Security Engineer, Application Security

Jobtailor

California (MO)

On-site

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking an experienced Application Security Engineer to shape secure product decisions from day one and lead the security program across engineering teams.

You will drive threat modeling, design secure architectures, implement SAST/DAST in CI/CD, perform code reviews, and partner with developers to embed secure coding standards and AI security practices to accelerate secure software delivery.

Qualifications

  • Minimum 4 years of hands-on experience in application security engineering.
  • Proven track record of securing large-scale production systems.
  • Understanding of developer experience and developer workflows for shipping features and products.
  • Technical expertise in at least two programming languages: Python, Java, Go, or JavaScript/TypeScript.
  • Ability to read and review code across multiple languages, understanding business logic and security implications.
  • Knowledge of SAST/DAST solutions, vulnerability management platforms, security testing frameworks, and DevSecOps practices.
  • Excellent communication skills for translating complex security concepts to technical and non-technical audiences.
  • Alignment with WRITER's values of Connect, Challenge, and Own.
  • Role open to Mid, Sr. and Staff level candidates.

Responsibilities

  • Conduct threat modeling sessions with product teams
  • Design secure architectures for new features
  • Ensure security considerations shape product decisions from day one
  • Own and evolve the application security program
  • Establish and maintain SAST/DAST scanning in CI/CD pipelines
  • Conduct security code reviews for critical changes
  • Build automation to catch vulnerabilities before production
  • Partner with engineering teams to establish secure coding standards
  • Create reusable security patterns and libraries
  • Design and recommend security features and products for customer environments
  • Integrate and leverage AI agents to increase security-team and engineering velocity
  • Lead security assessments and penetration testing of applications, AI services, and APIs
  • Identify vulnerabilities and collaborate with teams on remediation at scale
  • Design and implement security controls for data pipelines, model training environments, and customer-facing AI agents
  • Research emerging LLM and generative-AI attack vectors and build proactive defenses
  • Report to the head of security engineering

Skills

Threat Modeling
Secure Architecture
Vulnerability Management
Security Assessments
Penetration Testing
Vulnerability Automation
Security Controls
Code Review
AI Security
Security Testing
DevSecOps
Communication Skills

Tools

SAST/DAST Tools

Job description

  • Conduct threat modeling sessions with product teams
  • Design secure architectures for new features
  • Ensure security considerations shape product decisions from day one
  • Own and evolve the application security program
  • Establish and maintain SAST/DAST scanning in CI/CD pipelines
  • Conduct security code reviews for critical changes
  • Build automation to catch vulnerabilities before production
  • Partner with engineering teams to establish secure coding standards
  • Create reusable security patterns and libraries
  • Design and recommend security features and products for customer environments
  • Integrate and leverage AI agents to increase security-team and engineering velocity
  • Lead security assessments and penetration testing of applications, AI services, and APIs
  • Identify vulnerabilities and collaborate with teams on remediation at scale
  • Design and implement security controls for data pipelines, model training environments, and customer-facing AI agents
  • Research emerging LLM and generative-AI attack vectors and build proactive defenses
  • Report to the head of security engineering
Requirements
  • Minimum 4 years of hands-on experience in application security engineering
  • Proven track record of securing large-scale production systems
  • Understanding of developer experience and developer workflows for shipping features and products
  • Technical expertise in at least two programming languages: Python, Java, Go, or JavaScript/TypeScript
  • Ability to read and review code across multiple languages, understanding business logic and security implications
  • Knowledge of SAST/DAST solutions, vulnerability management platforms, security testing frameworks, and DevSecOps practices
  • Excellent communication skills for translating complex security concepts to technical and non-technical audiences
  • Alignment with WRITER's values of Connect, Challenge, and Own
  • Role open to Mid, Sr. and Staff level candidates
Core Competencies

Demonstrates expertise in application security engineering, focusing on secure architecture design, threat modeling, and vulnerability management. Proficient in implementing security controls and integrating security practices within CI/CD pipelines while effectively communicating complex security concepts to diverse audiences.

Highest-signal resume keywords
  • Application Security Engineering
  • SAST/DAST Solutions
  • Python Programming
  • Security Code Reviews
  • DevSecOps Practices
ATS Optimization Keywords
Hard Skills
  • Threat Modeling
  • Secure Architecture Design
  • Vulnerability Management
  • Security Assessments
  • Penetration Testing
  • Automation for Vulnerability Detection
  • Security Controls Implementation
  • Code Review
  • AI Security Integration
  • Security Testing Frameworks
Soft Skills
  • Excellent Communication Skills
Industry Keywords
  • Large-Scale Production Systems
  • Developer Workflows
  • Security Patterns
  • Generative-AI Attack Vectors
  • CI/CD Pipelines
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Engineer – AI Security
Lead Engineer – AI Security

Jobtailor • Brooklyn Park (MN)

On-site
USD 120,000 - 150,000
Security engineer, application security
Security engineer, application security

writer • United States

Hybrid
USD 120,000 - 180,000
Technical Lead, Security Embedded Engineering
Technical Lead, Security Embedded Engineering

Jobtailor • Plano (TX)

On-site
USD 140,000 - 180,000
Senior Product Security
Senior Product Security

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Senior Manager – Product Cybersecurity
Senior Manager – Product Cybersecurity

Jobtailor • Chicago (IL)

On-site
USD 150,000 - 230,000
Security Engineer
Security Engineer

Jobtailor • Denver (CO)

On-site
USD 140,000 - 180,000
Senior AI Engineer, Security Infrastructure
Senior AI Engineer, Security Infrastructure

Jobtailor • Pennsylvania

On-site
USD 180,000 - 260,000
Senior Application Security Engineer
Senior Application Security Engineer

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Principal Engineer – AI Security
Principal Engineer – AI Security

Jobtailor • Brooklyn Park (MN)

On-site
USD 180,000 - 260,000
Stock options
Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000