Application Security Engineer ensuring security is integral to AI product development. Collaborating with engineers on securing code and overseeing vulnerability management.
Responsibilities
Help secure AI products and internal tools that are introducing industry-novel security risks and pushing established security boundaries
Lead “shift left” security efforts to build security into the software development lifecycle.
Conduct secure design reviews and threat modeling. Identify and prioritize risks, attack surfaces, and vulnerabilities.
Develop tooling to scale security code reviews and respond to developer questions, including advising developers on remediating vulnerabilities and following secure coding practices.
Manage Anthropic's vulnerability management program, including integrating data ingestion pipelines, coding logic to prioritize vulnerability fixes, supporting teams remediating vulnerabilities and developing automated systems at scale.
Oversee Anthropic's bug bounty program. Set scope, validate submissions, perform root cause analysis, coordinate remediation with engineering teams, and award bounties. Cultivate relationships with the ethical hacker community.
Collaborate closely with product engineers and researchers to instill security best practices. Advocate for secure architecture, design, and development.
Develop and document security policies, standards, and playbooks. Conduct security awareness training for engineers.
Requirements
5+ years of hands-on experience in application and infrastructure security
Strong proficiency in at least one programming language (e.g., Python, Rust, Go, Java)
Lead with empathy, a collaborative spirit, and a learning mindset to work cross-functionally with engineers of all levels to build security into the software development life cycle
Leverage creative and strategic thinking to reduce risk through secure design and simplicity, not just controls
Possess broad security knowledge to connect the dots across domains and identify holistic ways to decrease the overall threat surface
Are keen to distill complex security concepts into clear actions and drive consensus without direct authority
Embody a proactive mindset to thread security throughout the product lifecycle through activities like threat modeling, secure code review, and education
Have a strong grasp of offensive security to anticipate risks from an adversary's perspective, not just check compliance boxes
Bring experience with modern application stacks, infrastructure, and security tools to implement pragmatic defenses
Are practiced at collaborating cross-functionally and effectively balancing security requirements with business objectives
Advocate for security fundamentals like least privilege, defense-in-depth, and eliminating complexity that could sub-linearly scale security through smart design.
Principal Security Engineer at Binti focusing on securing software applications for social services. Conducting assessments, responding to incidents, and improving security architecture in a collaborative environment.
Technical expert in industry‑leading CFD tools such as ANSYS Fluent and CFX. Partnering with account managers and customers to drive pre - sales success and deliver impactful technical support.
Lead Applications Engineer for Power Island Mechanical Systems developing SMR plant technology solutions. Collaborating with internal teams and external partners for technical proposals and designs.
Application Engineer providing technical and commercial solutions to support Data Center sales team. Collaborating closely with customers and internal teams for effective project delivery.
Customer Application Support Engineer providing technical support for Linux BSP and driver integration issues at NXP. Collaborating with customers during product development phases for embedded applications.
Senior Customer Application Engineer at NXP leading technical support for power and motor control applications. Engaging with Indian customers and global teams for mass production deployments.
Application Support Engineer providing technical support for logistics applications with a focus on troubleshooting and performance monitoring. Collaborating with development and business teams for issue resolution in a hybrid work environment.
Cloud Application Development Engineer at Intel responsible for designing and developing cloud - native applications. Involves building scalable APIs, ensuring security, and troubleshooting production issues.
Application Engineering Manager leading a team of engineers to integrate products into customer vehicles. Focusing on technical solutions and collaboration with automotive OEMs and Tier 1 suppliers.