> Markdown version of [/jobs/ext/1352950-senior-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/1352950-senior-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Application Security Engineer - **Company:** Social Solutions Global, Inc. - **Location:** United States - **Experience:** Expert - **Salary:** $100,000.0 - $130,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Open Web Application Security, PCI Data Security Standards, Secure Coding, Software Engineering, Software Vulnerability Management, Delivery Pipeline, Large Language Models, Software Security, Static Application Security Testing - **Published:** July 20, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17642187?backUrl=%2Fcareer%2F17642187%2FSenior-Application-Security-Engineer ## About the Role * Demonstrated experience building AI agents, LLM-powered workflows, or automated pipelines. * Working knowledge of software vulnerability classes, how CVEs are assessed, and what good remediation looks like. * Understand how software gets built and where security integrates into the development process. * You can translate a security finding into language a developer can act on without a security background. What sets you apart * An extensive track record of building AI agents to solve real operational problems that accelerate outcomes. * Experience with SAST/SCA platforms at an engineering team level. * Prior work building or running a security champion program. * Familiarity with AWS security services or cloud environment security. * Knowledge of application security frameworks -- OWASP Top 10, NIST, CVSS scoring. * Previous software development experience. ## Description As a Senior Application Security Engineer at Bonterra, you will be embedded across the Engineering organization, partnering directly with development teams to drive vulnerability remediation, build security ownership, and close the gap between identified and fixed. You will also build and operate AI agents and workflows that make that work scale across the product portfolio. This is a technical role. The ideal candidate has engineering instincts, can build AI-powered workflows, and knows how to work alongside development teams rather than audit them from the outside. What you'll do * Report directly to the Head of Application Security. * Build, extend, and operate AI-powered agents and workflows that automate vulnerability remediation tasks. * Drive vulnerabilities to closure by working directly with development teams. * Act as a security champion embedded across Bonterra's engineering organizations, building trust and normalizing secure development practices. * Triage and prioritize findings from SAST, SCA, IaC scanners, filtering noise and surfacing what needs immediate attention. * Integrate security validation into CI/CD pipelines and developer workflows. * Support SOC 2, PCI-DSS, HIPAA, and other audits as needed. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [How will artificial intelligence change the future of software testing?](https://www.wearedevelopers.com/videos/85-how-will-artificial-intelligence-change-the-future-of-software-testing) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [The transformative impact of GenAI for software development and its implications for cybersecurity](https://www.wearedevelopers.com/videos/952-the-transformative-impact-of-genai-for-software-development-and-its-implications-for-cybersecurity) - [How GitHub secures open source](https://www.wearedevelopers.com/videos/1450-how-github-secures-open-source) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud)