Назад
Company hidden
4 дня назад

Senior Application Security Engineer (AI & Product Security)

146 000 - 175 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Application Security Engineer (AI & Product Security): Designing and implementing secure SDLC guardrails and threat models for agentic and LLM-powered healthcare features with an accent on PHI/PII-handling workflows and AI-specific risks. Focus on building paved road tooling, integrating security gates into CI/CD pipelines, and defining security patterns for agent identity and prompt filtering.

Location: Must be based in the US, specifically in Seattle, WA (hybrid) or within designated Hiring Hubs (Boston, Chicago, Denver, Kansas City, LA, San Francisco, Seattle).

Salary: $146,000 - $175,000 per year

Company

hirify.global is a SaaS leader in digital health transforming patient experience with AI-powered virtual agents.

What you will do

  • Threat-model agentic and LLM-powered features end-to-end, focusing on data ingress/egress, agent identity, and tool-use boundaries.
  • Build secure SDLC paved road tooling, including prompt/agent identity patterns and PHI/PII redaction.
  • Embed SAST, DAST, and SCA scanning directly into CI/CD pipelines as security gates.
  • Identify and pilot AI monitoring tools to fill existing security visibility gaps.
  • Manage AWS identity and access management (IAM) patterns and secrets management.
  • Apply MITRE ATT&CK, MITRE ATLAS, and OWASP frameworks to architectural decisions.

Requirements

  • 6–10 years of hands-on experience in Application Security.
  • Must be currently authorized to work in the US (no visa sponsorship available).
  • Demonstrable experience with LLM security, including prompt/output filtering and MITRE ATLAS.
  • Significant cloud security depth, specifically with AWS.
  • Experience working in regulated environments such as healthcare (HIPAA/HITRUST) or federal (FedRAMP).
  • Ability to codify policy as infrastructure-as-code using Terraform.

Nice to have

  • Direct experience threat modeling agentic AI systems.
  • Exposure to AWS Agent Core, MCP, or similar agent platforms.
  • Experience at a growth-stage company (50-500 people) that has adopted agentic AI.
  • Background in fintech transitioning into agentic systems.

Culture & Benefits

  • Full health benefits (medical, dental, vision), flexible spending accounts, and 401(k).
  • Company equity and voluntary benefits.
  • Generous time off including company holidays, winter and summer breaks, and flexible PTO.
  • Career development via manager cohorts and employee development funds.
  • Inclusive environment with active Employee Resource Groups (ERGs).

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →