Назад
Company hidden
1 час назад

Senior Application Security Engineer (AI)

Формат работы
remote (только United_kingdom)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Application Security Engineer (Python/Cybersecurity): Securing the application layer for a human data infrastructure platform used in AI development with an accent on vulnerability remediation, security tooling, and secure SDLC. Focus on finding and fixing code-level vulnerabilities, implementing automated security scanning in CI/CD, and performing rigorous threat modeling for large-scale systems.

Location: Remote, UK

Company

hirify.global provides the human data infrastructure essential for developing accurate and aligned AI systems by connecting researchers with a global pool of participants.

What you will do

  • Act as the technical authority on application security, working hands-on to identify and remediate vulnerabilities in the codebase.
  • Perform security testing, including penetration tests and code reviews using tools like Burp Suite.
  • Build and maintain security tooling and automation using Python.
  • Implement and tune SAST, SCA, DAST, and secret scanning within CI/CD pipelines.
  • Lead threat modeling sessions for new features and complex architectures.
  • Collaborate with product engineering, platform, and TechOps teams to embed secure development practices across the SDLC.

Requirements

  • Several years of experience in application/product security and software engineering.
  • Strong knowledge of OWASP Top 10 (Web & API) and modern attack paths (auth flaws, SSRF, injection, business logic abuse).
  • Hands-on security testing experience across web apps and APIs.
  • Proficiency in Python for security tooling, automation, or custom detection.
  • Practical experience implementing security scanning tools in CI/CD.
  • Must be based in the UK

Nice to have

  • Experience with Django, Vue.js, MongoDB, or GCP.
  • Knowledge of supply chain security, SBOMs, and dependency review.
  • IaC security experience (e.g., Terraform, policy-as-code).
  • Hands-on certifications such as OSCP, GWAPT, or BSCP.
  • Experience building security practices in scaling environments.

Culture & Benefits

  • Remote working arrangement.
  • Competitive salary and comprehensive benefits package.
  • Opportunity to work at the forefront of AI innovation with a unique human data platform.
  • Impactful, mission-driven culture focused on ethical data sourcing.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →