Staff Application Security Engineer

Engine

Boston (MA)

Hybrid

USD 183,000 - 215,000

Full time

19 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Equity for all employees
Hybrid-hub model
Offices or remote options

Job summary

Engine is seeking a highly-skilled and motivated Staff Security Engineer to join our team. In this role, you will be a primary owner of the security and integrity of our company's applications and software systems.

You will build out a vulnerability management pipeline and execute our application security program. You will collaborate closely with engineering teams to ensure that Engine adheres to best practices in application security, tackling complex security repairs and ensuring our "engine"

Qualifications

  • Expertise in one or more programming languages (Ruby, Java, Python, C#, Node.js).
  • Strong SIEM, monitoring, and incident response skills.
  • Experience with cloud security and container security.
  • Ability to communicate security risks clearly and mentor others.

Responsibilities

  • Own SIEM configuration, tuning, and incident response.
  • Perform architecture and code reviews, plus light pentesting.
  • Maintain vulnerability management CI/CD within container delivery.
  • Collaborate with teams to enforce secure coding practices.

Skills

Ruby
Java
Python
C#
Node.js
SIEM & Monitoring
Docker
Kubernetes
SAST/DAST/IAST
OWASP Top 10
Mitre Top 25
Communication
Security Analytics

Tools

Docker
Kubernetes

Job description

About Engine

Engine is the AI-native platform for intelligent travel. For a decade, Engine has built the proprietary technology and supply behind modern business travel, serving over 40,000 customers and nearly 2 million travelers, along with leading travel and AI companies that build on Engine's infrastructure. One system powers business travel, group travel, human agents, and AI agents.


That work has earned recognition as one of Fast Company's Best Workplaces for Innovators (2025), TravelTech's Reservation Platform of the Year (2026), and one of Built In's Best Places to Work (2020–2026).


We're looking for bold, ambitious people to help redefine how businesses manage and experience travel. Working here, you can expect exponential growth, an ambitious pace, full ownership, and high-caliber colleagues who push you to do the best work of your career. Every hire raises the bar.


Come outpace the ordinary and build the future of travel with us.


Engine is seeking a highly-skilled and motivated Staff Security Engineer to join our team. In this role, you will be a primary owner of the security and integrity of our company's applications and software systems. You will be responsible for building out a vulnerability management pipeline and executing our application security program. You will collaborate closely with engineering teams to ensure that Engine adheres to best practices in application security, tackling complex security repairs and ensuring our \"engine\" runs fast and securely.


Your Mission


  • Threat Detection & SIEM Ownership: Own the configuration, tuning, and management of our SIEM solution. You will diagnose unusual threats through sophisticated analysis and develop the alerts needed to respond to security incidents across multiple layers.

  • Security Analysis & Reviews: Perform architecture reviews, code reviews, and infrastructure configuration reviews. You will conduct light penetration testing on web and mobile apps, identifying root causes of vulnerabilities and resolving them using creative problem-solving.

  • Vulnerability Management: Maintain and optimize a vulnerability management CI/CD pipeline within our container/application delivery infrastructure. You will adapt proven methods to align security goals with business objectives, even when guidance is light.

  • Cross-Functional Collaboration: Partner with development and infrastructure teams to enforce secure coding practices and remediation strategies. You will adapt your messaging across teams to reduce misalignment and move security work forward.

  • Implementation & Tooling: Build and maintain the frameworks and tooling for enterprise security, ensuring that security guidelines are clear and actionable for the broader engineering organization.

  • Incident Response: Play a key role in incident response and forensic investigations. You will weigh context and data thoughtfully to make smart decisions during high-pressure situations.

  • Security Advocacy: Stay current on the latest threats and provide direct, clear guidance to development teams. You will help develop security training to empower your peers and improve the team's overall security posture.


What You'll Bring to Engine


  • Technical Proficiency: Highly skilled in one or more programming languages (e.g., Ruby, Java, Python, C#, Node.js).

  • SIEM & Monitoring: Expertise in managing SIEM solutions with a focus on comprehensive, efficient alerting that reduces \"noise.\"

  • Cloud & Containers: Strong knowledge of Docker and Kubernetes, with hands-on experience in automated container vulnerability management.

  • Security Testing: Mastery of SAST, DAST, and IAST tools, with the ability to perform manual validation testing to confirm findings.

  • Security Principles: Deep knowledge of the OWASP Top 10, Mitre Top 25, and secure coding practices.

  • Analytical Problem Solving: Ability to assess complex, ambiguous situations to identify root causes and provide thoughtful input on difficult security topics.

  • Communication: A track record of earning credibility with peers through clear, direct communication and a passion for mentoring others.

  • Compliance & Frameworks: Experience working with cloud security concepts and compliance frameworks such as SOC 2 and PCI.


Compensation

Our compensation packages are based on several factors, including your experience, expertise, and location. In addition to a competitive base salary, all roles receive equity. Depending on the role, total compensation may also include an annual bonus. Your recruiter will share your complete compensation package as you move through the process.


Base Pay Range

$182,800—$215,000 USD


The Engine Edge: Perks & Compensation

We believe in rewarding great work with great benefits:



  • Compensation: Competitive base pay tied to role and experience, with equity for all employees. Some roles are also eligible for bonuses or commissions.

  • Benefits: Check out our full list at engine.com/culture

  • Environments for Success: Different roles have different needs in terms of the environments that drive success which is why we have a hybrid-hub model. Whether you are in one of our amazing offices or fully remote, we'll make sure you have what you need to succeed.


Perks and benefits may vary based on employment type, location, and more

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Staff Application Security Engineer
Staff Application Security Engineer

Engine • United States

Hybrid
USD 183,000 - 215,000
Compensation
Benefits list
Hybrid work model
Staff Software Engineer
Staff Software Engineer

Engine • Denver (CO)

Hybrid
USD 200,000 - 245,000
Equity included
Hybrid work model
Remote-friendly environment
Staff Application Security Engineer
Staff Application Security Engineer

FarCoder • Northern (KY)

Hybrid
USD 183,000 - 215,000
Equity
Hybrid work model
Competitive compensation
Senior Software Engineer, Infrastructure
Senior Software Engineer, Infrastructure

Engine • Denver (CO)

Hybrid
USD 135,000 - 187,000
Equity
Hybrid work model
VP, Security
VP, Security

Engine • Denver (CO)

Hybrid
USD 298,000 - 400,000
Hybrid-hub model
Equity
Remote-friendly offices
Staff Software Engineer
Staff Software Engineer

Engine • Northern (KY)

Hybrid
USD 200,000 - 245,000
Equity
Hybrid-remote options
VP, AI Platform Engine · Remote · US · ML Platform & Ops $336,000–$400,000 2w ago
VP, AI Platform Engine · Remote · US · ML Platform & Ops $336,000–$400,000 2w ago

Aimlroles • Northern (KY)

Hybrid
USD 336,000 - 400,000
Competitive base pay + equity
Hybrid-hub work model
Remote-friendly environment
Director Product Marketing
Director Product Marketing

Engine • Chicago (IL)

On-site
USD 170,000 - 235,000
Hybrid-hub model
Equity
Bonuses
VP, AI Platform
VP, AI Platform

Engine • Denver (CO)

Hybrid
USD 336,000 - 400,000
Equity
Hybrid work model
Hybrid-hub environment
Director, Total Rewards
Director, Total Rewards

Engine • Denver (CO)

On-site
USD 225,000 - 275,000
Hybrid work model
Equity education
Equity for all employees