Application Security Engineer

USD 100,000-258,000 per year
MIDDLE
✅ On-site

Tech Stack

AI @ 3 AWS @ 3 Azure @ 3 CI/CD @ 3 Communication @ 3 Compliance @ 3 Data Pipelines @ 3 GCP @ 3 LLM @ 3 Machine Learning @ 2 OWASP @ 6 Python @ 5 Rust @ 5 Security @ 6

Details

SpaceXAI is seeking a skilled and innovative Application Security Engineer to ensure the security and integrity of cloud-native applications and systems throughout the software development lifecycle, with a focus on code security, CI/CD pipelines, and emerging AI technologies.

Responsibilities

  • Conduct in-depth code reviews and static analysis to identify and mitigate application security vulnerabilities.
  • Design and implement secure coding guidelines and best practices for development teams.
  • Collaborate with development teams to integrate security practices throughout the CI/CD pipeline.
  • Perform threat modeling and risk assessments, and develop mitigation strategies.
  • Manage vulnerability tracking and remediation efforts.
  • Support incident response activities related to application security.
  • Monitor emerging security threats and trends in cloud-native technologies and AI.
  • Evaluate and secure software supply chains, including producing and maintaining Software Bills of Materials (SBOMs).
  • Address security concerns specific to AI and machine learning models, with a focus on the OWASP LLM Top 10.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • 3–5 years of experience in application security, with a strong focus on code security practices.
  • Deep understanding of secure coding practices, application security frameworks, and common vulnerabilities such as the OWASP Top 10.
  • Proficiency in Python or Rust and experience applying secure coding practices in these languages.
  • Experience securing CI/CD pipelines and implementing DevSecOps practices.
  • Familiarity with software supply chain security and SBOM generation tools.
  • Experience with security testing tools such as Burp Suite and OWASP ZAP, as well as static and dynamic code analysis.
  • Understanding of AI/ML security implications, particularly those outlined in the OWASP LLM Top 10.
  • Excellent communication skills, with the ability to explain complex security issues to technical and non-technical audiences.

Preferred Skills And Experience

  • Experience with cloud platforms such as GCP, AWS, or Azure and their security features.
  • Relevant security certifications such as CSSLP or OSWE.
  • Background in data privacy and compliance regulations relevant to cloud-native applications and AI systems.
  • Experience with GitOps and infrastructure-as-code security.
  • Familiarity with federated learning and privacy-preserving machine learning techniques.
  • Experience building custom security tooling to enhance and automate security processes.
  • Interest in leveraging AI to automate security tasks and improve efficiency.
  • Contributions to open-source security projects or tools.
  • Experience securing AI/ML models and data pipelines.

Benefits

The compensation range is $100,000–$258,000 USD in base salary. The total rewards package also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short- and long-term disability insurance, life insurance, discounts, and other perks. SpaceXAI is an equal opportunity employer.

More jobs at SpaceXAI

Similar jobs