$110K - 150K a year
Build and deploy security controls for AI systems and web applications, automate remediation, conduct penetration testing, and integrate security into CI/CD pipelines and cloud infrastructure.
3+ years in application security or DevSecOps, experience with secure CI/CD pipelines, cloud security, infrastructure as code, container security, scripting, security frameworks, and compliance.
Description: • Build and deploy security controls across web applications, data pipelines, and AI systems. • Write automation scripts, directly remediate vulnerabilities in code and infrastructure, and conduct hands-on penetration testing and security assessments. • Technically implement security frameworks for Agentic AI systems, build guardrails for AI agents, configure model security controls, and integrate AI-specific security tooling into development workflows. • Configure security controls in CI/CD pipelines, implement secrets management and vulnerability scanning, harden cloud infrastructure deployments, and write infrastructure-as-code with built-in security and compliance. • Partner with advisory security policy team to translate requirements into working solutions, conduct hands-on security training, and provide practical implementation guidance during architectural discussions. Requirements: • 3+ years in hands-on application security, DevSecOps, or security engineering roles. • Proven experience building and configuring secure CI/CD pipelines (Jenkins, GitLab CI, GitHub Actions, Azure DevOps). • Deep proficiency with cloud security in AWS, Azure, or GCP environments. • Strong implementation experience with infrastructure as code (Terraform, CloudFormation) and container security (Docker, Kubernetes). • Strong scripting and automation skills (Python, Bash, PowerShell) for security tooling. • Versatility across web/API security, data pipeline security, microservices, and database security. • Understanding of security frameworks (NIST, ISO 27001, SOC 2) and compliance requirements (GDPR, HIPAA, PCI-DSS). • Hands-on experience deploying and configuring security scanning tools (SAST, DAST, SCA). • Excellent communication skills—ability to translate security requirements into working technical implementations. • Experience working embedded within cross-functional development teams. • Proven track record of hands-on problem-solving in fast-paced development environments. • Regular and predictable attendance. • To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. Benefits: • Competitive salary • Flexible working hours • Professional development budget • Home office setup allowance • Global team events
This job posting was last updated on 10/13/2025