Senior Application Security Engineer (AI & Product Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Application Security Engineer (AI & Product Security): Designing and implementing secure SDLC guardrails and threat models for agentic and LLM-powered healthcare features with an accent on PHI/PII-handling workflows and AI-specific risks. Focus on building paved road tooling, integrating security gates into CI/CD pipelines, and defining security patterns for agent identity and prompt filtering.
Location: Must be based in the US, specifically in Seattle, WA (hybrid) or within designated Hiring Hubs (Boston, Chicago, Denver, Kansas City, LA, San Francisco, Seattle).
Salary: $146,000 - $175,000 per year
Company
is a SaaS leader in digital health transforming patient experience with AI-powered virtual agents.
What you will do
- Threat-model agentic and LLM-powered features end-to-end, focusing on data ingress/egress, agent identity, and tool-use boundaries.
- Build secure SDLC paved road tooling, including prompt/agent identity patterns and PHI/PII redaction.
- Embed SAST, DAST, and SCA scanning directly into CI/CD pipelines as security gates.
- Identify and pilot AI monitoring tools to fill existing security visibility gaps.
- Manage AWS identity and access management (IAM) patterns and secrets management.
- Apply MITRE ATT&CK, MITRE ATLAS, and OWASP frameworks to architectural decisions.
Requirements
- 6–10 years of hands-on experience in Application Security.
- Must be currently authorized to work in the US (no visa sponsorship available).
- Demonstrable experience with LLM security, including prompt/output filtering and MITRE ATLAS.
- Significant cloud security depth, specifically with AWS.
- Experience working in regulated environments such as healthcare (HIPAA/HITRUST) or federal (FedRAMP).
- Ability to codify policy as infrastructure-as-code using Terraform.
Nice to have
- Direct experience threat modeling agentic AI systems.
- Exposure to AWS Agent Core, MCP, or similar agent platforms.
- Experience at a growth-stage company (50-500 people) that has adopted agentic AI.
- Background in fintech transitioning into agentic systems.
Culture & Benefits
- Full health benefits (medical, dental, vision), flexible spending accounts, and 401(k).
- Company equity and voluntary benefits.
- Generous time off including company holidays, winter and summer breaks, and flexible PTO.
- Career development via manager cohorts and employee development funds.
- Inclusive environment with active Employee Resource Groups (ERGs).
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →