt injection, and data poisoning.
  • Recommend and implement forward-looking controls to safeguard AI models and data platforms.Security Awareness & Policy Implementation
  • Evangelize secure coding and AI security through training, brown bag sessions, and workshops.
  • Develop and roll out internal security policies, standards, and best practices.
  • Raise awareness of security threats through documentation and hands-on engagement.
  • Foster a security-first culture across engineering, product, and data teams.

What You Need to Succeed

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent experience.
  • 5+ years of experience in Application Security, DevSecOps, or secure software development.
  • In-depth understanding of OWASP Top 10, SANS CWE Top 25, MITRE ATT&CK for ML, and adversarial threat modeling.
  • Experience securing modern frameworks and architectures (e.g., React, Node.js, Django, FastAPI).
  • Familiarity with AI/ML attack vectors including model inversion, adversarial examples, and training pipeline integrity.
  • Strong foundation in OAuth2, OpenID Connect, JWT, and securing APIs and microservices.
  • Experience with cloud-native security (e.g., AWS, GCP, Azure) and container technologies (e.g., Docker, Kubernetes).
  • Strong communication and stakeholder management skills.

Nice to Have

  • Hands-on with tools like Semgrep, Veracode, Checkmarx, SonarQube, Burp Suite, Zap, Trivy, Brakeman, or LangSec.
  • Certifications such as OSCP, CSSLP, GWAPT, or ML-specific certs (e.g., MITRE ATT&CK Defender for ML).

Benefits & Perks

  • Unlimited PTO
  • Excellent medical, dental, and vision coverage
  • Employee Equity
  • Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!

SALARY RANGE

The salary range for this role is $140,000 - $175,000, depending on location and experience.

PEOPLE & CULTURE AT ZETA

Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.

We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here: https://zetaglobal.com/blog/a-look-into-zetas-ergs/

ZETA IN THE NEWS!

https://zetaglobal.com/press/?cat=press-releases

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Marketing Services

Referrals increase your chances of interviewing at Zeta Global by 2x

Get notified about new Application Security Engineer jobs in San Francisco, CA.

San Francisco, CA $180,000.00-$440,000.00 4 days ago

Senior Security Engineer, Application Security

Walnut Creek, CA $130,000.00-$170,000.00 2 days ago

San Mateo, CA $351,130.00-$425,990.00 11 hours ago

San Francisco, CA $150,000.00-$230,000.00 10 months ago

Director, Information Technology (Applications)
Application Security Engineer - Federal / US Government

San Mateo, CA $130,000.00-$280,000.00 2 days ago

Corte Madera, CA $180,000.00-$220,000.00 2 days ago

Staff Security Engineer, Application & Platform Security

San Francisco, CA $175,000.00-$250,000.00 2 weeks ago

Staff Security Engineer, Application Security
Cyber Security Engineer, Salesforce Applications
Cyber GRC Automation Security Engineer (REMOTE)
Application Security Architect & Developer

San Mateo, CA $130,000.00-$180,000.00 1 month ago

San Francisco, CA $150,000.00-$205,000.00 5 months ago

Lead Site Reliability Engineer, Observability - Remote

San Francisco, CA $154,600.00-$251,300.00 4 days ago

Lead Site Reliability Engineer, Network - Remote
Senior Backend Engineer (Content, Security & Trust)
Cyber SDC - Cyber Solutions Operations - L2 - Senior - Consulting - Location Open
Manager, International Compliance & Reporting Services

San Francisco, CA $103,320.00-$235,170.00 3 weeks ago

San Francisco, CA $78,960.00-$167,180.00 3 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Security Engineer

Air Apps, Inc.

San Francisco

Remote

USD 120,000 - 160,000

Yesterday
Be an early applicant

Cyber GRC Automation Security Engineer (REMOTE)

GEICO

San Francisco

Remote

USD 75,000 - 185,000

Today
Be an early applicant

Staff Security Engineer, Identity Defense Operations

Okta

San Francisco

Remote

USD 161,000 - 241,000

2 days ago
Be an early applicant

Lead Information Security Engineer - Firewall

Lumen Argentina

Palo Alto

Remote

USD 114,000 - 153,000

Yesterday
Be an early applicant

Senior Security Engineer

DroneDeploy

San Francisco

Remote

USD 161,000 - 288,000

11 days ago

Netskope Security Engineer

Match Point Solutions

California

Remote

USD 150,000 - 200,000

2 days ago
Be an early applicant

Application Security Engineer

Mechanics Bank

California

Remote

USD 130,000 - 170,000

15 days ago

Senior Security Engineer - Corporate Security Engineering Remote (United States)

Rippling

San Francisco

Remote

USD 135,000 - 279,000

18 days ago

AWS Cloud Security Engineer San Francisco, CA (remote)

Swishanalytics

San Francisco

Remote

USD 90,000 - 150,000

23 days ago