Summary
As a Staff Application Security Engineer, the full-time position will own the technical strategy to secure critical attack surfaces, lead architecture reviews, and design AI agents to enhance the secure software development lifecycle, with a hybrid work arrangement based in New York.Key responsibilities:Own and evolve the Gemini Secure Software Development Lifecycle guardrails as an application security subject matter expertLead architecture reviews, threat modeling, code reviews, and penetration testing for high-risk applications and servicesDesign and build AI agents throughout the SDLC for automated threat modeling and secure code generationRequired qualifications:Proven ability to perform design reviews, threat modeling, secure code reviews, and penetration testing with an attacker mindsetStrong background in application security best practices and familiarity with common vulnerabilitiesDeep code review proficiency in Scala, Java, Go, or other common languages, with hands-on experience in Python or GoExperience implementing custom detection and prevention application security controls beyond OWASP Top 10Typically 7-10+ years of experience in application security, product security, or similar roles
Job Description
As a Staff Application Security Engineer, the full-time position will own the technical strategy to secure critical attack surfaces, lead architecture reviews, and design AI agents to enhance the secure software development lifecycle, with a hybrid work arrangement based in New York.Key responsibilities:Own and evolve the Gemini Secure Software Development Lifecycle guardrails as an application security subject matter expertLead architecture reviews, threat modeling, code reviews, and penetration testing for high-risk applications and servicesDesign and build AI agents throughout the SDLC for automated threat modeling and secure code generationRequired qualifications:Proven ability to perform design reviews, threat modeling, secure code reviews, and penetration testing with an attacker mindsetStrong background in application security best practices and familiarity with common vulnerabilitiesDeep code review proficiency in Scala, Java, Go, or other common languages, with hands-on experience in Python or GoExperience implementing custom detection and prevention application security controls beyond OWASP Top 10Typically 7-10+ years of experience in application security, product security, or similar roles
Government Careers
Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.
Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.
Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.
MORE JOBS
-
Advocacy Consultant (32)
- all cities, New Jersey
- Virtual Vocations
- Aug 14, 2026
-
Marine Fitout Technician - Cabins & Interiors
- Mobile, Alabama
- Austal
- Aug 14, 2026
-
Acquisition Specialist/Technical Writer (2) Top Secret Clearance required
- Washington, DC
- Kalman and Company
- Aug 14, 2026
-
Senior Security Control Assessor
- Shepherdstown, West Virginia
- Serco Inc.
- Aug 14, 2026
-
Principal EVMS Analyst (11)
- all cities, Georgia
- Virtual Vocations
- Aug 14, 2026
-
Mission-Driven Careers for Veterans & Military Spouses
- El Paso, Texas
- Forward March
- Aug 14, 2026