16h ago

Security Engineer, Application Security

San Francisco

$130k-$500k / year

full-timeseniorsoftware

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll own application security at a high-growth company where the app layer is the highest-priority surface. You'll embed in the development lifecycle, review code for exploitable flaws, and build security tooling into CI/CD. You'll use AI co-pilots to accelerate code review and threat modeling, automating repetitive work.

๐ŸŽฏ What You'll Do

  • Embed security review workflows in the SDLC
  • Build SAST/DAST pipelines integrated into CI/CD
  • Drive vulnerability remediation across the platform
  • Operate bug bounty program and triage reports

๐Ÿ“‹ Requirements

  • 5+ years in application security or software engineering with security focus
  • Deep understanding of web application security including OWASP Top 10 and attack chains
  • Proficiency in Python, TypeScript, or Go
  • Experience building or tuning SAST/DAST tooling (Semgrep, CodeQL, Snyk, Burp)

โœจ Nice to Have

  • Experience running or triaging a bug bounty program (HackerOne, Bugcrowd)
  • Offensive security skills and penetration testing experience
  • Experience securing AI/ML applications

๐ŸŽ Benefits & Perks

  • ๐Ÿ“ˆ Equity ownership in a high-growth, profitable company
  • ๐Ÿ  Housing support near our SF office
  • ๐Ÿฝ๏ธ Daily meal stipend
  • ๐Ÿ‹๏ธ Premium fitness membership at Equinox
  • ๐Ÿฉบ Comprehensive health insurance

๐Ÿ“จ Hiring Process

Estimated timeline: 2-3 weeks ยท AI estimate

  1. 1Recruiter Screenยท 30 min
  2. 2Technical Interviewยท 60 min
  3. 3Hiring Manager Interviewยท 45 min
0 0 0