Назад
Company hidden
обновлено 4 дня назад

Senior Application Security Engineer (AI)

111 000 - 144 400$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Application Security Engineer (AI): Securing applications, APIs, cloud environments, and third-party solutions across the software development life cycle with an accent on SAST, DAST, SCA, threat modeling, and secure development practices. Focus on leading AI security initiatives for production LLM stacks, mitigating prompt injection risks, and auditing third-party models and APIs to protect the software supply chain.

Location: Remote - US / Reno, NV

Salary: $111,000–$144,400 annually, depending on location, experience, and qualifications.

Company

hirify.global operates in the real estate industry and provides a mission-driven environment focused on measurable industry impact.

What you will do

  • Plan and execute application security testing throughout the software development life cycle.
  • Identify vulnerabilities and weaknesses in secure coding practices, then recommend risk-mitigating solutions using automation.
  • Lead AI security initiatives, including threat modeling production LLM stacks for autonomy and prompt injection risks.
  • Audit third-party models, APIs, vendors, outsourced solutions, and business-to-business initiatives to secure the software supply chain.
  • Collaborate with architects, developers, business units, and technical stakeholders to establish secure designs and repeatable security review processes.
  • Communicate findings and risks, track remediation against SLAs and business metrics, and train developers and junior application security engineers.

Requirements

  • 4+ years of related experience in application security or a closely related field.
  • Bachelor’s degree in computer science, information technology, software engineering, or equivalent work experience.
  • Technical background in software development and scripting with languages such as Java, Python, C++, Ruby, JavaScript, PowerShell, or PHP.
  • Hands-on expertise with application security testing tools, including SAST, DAST, and SCA.
  • Experience with threat modeling, vulnerability and penetration testing, API security, OWASP Top Ten mitigation, and securing applications in AWS and private cloud environments.
  • Knowledge of ISO 27001, NIST, GDPR, CIS, or SOC 2 frameworks; relevant certifications such as C|ASE, CSSLP, GWAPT, or OSCP are valued.

Culture & Benefits

  • Remote work within the US.
  • Profit-sharing bonus program, communication stipends, and referral bonuses.
  • Medical, dental, vision, life, supplemental insurance, 401(k) with employer match, paid time off, and paid holidays.
  • Short-term disability coverage, health savings contributions, wellness programs, and virtual primary and mental health care.
  • Career development resources, anniversary recognition, and a focus on integrity, empathy, detail, and continuous improvement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →