16h ago
Security Engineer, Application Security
San Francisco
$130k-$500k / year
full-timeseniorsoftware
๐ Tech Stack
๐ผ About This Role
You'll own application security at a high-growth company where the app layer is the highest-priority surface. You'll embed in the development lifecycle, review code for exploitable flaws, and build security tooling into CI/CD. You'll use AI co-pilots to accelerate code review and threat modeling, automating repetitive work.
๐ฏ What You'll Do
- Embed security review workflows in the SDLC
- Build SAST/DAST pipelines integrated into CI/CD
- Drive vulnerability remediation across the platform
- Operate bug bounty program and triage reports
๐ Requirements
- 5+ years in application security or software engineering with security focus
- Deep understanding of web application security including OWASP Top 10 and attack chains
- Proficiency in Python, TypeScript, or Go
- Experience building or tuning SAST/DAST tooling (Semgrep, CodeQL, Snyk, Burp)
โจ Nice to Have
- Experience running or triaging a bug bounty program (HackerOne, Bugcrowd)
- Offensive security skills and penetration testing experience
- Experience securing AI/ML applications
๐ Benefits & Perks
- ๐ Equity ownership in a high-growth, profitable company
- ๐ Housing support near our SF office
- ๐ฝ๏ธ Daily meal stipend
- ๐๏ธ Premium fitness membership at Equinox
- ๐ฉบ Comprehensive health insurance
๐จ Hiring Process
Estimated timeline: 2-3 weeks ยท AI estimate
- 1Recruiter Screenยท 30 min
- 2Technical Interviewยท 60 min
- 3Hiring Manager Interviewยท 45 min
0 0 0