AI-Assisted Vulnerability Testing Developer

Stellent IT LLC
St. Augustine, United States
2 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Software System Penetration Testing Burp Suite Cloud Computing Security Code Coverage Continuous Integration Github Open Web Application Security Systems Development Life Cycle Software Engineering Systems Integration
+8 more
Software Vulnerability Management Large Language Models Software Security Devsecops Jenkins Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

We are seeking an AI-Assisted Vulnerability Testing Developer to support the advancement of next-generation application security capabilities leveraging AI-assisted frontier models and Mythos-driven dialogue frameworks. This role will focus on expanding AI-driven vulnerability testing into enterprise code pipelines, enabling scalable, automated, and intelligent security validation across the software development lifecycle., * Collaborate with security and engineering teams to evaluate and implement AI-assisted vulnerability testing solutions

  • Identify and assess viable tools and integrations, including:
  • AWS Security tools (static and penetration testing capabilities)
  • Burp Suite (manual and dynamic testing coverage)
  • Snyk (vulnerability analysis, reachability testing)
  • GitHub Actions / GitHub Advanced Security
  • Design and execute Proof of Concept (POC) efforts to validate AI-assisted testing approaches
  • Enable and configure selected solutions within development and CI/CD environments
  • Drive the transition from POC to production-ready implementation
  • Define and establish governance frameworks, including:
  • Training and enablement plans
  • Documentation and standards
  • Security scope and coverage
  • Support go-live execution, ensuring successful adoption across engineering pipelines
  • Develop a 2027 roadmap for pipeline integration, including scope definition and implementation planning
  • Assist with post-POC scaling and optimization efforts, ensuring long-term sustainability
  • Support licensing strategy, token usage, and funding considerations for AI-enabled security tools

Requirements

  • 5+ years of experience in application security, DevSecOps, or secure software development
  • Hands-on experience with:
  • Application security testing tools (SAST, DAST, SCA)
  • CI/CD pipeline integrations (e.g., GitHub Actions, Jenkins, etc.)
  • Familiarity with AI/ML-assisted development or security tools, including large language model (LLM)-driven workflows
  • Experience working with cloud security tools, preferably within AWS environments
  • Strong understanding of:
  • Application security principles (OWASP Top 10, vulnerability management)
  • Software development lifecycle (SDLC)
  • Ability to translate security findings into practical engineering solutions, Experience with:
  • AI frameworks or LLM-integrated security workflows
  • Snyk, Burp Suite, or similar tools
  • GitHub Advanced Security
  • Exposure to enterprise security governance and compliance frameworks
  • Experience supporting POC-to-production transitions in security or DevSecOps initiatives
  • Knowledge of AI cost modeling, token usage optimization, or tooling licensing strategies Soft Skills
  • Strong problem-solving mindset with ability to evaluate emerging technologies
  • Excellent collaboration skills across engineering, security, and leadership teams
  • Ability to operate with high ownership in ambiguous, evolving environments
  • Effective communicator capable of driving technical alignment and adoption

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Assisting security analysis using AI code review tools

Matteo Meucci Matteo Meucci · Europe 2026 Virtual

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

1:02 min

Applying an ETL methodology to infrastructure configuration management

Axel Barbier · World Congress 2023

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:17 min

Evaluating security vulnerabilities and user experience

Julian Richter Julian Richter · World Congress 2025

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all