Zeta Global

Zeta Global

Zeta Global provides an AI-powered marketing cloud that enables enterprises to acquire, grow, and retain customers through precision marketing, leveraging data science, advanced analytics, and machine learning to create optimized customer experiences.

Media
1K-5K
Founded 2007

Description

  • Use AI-assisted threat modeling to identify application, platform, API, cloud, data, and AI/ML security risks early in the development lifecycle.
  • Leverage automated security review tools to assess architecture, design documents, code changes, APIs, and data flows for security gaps.
  • Drive AI-assisted code security reviews using SAST, DAST, SCA, secrets detection, IaC scanning, container scanning, and contextual risk analysis.
  • Evaluate third-party libraries, APIs, vendor integrations, and open-source dependencies for security, compliance, and supply-chain risk.
  • Support AI-enabled red team, blue team, and incident response simulations to validate detection, prevention, and response capabilities.
  • Partner with developers and QA engineers to embed security testing and automated risk detection into CI/CD pipelines.
  • Build and improve security automation that provides real-time feedback during design, coding, testing, release, and deployment.
  • Help design scalable guardrails, reusable security controls, and policy-as-code capabilities across application and platform teams.
  • Monitor evolving threats and evaluate AI-specific risks such as prompt injection, data poisoning, model abuse, model leakage, insecure tool use, and sensitive data exposure.
  • Promote secure coding and secure design practices through reusable playbooks, automated recommendations, and developer-friendly documentation.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
  • 5+ years of experience in Application Security, DevSecOps, Secure Software Development, or Security Engineering.
  • Strong understanding of OWASP Top 10, SANS CWE Top 25, secure design principles, and application threat modeling.
  • Familiarity with AI/ML security concepts such as prompt injection, data poisoning, adversarial testing, model integrity, model abuse, and AI supply-chain risks.
  • Experience building or integrating AI-assisted security workflows, security bots, automated triage systems, or risk scoring models.
  • Experience using AI-assisted or automation-driven approaches to improve security testing, vulnerability analysis, code review, or risk prioritization.
  • Experience with modern application frameworks and architectures such as React, Node.js, Django, FastAPI, or similar technologies.
  • Knowledge of securing APIs, microservices, authentication, and authorization mechanisms such as OAuth2, OIDC, JWT, and service-to-service authentication.
  • Experience with cloud platforms such as AWS, GCP, or Azure, and containerized environments such as Docker and Kubernetes.
  • Working knowledge of security testing and automation tools such as Semgrep, SonarQube, Burp Suite, OWASP ZAP, Trivy, Snyk, GitHub Advanced Security, or similar tools.
  • Ability to analyze security findings, correlate risk context, and drive practical remediation guidance for engineering teams.
  • Strong collaboration and communication skills with the ability to work across Engineering, Product, QA, DevOps, and Security teams.
  • Preferred: Experience with policy-as-code, infrastructure-as-code security, CI/CD security controls, and automated governance.
  • Preferred: Experience with automation frameworks and scripting for security testing, vulnerability validation, and remediation workflows.
  • Preferred: Relevant certifications such as OSCP, GWAPT, CSSLP, cloud security certifications, or AI/ML-specific security certifications.

Benefits

  • Unlimited PTO.
  • Excellent medical, dental, and vision coverage.
  • Employee equity.
  • Employee discounts.
  • Virtual wellness classes.
  • Pet insurance.
  • Salary range of $140,000 to $180,000 depending on location and experience.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Application Security Engineer

Vannevar Labs 11-50 Aerospace & Defense

Vannevar is hiring an Application Security Engineer to secure its defense-focused SaaS platform by embedding application security practices throughout the software development lifecycle.

CI/CD DevSecOps GitHub Actions JavaScript Python TypeScript
8 hours, 20 minutes ago

Senior Implementation Engineer - DevOps & Application Security

Workana 1K-5K Internet Software & Services

Endor Labs is seeking a Technical Implementation Engineer in Panama to lead customers through integrating and adopting its application security platform across their development environments.

CI/CD DevSecOps Gradle Maven
1 day, 9 hours ago

Senior Manager, Product Security

Tines 51-250 Construction & Engineering

Tines is seeking a Senior Manager, Product Security to lead and scale its product security program for cloud-native, AI-forward products while partnering with engineering and product leaders to manage risk and support growth.

AWS CI/CD DevSecOps Docker Kubernetes Penetration Testing Ruby Rust TypeScript
4 days, 8 hours ago

Application Security Engineer

Glean 11-50 Internet Software & Services

Glean is hiring a remote Application Security Engineer to lead vulnerability management and strengthen software supply-chain security across its Work AI platform.

AWS Burp Suite CI/CD Cybersecurity GCP Kubernetes Microservices
4 days, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers