> Markdown version of [/jobs/ext/2028896-staff-application-security-engineer-ai-agentic](https://www.wearedevelopers.com/jobs/ext/2028896-staff-application-security-engineer-ai-agentic). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff Application Security Engineer - AI & Agentic... - **Company:** CVS Health - **Location:** Madison, WI, United States - **Experience:** Expert - **Salary:** $106,605.0 - $284,280.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Applications Architecture, Microsoft Azure, C Sharp (Programming Language), Code Review, Cyber Security, Computer Programming, Continuous Delivery, Continuous Integration, Information Leak Prevention, Python (Programming Language), Machine Learning, PCI Data Security Standards, Secure Coding, Software Engineering, Data Streaming, Systems Integration, Software Vulnerability Management, Google Cloud, Large Language Models, Multi-Agent Systems, Software Security, Generative AI, AI Platforms, Automation Anywhere, Serverless Computing, Microservices - **Published:** August 11, 2026 - **Apply:** https://www.juju.com/job/00000000gmp7ii ## About the Role + 7+ years of experience designing, building, or securing enterprise-scale applications and platforms. + 5+ years of application security experience, including threat modeling, secure design, code review, and vulnerability management. + 5+ years of programming experience in one or more languages such as Python, Java, JavaScript, C#, or Go. + 3+ years of experience developing or securing AI, machine learning, or generative AI solutions. + 3+ years of experience with public cloud platforms including AWS, Azure, or Google Cloud Platform. Preferred Qualifications + Experience securing modern application architectures, including APIs, containers, microservices, and serverless technologies. + Strong understanding of secure software development lifecycle practices and application security testing methodologies. + Hands-on experience securing AI agents, retrieval augmented generation solutions, and large language model integrations. + Experience conducting threat modeling and security assessments for AI-enabled systems. + Familiarity with responsible AI principles, AI governance, and emerging AI security frameworks. + Experience integrating security controls into continuous integration and continuous delivery pipelines. + Knowledge of common compliance frameworks such as PCI DSS, HIPAA, NIST, HITRUST, and CSA. + Ability to influence technical decisions across multiple teams and organizations. + Experience contributing to security research, open-source projects, or industry communities. Education + Bachelor's degree from an accredited college or university, or equivalent combination of education and relevant work experience (High School Diploma/GED plus 4 years of related experience) ## Description We are seeking a Staff Application Security Engineer - AI & Agentic Systems to help secure the next generation of AI-enabled applications, large language model integrations, and agentic systems. This role will partner closely with engineering, product, platform, and data teams to embed security into the design, development, and operation of both traditional and AI-driven solutions. As a senior technical contributor, you will help define secure design patterns, conduct threat modeling and risk assessments, guide engineering teams on secure development practices, and support the adoption of responsible AI security controls across the enterprise. Key Responsibilities: Secure Development, Standards & Design + Develop and maintain application and AI security standards, best practices, and guardrails. + Promote secure-by-design principles across application and AI development lifecycles. + Establish secure design patterns for AI agents, prompt management, tool integrations, memory handling, and autonomous workflows. + Partner with engineering teams to identify and mitigate AI-specific security risks such as prompt injection, model abuse, data leakage, and unauthorized agent actions. AI & Agentic Security Architecture + Serve as a subject matter expert supporting the security of AI-enabled applications and agentic systems. + Review and provide guidance on architectures utilizing large language models, retrieval augmented generation pipelines, AI agents, and AI-powered workflows. + Define and recommend identity, authorization, data protection, observability, and governance controls for AI environments. + Collaborate with AI platform, engineering, product, and data teams to ensure secure and responsible AI adoption. Security Testing & Risk Management + Perform threat modeling, architecture reviews, and security assessments for applications and AI-enabled systems. + Conduct security analysis of AI workflows, model integrations, agent interactions, and data flows. + Partner with engineering teams to prioritize and remediate security findings. + Evaluate emerging AI security tools and technologies to improve organizational security posture. Collaboration & Technical Leadership + Influence engineering teams to integrate security controls into development processes and product roadmaps. + Partner with privacy, compliance, legal, and risk teams to align security controls with organizational requirements. + Provide guidance on AI security considerations, emerging threats, and industry best practices. + Participate in strategic initiatives supporting secure AI adoption across the enterprise. Incident Response & Continuous Improvement + Support investigation and response efforts involving application and AI-related security events. + Assist in identifying root causes and implementing long-term security improvements. + Drive continuous improvement of security controls, processes, and engineering practices. Mentorship & Innovation + Mentor security engineers and development teams on secure coding, threat modeling, and AI security best practices. + Contribute to the evaluation of emerging AI security research, technologies, and industry standards. + Help advance the organization's application and AI security strategy through innovation and technical leadership. ## Related Videos - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [This App Reached 10,000 Users in One Week. Here's How.](https://www.wearedevelopers.com/videos/100329-this-app-reached-10-000-users-in-one-week-here-s-how) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) - [The AI Security Survival Guide: Practical Advice for Stressed-Out Developers](https://www.wearedevelopers.com/videos/1015-the-ai-security-survival-guide-practical-advice-for-stressed-out-developers) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [What is Agentic Programming and Why Should Developers Care?](https://www.wearedevelopers.com/magazine/625-what-is-agentic-programming-and-why-should-developers-care) - [What Industries Outside of AI Are Hiring The Most AI Experts?](https://www.wearedevelopers.com/magazine/98-what-industries-outside-of-ai-are-hiring-the-most-ai-experts)