Staff Security Engineer Application Security
13 hours agoLeadSalary: 183K - 240KNew York City, NY; San Francisco, CA; Seattle, WAHybridFull TimeCybersecurityJobs by WRITER
WRITERVisit WRITER website
WRITER is an enterprise AI platform for agentic work, aimed at marketing and revenue teams.
San Francisco, United States
Funding history
About WRITER
WRITER provides AI agents, proprietary Palmyra models, enterprise context and governance tooling to create and execute enterprise workflows.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will embed security into product development by leading threat modeling, secure architecture design, code reviews, and security testing. You will build and maintain automated controls, define secure coding practices, assess applications and AI services, remediate vulnerabilities, protect data and model environments, and research emerging AI security threats.
Requirements
- At least 4 years of hands-on application security engineering experience.
- Experience securing large-scale production systems.
- Understanding of developer workflows and developer experience.
- Expertise in at least two of Python, Java, Go, JavaScript, or TypeScript.
- Ability to read and review code across multiple languages.
- Knowledge of SAST, DAST, vulnerability management, security testing frameworks, and DevSecOps.
- Ability to communicate security concepts to technical and non-technical audiences.
Responsibilities
- Conduct threat modeling sessions and design secure architectures for new features.
- Own and evolve the application security program, including SAST and DAST scanning in CI/CD pipelines.
- Perform security code reviews and build vulnerability-detection automation.
- Establish secure coding standards, reusable security patterns, and libraries.
- Design and recommend security features for customer environments.
- Use AI agents to improve security and engineering velocity.
- Lead security assessments and penetration testing of applications, AI services, and APIs.
- Implement security controls for data pipelines, model-training environments, and AI agents.
- Research emerging AI and ML security threats and build defenses.
Benefits
- Generous PTO and company holidays.
- Medical, dental, and vision coverage for employees and their families.
- 16 weeks of paid parental leave.
- Fertility and family-planning support.
- Early-detection cancer testing.
- Flexible spending and dependent-care FSA options.
- Health savings account contributions for eligible plans.
- Wellness stipend.
- Company-wide and team off-sites.
- Company stock options.
- 401k.
