Staff+ Application Security Engineer
$405kMenlo Ventures
Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. About The Role The Application Security team is at the forefront of building security into every phase of the software development lifecycle at Anthropic. In this hands‑on technical role, you will partner closely with our software engineers and researchers to ensure that security is a core consideration from initial design through implementation. You will lead threat modeling and secure design reviews to proactively identify and mitigate risks early, and help with continuous risk assessment. You will build tools and systems to support developers shipping code securely, adhering to secure coding best practices. Your insights will shape our tooling, detection capabilities, and defenses against emerging threats to AI/ML. You’ll develop the standards, processes, and educational resources that enable all Anthropic engineers to be security champions. This high‑impact role demands a security practitioner who can think like an attacker, has a developer mindset, and can build strong relationships. Responsibilities Help secure AI products and internal tools that are introducing industry‑novel security risks and pushing established security boundaries Lead “shift left” security efforts to build security into the software development lifecycle Conduct secure design reviews and threat modeling; identify and prioritize risks, attack surfaces, and vulnerabilities Develop tooling to scale security code reviews and respond to developer questions, including advising developers on remediating vulnerabilities and following secure coding practices Manage Anthropic’s vulnerability management program, including integrating data ingestion pipelines, coding logic to prioritize vulnerability fixes, supporting teams remediating vulnerabilities and developing automated systems at scale Oversee Anthropic’s bug bounty program. Set scope, validate submissions, perform root cause analysis, coordinate remediation with engineering teams, and award bounties. Cultivate relationships with the ethical hacker community Collaborate closely with product engineers and researchers to instill security best practices and advocate for secure architecture, design, and development Develop and document security policies, standards, and playbooks; conduct security awareness training for engineers You May Be a Good Fit If You Have 7+ years of hands‑on experience in application and infrastructure security, including securing cloud‑based and containerized environments Strong proficiency in at least one programming language (Python, Rust, Go, Java) Lead with empathy, a collaborative spirit, and a learning mindset to work cross‑functionally with engineers of all levels to build security into the software development life cycle Leverage creative and strategic thinking to reduce risk through secure design and simplicity, not just controls Possess broad security knowledge to connect the dots across domains and identify holistic ways to decrease the overall threat surface Are keen to distill complex security concepts into clear actions and drive consensus without direct authority Embody a proactive mindset to thread security throughout the product lifecycle through activities like threat modeling, secure code review, and education Have a strong grasp of offensive security to anticipate risks from an adversary’s perspective, not just check compliance boxes Bring experience with modern application stacks, infrastructure, and security tools to implement pragmatic defenses Are practiced at collaborating cross‑functionally and effectively balancing security requirements with business objectives Advocate for security fundamentals such as least privilege, defense‑in‑depth, and eliminating complexity that could sub‑linearly scale security through smart design Strong Candidates May Also Hands‑on technical expertise securing complex cloud environments and microservices architectures leveraging technologies such as Kubernetes, Docker, AWS, GCP Exposure to offensive security techniques such as vulnerability testing, bug bounty, pen testing, and red team exercises Familiarity with AI/ML security risks such as prompt injection, data poisoning, model extraction, and mitigations Experience building security tools, applications, and automated tools Solid foundational knowledge of both software and security engineering principles and a willingness to continue learning Excellent communication skills, able to distill complex security topics for broad audiences Worked and thrived in fast‑paced environments, and comfortable navigating ambiguity Annual Salary $405,000—$485,000 USD Logistics Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position Location‑based hybrid policy: Staff are expected to be in one of our offices at least 25% of the time, with some roles requiring more office presence Visa sponsorship: We sponsor visas and will make reasonable efforts to obtain one if we make an offer Benefits: Competitive compensation, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a collaborative office environment Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. #J-18808-Ljbffr
- ...Because at Valence, the work worth doing is the kind that redefines work itself. The Role We are seeking a seasoned Application Security Engineer to help us secure our products and platform that serve our Fortune 500 customers. In this pivotal role, you will be...SuggestedFull timeFreelanceWork from home
- ...Senior Security Engineer – Secure Code Review New York, NY On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software development...SuggestedFull time
- ...across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has... ...ABOUT THE ROLE We are looking for a Middle Application Security Engineer to execute hands-on DevSecOps work across CI/CD pipeline security...SuggestedWork at officeRemote workVisa sponsorshipWork visaFlexible hours
$135k - $200k
...defense, intelligence, and commercial applications. We are trusted by our customers to protect... .... The mission of the Application Security Team is to enable developers to be highly... ...important. As an Application Security Engineer, you will be hands-on and have wide-...SuggestedWork experience placementWork at officeRemote workWork from homeRelocation package- ...Application Security Engineer - Vulnerability Operations (Mid-Level) Position: Contract Location: NJ/TX/NC Duration: 12+ months Job description: Required Qualifications & Skills: ~ Bachelor's degree in Computer Science,...SuggestedContract work
- ...catch regressions - turning production data into better AI with every release. About the role We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted...Flexible hours
$80 - $85 per hour
...identifying and prioritizing risks specifically related to application security. ? Develop, socialize, and implement security strategies... ...control Requirements Senior Application Security Engineer Mandatory Skills/Experience • 12 years of...Contract workFlexible hours- ...Application Security Engineer We are seeking an Application Security Engineer who will support our client with ensuring security is integrated into all stages of software development. This role will be responsible for designing and building secure applications while...
- ...Application Security Engineer | Location: New York, NY or Charlotte, NC | Contract his Application Security Engineer contract role will embed security into the software development lifecycle to protect enterprise applications across web, mobile, and API ecosystems...Contract work
- ...MaziCTools is seeking an experienced Application Engineer in New York, NY to implement security review processes and address client inquiries regarding IT solutions. You will collaborate with the Client Technology Team to curate a repository for request fulfillment and...
- *Scroll has a remote-first work culture, our staff base is globally distributed and we are location agnostic. We make hiring... ...frontier of zk technology, research and innovation. The Application Security Engineer will be responsible for improving the zkEVM-based zkRollup...Work at officeRemote workHome officeFlexible hours
- ...GuidePoint Security is looking for an Application Security Engineer to work remotely from the U.S. The role involves running security tools, integrating security practices into CI/CD pipelines, and collaborating with development teams. Ideal candidates will have at least...Remote workFlexible hours
- **We believe talent deserves a human touch. Your application will be read by an actual person who’s excited to discover the real you.****Application Security Engineer**Location: Remote (United States) | Employment Type: Full-Time**About the Role**We are looking for an Application...Full timeRemote work
- ...Trail of Bits Inc. is seeking a Security Engineer to join their Software Assurance practice in New York, NY. This role involves conducting... ...level code analysis and developing security tools to enhance application security. You'll work with industry-leading technology...
- ...providing a wide range of investment banking, securities, investment management and wealth... ...Strategy by architecting, engineering, deploying and operating technical security... ...agile delivery and adoption of Cloud and application security control implementations by development...Work experience placement
- ...Leadership Drive enterprise-wide implementation of Application Security controls across CI/CD pipelines. Partner with AppSec Champions... ...goals. Enable decentralized security ownership across engineering teams. 2. Vulnerability & Threat Management...
$215k - $230k
...A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates should...- ...Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability... .... Identify, triage, and remediate application-layer vulnerabilities, including broken... ...strong relevant experience in software engineering or security operations with a focus on...Remote work
$130k - $218k
...A leading blockchain company is seeking a Senior Application Security Engineer to join their growing security team. The role involves embedding security throughout the software development lifecycle for MetaMask products, ensuring they meet high-security standards. Applicants...Remote work- ...Lead Application Security Engineer We are a specialized technology staffing agency supporting professional and financial services companies. Why do we stand out in technology staffing? We listen and act as advisors for our candidates on how they can best add value,...Work at office
$210k - $230k
...report into the Director, Information Security and build relationships with technology... ...payment systems to identify and remediate application vulnerabilities. This individual... ...increase our AppSec posture and enable our engineers to code safely. Innovate with AI...Full timeWork at officeFlexible hours- ...Fragomen is seeking a Security Engineer – Application Security to join their Cyber Security team in Pittsburgh. In this role, you will work to secure software development and help build a robust Application Security program. The ideal candidate will have over 5 years of...
- ...AgileEngine, LLC. is looking for a Middle Application Security Engineer in Jersey City, NJ. The role focuses on executing DevSecOps tasks, integrating security tools within CI/CD pipelines, and providing guidance to development teams on security practices. The ideal candidate...Flexible hours
$10 per hour
...ahead. About the Role: Our engineering organization is growing, and... ...that growth comes an expanding application and infrastructure footprint... ...dedicated application security ownership. This role exists... ...up. As our first dedicated Staff Application Security Engineer...Full timeTemporary workFor contractorsWork at officeRemote workVisa sponsorshipFlexible hours- ...reside in U.S. Role Overview Are you passionate about securing global‑scale e‑commerce services and applications that power millions of customers across more than... ...looking for a hands‑on Principal Product Security Engineer to lead Secure Development Lifecycle assurance...Remote workHome office
- ...Bitwise Asset Management, Inc. is looking for a Staff Application Security Engineer to own the design and implementation of our application security program. This role provides the opportunity to build functions critical to the security of customer-facing products and...Remote work
$200k - $350k
...Traversal Traversal is the AI Site Reliability Engineer (SRE) for the enterprise—already... ...class engineers from industry: Citadel Securities, Cockroach Labs, Datadog, DE Shaw,... ...possible. The Role As an Infrastructure & Application Security Engineer at Traversal, you’ll...Full timeWork at officeFlexible hours- ...Valence in New York is seeking a seasoned Application Security Engineer to enhance product security for our Fortune 500 customers. You will work with engineering teams, overseeing the security aspects of the application while collaborating across domains. The role demands...
$130k - $218k
...MetaMask MetaMask aims to create a thriving engineering organization that supports the well‑... ...a cryptographic key manager and web3 application development platform. As this user base... ...us that we keep our users as safe and secure as possible. We are looking for a Senior...Remote workShift work$180k - $225k
Summary Join our dynamic team as a Senior Application Security Engineer, where you’ll play a pivotal role in securing Temporal’s development pipeline, product, and customer execution environment. In this position, you’ll work closely with software engineering teams and...Temporary workRemote workWork from homeHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff+ Application Security Engineer. Be the first to apply!
- staff automation engineer New York, NY
- staff data engineer New York, NY
- research assistant engineering New York, NY
- assistant engineer New York, NY
- staff devops engineer New York, NY
- staff engineer New York, NY
- assistant electrical engineer New York, NY
- assistant mechanical engineer New York, NY
- software engineer staff New York, NY
- assistant engineering manager New York, NY


