Senior Security Engineer II, Application Security (Remote Eligible)
$175k - $245kSmartsheet
Senior Security Engineer II, Application Security (Remote Eligible)
For over 20 years, Smartsheet has helped people and teams achieve–well, anything. From seamless work management to smart, scalable solutions, we've always worked with flow. We're building tools that empower teams to automate the manual, uncover insights, and scale smarter. But more than that, we're creating space–space to think big, take action, and unlock the kind of work that truly matters. Because when challenge meets purpose, and passion turns into progress, that's magic at work, and it's what we show up for everyday.
AI is changing what application security can accomplish. We're not just securing AI; we're using it as a force multiplier to see more risk, act faster, and scale security across a platform used by millions of customers globally. We're looking for a Senior Security Engineer II to join our Application Security team who can do both: bring deep expertise in securing AI-integrated systems, and deploy AI and automation to drive risk visibility and reduction at a scale no traditional security program can match on its own.
This is a high-ownership, technically demanding role for an experienced application security engineer. You will work at the intersection of threat-informed design, engineering automation, and applied AI, doing consequential security work that directly shapes the posture of a modern SaaS platform. If you're a security engineer who writes code to solve security problems, can read a production codebase to find what a scanner misses, and wants your work to matter beyond a ticket queue, we want to talk.
You will report to the Manager, Application Security, based in our Bellevue, WA office, or you may work remotely from anywhere in the US where Smartsheet is a registered employer.
You Will:
- Secure AI Systems and Use AI to Scale Security: Conduct security reviews and threat modeling of AI-integrated product features (LLM workflows, agentic pipelines, model APIs) with working knowledge of AI-specific risk classes including prompt injection, model manipulation, and runtime control gaps; and in parallel, deploy AI and automation as a force multiplier by building tooling, pipelines, and integrations that extend the team's reach, accelerate triage, and drive risk visibility at a scale manual effort alone cannot achieve.
- Deliver Application Security Reviews: Own end-to-end security assessments for high-risk features and services (threat modeling, architecture review, targeted code review, and security testing) embedded in the product development lifecycle. Work directly with engineering teams to surface and close risk before it ships, with enough technical credibility to influence design decisions, not just document findings.
- Advance CI/CD Pipeline Security: Operate and evolve the security scanning controls embedded in Smartsheet's GitLab pipelines (SAST, SCA, secrets, IaC scanning). Tune tools, engage teams on findings, and build automation that reduces false positive burden and improves how developers experience security feedback.
- Run Bug Bounty Operations: Serve as the expert validation layer for Smartsheet's bug bounty program, reproducing and assessing complex, multi-step researcher submissions requiring authenticated context and deep platform knowledge, making defensible severity and payout decisions, and owning program operations including researcher engagement, metrics, and continuous improvement.
You Have:
- Experience: 8+ years in application security, with a track record of owning complex, multi-capability work in a product security or AppSec engineering role.
- Software engineering foundation: Fluent in one or more modern languages (Java, Python, TypeScript/JavaScript, Go, Ruby, or equivalent); you identify security-relevant patterns without relying on tooling and write automation that others adopt.
- AI security: Hands-on experience securing AI-integrated applications (LLM systems, agentic workflows, model APIs) and demonstrated experience deploying AI and automation to scale security functions or extend team reach. You bring both skill sets.
- Security review depth: Threat modeling, architecture review, and code review for complex SaaS features; you produce findings engineering teams can act on and carry enough technical credibility to influence design decisions, not just document them.
- Manual web application testing: Independent, hands-on validation of complex, multi-step authenticated vulnerabilities; you confirm what scanners flag and find what they miss.
- Bug bounty experience: Operator, active researcher, or both; direct experience with triage, severity calibration, and researcher communication.
- CI/CD pipeline security: Working knowledge of SAST, SCA, secrets, and IaC scanning in modern pipelines, with experience engaging teams on findings and improving signal quality.
- Cloud security fundamentals: Working knowledge of AWS, GCP, or Azure sufficient to tie application-layer risk to the infrastructure it runs on; you understand where the application ends and the cloud begins.
- Legally eligible to work in the U.S. on an ongoing basis
- BS or MS in Computer Science, a related field, or equivalent industry experience
NICE TO HAVE:
- Experience with agentic security, MCP security, or adversarial evaluation of autonomous AI systems.
- GitLab CI/CD experience, including security policy pipeline configuration and scanning job integration.
- Active bug bounty researcher with published findings, CVE credits, or hall of fame recognition.
- Penetration testing program management experience: scope definition, vendor coordination, and finding validation with third-party testers.
Current US Perks & Benefits: Employer subsidized medical/vision and dental coverage for full-time employees 401k Match to help you save for your future (50% of your contribution up to the first 6% of your eligible pay) Monthly stipend to support your work and productivity Flexible Time Away Program, plus Sick Time Off US employees are automatically covered under Smartsheet-sponsored life insurance, short-term, and long-term disability plans US employees receive 12 paid holidays per year Up to 24 weeks of Parental Leave Personal paid Volunteer Day to support our community Opportunities for professional growth and development including access to Udemy online courses Company Funded Perks, including a counseling membership, local retail discounts, and your own personal Smartsheet account Teleworking options from any registered location in the U.S. (role specific) Smartsheet provides a competitive base salary range for roles that may be hired in different geographic areas we are licensed to operate our business from. Actual compensation is determined by several factors including, but not limited to, level of professional, educational experience, skills, and specific candidate location. In addition, this role will be eligible for a market competitive incentive opportunity.
US Base Salary Pay Range
$175,000 - $245,000 USD
Get to Know Us:
At Smartsheet, your ideas are heard, your potential is supported, and your contributions have real impact. You'll have the freedom to explore, push boundaries, and grow beyond your role. We welcome diverse perspectives and nontraditional paths—because we know that impact comes from individuals who care deeply and challenge thoughtfully. When you're doing work that stretches you, excites you, and connects you to something bigger, that's magic at work. Let's build what's next, together.
Equal Opportunity Employer:
Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, Japan, Bulgaria, and India. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.
$165k - $242k
...We are seeking a Senior Security Engineer to build the Vulnerability... ...and enterprise AI applications. You'll solve security... ...program (all based on eligibility). What We Offer... ...work environment, remote work may be considered... ...or national, (ii) U.S. lawful permanent...Remote workApplicationSeniorPermanent employmentTemporary workCasual workWork at officeFlexible hoursShift work- ...Senior Security Engineer II - Threat Detection & Response Location : New York City, NY (4 days onsite is a must, 1 day remote) Contract: 6+ Months Job Description: Client is seeking... ...knowledge of cloud, identity, application, and data attack paths. What...Remote workApplicationSeniorContract workImmediate start
- ...Senior Security Engineer II For Identity And Access Management (Iam) As a Senior Security Engineer... ...enterprise, cloud-native environments, and applications. We are seeking a dedicated... ...join a collaborative, inclusive and remote-first culture - you've come to the right...Remote workApplicationSeniorTemporary workFlexible hours
- ...As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a... ...enterprise, cloud-native environments, and applications. We are seeking a dedicated... ...join a collaborative, inclusive and remote-first culture - you've come to the right...Remote workApplicationSeniorTemporary workFlexible hours
$107.5k - $204.5k
...government issued security clearance is... .... citizens are eligible for a security... ...experience and renowned engineering expertise to... ...is seeking a Senior Information... ...Engineer (ISSE) II to support our... ...security COTS applications (i.e. endpoint... ...site, hybrid or remote. The salary...Remote workApplicationSeniorTemporary workWork experience placementWork at officeRelocation packageFlexible hours- ...Senior Security Operations Engineer II Scottsdale, Arizona, United States Join Axon... ...the flexibility to work remotely on Mondays, unless there... ...into cloud-native applications and services. Maintain... ...may also require legal eligibility to work in a firearms environment...Remote workApplicationSeniorWork at office
