Senior AppSec Engineer: Agentic AI & eCommerce Security

Gravity IT Resources

Miami (FL)

On-site

USD 165,000 - 248,000

Part time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Gravity IT Resources is seeking an senior Application Security Engineer to secure agentic AI within a large-scale eCommerce platform. The role focuses on agentic AI security, identity and access management, and enterprise app security across edge, API, and service layers.

The candidate will design runtime guardrails, enforce least-privilege controls, and support secure cloud-native deployments while aligning with corporate security standards.

Qualifications

  • Strong experience in security engineering, application security, or platform security.
  • Hands-on experience securing large-scale, consumer-facing eCommerce platforms.
  • Strong foundation in web application and API security.
  • Deep understanding of OAuth 2.0/2.1, OIDC, token-based authorization, service principals.
  • Experience designing fine-grained least-privilege access models for distributed systems.
  • Non-Human Identity (NHI) lifecycle management in dynamic environments.
  • Experience with AI-enabled or automation-heavy systems; familiarity with agentic/autonomous system risks.
  • Ability to reason about non-deterministic execution and enforce deterministic controls.
  • MCP Security Standards and agent runtime authorization.
  • Experience with WAFs, API gateways, edge security controls
  • Familiarity with cloud-native architectures and service-to-service security
  • Strong written/verbal communication; able to translate complex security concepts for cross-functional teams (product, platform, AI/ML, identity)
  • DevSecOps/AppSec experience required

Responsibilities

  • Design and implement security control planes for agentic AI systems
  • Define runtime authorization boundaries for AI agents, including tool-level access control and least-privilege execution
  • Establish policy enforcement points governing agent behavior ahead of high-impact actions
  • Support human-in-the-loop workflows for sensitive/high-risk AI-initiated actions
  • Design and review identity models for guests, employees, and non-human agent/workload identities
  • Implement/advise on OAuth/OIDC-based delegation and short-lived credential strategies
  • Ensure end-to-end attribution across user ? agent ? tool execution chains
  • Secure guest-facing eCommerce flows: search, personalization, cart, booking
  • Review backend service architectures supporting AI-driven experiences
  • Promote agent-safe API patterns: idempotency, preview/apply, rollback, rate limiting
  • Collaborate on edge controls: WAFs, bot mitigation, API gateways
  • Ensure consistent enforcement from edge ? API ? service ? AI runtime layers
  • Support secure cloud-native, containerized, and sandboxed deployments (Google, AWS, Azure)
  • Define security telemetry and audit requirements for agentic systems
  • Support detection/response for runaway agents or excessive autonomy
  • Align implementations with enterprise security standards and governance

Skills

Security engineering
Application security
Platform security
Web application security
API security
OAuth 2.0/OIDC
Least-privilege access
Non-Human Identity
DevSecOps
Agentic AI security

Tools

WAFs
API gateways
OAuth tooling
Cloud security tooling

Job description

Gravity IT Resources is seeking an senior Application Security Engineer to secure agentic AI within a large-scale eCommerce platform. The role focuses on agentic AI security, identity and access management, and enterprise app security across edge, API, and service layers.

The candidate will design runtime guardrails, enforce least-privilege controls, and support secure cloud-native deployments while aligning with corporate security standards.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Gravity IT Resources • Miami (FL)

On-site
USD 165,000 - 248,000
Security Engineer
Security Engineer

Insight Global • Miami (FL)

On-site
USD 150,000 - 210,000
Senior AI Security Engineer
Senior AI Security Engineer

Compunnel, Inc. • Miami (FL)

Hybrid
USD 150,000 - 210,000
Security Engineer – AI-Driven Ecommerce Platform
Security Engineer – AI-Driven Ecommerce Platform

Insight Global • Miami (FL)

On-site
USD 150,000 - 210,000
Senior AI Security Engineer: AppSec, Identity & APIs
Senior AI Security Engineer: AppSec, Identity & APIs

Identify Security • United States

On-site
USD 140,000 - 210,000
Senior AI Engineer, Agentic Security & Automation
Senior AI Engineer, Agentic Security & Automation

Invicti Security Corp • Boston (MA)

Hybrid
USD 150,000 - 210,000
Health Insurance
401(k) Plan
Parental Leave
+1
Senior Security Engineer — Cloud & AI Security
Senior Security Engineer — Cloud & AI Security

FastSpring, LLC • Northern (KY)

Hybrid
USD 155,000 - 187,000
Senior AI Security Architect for Agentic Systems
Senior AI Security Architect for Agentic Systems

Worky • New York (NY)

On-site
USD 144,000 - 288,000
Medical insurance
Dental insurance
Vision coverage
+3
Senior AI Agentic Security Software Engineer
Senior AI Agentic Security Software Engineer

Invicti Security Corp • Austin (TX)

On-site
USD 150,000 - 190,000
Health Insurance
401k Plan
Parental Leave
+1
Senior AppSec Engineer — AI-Driven SaaS Security Leader
Senior AppSec Engineer — AI-Driven SaaS Security Leader

Savvy Wealth • New York (NY)

On-site
USD 150,000 - 210,000
Equity
Unlimited PTO
Medical/Dental/Vision
+5