Application Security Engineer ensuring security is integral to AI product development. Collaborating with engineers on securing code and overseeing vulnerability management.
Responsibilities
Help secure AI products and internal tools that are introducing industry-novel security risks and pushing established security boundaries
Lead “shift left” security efforts to build security into the software development lifecycle.
Conduct secure design reviews and threat modeling. Identify and prioritize risks, attack surfaces, and vulnerabilities.
Develop tooling to scale security code reviews and respond to developer questions, including advising developers on remediating vulnerabilities and following secure coding practices.
Manage Anthropic's vulnerability management program, including integrating data ingestion pipelines, coding logic to prioritize vulnerability fixes, supporting teams remediating vulnerabilities and developing automated systems at scale.
Oversee Anthropic's bug bounty program. Set scope, validate submissions, perform root cause analysis, coordinate remediation with engineering teams, and award bounties. Cultivate relationships with the ethical hacker community.
Collaborate closely with product engineers and researchers to instill security best practices. Advocate for secure architecture, design, and development.
Develop and document security policies, standards, and playbooks. Conduct security awareness training for engineers.
Requirements
5+ years of hands-on experience in application and infrastructure security
Strong proficiency in at least one programming language (e.g., Python, Rust, Go, Java)
Lead with empathy, a collaborative spirit, and a learning mindset to work cross-functionally with engineers of all levels to build security into the software development life cycle
Leverage creative and strategic thinking to reduce risk through secure design and simplicity, not just controls
Possess broad security knowledge to connect the dots across domains and identify holistic ways to decrease the overall threat surface
Are keen to distill complex security concepts into clear actions and drive consensus without direct authority
Embody a proactive mindset to thread security throughout the product lifecycle through activities like threat modeling, secure code review, and education
Have a strong grasp of offensive security to anticipate risks from an adversary's perspective, not just check compliance boxes
Bring experience with modern application stacks, infrastructure, and security tools to implement pragmatic defenses
Are practiced at collaborating cross-functionally and effectively balancing security requirements with business objectives
Advocate for security fundamentals like least privilege, defense-in-depth, and eliminating complexity that could sub-linearly scale security through smart design.
Application Engineer delivering solutions to customers in the semi/display industry. Leading execution teams and applying customer technologies in Tainan and Hsinchu, Taiwan.
Sales Application Engineer preparing commercial proposals and technical specifications for solar PV and battery energy storage systems. Collaborating with clients and vendors to define integrated solutions.
Experienced Hardware Applications Engineer at Cirrus Logic driving audio technologies for laptops and desktops. Collaborating with industry customers on technical design and integration efforts.
Application Engineering Manager at MPS leading DDR5 SPD Hub validation and characterization. Develop and prototype solutions for Data Center applications with a focus on PCB design and digital logic.
Application Engineer at Monolithic Power Systems validating DDR5 SPD Hub logic and prototypes for Data Center applications. Collaborating with multi - disciplinary teams to drive and design key DP Hub aspects.
Technical Applications Engineer at GE Vernova handling Substation Protection and Control Solutions. Collaborating with regional teams to improve customer satisfaction and technical offerings.
Senior Application Security Engineer responsible for securing applications throughout the software development lifecycle. Joining a growing security team at e.l.f. Beauty to implement security best practices.
Senior Application Engineer responsible for delivering engineering solutions for Navy Federal. Collaborating on multi - disciplinary initiatives focusing on cloud technologies and system integration.
Field Application Engineer developing innovative LiDAR solutions for various applications at Blickfeld. Responsible for customer engagement and project execution in a high - tech environment.