
Secures software across the full development lifecycle by embedding security into design, code, build, and release. Operates application security tooling and pipelines, partners with engineering to drive remediation, and applies AI to accelerate AppSec work and secure AI- and LLM-powered applications. Conducts threat modeling, architecture security reviews, and design reviews. Implements, configures, tunes, and operates application security tooling. Triages, validates, prioritizes, and reduces false positives in security findings. Defines, implements, and maintains security gates and policies in CI/CD pipelines. Supports and coordinates application penetration testing. Drives secrets management, secure configuration, API security, container and image security, and microservice security practices. Builds, deploys, and maintains AI-assisted automations and agentic workflows. Designs, implements, and operates security controls for AI- and LLM-powered application features. Requires a Bachelor's degree in Computer Science, Information Security, Engineering, or equivalent practical experience. Hands-on application security experience across the software development lifecycle is required. Strong understanding of common application vulnerability classes and mitigations, including the OWASP Top 10, and of secure coding principles is necessary. Practical experience with application security tooling, such as