Lead Application Security Engineer
$220k - $250kZeta Global
WHO WE ARE
Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to
About the Role
We’re seeking a Lead Application Security Engineer to help advance Zeta Global’s application and platform security posture through AI-native security practices, intelligent automation, and scalable security engineering. You’ll play a critical role in embedding security throughout the software development lifecycle by using AI-driven tools, automated controls, and data-informed risk prioritization to ensure our systems, applications, and AI-powered platforms are built securely from the ground up.
Zeta operates at massive scale, powering billions of consumer profiles and petabytes of data across real-time, AI-powered marketing platforms. In this role, you’ll collaborate with Engineering, Product, QA, DevOps, and AI platform teams to identify risks, design secure-by-default patterns, and build automated security capabilities that enable secure innovation at speed.
This position offers significant technical scope, cross-functional visibility, and the opportunity to directly influence the company’s security maturity through AI-enabled threat modeling, automated validation, intelligent vulnerability management, and proactive defense.
Key Responsibilities
AI-Driven Threat Modeling & Security Validation
- Use AI-assisted threat modeling capabilities to identify application, platform, API, cloud, data, and AI/ML security risks early in the design and development process.
- Leverage automated security review tools to evaluate architecture, design documents, code changes, APIs, and data flows for security gaps and control weaknesses.
- Drive AI-assisted code security reviews using SAST, DAST, SCA, secrets detection, IaC scanning, container scanning, and contextual risk analysis.
- Use automation and intelligent correlation to assess third-party libraries, APIs, vendor integrations, and open-source dependencies for security, compliance, and supply-chain risk.
- Support AI-enabled red team, blue team, and incident response simulations to validate detection, prevention, and response capabilities.
Embedding AI-Native Security into the SDLC
- Partner with developers and QA engineers to embed AI-driven security testing and automated risk detection into CI/CD pipelines.
- Build and improve security automation that provides real-time feedback to developers during design, coding, testing, release, and deployment.
- Use AI-assisted analysis to review architecture and design artifacts, identify risks earlier, and recommend secure implementation patterns.
- Contribute to intelligent security checkpoints that reduce manual review effort while improving consistency, traceability, and developer velocity.
- Help design scalable guardrails, reusable security controls, and policy-as-code capabilities across application and platform teams.
Emerging Threat Monitoring & Proactive Defense
- Monitor evolving application, cloud, API, AI/ML, and data security risks using AI-assisted threat intelligence, vulnerability intelligence, and attack-pattern analysis.
- Identify and evaluate AI-specific threats such as prompt injection, data poisoning, model abuse, model leakage, insecure tool use, and sensitive data exposure.
- Assist in designing and deploying proactive defense mechanisms across applications, APIs, data platforms, and AI-powered systems.
- Use automated signals, telemetry, and risk scoring to support investigations, post-incident analysis, and continuous improvement of prevention and detection capabilities.
- Translate recurring vulnerabilities and incidents into feedback loops that improve threat models, secure design patterns, and SDLC controls.
Security Awareness, Standards & Scalable Enablement
- Promote secure coding and secure design practices through AI-assisted guidance, reusable playbooks, automated recommendations, and developer-friendly documentation.
- Contribute to internal security standards, secure engineering patterns, and AI-native security playbooks.
- Help teams adopt security self-service capabilities that reduce dependency on manual AppSec review.
- Collaborate closely with Engineering, DevOps, QA, Product, and AI platform teams to foster a security-first and automation-first culture.
- Use metrics and insights to measure control effectiveness, remediation trends, developer adoption, and overall security maturity.
What You Need to Succeed
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- 5+ years of experience in Application Security, DevSecOps, Secure Software Development, or Security Engineering.
- Strong understanding of OWASP Top 10, SANS CWE Top 25, secure design principles, and application threat modeling.
- Familiarity with AI/ML security concepts such as prompt injection, data poisoning, adversarial testing, model integrity, model abuse, and AI supply-chain risks.
- Experience building or integrating AI-assisted security workflows, security bots, automated triage systems, or risk scoring models.
- Experience using AI-assisted or automation-driven approaches to improve security testing, vulnerability analysis, code review, or risk prioritization.
- Experience with modern application frameworks and architectures such as React, Node.js, Django, FastAPI, or similar technologies.
- Knowledge of securing APIs, microservices, authentication, and authorization mechanisms such as OAuth2, OIDC, JWT, and service-to-service authentication.
- Experience with cloud platforms such as AWS, GCP, or Azure, and containerized environments such as Docker and Kubernetes.
- Working knowledge of security testing and automation tools such as Semgrep, SonarQube, Burp Suite, OWASP ZAP, Trivy, Snyk, GitHub Advanced Security, or similar tools.
- Ability to analyze security findings, correlate risk context, and drive practical remediation guidance for engineering teams.
- Strong collaboration and communication skills with the ability to work across Engineering, Product, QA, DevOps, and Security teams.
Nice to Have
- Experience with policy-as-code, infrastructure-as-code security, CI/CD security controls, and automated governance.
- Experience with automation frameworks and scripting for security testing, vulnerability validation, and remediation workflows.
- Relevant certifications such as OSCP, GWAPT, CSSLP, cloud security certifications, or AI/ML-specific security certifications.
BENEFITS & PERKS
- Unlimited PTO
- Excellent medical, dental, and vision coverage
- Employee Equity
- Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!
SALARY RANGE
The salary range for this role is $220,000-$250,000 TC, depending on location and experience.
PEOPLE & CULTURE AT ZETA
Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.
We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here:
ZETA IN THE NEWS!
#LI-TS1
$99k - $225k
Application Security Engineer, LeadThe Opportunity: A well-designed network is critical to move data and enable financial institutions to achieve... ...develop the exact network financial institutions need.As a Lead Application Security Engineer on our team, you’ll use your...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$190k - $237k
...Apollo.io is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally... ...among its board members. Role Overview The Senior Application Security Engineer is a senior individual contributor responsible for...SuggestedRemote workWorldwideFlexible hours- ...Opportunity Our SRE/Cloud Security teams are a dynamic blend of... ...strategies, and empower engineering teams through clear guidance... ...standards and documentation, lead incident response efforts with... ...process. Perform and support application security assessments,...SuggestedContract workWork at officeLocal areaRemote workRelocationHome officeFlexible hours
$82k - $118k
...while providing a level of professionalism and service unsurpassed in the lending industry. Position Summary The Application Security Engineer at Guild Mortgage supports the security of our applications, including AI-enabled applications and services. Working...SuggestedMinimum wageWork at officeLocal areaRemote workWork from homeMonday to FridayShift work$144.2k - $288.4k
...community at a time. Position Summary As the Principal Application Security Engineer - Threat Research, you will sit at the forefront of... .... Drive security awareness across the organization. Lead the development and enforcement of comprehensive security...SuggestedHourly payFull timeTemporary workLocal areaImmediate startRemote work$100k - $160k
...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud... ...make secure patterns the default for engineering teams. Lead red-team and purple-team exercises against internal applications...Full timeH1bLocal areaImmediate startRemote workVisa sponsorship$160.3k - $240.5k
...Senior Application Security EngineerSkip to main content#Senior Application Security Engineer page is loaded## Senior Application Security EngineerApplylocations: Remote, Texas... ...US and EMEA.## ## ****What you will do***** Lead threat modeling, secure design reviews, and...Work at officeRemote workWorldwide$169k - $220k
...lower cost through early diagnosis and longitudinal care management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does. This is a hands-on offensive security role on our Eng Core team,...Work experience placementWork at officeRemote workFlexible hours$75.2k - $158.1k
...Job Title: Application Security Engineer Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret... ...partner with developers and architects, and use industry‑leading tools to identify, validate, and remediate vulnerabilities...Full timeContract workWork experience placementInterim roleLocal areaRemote workFlexible hours$109k - $156k
...professionalism and service unsurpassed in the lending industry. Position Summary The Senior Application Security Engineer at Guild Mortgage will play a lead role in strengthening the security of our applications, including AI-enabled applications and services...Minimum wageWork at officeLocal areaRemote workWork from homeMonday to FridayShift work$130k - $190k
...s technical authority on the security of its software products. Bridges... ...Information Security and Engineering — embedding security into the... ...The company is maturing its application security function from a position... ...components ~ Lead application penetration-testing...Remote workWork from homeWorldwideHome office- ...Overview Application Security Engineer Remote within the US US Citizen Approximately 8 Month Contract (w/ possible extensions) Summary The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of...Contract workRemote work
- ...hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our... ...to protect the organization’s systems and data. This role leads security monitoring, vulnerability management, and...Full timeLocal areaRemote workFlexible hoursShift work
$192k - $240k
...support you need to grow your career. Engineering at Brex Engineering at Brex is... ...intention. Our teams span Software, Data, Security, and IT, and operate with high autonomy... .... What you’ll do As a Senior Application Security Engineer, you will focus on...Work experience placementRemote work- ...world’s largest omnichannel retailer, and have an industry-leading multi-product value proposition — all in addition to... ...positioned for the opportunity. Join us! The Role Our Application Security Engineers play a pivotal role in safeguarding our platform, driving...Remote workFlexible hours
$135k - $200k
...Palantir builds the world’s leading software for data-driven decisions... ..., and commercial applications. We are trusted by our customers... ...mission of the Application Security Team is to enable developers... ...As an Application Security Engineer, you will be hands-on and have...Work experience placementWork at officeRemote workWork from homeRelocation package$85k - $105k
...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and...Full timeH1bLocal areaImmediate startRemote workVisa sponsorship$176.1k - $308.2k
...Company Description It all started when engineer Fred Luddy wrote code that automated a... ...Job Description The ServiceNow Security Organization (SSO) The ServiceNow Security... .... Role Summary As an Staff Application Security Engineer in GSSC AppSec, you will...Work at officeImmediate startRemote workRelocationFlexible hours- ...We are looking for a hands-on Director, Application Security Engineering to strengthen our cybersecurity posture and partner directly with teams building... ...Security tooling produces more trustworthy signals and leads to better adoption, not just more alerts Teams catch...Work at officeShift work3 days per week
- ...rank among the leaders in areas like application development and AI/ML, and our people-... ...are looking for a Senior Application Security Engineer to strengthen secure coding and DevSecOps... ...include Fortune 500 enterprises and leading product brands. - Flextime :...Work at officeRemote workWork from homeVisa sponsorshipWork visa
$184k - $287.5k
...ID JR2021915 Job Category Engineering Time Type Full time NVIDIA... ...in NVIDIA's Hardware IP Security team you will play a vital role... ...~5+ years as technical team lead bridging engineering,... ...for equity and benefits. Applications for this job will be accepted...Full timeWork experience placement- ...customers’ business challenges, Take2 will work as a partner to best resolve client needs. Take2 is hiring a Senior Application Security Engineer. This is a fully remote role. Job Description ~6+ years of Information Technology experience ~3+ years of experience...Full timeRemote work
- ...Job Title: Senior Application Security Engineer Location- Princeton, NJ & NYC, NY (Hybrid) Duration- Full time Employment Summary: ~8-15+ years in software engineering and application security, with substantial hands‑on development experience (not security‑adjacent...Full time
$178.4k - $226.7k
...Application Security Engineer, US Amazon Dedicated Cloud Security Job ID: 10537899 | Amazon Web Services, Inc. Amazon's Security team is looking for a Senior Application Security Engineer to lead application security for a U.S. Government program building a purpose...Flexible hoursDay shift$189k - $303k
...efficient and accessible for all. We’re looking for a Staff Application Security Engineer with a strong software engineering background to help... ...work increases collaboration, empathy and our ability to lead effectively. As a result, we operate in a hybrid work environment...Work at officeLocal area3 days per week$170k - $235k
...impact and are looking for best-in-class engineers to help maximize Starlink’s utility for... ...businesses around the globe. As a Security Software Engineer, you will influence the... ...Starlink Internet infrastructure and applications for security issues, provide detailed early...Permanent employmentTemporary workWork at officeWorldwideMonday to FridayFlexible hoursWeekend work$70 - $75 per hour
...intelligence data to inform security protocols and architectural standards... ...Lifecycle Management: • Lead the triage and remediation of... ...environment. Skills Application security, Owasp, Security... ...Vulnerability Research & Reverse Engineering • Python and C Programming...Contract workTemporary workRemote work$120k - $145k
...Description NBCUniversal is one of the world's leading media and entertainment companies. We create world-... ...NBCUniversal is seeking a Staff Cyber Systems Engineer to build and scale modern application security capabilities across the enterprise. This hands-on...Local areaRemote work$135k - $155k
...innovation - empowering our teams to deliver meaningful outcomes in complex, high-security environments. Who We’re Looking For (Position Overview): The Application Security Engineer protects mission-critical web applications, application programming interfaces (...Full timeContract workWorldwide$180k - $200k
...About Virtru: While the rest of the security industry obsesses over locking data... ...both a suite of powerful data protection applications and an open platform that's sparking an... ...threat models. As an application security engineer you will help our engineering teams...Local areaRemote workFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Application Security Engineer. Be the first to apply!
- lead integration engineer United States
- lead product engineer United States
- lead network engineer United States
- lead engineering technician United States
- lead project engineer United States
- lead engineer United States
- lead ios developer United States
- lead support engineer United States
- lead solutions engineer United States
- lead sales engineer United States

