Назад
Company hidden
1 час назад

Senior Application Security Engineer (AI)

135 000 - 150 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Application Security Engineer (AI): Leading application security testing, secure code review, and secure SDLC enablement across modern application environments with an accent on business-logic security, automated testing, and developer enablement. Focus on threat modeling web, API, mobile, cloud, and AI-enabled applications, integrating security checks into CI/CD pipelines, and communicating risk-based remediation guidance.

Location: Remote - Nebraska; hybrid work is available for associates living within 30 miles of an office location, with in-office presence three days per week. Candidates must be authorized to work in the United States without current or future sponsorship.

Annual compensation: $135,000–$150,000, depending on experience.

Company

hirify.global Business Services provides payment technology and education services to higher education institutions, K–12 schools, students, families, and supporters.

What you will do

  • Lead manual source-code reviews focused on business logic, access control, authentication, authorization, and data protection.
  • Perform application security testing using SAST, DAST, SCA, container scanning, secrets detection, and web/API testing methodologies.
  • Develop automated source-code review processes and CI/CD security checks.
  • Partner with engineering, cloud, and product teams to embed secure SDLC practices from design through production.
  • Support the Security Champions program through coaching, secure-coding guidance, and developer resources.
  • Assess AI-assisted security tooling and advise on threat modeling for web, API, mobile, cloud, and AI-enabled applications.

Requirements

  • Bachelor’s degree in computer science, cybersecurity, information technology, software engineering, or a related field, or equivalent education and experience.
  • 5–7+ years of hands-on application security, software security, or secure software engineering experience.
  • Experience integrating security tooling and automated checks into CI/CD pipelines.
  • Experience with secure code review and web/API application testing using OWASP Top 10 and web testing methodologies.
  • Experience assessing, prioritizing, documenting, and communicating vulnerabilities and risk-based remediation guidance.
  • Strong technical report-writing and communication skills.

Nice to have

  • Advanced degree or specialized training in application security, cybersecurity, software engineering, cloud security, or a related discipline.
  • Experience with AI/LLM-integrated applications, AI security tooling, mobile security, reverse engineering, or advanced application security certifications.

Culture & Benefits

  • Hybrid work environment designed to support flexibility and work-life integration.
  • Medical, dental, vision, HSA, and FSA benefits.
  • Earned time off, life insurance, disability coverage, and an employee assistance program.
  • 401(k), student loan repayment, employee stock purchase program, tuition reimbursement, and performance-based incentive pay.
  • Wellness program and a welcoming, respectful workplace.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →