Security Engineer / Senior Application Security Engineer / AI Security Engineer

JC CORPORATIONS
United States
1 day ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence User Authentication Computer Programming DevOps Information Systems Security Architecture Professional Python (Programming Language) Machine Learning Open Source Technology Open Web Application Security Systems Development Life Cycle Software Engineering Systems Integration
+7 more
Large Language Models Software Security Generative AI GWAPT Production Code Virtual Agents Vulnerability Analysis

Job description

  • Design, develop, and maintain application security automation and tooling using Python.
  • Build reusable security workflows leveraging Claude Code, including skills, subagents, hooks, slash commands, and MCP integrations.
  • Assess and secure AI/ML, LLM, and agentic AI applications.
  • Identify and address emerging AI security risks including prompt injection, excessive agent/tool permissions, model and tooling supply-chain risks, and data exposure.
  • Perform threat modeling, vulnerability assessments, and secure architecture reviews.
  • Integrate security practices throughout the Secure SDLC and CI/CD pipelines.
  • Address common application security vulnerabilities including OWASP Top 10, API security, authentication, and authorization.
  • Develop automation to improve vulnerability detection, remediation, and security engineering workflows.
  • Evaluate when security issues should be automated, escalated, or manually remediated.
  • Collaborate with software engineers, architects, DevOps, and AI/ML teams to implement secure solutions.

Requirements

We are seeking a Senior Application Security Engineer with strong hands-on software engineering experience and deep expertise in Application Security, Python automation, AI/ML, LLMs, and Agentic AI.

The ideal candidate is a hands-on engineer who has shipped production code and can build security automation, tooling, and reusable workflows. Experience with Claude Code, AI agents, MCP integrations, prompt injection, OWASP LLM Top 10, and agent security is highly desirable., * 10 15+ years of software engineering and application security experience.

  • Strong hands-on Python development and automation experience.
  • Strong software development background with demonstrated production coding experience.
  • Hands-on experience with Claude Code and its extensibility capabilities.
  • Knowledge of AI/ML, LLMs, Generative AI, and AI Agents.
  • Understanding of Agentic AI security and emerging AI application risks.
  • Knowledge of OWASP Top 10 / OWASP LLM Top 10.
  • Strong experience with Secure SDLC and Threat Modeling.
  • Strong understanding of API Security, Authentication, and Authorization.
  • Ability to develop security tooling, automation, and reusable workflows.
  • Strong problem-solving and security engineering judgment.

Nice to Have

  • Experience securing production LLM or Agentic AI systems.
  • Experience building internal AI security tooling.
  • Experience with MCP (Model Context Protocol) integrations.
  • Contributions to open-source security projects/tools.
  • Certifications such as OSCP, GWAPT, or CSSLP.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:37 min

Tracing the evolution from early AI to generative AI

Mike Mike · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

1:22 min

Addressing the shortage of application security specialists

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

2:14 min

Introduction to generative AI and content warnings

Cheuk Ho · World Congress 2023

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

4:58 min

Scaling security teams through developer advocates

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all