Назад
Company hidden
1 час назад

Senior Security Engineer II - Application Security (AI/LLM)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer II - Application Security (AI/LLM): Designing, building, and operating automated security services for cloud-native applications and SaaS systems with an accent on application security, secure SDLC, DevSecOps, and incident response. Focus on vulnerability analysis, threat modeling, automated SAST/DAST validation, securing AI/LLM architectures, and implementing controls across distributed systems.

Location: Remote within the U.S. or from the headquarters office in Bethesda, Maryland

Company

hirify.global is a public benefit corporation focused on supporting independent primary care practices through value-based healthcare.

What you will do

  • Design, build, operate, and automate security services and capabilities.
  • Use security data, trends, and metrics to identify improvements and execute initiatives with stakeholders.
  • Lead incident and issue response, including analysis, containment, mitigation, and remediation.
  • Develop and refine security policies, standards, baselines, and operating procedures.
  • Mentor and coach junior engineers and analysts.

Requirements

  • At least 6 years of experience securing and deploying applications in cloud-native environments.
  • At least 3 years in a dedicated application security role focused on secure SDLC and DevSecOps.
  • Bachelor’s degree or higher in computer science, information technology, cybersecurity, or a related field; 10 years of security experience may substitute for a degree.
  • Experience with SAST/DAST, vulnerability triage, code reviews, threat modeling, and automated security testing.
  • Experience with AWS, Azure, or GCP environments and tools such as Terraform, CloudFormation, and Python.
  • Knowledge of web application security controls, API security, WAF, OWASP Top 10, and AI/LLM security.

Nice to have

  • Experience with health-tech systems, electronic health records, clinical data, and PHI.
  • Experience architecting, developing, and deploying large-scale distributed systems.
  • Proficiency in R, C++, JavaScript, Java, Scala, C#, or Go.
  • At least 4 years acting as a trusted technical decision-maker in a team environment.

Culture & Benefits

  • Remote-first culture with flexible work schedules for eligible roles.
  • Health, dental, and vision insurance paid up to 80% for employees, dependents, and domestic partners.
  • 21 days of PTO in the first year, two paid volunteer days, and 11 paid holidays.
  • 12 weeks of paid parental leave and a six-week paid sabbatical after six years.
  • Educational assistance, clinical employee reimbursement, 401(k) with up to 4% match, and stock options.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →