HighLevel

HighLevel

HighLevel provides an all-in-one sales and marketing platform that agencies can white label and resell, offering tools and resources designed to help businesses consolidate their marketing efforts and achieve their growth objectives.

Internet Software & Services
251-1K
Founded 2018
$60M raised

Description

  • Lead application security initiatives across HighLevel’s products and engineering teams.
  • Embed security standards and secure SDLC practices into development workflows.
  • Conduct architecture reviews, secure design assessments, and threat modeling for new features and platforms.
  • Perform security assessments for web, mobile, and API-based applications.
  • Partner with developers to identify, prioritize, and remediate security vulnerabilities.
  • Lead security reviews for AI/LLM-powered applications, agents, and integrations.
  • Develop guardrails for AI systems to address prompt injection, data leakage, insecure tool usage, model abuse, and emerging attacks.
  • Improve security tooling and automate security testing in CI/CD pipelines.
  • Champion secure coding practices through documentation, training, and developer enablement.
  • Mentor engineers and communicate security risks to technical and non-technical stakeholders.

Requirements

  • 8+ years of experience in cybersecurity, with deep expertise in application security and engineering-focused security initiatives.
  • Experience securing web, mobile (Android/iOS), and API (REST/GraphQL) environments.
  • Knowledge of OWASP standards and authentication protocols including OAuth 2.0, OIDC, JWT, and SAML.
  • Experience with threat modeling, secure design/code reviews, penetration testing, and architecture reviews.
  • Hands-on DevSecOps experience automating security in CI/CD pipelines.
  • Experience with container security in Kubernetes and Docker.
  • Experience managing security tooling such as SAST, DAST, SCA, and secret scanning.
  • Specialized expertise in AI/LLM security, including prompt injection, data leakage, model misuse, and insecure agent/tool integration.
  • Proficiency in Python, Go, JavaScript, or Bash.
  • Preferred: experience securing workloads on Google Cloud Platform (GCP), Terraform security, CSPM/CNAPP solutions, red teaming, security certifications such as CEH, OSCP, GWAPT, CISSP, or GCP Professional Cloud Security Engineer, and contributions to open-source security, bug bounty, or security research.

Benefits

  • Remote-first global work environment.
  • Opportunity to work on a platform serving over 1 million businesses.
  • Work across a large-scale engineering environment with complex systems and AI capabilities.
  • Equal Opportunity Employer status.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Engineer

GoDaddy 5001-10000 Technology, Information and Internet

GoDaddy is hiring a remote Security Engineer in India to help identify security risks and embed secure development practices across products, platforms, cloud environments, and AI-enabled services.

AWS Azure CI/CD Go Java Network Security Penetration Testing Python
3 hours, 11 minutes ago

Senior Cybersecurity Engineer / RMF Specialist

Dark Wolf Solutions 51-250 Internet Software & Services

Dark Wolf Solutions is seeking a Senior Cybersecurity Engineer/RMF Specialist to lead security authorization, risk assessment, and compliance activities for systems supporting sensitive government and critical-infrastructure missions.

Cybersecurity
3 hours, 25 minutes ago

Information Systems Security Manager

Dark Wolf Solutions 51-250 Internet Software & Services

Dark Wolf is seeking an Information System Security Manager to support the Air Force Life Cycle Management Center in obtaining and maintaining an Authority to Operate for a classified cloud environment.

Ansible Azure CrowdStrike Cybersecurity ELK Stack GitHub Splunk Terraform
3 hours, 26 minutes ago

Quantum Computing / Cryptography Engineer

MKS2 Technologies 51-250 Internet Software & Services

MKS2 Technologies is seeking a remote Quantum Computing / Cryptography Engineer to support a federal program by advancing cryptographic modernization, quantum readiness, and post-quantum security migration planning.

C++ Cybersecurity Encryption Java Python
1 day, 2 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers