Applied Methods
~The MetaSecurityApplication Security Engineer

Application Security Engineer

This role conducts comprehensive security reviews and threat modeling across AI-native platforms and data infrastructure, identifying vulnerabilities in applications that power enterprise AI agents, LLM systems, and knowledge graphs. What distinguishes Application Security Engineers from broader security roles is their focus on embedding security into the development lifecycle itself—through code reviews, secure design practices, and CI/CD integration—rather than conducting external assessments alone. These engineers typically sit within dedicated product or application security teams that partner closely with engineering organizations, translating security requirements into developer-friendly practices and tooling that enable teams to ship secure code at scale.

$ titles --canonical
Application Security EngineerStaff Product Security Engineer
40open jobs
21companies hiring
$02

Skills

What companies are looking for in this role.

$ skills --core

Conducting threat modeling and secure design reviews to identify architectural security risks

95%

Performing manual code reviews and static analysis to identify security vulnerabilities

93%

Integrating security controls into CI/CD pipelines and development workflows

92%

Designing and implementing secure coding standards and guidelines for development teams

90%

Managing vulnerability identification, triage, and remediation processes

88%

Conducting security architecture reviews and implementing security controls across infrastructure

87%

Writing secure code and building security libraries and reusable security components

80%

Architecting authentication and authorization mechanisms including RBAC and ABAC systems

75%

Implementing DevSecOps practices and secure infrastructure-as-code patterns

75%

Securing cloud-native applications and Kubernetes infrastructure

70%

Evaluating and securing software supply chains including SBOM creation and management

68%

Establishing and maintaining compliance with security standards and regulatory requirements

65%

Performing exploit writing and creating exploit chains to validate vulnerabilities

62%

Implementing secrets management and secure credential handling practices

60%
$ skills --emerging

Securing AI and machine learning systems including LLM architectures and training data pipelines

72%

Designing secure controls for emerging AI technologies and novel security risks

68%

Performing security assessments on AI agents and agentic AI systems

65%

Protecting enterprise knowledge graphs and securing multi-tenant AI platforms

55%
$ skills --soft

Collaborating cross-functionally with engineering, DevOps, and platform teams

92%

Mentoring and training engineers on secure coding practices and security-first mindset

88%

Communicating security risks and vulnerabilities clearly to technical and non-technical stakeholders

85%

Acting as subject matter expert and technical liaison across security and engineering teams

82%

Building scalable security programs and driving organizational security culture

80%

Balancing pragmatism with security rigor in fast-paced engineering environments

78%

Leading incident response activities and vulnerability disclosure programs

75%
$03

Technology

The tools and technologies that define this role.

$ tech --language
Pythonhigh
Gomoderate
$ tech --framework
in-totolow
$ tech --platform
Kubernetesmoderate
GitHublow
Microsoft Teamslow
MongoDBlow
ServiceNowlow
Zendesklow
Zoomlow
$ tech --tool
DASThigh
SASThigh
IASTmoderate
SCAmoderate
GPGlow
$ tech --concept
CI/CDvery high
Threat Modelingvery high
Infrastructure-as-Codehigh
LLMshigh
OWASP Top 10high
RBAChigh
ABACmoderate
AI Agentsmoderate
Software Bill of Materialsmoderate
FedRamplow
HIPAAlow
PCIlow
$04

Open Jobs

40 open Application Security Engineer jobs across 21 companies.

Glean1w
Security Engineer, Application Security
San Francisco Bay Area·Security
Glean1w
Application Security Engineer
Bangalore, India·Security
MongoDB1w
Senior Product Security Engineer, Server
Dublin·Security
PhysicsX2w
Senior Software Security Developer – Core Platform Services
London·Security
PhysicsX2w
Principal Security Engineer – DevSecOps and Security Architect
New York City·Security
Databricks2w
Product Security Engineer
United States·Security
Abnormal Security2w
Senior Application Security Engineer
Remote - USA·Security
xAI2w
Application Security Engineer
Palo Alto, CA·Security
Anthropic2w
Application Security Engineer
Remote-Friendly (Travel-Required) | San Francisco, CA | Seattle, WA | New York City, NY·Security
Palantir2w
Product Infrastructure Security Engineer
Seattle, WA·Security
Palantir2w
Product Infrastructure Security Engineer
Palo Alto, CA·Security
Palantir2w
Product Infrastructure Security Engineer
Washington, D.C.·Security
Palantir2w
Product Infrastructure Security Engineer
New York, NY·Security
Palantir2w
Product Infrastructure Security Engineer
Remote: US - East·Security
Palantir2w
Application Security Engineer
Remote: United States·Security
Skild AI2w
Embedded Security Engineer
San Mateo·Security
Writer1mo
Sr. Security engineer, application security
New York City, NY·Security
Writer1mo
Security engineer, application security (UK)
London, UK·Security
Databricks1mo
Senior Manager, Product Security
Remote - United Kingdom·Security
Databricks1mo
Senior Manager, Product Security
Remote - Netherlands·Security