Remote Application Security Engineer – AI & Secure DevOps

Guild Mortgage

United States

On-site

USD 82,000 - 118,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical - dental - vision
401(k) with company match
Competitive benefits package

Job summary

Guild Mortgage is seeking an Application Security Engineer to fortify its applications, including AI-enabled services, across CI/CD pipelines. You will perform code reviews, run security testing, identify vulnerabilities, and work with product, engineering, DevOps, and compliance teams to embed security from design through release.

The role emphasizes collaboration and security best practices in a fast-paced mortgage tech environment with a focus on securing AI development and governance across

Qualifications

  • Bachelor's degree in Computer Science, Software Engineering, Cyber Security or equivalent, preferred.
  • A combination of education and experience may be considered in lieu of the Bachelor’s degree.
  • Minimum three years' experience as a software developer or similar experience.
  • Preferred qualifications: Burp Suite Certified Practitioner, Hack the Box Certified Web Exploitation Specialist (HTB CWES), Practical Web Pentest Professional (PWPP).
  • Ability to organize and manage multiple priorities simultaneously.
  • Ability to work well independently or within a team.
  • Must be able to handle confidential matters with discretion.
  • Excellent interpersonal communication skills required.
  • Excellent verbal and written communication skills
  • Highly organized and detail-oriented; ability to work in a fast-paced, metrics-driven environment
  • Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications required.
  • Commitment to company, Customer Service - Proactive attention to each person, Integrity - Do and say what's right, Respect - Treat others with dignity, Collaboration - Listen and work together, Learning - Seek knowledge and strive for improvement, Excellence - Deliver the unexpected

Responsibilities

  • Apply and help maintain secure development practices, including code review and security testing integrated into CI/CD pipelines.
  • Identify, validate, and triage application vulnerabilities through automated and manual testing.
  • Support Shift Left initiatives by helping development teams adopt secure coding practices and remediate findings.
  • Support the Security Champions program on development teams, including training delivery and day-to-day questions.
  • Assist developers with vulnerability reproduction, risk analysis, and remediation guidance, escalating complex or high-risk issues to senior staff.
  • Operate, tune, and maintain tools within the Application Security program, including open-source solutions.
  • Collaborate with product, engineering, DevOps, and compliance teams to integrate security requirements into application design.
  • Assist incident response teams in investigating and remediating application-related security incidents.
  • Threat Modeling & Risk Assessment: Participate in threat modeling exercises and security design reviews for new and existing applications under the direction of senior staff.
  • Perform recurring security testing and vulnerability assessments and maintain security control documentation and evidence.
  • Secure AI Development: Apply established security standards and secure design patterns to AI-enabled applications, including LLM integrations, retrieval-augmented generation (RAG) pipelines, and agentic workflows.
  • AI Guardrails: Implement, configure, test, and monitor AI guardrails, including prompt injection defenses, input and output filtering and validation, least-privilege scoping of agent tools and data sources, and data loss prevention across model inputs and outputs.
  • AI Red Teaming: Execute adversarial test cases against AI and LLM applications covering prompt injection, jailbreaks, sensitive data disclosure, insecure output handling, and excessive agency; document findings and remediation guidance using the OWASP Top 10 for LLM Applications and MITRE ATLAS as references.
  • Support security reviews of new AI use cases and third-party AI features, including verification of controls over nonpublic personal information used by AI systems.
  • Follow and help enforce secure usage standards for AI coding assistants, including human review and scanning requirements for AI-generated code.
  • Stay informed about emerging application and AI security threats, support compliance requirements, and contribute to a culture of security awareness across the organization.

Education

Bachelor's degree in Computer Science / Software Engineering / Cyber Security or equivalent

Tools

Burp Suite Certified Practitioner
HTB CWES
PWPP

Job description

Guild Mortgage is seeking an Application Security Engineer to fortify its applications, including AI-enabled services, across CI/CD pipelines. You will perform code reviews, run security testing, identify vulnerabilities, and work with product, engineering, DevOps, and compliance teams to embed security from design through release.

The role emphasizes collaboration and security best practices in a fast-paced mortgage tech environment with a focus on securing AI development and governance across

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer - AI Security & Secure SDLC
Application Security Engineer - AI Security & Secure SDLC

Guild Mortgage Company • United States

On-site
USD 82,000 - 118,000
Medical insurance
Dental insurance
Vision insurance
+4
Application Security Engineer
Application Security Engineer

Guild Mortgage Company • United States

Remote
USD 82,000 - 118,000
Medical insurance
Dental insurance
Vision insurance
+4
Remote Senior App Security Engineer AI & Pentest Lead
Remote Senior App Security Engineer AI & Pentest Lead

Forward Financing • United States

On-site
USD 143,000 - 183,000
Medical
Dental
Vision
+8
AI-Application Security Engineer
AI-Application Security Engineer

Stifel Financial Corp. • St. Louis (MO)

On-site
USD 90,000 - 120,000
Senior AppSec Engineer — AI-Driven Security in CI/CD
Senior AppSec Engineer — AI-Driven Security in CI/CD

Akaasa Technologies • North Carolina

Hybrid
USD 140,000 - 190,000
Application Security Engineer - DevSecOps & Red Team
Application Security Engineer - DevSecOps & Red Team

Jobright.ai • San Francisco (CA)

On-site
USD 140,000 - 200,000
Senior Application Security Engineer - Secure by Design
Senior Application Security Engineer - Secure by Design

OhioX • Northern (KY)

Hybrid
USD 167,000 - 231,000
Competitive compensation
Equity grants
401(k) plan with company match
+7
Senior Application Security Engineer — Secure SDLC & AI
Senior Application Security Engineer — Secure SDLC & AI

Clear Capital | CubiCasa • Reno (NV)

On-site
USD 111,000 - 144,400
Medical, dental, and vision insurance
401(k) with employer match
Paid time off and holidays
+3
AI-Driven Application Security Architect
AI-Driven Application Security Architect

Edward Jones • St. Louis (MO)

Hybrid
USD 150,000 - 230,000
Medical and prescription drug coverage
Dental coverage
Vision coverage
+2
Application & AI Security Engineer
Application & AI Security Engineer

Hydrogen Group • United States

On-site
USD 140,000 - 190,000