Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

Brain Trust Inc

About the company

Braintrust is the AI observability platform. By connecting evals and observability in one workflow, Braintrust gives builders the visibility to understand how AI behaves in production and the tools to improve it.

Teams at Notion, Stripe, Zapier, Vercel, and Ramp use Braintrust to compare models, test prompts, and catch regressions - turning production data into better AI with every release.
About the role

We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted environments, with open source libraries embedded inside thousands of customer applications and a model proxy in front of OpenAI, Anthropic, Gemini, and other major model providers.

This is a hands-on IC role. You'll review code, build threat models, ship paved-road libraries, and lead AI-specific security work: prompt injection, agent sandbox escapes, tool-use abuse, and the new attack surface that comes with LLM-native applications. If you reach for agentic coding tools as your default workflow and can hold your own in a design review with a backend or systems engineer, we'd love to work with you.

What you'll do
  • Drive secure design across the platform: lead threat models for new features, review architecture proposals, and partner with product and backend engineers to ship features that are secure by default
  • Review code across our TypeScript, Python, and Go services, our open source tracing libraries, and our model proxy - and find the bugs others miss
  • Build the paved road: authn/authz primitives, RBAC and tenancy isolation patterns, secret handling, safe data pipelines, and sandboxed code execution for user-supplied JavaScript and Python snippets
  • Own our SAST, DAST, SCA, and secret-scanning tooling end-to-end, keeping signal-to-noise high enough that engineers actually fix what you ship
  • Run our vulnerability management program and triage external bug bounty reports; close the loop with durable fixes, not point patches
  • Lead AI-specific security work: prompt injection defenses, model proxy abuse detection, agent and tool-use sandboxing, data-exfiltration controls in multimodal pipelines, and security for the eval workflows our customers run
  • Partner with our open source maintainers on the security of libraries that get embedded inside customer applications
  • Use agentic coding workflows to scale yourself: automated code review, exploit prototyping, control validation, and IR triage
Ideal candidate credentials
  • 5+ years in application security, product security, or backend engineering with a security focus - you've shipped real code and reviewed a lot of it
  • Strong code reading and writing skills in at least two of TypeScript/Node.js, Python, Go, or Rust
  • Deep knowledge of common web and API vulnerability classes and the architectural patterns that prevent them - not just OWASP Top 10 trivia
  • Track record of building secure-by-default libraries, frameworks, or services that other engineers actually adopt
  • Hands-on experience with authn/authz design, multi-tenant data isolation, and secrets/key management at scale
  • Comfortable with the realities of a high-availability data platform: real-time pipelines, ingestion at scale, semi-structured data, Postgres, Redis, AWS
  • A clear point of view on AI/LLM security - prompt injection, agent abuse, tool-use sandboxing, model proxy threats - and ideally hands-on experience defending against them
  • Daily user of agentic coding tools and excited to push the frontier of how AppSec gets done with them
  • Clear communicator who documents decisions, writes tickets engineers want to pick up, and lifts the team's security awareness without becoming a bottleneck
  • Bonus: prior experience with LLM red-teaming, agent sandbox research, or shipping security-focused open source libraries
Benefits include
  • Medical, dental, and vision insurance
  • Daily lunch, snacks, and beverages
  • Flexible time off
  • Competitive salary and equity
  • AI Stipend
Equal opportunity

Braintrust is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
Vacancy posted 19 days ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in New York, NY vacancy
  •  ...Because at Valence, the work worth doing is the kind that redefines work itself. The Role We are seeking a seasoned Application Security Engineer to help us secure our products and platform that serve our Fortune 500 customers. In this pivotal role, you will be... 
    Suggested
    Full time
    Freelance
    Work from home

    Valence

    New York, NY
    22 hours ago
  •  ...Application Security Engineer We are seeking an Application Security Engineer who will support our client with ensuring security is integrated into all stages of software development. This role will be responsible for designing and building secure applications while... 
    Suggested

    Damco

    Brooklyn, NY
    5 days ago
  • $60 - $65 per hour

     ...Application Security Engineer Location: Phoenix, AZ 85054 (Atlanta GA, or NY, NY) (Onsite/Hybrid) Pay Rate: $60.00 – $65.00 per hour (Strict W2 Only) Duration: Through 12/31/2026 + Long-term Extension Compliance: No C2C, Third Parties, or W2 Referrals Role Overview... 
    Suggested
    Hourly pay
    Weekly pay
    Temporary work
    Flexible hours

    Arizona Staffing

    New York, NY
    2 days ago
  •  ...Application Security Engineer | Location: New York, NY or Charlotte, NC | Contract his Application Security Engineer contract role will embed security into the software development lifecycle to protect enterprise applications across web, mobile, and API ecosystems... 
    Suggested
    Contract work

    Delphi-US

    New York, NY
    4 days ago
  •  ...across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has...  ...ABOUT THE ROLE We are looking for a Senior Application Security Engineer to develop AI-enabled secure code scanning and integrate security... 
    Suggested
    Flexible hours

    AgileEngine

    Jersey City, NJ
    1 day ago
  •  ...Application Security Engineer - Vulnerability Operations (Mid-Level) Position: Contract Location: NJ/TX/NC Duration: 12+ months Job description: Required Qualifications & Skills: ~ Bachelor's degree in Computer Science,... 
    Contract work

    Lorven Technologies

    Jersey City, NJ
    3 days ago
  • $80 - $85 per hour

     ...identifying and prioritizing risks specifically related to application security. ? Develop, socialize, and implement security strategies...  ...control Requirements Senior Application Security Engineer Mandatory Skills/Experience • 12 years of... 
    Contract work
    Flexible hours

    Network Temp Inc

    New York, NY
    3 days ago
  • $135k - $200k

     ...defense, intelligence, and commercial applications. We are trusted by our customers to protect...  .... The mission of the Application Security Team is to enable developers to be highly...  ...important. As an Application Security Engineer, you will be hands-on and have wide-... 
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    New York, NY
    22 hours ago
  • $405k

     ...Application Security Engineer Anthropic's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers,... 
    Work at office
    Visa sponsorship
    Flexible hours
    Shift work

    Colorwave Inc

    New York, NY
    2 days ago
  •  ...Lead Application Security Engineer We are a specialized technology staffing agency supporting professional and financial services companies. Why do we stand out in technology staffing? We listen and act as advisors for our candidates on how they can best add value,... 
    Work at office

    Eleven Recruiting

    New York, NY
    22 hours ago
  • $215k - $230k

    A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates should... 

    Crypto Pro Network

    New York, NY
    1 day ago
  •  ...beacon of truth in global media and we need your help adding fuel to the fire. About the Role Polymarket is looking for an Application Security Engineer to embed security throughout our software development lifecycle. You'll partner directly with product and engineering... 
    Contract work
    Immediate start

    Polymarket

    New York, NY
    22 hours ago
  • $130k - $218k

    A leading blockchain company is seeking a Senior Application Security Engineer to join their growing security team. The role involves embedding security throughout the software development lifecycle for MetaMask products, ensuring they meet high-security standards. Applicants... 
    Remote job

    Consensys

    New York, NY
    1 day ago
  • $220k - $350k

    Senior Application Security Engineer [Remote-US] remote To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search. When applying for a position online you are at risk of being targeted by malicious actors... 
    Remote job
    Extra income
    Local area
    Work from home
    Home office

    Quanata

    New York, NY
    1 day ago
  • $89k - $130k

    Far Coder is hiring a remote Application Security Engineer II to enhance our information security posture. This full-time role focuses on protecting our systems from cyber threats and requires expertise in GraphQL, Azure, and Linux. Applicants should have a Bachelor’s Degree... 
    Remote job
    Full time

    Far Coder

    New York, NY
    3 days ago
  • $130k - $218k

     ...MetaMask MetaMask aims to create a thriving engineering organization that supports the well‑...  ...a cryptographic key manager and web3 application development platform. As this user base...  ...us that we keep our users as safe and secure as possible. We are looking for a Senior... 
    Remote work
    Shift work

    Consensys

    New York, NY
    1 day ago
  •  ...providing a wide range of investment banking, securities, investment management and wealth...  ...Strategy by architecting, engineering, deploying and operating technical security...  ...agile delivery and adoption of Cloud and application security control implementations by development... 
    Work experience placement

    ALLTECH CONSULTING SVC INC

    New York, NY
    1 day ago
  • **We believe talent deserves a human touch. Your application will be read by an actual person who’s excited to discover the real you.****Application Security Engineer**Location: Remote (United States) | Employment Type: Full-Time**About the Role**We are looking for an Application... 
    Full time
    Remote work

    New Charter Technologies, Llc

    New York, NY
    1 day ago
  • Hampton North is partnered with an international brand to find a senior-level Application Security Engineer focusing on safeguarding the confidentiality, integrity, and accessibility of enterprise data through secure application development practices with emphasis on cloud... 
    Contract work
    Remote work

    Hampton North

    New York, NY
    1 day ago
  • GuidePoint Security is looking for an Application Security Engineer to work remotely from the U.S. The role involves running security tools, integrating security practices into CI/CD pipelines, and collaborating with development teams. Ideal candidates will have at least... 
    Remote job
    Flexible hours

    GuidePoint Security

    New York, NY
    3 days ago
  •  ...(and help the developers behind them get paid), you’ll fit right in. The role: We are looking for a Senior, proactive Application Security Engineer to work closely with engineering teams, PMs and external parties to ensure that RevenueCat's products are secure. RevenueCat... 
    Remote work

    RevenueCat

    New York, NY
    1 day ago
  •  ...Robinhood, and PayPal. About the team The Security team is a specialized, deeply technical,...  .... The team has many pillars, such as Application and Blockchain Security, Cloud Security,...  ...About the role As an Application Security Engineer, you will be a key guardian of our... 
    Contract work

    Paxos

    New York, NY
    1 day ago
  • $180k - $225k

    Summary Join our dynamic team as a Senior Application Security Engineer, where you’ll play a pivotal role in securing Temporal’s development pipeline, product, and customer execution environment. In this position, you’ll work closely with software engineering teams and... 
    Temporary work
    Remote work
    Work from home
    Home office

    temporal

    New York, NY
    1 day ago
  • $89.3k - $130k

    American Specialty Health Incorporated is looking for an Application Security Engineer II to enhance their Information Security team. The role focuses on protecting information assets from cybersecurity threats, ensuring compliance, and coordinating security measures across... 
    Remote job
    Work from home
    Home office

    American Specialty Health Incorporated

    New York, NY
    22 hours ago
  • $80 - $90 per hour

     ...Genesis10 is currently seeking a Fullstack application developer- Hybrid position with a...  ...We are seeking a highly skilled engineer who can design and build enterprise applications endtoend while also embedding security into every layer of the SDLC. You will work... 
    Hourly pay
    Permanent employment
    Contract work
    3 days per week

    Genesis10

    New York, NY
    2 days ago
  • Bitwise Asset Management, Inc. is looking for a Staff Application Security Engineer to own the design and implementation of our application security program. This role provides the opportunity to build functions critical to the security of customer-facing products and internal... 
    Remote job

    Bitwise Asset Management, Inc.

    New York, NY
    2 days ago
  • Meijer Inc. is seeking a Senior IT Application Security Engineer recognized as an expert in secure application design, responsible for driving application security initiatives, mentoring teams, and formulating security standards across the organization. The ideal candidate... 

    Meijer Inc.

    New York, NY
    3 days ago
  •  ...at massive scale as Adaptive builds the security layer for the AI era. Trusted by...  ...protecting organizations from AI-powered social engineering - deepfake phone calls, spear phishing,...  ...be best in class. We're looking for an Application Security Engineer to own application... 

    Adaptive Security

    New York, NY
    3 days ago
  • $10 per hour

     ...we’re excited about what’s ahead. About the Role: Our engineering organization is growing, and with that growth comes an expanding application and infrastructure footprint that requires dedicated application security ownership. This role exists to build that function... 
    Full time
    Temporary work
    For contractors
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Bitwise Asset Management, Inc.

    New York, NY
    2 days ago
  • Valence in New York is seeking a seasoned Application Security Engineer to enhance product security for our Fortune 500 customers. You will work with engineering teams, overseeing the security aspects of the application while collaborating across domains. The role demands... 

    Valence

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!