Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 3
CI/CD @ 6
Communication @ 6
Django
Flask
Git @ 6
JWT @ 6
Java @ 6
Machine Learning
Node.js
OAuth @ 6
OWASP @ 6
Python
Rust @ 6
Security @ 7
Software Development @ 7
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
SentinelOne is seeking an application security professional to lead Wayfinder Frontier AI Services customer engagements. The role focuses on reviewing C, C++, Rust, and Java source code assessments, validating findings from an agentic code-scanning pipeline, presenting results to technical and executive audiences, and helping scale the service methodology.
Responsibilities
- Lead Wayfinder Frontier AI Services customer engagements end-to-end, including scoping, technical delivery, and presenting results to executive and technical stakeholders.
- Review and triage findings from the agentic code-scanning pipeline against customer C, C++, Rust, and Java codebases.
- Validate true positives, eliminate noise, and ensure customer findings are actionable.
- Conduct deep code reviews across C, C++, Rust, and Java and their common frameworks.
- Translate technical risk into business impact and map exposures into end-to-end exploitation chains.
- Author and maintain SAST rule packs and partner with AI/ML engineers to improve the agentic scanning engine.
- Provide remediation guidance to customer development teams and validate fixes through follow-up review.
- Work with engineering teams to enhance the agentic code-scanning pipeline and reduce false positives.
- Mentor senior application security engineers and software-focused threat hunters.
- Define and refine core methodologies, engagement playbooks, and scoping templates.
Requirements
- 7+ years of experience in application security or product security, with a strong software development background.
- Proven ability to translate complex findings into technical and executive-level debriefs.
- Excellent written and verbal communication skills.
- Experience delivering customer-facing or consulting-style engagements end-to-end.
- Comfortable working in a distributed remote organization.
- Expert-level proficiency in at least two of C, C++, Rust, and Java, including identifying and explaining framework-level vulnerabilities.
- Strong understanding of vulnerabilities and secure coding methodologies in at least two of C, C++, Rust, and Java.
- Mastery of the OWASP Top 10, CWE Top 25, and modern authentication infrastructure, including SAML, OAuth, OIDC, and JWT internals.
- Experience driving an application through ASVS Level 4 verification.
- Hands-on experience authoring custom static-analysis rules and queries for modern SAST engines.
- Familiarity with AI-assisted code review workflows and validating findings from automated and agentic analysis pipelines.
- Strong threat-modeling experience throughout the secure SDLC.
- Fluency with Git-based source control and CI/CD pipelines, including build-pipeline security controls, runner hardening, and release-gate enforcement.
- Experience with AI-accelerated development and code-scanning methodologies.
Nice to Have
- Working depth in Python, including Django or Flask, and Node.js, including Express.
- Reverse engineering of compiled C, C++, Rust, or Java using IDA Pro, Binary Ninja, or Ghidra.
- OSWE, CSSLP, or GWAPT certification; published CVEs; or conference talks.
- Familiarity with SOC 2, ISO 27001, or FedRAMP control mapping.
Benefits
- Restricted Stock Units (RSUs)
- Employee Stock Purchase Plan (ESPP)
- Flexible time off, paid company holidays, and paid sick time
- Gender-neutral parental leave and grandparent leave
- Medical, dental, and vision coverage
- 401(k) retirement plan with company match
- Life and disability insurance
- Health and dependent care FSA
- Voluntary hospital, accident, and critical illness benefits
- Employee Assistance Program (EAP)
- ARAG pre-paid legal
- Nationwide pet insurance
- Cancer Care program
- Global business travel medical insurance
- Home office allowance
- Mobile phone reimbursement
- Wellness coach and wellness/gym reimbursement
- Fertility coverage
- Adoption and surrogacy reimbursement
This U.S. role has a location-dependent base pay range. The base salary range is $156,000–$215,000 USD. SentinelOne is an Equal Employment Opportunity and Affirmative Action employer and participates in the E-Verify Program for U.S.-based roles.
More jobs at SentinelOne
Senior Manager, AI & Technology Program Management
SentinelOne · United States
USD 160,000-220,000 per year
Application Security Consultant
SentinelOne · United States
USD 156,000-215,000 per year
AI Product Manager
SentinelOne · United States
USD 184,000-253,000 per year
Staff Infrastructure Engineer
SentinelOne · United States
USD 156,000-215,000 per year
Senior Software Engineer, Agent Platform
SentinelOne · United States
USD 132,000-182,000 per year
Similar jobs
Senior Staff Client Platform Engineer
Nvidia · Santa Clara, United States
USD 200,000-322,000 per year
Senior Storage Production Engineer - DGX Cloud
Nvidia · Santa Clara, United States
USD 176,000-333,500 per year
Senior Storage Production Engineer - DGX Cloud
Nvidia · Santa Clara, United States
USD 176,000-333,500 per year
Application Security Engineer
SpaceXAI · Palo Alto, United States
USD 100,000-258,000 per year
Senior AI Workflow Engineer
Nvidia · Santa Clara, United States
USD 184,000-356,500 per year
Security Software Engineer, Detection & Response Platform
Anthropic · Washington, United States, New York City, United States, San Francisco, United States, Seattle, United States
USD 320,000-405,000 per year
Security Engineer, Application Security
OpenAI · United States, New York City, United States, San Francisco, United States, Seattle, United States
USD 234,400-385,000 per year
Staff+ Software Engineer, Infrastructure (Distributed Systems)
Anthropic · New York City, United States, San Francisco, United States, Seattle, United States
USD 320,000-485,000 per year