AI Security Engineer
Build and defend enterprise applications by conducting application security reviews, validating controls, and embedding security across the Secure SDLC. The role also develops agentic AI workflows, secure platform integrations, and internal security tooling, requiring software development experience and familiarity with modern application and AI security guidance.
About the job
Responsibilities
- Perform security reviews of enterprise applications across architecture, design, code, APIs, cloud services, data flows, and deployment patterns.
- Embed security throughout the Secure SDLC, from design and development through build, testing, deployment, and runtime operation.
- Develop agentic AI workflows and tools to automate application security activities, including application intake, evidence collection, control checks, threat-model preparation, finding enrichment, risk summarization, remediation guidance, and ticket or workflow creation.
- Build secure integrations between AI agents and engineering or security platforms using APIs, webhooks, CI/CD interfaces, and approved tool connectors.
- Validate security controls and develop internal security tools for cross-functional teams.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Software, or a related field.
- 3+ years of application security or software engineering experience with meaningful security responsibilities.
- Strong hands-on software development skills in Python, JavaScript/TypeScript, Go, or similar languages.
- Experience with DevOps workflows, source control, pull requests, build pipelines, artifact repositories, and developer issue-tracking processes.
- Familiarity with OWASP Top 10, OWASP API Security Top 10, OWASP ASVS, OWASP AI/LLM guidance, MITRE ATLAS, and secure development practices.
Skills
Application Security, Python, JavaScript, TypeScript, Go, DevOps, Source Control, CI/CD, APIs, Owasp Top 10, Owasp Api Security Top 10, Owasp Asvs, Mitre Atlas, Agentic AI, Threat Modeling
Similar jobs
Security Engineering jobsSecures Supabase’s cloud platform, Kubernetes environments, containers, and infrastructure by conducting risk assessments, strengthening controls, and building scalable security guardrails. Requires senior-level platform or cloud security experience with deep AWS, Kubernetes, container, and Linux expertise.
Build and operate governed AI-enabled security automation, including agentic workflows, SOAR playbooks, control evidence, GRC processes, and integrations across security platforms. The role requires at least three years of cybersecurity or related experience plus programming, API, security operations, and LLM workflow expertise.
Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.
Own and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.
A hands-on graduate fellowship focused on identifying, exploiting, analyzing, and defending against cybersecurity vulnerabilities affecting critical infrastructure. Applicants should be final-year students or recent graduates in cybersecurity, IT, or computer science and must work onsite three days per week.