Applied Methods
~The MetaSecurityApplication Security Engineer

Application Security Engineer

This role conducts comprehensive security reviews and threat modeling across AI-native platforms and data infrastructure, identifying vulnerabilities in applications that power enterprise AI agents, LLM systems, and knowledge graphs. What distinguishes Application Security Engineers from broader security roles is their focus on embedding security into the development lifecycle itself—through code reviews, secure design practices, and CI/CD integration—rather than conducting external assessments alone. These engineers typically sit within dedicated product or application security teams that partner closely with engineering organizations, translating security requirements into developer-friendly practices and tooling that enable teams to ship secure code at scale.

$ titles --canonical
Application Security EngineerStaff Product Security Engineer
Open Jobs27
Companies Hiring20
$ expectations --role application-security-engineer

Measured across 27 of 27 open postings.

44%
expect AI in the role's own work
11% state it as a requirement
0%
work directly with customers
0%
manage people
Mid
most common level
48% of open postings
BY LEVEL

This role is advertised at one level, so a single figure for the role would describe none of them. Experience and pay are the midpoints for each level on its own.

LevelShareMedian yearsMedian pay
Mid48%(13)——

A dash means too few postings stated it to report a midpoint at any level. Most companies do not publish a salary band, so pay is indicative rather than a market rate. 2 levels with fewer than 10 open postings are not shown.

WHAT THEY ASK FOR, VERBATIM

“Building agentic workflows for vulnerability management”

xAI · Vulnerabilty Analyst

“Integrate and leverage AI agents to help increase velocity for the security team and the overarching engineering org”

Writer · Security engineer, application security (UK)

“6+ years of experience in security engineering or security architecture, with at least 2+ years dedicated specifically to AI/ML security, LLM application security, or securing agentic frameworks.”

Replit · AI Agent Security Architect

“AI-assisted triage, context-aware risk scoring, and vulnerability correlation/chaining”

Nebius · Vulnerability Operation Center Lead
$02

Skills

What companies are looking for in this role.

$ skills --core

Security engineering

85%

Application and product security

85%

Threat modeling and architecture review

67%

Vulnerability management

48%

Security tooling and automation engineering

30%

Cloud and infrastructure security

26%

Offensive security testing

22%

CI/CD and release automation

22%

Incident response and forensics

22%

Software supply chain security

19%

Cryptography and key management

15%

Backend and API engineering

15%

Security policy and standards

11%

Security risk management

11%
$ skills --emerging

AI safety and guardrails

22%
$ skills --soft

Security culture and enablement

30%

Mentoring and code review

15%
$03

Technology

The tools and technologies that define this role.

$ tech --language
Gomoderate
Pythonmoderate
Rustmoderate
C/C++low
Javalow
TypeScriptlow
$ tech --platform
AWSmoderate
Google Cloud Platformmoderate
Azurelow
Claudelow
Dockerlow
Kuberneteslow
$ tech --concept
OWASPmoderate
CI/CDlow
CVSSlow
DASTlow
Infrastructure as Codelow
OAuthlow
REST APIlow
SAMLlow
SASTlow
SCAlow
$04

Open Jobs

27 open Application Security Engineer jobs across 20 companies.

xAI2w
Vulnerabilty Analyst
Palo Alto, CA; Austin, TX; New York, NY; Washington, DC·Security
Shield AI2w
Staff Application Security Engineer (R5949)
Remote·Security
Writer2w
Security engineer, application security (UK)
London, UK·Security
Nscale1mo
Staff Security Engineer, Product & Platform Security
Houston; New York; San Francisco; Seattle·Security
Replit1mo
AI Agent Security Architect
Foster City, CA·Security
Glean1mo
Application Security Engineer
United States, Remote·Security
Harvey1mo
Senior Product Security Engineer
San Francisco·Security
Nebius2mo
Vulnerability Operation Center Lead
Remote - Europe·Security
Anthropic3mo
Staff+ Application Security Engineer - M&A
Remote-Friendly (Travel-Required) | San Francisco, CA | Seattle, WA | New York City, NY·Security
Block3mo
Principal Security Engineer
Bay Area, CA, United States of America·Security
Figure AI3mo
Security Engineer, Product and Device Security
San Jose, CA·Security
Figure AI3mo
Security Engineer, Application Security
San Jose, CA·Security
Apollo4mo
Senior Application Security Engineer
Remote, Canada; Remote, United States·Security
Nebius4mo
Senior/Staff Application Security Engineer
Remote - Europe·Security
PhysicsX4mo
Senior Software Security Developer – Core Platform Services
London·Security
Lovable4mo
Application Security Engineer
Stockholm·Security
Granola5mo
Security Engineer
London·Security
Glean6mo
Supply Chain Security Engineer
Bangalore, India·Security
xAI6mo
Application Security Engineer
Palo Alto, CA·Security
Anthropic6mo
Staff+ Application Security Engineer
Remote-Friendly (Travel-Required) | San Francisco, CA | Seattle, WA | New York City, NY·Security