Application Security Engineer
SpaceXAI · Palo Alto, CA ·
- Category
- Security
- Experience
- 3+ years
You will identify and mitigate application vulnerabilities, establish secure coding practices, and integrate security into CI/CD pipelines. You will conduct threat modeling, manage remediation, support incident response, secure software supply chains, and address AI and machine-learning security risks.
Responsibilities
- Conduct code reviews and static analysis to identify and mitigate vulnerabilities
- Design secure coding guidelines and best practices
- Integrate security practices throughout CI/CD pipelines
- Perform threat modeling and risk assessments
- Manage vulnerability tracking and remediation
- Support application-security incident response
- Evaluate and secure software supply chains and maintain SBOMs
- Address security risks in AI and machine-learning models
Requirements
- Bachelor's degree in Computer Science, Cybersecurity, or a related field
- 3-5 years of application-security experience focused on code security
- Understanding of secure coding practices, application-security frameworks, and common vulnerabilities
- Proficiency in Python or Rust
- Experience securing CI/CD pipelines and implementing DevSecOps practices
- Familiarity with software supply-chain security and SBOM tools
- Experience with security testing and static and dynamic code analysis
- Understanding of AI and machine-learning security implications and the OWASP LLM Top 10
- Ability to communicate security issues to technical and non-technical audiences
Benefits
- Equity
- Medical coverage
- Vision coverage
- Dental coverage
- 401(k) retirement plan
- Short-term disability insurance
- Long-term disability insurance
- Life insurance
- Discounts and perks