Summary
As a Staff Application Security Engineer, the full-time position will own the technical strategy to secure critical attack surfaces, lead architecture reviews, and design AI agents to enhance the secure software development lifecycle, with a hybrid work arrangement based in New York.Key responsibilities:Own and evolve the Gemini Secure Software Development Lifecycle guardrails as an application security subject matter expertLead architecture reviews, threat modeling, code reviews, and penetration testing for high-risk applications and servicesDesign and build AI agents throughout the SDLC for automated threat modeling and secure code generationRequired qualifications:Proven ability to perform design reviews, threat modeling, secure code reviews, and penetration testing with an attacker mindsetStrong background in application security best practices and familiarity with common vulnerabilitiesDeep code review proficiency in Scala, Java, Go, or other common languages, with hands-on experience in Python or GoExperience implementing custom detection and prevention application security controls beyond OWASP Top 10Typically 7-10+ years of experience in application security, product security, or similar roles
Job Description
As a Staff Application Security Engineer, the full-time position will own the technical strategy to secure critical attack surfaces, lead architecture reviews, and design AI agents to enhance the secure software development lifecycle, with a hybrid work arrangement based in New York.Key responsibilities:Own and evolve the Gemini Secure Software Development Lifecycle guardrails as an application security subject matter expertLead architecture reviews, threat modeling, code reviews, and penetration testing for high-risk applications and servicesDesign and build AI agents throughout the SDLC for automated threat modeling and secure code generationRequired qualifications:Proven ability to perform design reviews, threat modeling, secure code reviews, and penetration testing with an attacker mindsetStrong background in application security best practices and familiarity with common vulnerabilitiesDeep code review proficiency in Scala, Java, Go, or other common languages, with hands-on experience in Python or GoExperience implementing custom detection and prevention application security controls beyond OWASP Top 10Typically 7-10+ years of experience in application security, product security, or similar roles
Government Careers
Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.
Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.
Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.
MORE JOBS
-
Administrative Law Judge - Impactful State Service
- Indianapolis, Indiana
- State of Indiana
- Aug 14, 2026
-
Marine Lot Specialist: Organize, Move & Prep Boats
- Clearwater, Florida
- OneWater Marine
- Aug 14, 2026
-
Senior Threat Hunter (45)
- all cities, Utah
- Virtual Vocations
- Aug 14, 2026
-
Strategic Budget Analyst for Government Programs
- Aberdeen, Maryland
- MAG Aerospace
- Aug 14, 2026
-
Account Engineer - Public Sector (3)
- all cities, Arkansas
- Virtual Vocations
- Aug 14, 2026
-
Lead AI Security Engineer (39)
- all cities, Pennsylvania
- FM Corporation
- Aug 14, 2026