Get more replies from employers
Send a job-specific resume in minutes.
Dream is seeking a Senior AppSec Engineer to plan, build, and support security across the organization. You’ll own application security throughout the SDLC, including security requirements, threat modeling, reviews, and production hardening.
You’ll partner with Security, Engineering, Platform, DevOps, and IT teams to reduce risk at scale, and report on metrics like control coverage and remediation timelines. Strong Python and automation skills are required.
Every nation has data. Few can protect it. Fewer still can act on it.
Dream is the sovereign AI and national cyber-defense company for governments.
We help nations secure their most critical systems, connect fragmented information at a national scale, and turn their most sensitive data into decisions, all fully sovereign.
This is more than a job. It's a Dream job, where you'll work at a global scale alongside some of the best AI researchers, cyber operators, and government experts in the world.
The mission only works if the company behind it does. This role keeps Dream running at the scale our work demands. And our work demands a uniquely global scale.
As a Senior AppSec Engineer, you'll plan, build, and support efforts to strengthen security across the organization. As part of our Security & Platform organization, you'll work across the software development lifecycle and the underlying cloud and platform environment.
You’ll own application security throughout the SDLC, including security requirements, threat modeling, secure design reviews, code reviews, application and API security testing, and production hardening. The role combines application security, cloud and platform security, and security automation. You’ll partner closely with Security, Engineering, Platform, DevOps, and IT teams to build secure‑by‑default systems and reduce risk at scale.
You’ll also define and report meaningful security metrics, including control coverage, vulnerability trends, remediation timelines, security exceptions, and baseline compliance. This is a hands‑on engineering role for someone who can move comfortably between architecture and threat modeling, code and API reviews, cloud and identity guardrails, CI/CD security controls, vulnerability remediation, and automation.
If you think this role doesn't fully match your skills but are eager to grow and break glass ceilings, we'd love to hear from you!