Назад
Company hidden
10 дней назад

Senior Application Security Engineer (AI)

165 000 - 200 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Application Security Engineer (AI): Integrating application security into the software development lifecycle for AI-driven healthcare products with an accent on secure code reviews, threat modeling, vulnerability remediation, and AI security threats. Focus on driving SAST, DAST, and SCA testing, managing penetration testing, and translating security and privacy requirements into technical controls.

Location: Hybrid, requiring three days per week in the San Francisco office

Salary: $165,000–$200,000 base per year, plus bonus and equity

Company

hirify.global is a publicly traded medical technology company developing AI-driven, non-invasive cardiac diagnostic products for coronary artery disease.

What you will do

  • Partner with software engineers throughout the vulnerability remediation lifecycle.
  • Perform secure code reviews, validate false positives, coach developers, and threat-model products.
  • Drive vulnerability identification with SAST, DAST, SCA, and in-house AI tooling.
  • Manage external penetration testing and support vulnerability risk assessment and remediation.
  • Translate security and privacy requirements into technical requirements and improve secure SDLC practices.
  • Deliver training on secure coding practices, security standards, and emerging security threats.

Requirements

  • 5+ years of total experience, including at least 1 year in application security or security work within a development role.
  • Bachelor’s degree in Computer Science or a related field, relevant certifications, or equivalent experience.
  • Programming experience in at least one modern programming language and one scripting language; hirify.global uses C++ and Python.
  • Experience with testing frameworks, CI/CD pipelines, secure code review, threat modeling, security testing, and vulnerability management.
  • Experience using AI development tools such as Claude Code and GitHub Copilot for development and security testing.
  • Ability to discuss current security threats affecting machine learning and generative AI and communicate risk to technical and non-technical audiences.

Nice to have

  • Knowledge of HIPAA, HITRUST, regulated healthcare environments, or Software as a Medical Device.
  • Familiarity with AWS or equivalent cloud platforms and Terraform, Chef, or Ansible.
  • Experience with Docker, Kubernetes, and GitHub Actions or similar orchestration tools.

Culture & Benefits

  • Work on AI-driven healthcare products intended to improve patient outcomes.
  • Hybrid work with three days per week in the San Francisco office.
  • Base salary plus bonus and equity.
  • Equal-opportunity workplace committed to respect and inclusion.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →