Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

AI Application Security Engineer

Brainco

About Brain Co.

Brain Co. is an applied AI startup co-founded by Jared Kushner and Elad Gil, and backed by leading Silicon Valley builders including Patrick Collison and Andrej Karpathy. We are building AI applications for the world's most important institutions, delivering impact on real-world problems across governments, healthcare systems, and critical industries. Our progress so far:
  • Automated construction permitting for a sovereign government → 80% faster, unlocking $375M+ in value
  • Optimized supply chains for a leading global energy company → 30% lower cost, 99% reliability, preventing $100M+ in losses
  • Streamlined hospital patient care across national health systems → 40% better outcomes, 80% less admin work
Company momentum:
  • Raised a $55M Series A from leading investors
  • Built a team of 70+ AI experts from Tesla, Google DeepMind, NVIDIA, and Databricks
About the Role

As our Security Engineer, Application & AI, you will own the security of our products and application layer - secure development practices, agent security, third-party integration security, and data protection for AI products operating in some of the world's most regulated and sensitive environments.

This is a hands-on builder role. You will write code, ship security tooling, and work directly with product and ML engineers to build security in from the start rather than bolt it on after. You are expected to work AI-natively: using AI to write threat models, automate security review, scale code analysis, and build internal tooling. This is not a nice-to-have - it is how the role is designed to operate and how one person can have outsized impact across a fast-moving engineering organization.

Brain Co.'s products are built on agentic infrastructure - AI that takes actions, calls tools, and operates inside complex institutional workflows. The degree varies by product, but the underlying security surface is consistent: how agents are authorized, what they can touch, and how that is controlled at the application layer. This role is specifically designed to address that surface, working alongside the Infrastructure Security Engineer who owns the platform layer underneath.

What You'll Work On

Application Security
  • Own secure development practices across our products: AuthN/AuthZ patterns, secrets management, input handling, and secure-by-default standards that engineers can follow without security becoming a bottleneck.
  • Integrate security into the development lifecycle - code review, CI/CD pipelines, and pre-deployment checks - catching risk before it reaches production.
  • Conduct threat modeling across product features and release cycles, translating risk into concrete controls that ship alongside each product.
  • Build and maintain security tooling and automated checks that scale your reach across the codebase - using AI to move faster and cover more ground than manual review alone could.
Agent & Integration Security
  • Own the application-layer security model for Brain Co.'s agentic products - how agents are scoped, what they are authorized to do on behalf of users, and where trust boundaries sit between the agent and the external systems it touches.
  • Define secure patterns for how agents integrate with third-party systems and APIs: how credentials are stored and scoped, how responses are validated before being acted on, and how each product limits what agents can do with what they get back.
  • Work directly with product and ML engineers during feature development to define secure agent design patterns: tool scoping, permission boundaries, output validation, and safe handling of user context across multi-step workflows.
  • Build reusable secure-by-default patterns for agent development - design guidelines, review checklists, and code-level guardrails - so that security standards scale as new agent capabilities are built.
  • Produce security artifacts for agent features and product deployments: threat models, architecture reviews, and documentation that supports delivery into regulated customer environments.
Data Protection
  • Define and enforce data protection standards at the application layer - ensuring sensitive customer data (PHI, PII, government records) is handled correctly as it flows through AI pipelines and surfaces in agent outputs.
  • Build safeguards against unauthorized data exposure across our products: access controls, output filtering, and audit logging that make data handling attributable and reviewable.
  • Design secure data handling patterns for AI features operating on regulated data, working with platform and ML teams to ensure the application layer upholds its share of the data protection contract.
You Might Be a Great Fit If You...
  • Have 5+ years of experience in application security or product security, with hands-on experience on production systems at scale.
  • Are a builder first - you write code and ship security tooling, and see embedding security into the engineering workflow as the job, not a side effect of it.
  • Have deep fluency in application security fundamentals: OWASP Top 10, AuthN/AuthZ, secure SDLC, secrets management, secure integration patterns, and cryptography basics.
  • Understand the security surface of agentic AI across the product layer - how agents should be designed, scoped, and reviewed for risk - and can work shoulder-to-shoulder with engineers to build those standards in.
  • Have experience protecting sensitive data at the application layer: access controls, audit logging, and preventing data exposure through third-party integrations and AI-generated outputs.
  • Work AI-natively - you already use AI to write better code, move faster, and do more with less, and you bring that same instinct to security work.
  • Think in attack surfaces and trust boundaries and can move cleanly from threat model to concrete shipped control.
  • Are comfortable working alongside delivery teams shipping into regulated industries, understanding their constraints and translating them into product-level security requirements.
  • Thrive in high-agency environments and want to own and grow the application security function as the company scales.
Bonus Points For
  • Experience with agent security, LLM application security, or building authorization and guardrail systems for agentic pipelines.
  • Familiarity with compliance frameworks relevant to government and healthcare: FedRAMP, HIPAA, SOC 2, ISO 27001.
  • Proficiency in Python, Go, or TypeScript for security tooling and automation.
  • Experience with SAST/DAST tooling or integrating automated security checks into developer workflows at scale.
Why Join Us
  • Define what application and AI security looks like at a company building frontier AI for governments, hospitals, and critical industries - from the ground up.
  • Work directly alongside product and ML teams shipping agentic AI into some of the world's most demanding institutional environments.
  • Build the security function AI-natively - using the same technology you're helping secure to scale your own work and impact.
  • Work alongside senior engineers from Tesla, DeepMind, Databricks, and other top engineering organizations.
  • Ship fast, learn constantly, and see your work protect production systems used by millions of people.
  • Earn competitive compensation and meaningful equity in a high-growth company.
Benefits
  • Competitive salary plus equity
  • Daily lunches
  • Commuter benefits
  • 401(k)
  • Medical, Dental, and Vision
  • Unlimited PTO
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the AI Application Security Engineer in San Francisco, CA vacancy
  • $213k

     ...Senior Application Security Engineer Remote, USA; San Francisco, CA, USA About the Role We are looking for a Sr. Full Stack Application Security...  ...communication, and session/token handling Leverage AI to accelerate security workflows (e.g., code review support... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Night shift

    Chime

    San Francisco, CA
    16 days ago
  • $160k - $240k

     ...About Zip Zip is the AI platform for enterprise procurement - built for humans...  ...the help of AI agents, companies can secure the resources they need to innovate...  ...of our customers' data. As our first Application Security Engineer , you will take on a dynamic and high... 
    Suggested
    Home office
    Flexible hours

    ZIP

    San Francisco, CA
    4 days ago
  •  ...Senior Security Engineer – Secure Code Review San Francisco, California On-site | Full-Time...  ...Senior Security Engineer to join their Application Security practice. This role is ideal for...  ...architectural recommendations Use AI-assisted code analysis tools to accelerate... 
    Suggested
    Full time

    AGS INC

    San Francisco, CA
    3 days ago
  • $192k - $240k

     ...Engineering at Brex Engineering at Brex is about building systems that...  ...Our teams span Software, Data, Security, and IT, and operate with...  .... What you’ll do As a Senior Application Security Engineer, you will focus...  ...pioneering the next wave of AI-driven financial services for... 
    Suggested
    Work experience placement

    GrabJobs

    San Francisco, CA
    2 days ago
  • $185k - $260k

     ...Application Security Engineer Mountain View, CA About Glean: Glean is the Work AI platform that helps everyone work smarter with AI. What began as the industry's most advanced enterprise search has evolved into a full-scale Work AI ecosystem, powering intelligent Search... 
    Suggested
    Work at office
    Flexible hours

    Glean.info

    San Francisco, CA
    2 days ago
  • $200k - $340k

     ...Application Security Engineer Palo Alto, CA About XAI XAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This... 
    Temporary work

    Xai

    San Francisco, CA
    1 day ago
  •  ...worldwide, using cutting-edge technology. The flagship product-an AI-driven, non-invasive cardiac test supported by the ACC/AHA...  ...500,000 patients worldwide. We are looking for an Application Security Engineer to work with our engineering team to ensure security is an... 
    Work at office
    Local area
    Worldwide
    Relocation
    3 days per week

    HeartFlow

    San Francisco, CA
    1 day ago
  •  ...About Opal Security: At Opal, we're building modern identity governance for the AI era-intelligent access management that empowers...  ...Role: Most security engineers spend their careers bolting...  ...that job. We're hiring an Application Security Engineer to own security... 

    Opal Services

    San Francisco, CA
    6 hours ago
  • $180k - $220k

     ...Senior Application Security Engineer, AI and Machine Learning San Francisco, California, United States; Seattle, Washington, United States Who We Are Lightning AI is the company behind PyTorch Lightning. Founded in 2019, we build an end-to-end platform for developing... 
    Work at office
    Work from home
    Flexible hours
    2 days per week

    Lightning AI

    San Francisco, CA
    4 days ago
  • $146k - $175k

     ...Senior Application Security Engineer, Ai & Product Security Artera is seeking a hands-on Senior Application Security Engineer, AI & Product Security to work alongside our AI builders and Systems Engineers to threat-model agentic and LLM-powered features, harden PHI/... 
    Temporary work
    Summer work
    Summer holiday
    Currently hiring
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours
    Shift work
    3 days per week

    Artera Corporation

    San Francisco, CA
    2 days ago
  • $230k - $280k

     ...Notion is the collaborative AI workspace where teams and agents...  ...depend on us to deliver a secure and trustworthy experience, and...  ...to the future. The Notion application is flexible, powerful and always...  ...is looking for security engineers that have a passion for securing... 
    Full time
    Local area
    Remote work
    Flexible hours

    Notion Labs, Inc

    San Francisco, CA
    4 days ago
  • $225k - $400k

     ...About Ivo Ivo is an AI-powered contract intelligence platform built for in-house legal teams. Contracts are the foundation...  .... The Role We're hiring our first dedicated Lead Application Security Engineer to own the security of the Ivo platform end to end. You'll... 
    Contract work
    Work at office
    Visa sponsorship
    Relocation package

    IVO Inc

    San Francisco, CA
    3 days ago
  • $170k - $190k

     ...Ironclad is the leading AI contracting platform that transforms agreements into assets. Contracts move faster, insights...  ...team or company events. Ironclad is seeking a skilled Application Security Engineer with a passion for securing modern software platforms and... 
    Full time
    Contract work
    Work at office

    Ironclad Inc

    San Francisco, CA
    1 day ago
  • $325k - $405k

    A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience... 
    Remote job

    OpenAI

    San Francisco, CA
    3 days ago
  • $231.9k - $318.25k

     ...with business data, and meets the highest standards of security and governance. AI is redefining what it means to build software—and who...  ...program have grown with it. We’re looking for an Application Security Engineer who combines deep security fundamentals with real engineering... 
    Shift work

    Retool, Inc.

    San Francisco, CA
    2 days ago
  • About the company Braintrust is the AI observability platform. By connecting evals and observability in one workflow, Braintrust...  ...with every release. About the role We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-... 
    Flexible hours

    Braintrust

    San Francisco, CA
    3 days ago
  • Braintrust, based in San Francisco, is seeking an Application Security Engineer to ensure security in their high-availability data platform. This role...  ...reviewing code, leading security initiatives related to AI models, and managing vulnerabilities. The ideal candidate has... 
    Flexible hours

    Braintrust

    San Francisco, CA
    3 days ago
  • $230k - $255k

     ...Location Type Hybrid Department Security About Us: Notion helps you...  ...projects, calendar, and email—with AI built in to find answers and...  ...to the future. The Notion application is flexible, powerful and...  ...Notion is looking for security engineers that have a passion for making... 
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours

    Monograph

    San Francisco, CA
    1 day ago
  •  ...understanding in healthcare. Our AI-powered platform was purpose-...  ..., technologists, and engineers working together to empower people...  ...Want to work on building out security from the ground up at the...  ...highly motivated Senior or Staff Application Security Engineer to join our... 
    Hourly pay
    Full time
    Flexible hours

    Abridge

    San Francisco, CA
    2 days ago
  • $220k - $350k

     ...everyone safe, we encourage all applicants to pay close attention to...  ...be ignored and considered a security risk. About Us Quanata...  ...technology innovation company that engineers advanced risk prediction and...  ..., digital & increasingly AI-native insurance platform. This... 
    Remote job
    Extra income
    Local area
    Work from home
    Home office
    Flexible hours

    Quanata

    San Francisco, CA
    6 days ago
  • A leading AI development company in New York seeks an experienced Application Security Engineer. You will own the application security domain, embedding security in the development lifecycle, integrating tools into CI/CD, and managing vulnerabilities. The ideal candidate... 

    Mercor

    San Francisco, CA
    5 days ago
  •  ...journey towards that vision. As Binti's first Principal Security Engineer (Applications focused), reporting to our CTO, you will play a critical...  ...lifecycle, with an eye toward automation, including effective AI tools Share Expertise: Stay up to date on the latest... 
    Work at office
    Flexible hours

    Binti Inc

    San Francisco, CA
    1 day ago
  • $231.9k - $318.25k

    A company focused on application security is looking for an Application Security Engineer. This role involves identifying systemic security gaps and developing durable solutions within a fast-paced environment. The ideal candidate has 5+ years in application security,... 

    Retool, Inc.

    San Francisco, CA
    4 days ago
  • B Capital is looking for a Security Engineer in San Francisco. In this hybrid role, you'll help secure AI systems for recognizable brands. Responsibilities include threat...  ...should have over 4 years of experience in application security, with knowledge of programming... 

    B Capital

    San Francisco, CA
    5 days ago
  • Braintrust Data, Inc. is hiring an Application Security Engineer in San Francisco. This hands-on role requires a keen focus on secure coding practices...  ..., and Go. Candidates should have a clear understanding of AI/LLM security and experience with high-availability data... 
    Flexible hours

    Braintrust Data, Inc.

    San Francisco, CA
    1 day ago
  • $205k - $275k

     ...Application Security Engineer Opportunity We're hiring an Application Security Engineer to work hands-on with our engineering teams to find and...  ...security design reviews for new features and services. Use AI to automate tooling like SAST, DAST, SCA, secret scanning,... 
    Home office
    Flexible hours

    AKASA

    South San Francisco, CA
    1 day ago
  • $205k - $275k

     ...AKASA, our mission is to build the future of healthcare with AI. As the leading provider of generative AI solutions for the...  ...reality. The opportunity We're looking for a seasoned Application Security Engineer who brings the credibility of a software engineering background... 
    Work at office
    Home office
    Flexible hours
    2 days per week

    AKASA

    South San Francisco, CA
    4 days ago
  •  ...Senior Application Security Engineer Imprint is reimagining co-branded credit cards & financial products to be smarter, more rewarding, and truly brand-first. We partner with companies like Crate & Barrel, Rakuten, Booking.com, H-E-B, Fetch, and Brooks Brothers to launch... 
    Remote work
    Flexible hours
    Shift work
    3 days per week

    Imprint.com

    San Francisco, CA
    1 day ago
  •  ...Application Security Engineer The Application Security Engineer will be responsible for analyzing software code repositories, code designs, processes, and implementation from a security perspective, and work with software development and infrastructure teams to identify... 

    Central Business Solutions

    San Francisco, CA
    1 day ago
  • $27 per hour

     ...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout... 
    Contract work
    Remote work
    Flexible hours

    Zetachain

    San Francisco, CA
    6 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to AI Application Security Engineer. Be the first to apply!