Назад
обновлено 23 дня назад

Staff Application Security Engineer (AI)

244 000 - 305 000$
Формат работы
remote (только USA)/onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Application Security Engineer (AI): Defining and scaling application security standards, tooling, and secure-by-default frameworks across Datadog with an accent on API security, threat modeling, security observability, and AI-powered systems. Focus on leading multi-team remediation, addressing attack surfaces from agentic development and AI features, and translating complex security risks into architectural and investment decisions.

Location: Onsite in Boston, Massachusetts or New York, New York; remote from Connecticut, Delaware, District of Columbia, Maryland, Massachusetts, New Jersey, New York, or Rhode Island, USA.

Salary: $244,000–$305,000 USD per year, plus equity and possible variable compensation.

Company

Datadog provides a monitoring and security platform used to observe applications, infrastructure, services, and security posture.

What you will do

  • Define application security standards, secure-by-default frameworks, and architectural patterns across engineering teams.
  • Build scalable security tooling, automation, and observability that produces actionable signals for threat detection.
  • Lead threat modeling and risk assessments for high-risk features, platform changes, and complex multi-team systems.
  • Assess security risks from agentic development practices and AI-powered product features in production.
  • Partner with engineering, product, cloud, and infrastructure security teams on API standards, code reviews, threat remediation, and cross-domain initiatives.
  • Shape the AppSec roadmap, prioritize security investment, and mentor AppSec engineers.

Requirements

  • Software engineering background with hands-on code review experience in Go, Python, or Rust.
  • Strong knowledge of OWASP Top 10, web vulnerabilities, cryptography, SAST, and DAST.
  • Working knowledge of API authentication, authorization, and input validation.
  • Experience leading threat modeling for complex multi-team systems and converting findings into architectural decisions.
  • Experience implementing secure-by-default frameworks and integrating security into core platforms.
  • Knowledge of software supply chain security, including dependency management, artifact integrity, and build pipeline trust.

Nice to have

  • Experience addressing security risks in AI-powered products and agentic development workflows.
  • Experience influencing technical and non-technical stakeholders and communicating security tradeoffs to executives.

Culture & Benefits

  • New-hire stock equity and employee stock purchase plan.
  • Professional development, product training, career pathing, mentoring, and a buddy program.
  • Inclusive culture with employee resource groups, community guilds, and internal Inclusion Talks.
  • Global mental health benefits for employees and dependents aged six and older.
  • Benefits may vary by country of employment and employment arrangement; U.S. benefits include healthcare, dental, parental planning, mental health support, 401(k) matching, paid time off, fitness reimbursement, and discounted stock purchase plan.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →