> Markdown version of [/jobs/ext/1055459-ai-assisted-vulnerability-testing-developer](https://www.wearedevelopers.com/jobs/ext/1055459-ai-assisted-vulnerability-testing-developer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI-Assisted Vulnerability Testing Developer - **Company:** Sriven Systems Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Burp Suite, Cloud Computing Security, Code Coverage, Continuous Integration, Github, Open Web Application Security, Systems Development Life Cycle, Software Engineering, Systems Integration, Software Vulnerability Management, Large Language Models, Software Security, Devsecops, Jenkins, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** June 30, 2026 - **Apply:** https://www.dice.com/job-detail/041b9ff8-de16-4843-aa2d-d401d6790394 ## About the Role 5+ years of experience in application security, DevSecOps, or secure software development Hands-on experience with: Application security testing tools (SAST, DAST, SCA) CI/CD pipeline integrations (e.g., GitHub Actions, Jenkins, etc.) Familiarity with AI/ML-assisted development or security tools, including large language model (LLM)-driven workflows Experience working with cloud security tools, preferably within AWS environments Strong understanding of: Application security principles (OWASP Top 10, vulnerability management) Software development lifecycle (SDLC) Ability to translate security findings into practical engineering solutions Preferred Qualifications Experience with: AI frameworks or LLM-integrated security workflows Snyk, Burp Suite, or similar tools GitHub Advanced Security Exposure to enterprise security governance and compliance frameworks Experience supporting POC-to-production transitions in security or DevSecOps initiatives Knowledge of AI cost modeling, token usage optimization, or tooling licensing strategies Soft Skills Strong problem-solving mindset with ability to evaluate emerging technologies Excellent collaboration skills across engineering, security, and leadership teams Ability to operate with high ownership in ambiguous, evolving environments, Effective communicator capable of driving technical alignment and adoption ## Description Collaborate with security and engineering teams to evaluate and implement AI-assisted vulnerability testing solutions Identify and assess viable tools and integrations, including: AWS Security tools (static and penetration testing capabilities) Burp Suite (manual and dynamic testing coverage) Snyk (vulnerability analysis, reachability testing) GitHub Actions / GitHub Advanced Security Design and execute Proof of Concept (POC) efforts to validate AI-assisted testing approaches Enable and configure selected solutions within development and CI/CD environments Drive the transition from POC to production-ready implementation Define and establish governance frameworks, including: Training and enablement plans Documentation and standards Security scope and coverage Support go-live execution, ensuring successful adoption across engineering pipelines Develop a 2027 roadmap for pipeline integration, including scope definition and implementation planning Assist with post-POC scaling and optimization efforts, ensuring long-term sustainability Support licensing strategy, token usage, and funding considerations for AI-enabled security tools ## Related Videos - [The Road to MLOps: How Verivox Transitioned to AWS](https://www.wearedevelopers.com/videos/1050-the-road-to-mlops-how-verivox-transitioned-to-aws) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Spot, Squash, Secure: Fighting Security Bugs with GitHub Copilot](https://www.wearedevelopers.com/videos/100052-spot-squash-secure-fighting-security-bugs-with-github-copilot) ## Related Articles - [Exploring AI: Opportunities and Risks for Developers](https://www.wearedevelopers.com/magazine/522-exploring-ai-opportunities-and-risks-for-developers) - [Transforming Software Development: The Role of AI and Developer Tools](https://www.wearedevelopers.com/magazine/527-transforming-software-development-the-role-of-ai-and-developer-tools) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [13 AI Tools for Developers](https://www.wearedevelopers.com/magazine/302-13-ai-tools-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)