Senior Application Security Engineer (Remote)

4 hours, 47 minutes ago
Full-time
Senior
Cybersecurity
Brex

Brex

Brex is an AI-powered spend platform that offers integrated corporate cards, expenses, travel, and payments in over 100 countries. With a unified platform for corporate cards, expense management, reimbursements, travel, business accounts, and bill pay,...

Diversified Financial Services
1K-5K
Founded 2017
$1800M raised

Description

  • Identify vulnerabilities across the Brex platform and articulate their business impact to drive prioritization.
  • Perform penetration testing and design reviews to uncover insecure designs and security weaknesses.
  • Partner with engineering and product teams to design secure product features.
  • Build and maintain internal tooling to automate security efforts and improve secure developer workflows.
  • Run static and dynamic application security testing across the Brex platform.
  • Support secure development practices across the broader engineering organization.
  • Collaborate closely with Security Operations, GRC, Product Security, Front End Platform, and IT Infrastructure teams.
  • Provide technical leadership, learning sessions, and mentorship to strengthen security culture.
  • Help secure AI and agentic product features by identifying attack vectors and working with product and engineering teams.

Requirements

  • 5+ years of work experience in an Application Security or related role.
  • Demonstrated ability to find vulnerabilities in complex systems and show business impact through custom attack chains.
  • Experience with secure development activities such as threat modeling, developer education, and incident response.
  • Knowledge of Python, scripting languages, and AI/agentic workflows to automate tasks and build tools.
  • Strong written and verbal communication skills with a collaborative mindset.
  • Proficiency with Kotlin, gRPC, GraphQL, and Kubernetes is preferred.
  • Previous experience as a software engineer is preferred.
  • Consultancy experience performing web application security reviews is preferred.
  • Experience securing distributed systems in AWS and cloud environments is preferred.
  • Experience pentesting and securing agentic features and systems is preferred.
  • Experience contributing to the technical community through open source, research, mentorship, blogging, CVEs, presentations, or community organizing is preferred.
  • Experience submitting to bug bounty programs or responsible disclosure programs is preferred.

Benefits

  • Expected salary range of $192,000 to $240,000.
  • Equity and other forms of compensation may be included in the total compensation package.
  • Opportunity to work on high-impact security challenges across a leading finance platform.
  • Exposure to cross-functional collaboration with multiple engineering and security teams.
  • Opportunity to influence and secure Brex’s AI-driven product future.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into its open source software delivery and cloud-native product stack, with ownership of secure pipelines, product hardening, and security architecture across the company.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
4 hours, 32 minutes ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into its cloud-native product and delivery pipelines, helping protect hardened open source builds from development through production.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
4 hours, 32 minutes ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into the development lifecycle for cloud-native, Kubernetes-based products and strengthen the security of their open source software supply chain.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
4 hours, 32 minutes ago

Senior Security Engineer - AppSec (d/f/m)

vivenu 51-250 Media

vivenu is hiring a Senior Security Engineer for AppSec to build and scale application security across its global, multi-cloud ticketing platform for live entertainment brands.

AWS Azure CI/CD E-commerce GCP Go Penetration Testing Terraform TypeScript
5 hours, 32 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers