> Markdown version of [/jobs/ext/638357-ai-application-security-engineer-threat-modeling-ai-security](https://www.wearedevelopers.com/jobs/ext/638357-ai-application-security-engineer-threat-modeling-ai-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI Application Security Engineer /Threat Modeling AI Security - **Company:** Collabera - **Location:** Chandler, AZ, United States (Remote available) - **Experience:** Experienced - **Salary:** $166,400.0 - $197,600.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Java (Programming Language), JavaScript (Programming Language), .NET Framework, Artificial Intelligence, Amazon Web Services, Applications Architecture, Microsoft Azure, Cloud Computing, Distributed Systems, Information Systems Security Architecture Professional, Python (Programming Language), Key Management, Node.Js, Open Web Application Security, Zero Trust Network Access, Secure Coding, Session Management, Software Engineering, Data Streaming, TypeScript, Policy as Code, Cloud Platform System, Spring Cloud, Large Language Models, Software Security, GWAPT, Static Application Security Testing, Vulnerability Analysis, Golang, Dynamic Application Security Testing - **Published:** June 25, 2026 - **Apply:** https://www.dice.com/job-detail/2de9d9ab-6ac6-4d4b-92a5-95ea1d583380 ## About the Role * The ideal candidate will have a strong software engineering foundation, hands-on application security experience, and the ability to decompose complex application architectures to identify threats, security gaps, and remediation strategies., * 7+ years of Application Security Engineering experience. * 2+ years of hands-on Threat Modeling experience. * Experience conducting application architecture reviews and decomposing complex systems into components, trust boundaries, and data flows. * Experience developing and implementing automated threat modeling solutions. * Experience building and securing AI/LLM-based applications in enterprise production environments. * Strong understanding of secure application design and architecture principles. * Experience identifying and mitigating common application security vulnerabilities, including OWASP Top 10 risks. * Experience working with cloud-native applications and distributed systems. * Strong verbal and written communication skills with the ability to influence technical and non-technical stakeholders., * Expertise in secure coding practices and code-level vulnerability analysis. * Experience with threat modeling methodologies such as STRIDE, PASTA, or attack trees. * Strong understanding of authentication, authorization, session management, API security, and secrets management. * Experience securing applications developed in Java, .NET, Python, JavaScript/TypeScript, Node.js, Go, or similar technologies. * Experience integrating security controls into CI/CD pipelines and developer workflows. * Hands-on experience with SAST, SCA, DAST, IaC scanning, container security, API security testing, software supply chain security, and runtime protection technologies. * Experience securing AI-enabled applications and advising development teams on AI/LLM security best practices. * Experience designing security controls for AWS, Azure or any Cloud environments. * Knowledge of software supply chain security, SBOMs, dependency risk management, artifact integrity, and package governance. * Familiarity with Zero Trust architectures, policy-as-code, and secure platform engineering practices. * Previous experience serving as a Security Champion, Application Security Lead, or embedded security engineer within development teams. * Relevant certifications such as CSSLP, CISSP, CCSP, GIAC GWEB, or GIAC GWAPT. ## Description * We are seeking an experienced Application Security Engineer with strong expertise in Threat Modeling, Secure Architecture Reviews, and AI/LLM Security. This role will focus on conducting and automating application threat modeling processes, partnering with engineering teams to identify security risks early in the software development lifecycle, and implementing scalable security solutions for modern cloud-native and AI-enabled applications., * Conduct application threat modeling and architecture risk assessments. * Analyze application designs, data flows, and trust boundaries to identify security risks. * Develop and implement automated threat modeling capabilities and scalable security solutions. * Partner with engineering teams to embed security throughout the software development lifecycle. * Provide guidance on secure design, secure coding practices, and remediation strategies. * Evaluate and secure AI/LLM-based applications and services. * Support the implementation of application security controls across cloud-native environments. * Collaborate with stakeholders to establish security standards, patterns, and reference architectures. * Drive security improvements through automation, tooling, and developer enablement initiatives. ## Related Videos - [The AI Security Survival Guide: Practical Advice for Stressed-Out Developers](https://www.wearedevelopers.com/videos/1015-the-ai-security-survival-guide-practical-advice-for-stressed-out-developers) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Stop using Node.js like in 2020! What changed and what you can do today with Node.js](https://www.wearedevelopers.com/videos/100011-stop-using-node-js-like-in-2020-what-changed-and-what-you-can-do-today-with-node-js) - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) - [Stop Using Node.js Like It’s 2020! - Alfonso Graziano](https://www.wearedevelopers.com/videos/1863-stop-using-node-js-like-it-s-2020-alfonso-graziano) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)