Lead AppSec Engineer

4 weeks, 2 days ago
Full-time
Lead
Cybersecurity
Virtualitics

Virtualitics

Virtualitics, Inc. leverages AI for advanced analytics, enabling rapid data processing, predictive modeling, and seamless integration into workflows for smarter business decisions.

IT Services
51-250
Founded 2016
$32M raised

Description

  • Serve as the subject matter expert for secure design patterns in AI systems, including boundaries for agent autonomy, tool invocation, and prompt management.
  • Conduct threat modeling for model misuse, complex business logic flaws, prompt injection, model inversion, and data leakage.
  • Deploy a hybrid security architecture that combines deterministic validation tools with advanced AI reasoning engines to meet CMMC and IL5/IL6 compliance needs.
  • Oversee autonomous vulnerability workflows that diagnose, verify, and fix issues before human review or CI/CD integration.
  • Build review frameworks for the software supply chain and delivery mechanisms to support secure development practices.
  • Mentor development teams on secure coding within AI-supported environments.
  • Act as a trusted advisor to product managers and engineers and drive secure-by-design practices through hands-on integration.
  • Integrate security platforms and AI models to improve vulnerability management and reduce reliance on manual ticketing.

Requirements

  • Demonstrated technical leadership in Application Security or Security Engineering.
  • Recent hands-on experience with AI/ML technologies.
  • Deep understanding of application architecture and threat modeling.
  • Ability to evaluate code for complex business logic flaws, prompt injection, model inversion, and data leakage.
  • Proficiency with AI-native development and agentic coding tools such as Claude Code and Cursor.
  • Strong knowledge of cloud platforms including AWS, GCP, and Azure.
  • Experience with containerization technologies such as Docker and Kubernetes.
  • Experience integrating deterministic security platforms such as Wiz, Snyk, or GitHub Advanced Security with AI models.
  • Experience securing regulated environments aligned to CMMC, FedRAMP, or IL5/IL6 requirements (preferred).
  • Experience working at Series C or Series D startups (preferred).

Benefits

  • Highly competitive compensation, including a salary range of $150,000 to $220,000 per year.
  • Meaningful equity participation.
  • Fully paid medical, dental, and vision coverage for employees and dependents.
  • Unlimited PTO.
  • Flexible work arrangements.
  • Remote flexibility.
  • Hybrid options for team members based in the Los Angeles or Washington, DC areas.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Director, Product Management, Customer Security Outcomes

Zscaler 1K-5K Internet Software & Services

Zscaler is hiring a Director of Product Management for Customer Security Outcomes to lead the vision and strategy for its security operations services in a fully remote U.S. role.

Generative AI Machine Learning
1 day, 8 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into its open source software delivery and cloud-native product stack, with ownership of secure pipelines, product hardening, and security architecture across the company.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 7 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into its cloud-native product and delivery pipelines, helping protect hardened open source builds from development through production.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 7 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into the development lifecycle for cloud-native, Kubernetes-based products and strengthen the security of their open source software supply chain.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 7 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers