Application Security Consultant

USD 156,000-215,000 per year
SENIOR
✅ Remote

Tech Stack

AI @ 3 CI/CD @ 6 Communication @ 6 Django Flask Git @ 6 JWT @ 6 Java @ 6 Machine Learning Node.js OAuth @ 6 OWASP @ 6 Python Rust @ 6 Security @ 7 Software Development @ 7

Details

SentinelOne is seeking an application security professional to lead Wayfinder Frontier AI Services customer engagements. The role focuses on reviewing C, C++, Rust, and Java source code assessments, validating findings from an agentic code-scanning pipeline, presenting results to technical and executive audiences, and helping scale the service methodology.

Responsibilities

  • Lead Wayfinder Frontier AI Services customer engagements end-to-end, including scoping, technical delivery, and presenting results to executive and technical stakeholders.
  • Review and triage findings from the agentic code-scanning pipeline against customer C, C++, Rust, and Java codebases.
  • Validate true positives, eliminate noise, and ensure customer findings are actionable.
  • Conduct deep code reviews across C, C++, Rust, and Java and their common frameworks.
  • Translate technical risk into business impact and map exposures into end-to-end exploitation chains.
  • Author and maintain SAST rule packs and partner with AI/ML engineers to improve the agentic scanning engine.
  • Provide remediation guidance to customer development teams and validate fixes through follow-up review.
  • Work with engineering teams to enhance the agentic code-scanning pipeline and reduce false positives.
  • Mentor senior application security engineers and software-focused threat hunters.
  • Define and refine core methodologies, engagement playbooks, and scoping templates.

Requirements

  • 7+ years of experience in application security or product security, with a strong software development background.
  • Proven ability to translate complex findings into technical and executive-level debriefs.
  • Excellent written and verbal communication skills.
  • Experience delivering customer-facing or consulting-style engagements end-to-end.
  • Comfortable working in a distributed remote organization.
  • Expert-level proficiency in at least two of C, C++, Rust, and Java, including identifying and explaining framework-level vulnerabilities.
  • Strong understanding of vulnerabilities and secure coding methodologies in at least two of C, C++, Rust, and Java.
  • Mastery of the OWASP Top 10, CWE Top 25, and modern authentication infrastructure, including SAML, OAuth, OIDC, and JWT internals.
  • Experience driving an application through ASVS Level 4 verification.
  • Hands-on experience authoring custom static-analysis rules and queries for modern SAST engines.
  • Familiarity with AI-assisted code review workflows and validating findings from automated and agentic analysis pipelines.
  • Strong threat-modeling experience throughout the secure SDLC.
  • Fluency with Git-based source control and CI/CD pipelines, including build-pipeline security controls, runner hardening, and release-gate enforcement.
  • Experience with AI-accelerated development and code-scanning methodologies.

Nice to Have

  • Working depth in Python, including Django or Flask, and Node.js, including Express.
  • Reverse engineering of compiled C, C++, Rust, or Java using IDA Pro, Binary Ninja, or Ghidra.
  • OSWE, CSSLP, or GWAPT certification; published CVEs; or conference talks.
  • Familiarity with SOC 2, ISO 27001, or FedRAMP control mapping.

Benefits

  • Restricted Stock Units (RSUs)
  • Employee Stock Purchase Plan (ESPP)
  • Flexible time off, paid company holidays, and paid sick time
  • Gender-neutral parental leave and grandparent leave
  • Medical, dental, and vision coverage
  • 401(k) retirement plan with company match
  • Life and disability insurance
  • Health and dependent care FSA
  • Voluntary hospital, accident, and critical illness benefits
  • Employee Assistance Program (EAP)
  • ARAG pre-paid legal
  • Nationwide pet insurance
  • Cancer Care program
  • Global business travel medical insurance
  • Home office allowance
  • Mobile phone reimbursement
  • Wellness coach and wellness/gym reimbursement
  • Fertility coverage
  • Adoption and surrogacy reimbursement

This U.S. role has a location-dependent base pay range. The base salary range is $156,000–$215,000 USD. SentinelOne is an Equal Employment Opportunity and Affirmative Action employer and participates in the E-Verify Program for U.S.-based roles.

More jobs at SentinelOne

Similar jobs