$128k - $181.25k
...Shutterfly and we are looking for a Senior Application Security Engineer to join our team! In this position you... ...0,250-144,750] This position may be eligible for a bonus incentive, health... ...be found at This opportunity can be remote, but candidates must reside in a state...Remote workApplicationSenior$165k - $242k
...Senior Security Engineer, Enterprise Security The Enterprise Security... ...critical business applications protected in a modern... ..., ZTNA) in hybrid or remote-friendly environments... ...(all based on eligibility). In addition to a... ...citizen or national, (ii) U.S. lawful permanent...Remote workApplicationSeniorPermanent employmentTemporary workFor contractorsCasual workWork at officeFlexible hours$125k - $155k
...Senior Security Engineer, Operations K2 is building the largest... ...become a Kardashev Type II (K2) civilization. If... ..., and secure remote access Monitor security... ...accommodation as part of your application for employment or... ...120.15 or otherwise eligible for a federally...Remote workApplicationSeniorPermanent employmentShift work$165k - $242k
...ll Do: The Security Foundations organization... ...Role: As a Senior Security Engineer on the PKI &... ...images, and application binaries. Develop... ...(all based on eligibility). What... ...environment, remote work may be considered... ...or national, (ii) U.S. lawful...Remote workApplicationSeniorPermanent employmentTemporary workCasual workWork at officeFlexible hours- ...Senior Enterprise Security Architect II Are you passionate about cutting-edge technology and customer success... ...Enterprise Security, Identity, Application Access products and Microsegmentation... ...Locations Augusta Building, Bengaluru, Karnataka, 560071, IN (Remote)...Remote workApplicationSeniorPermanent employmentWork at officeWork from homeWorldwideFlexible hours
$95.3k - $158.8k
...office 2-3 days a week. Senior Security Engineer II - Compliance Automation &... ...with various flexible and remote working options available to... ...local market rates.This job is eligible for an annual incentive... ...us know by completing our Applicant Request Support Form or please...Remote workSeniorWork at officeLocal areaFlexible hours2 days per week3 days per week$100k - $160k
...Devsecops Engineer Ii Chewy is seeking a DevSecOps Engineer... ..., and our Information Security team plays a critical... ...monitoring and remote access solutions) and... ..., infrastructure, and application teams to align controls... ...addition, this position is eligible for 401k and a new...Remote workApplicationLocal areaFlexible hours- ...Summary IT Security Infrastructure Engineer II / III / Senior Are you a hands-on... ...security system issues, both remotely and in the field, minimizing... ...support package/patch application 7. Applies highly... ...identity and employment eligibility of every person hired to...Remote workApplicationSeniorPermanent employmentLocal area
$46.64 - $72.29 per hour
...Security Engineer II Hourly Pay Range: $46.64 - $72.29 - The hourly pay... ...Hybrid Schedule - mostly remote work after initial onsite period... ..., and standards to application and business owners; conducting... ...Benefits Premium pay for eligible employees Career...Remote workApplicationHourly payFull timeFor contractorsMonday to FridayFlexible hours$86.8k - $165.2k
...Senior Systems Security Engineer (Cyber) - P3 At RTX, the world largest... ...U.S. citizens are eligible for a security clearance... ...8570.01-M IAT Level-II Compliant... ...operating system and application solutions in both a... ...on-site, hybrid or remote. The salary range...Remote workApplicationSeniorTemporary workWork experience placementWork at officeRelocation packageFlexible hours- ...Bestow offers flexible remote/hybrid work, meaningful benefits... ...confirm the employment eligibility of all newly hired... ...About The Team As our Security Operations Engineer II, you will play an important... ...penetration testing of web applications, network devices, and cloud...Remote workApplicationWork experience placementWork at officeWork from homeFlexible hours
$115k - $190k
...Requisition ID : 65592 Title :Sr II - Embedded Product Security Engineer Salary Range: Salary Minimum: $115,000 Salary Maximum: $190,000 Seeking... ...to a broader design perspective and considers how an application interacts with the underlying infrastructure or...Remote workApplicationSeniorFlexible hours$153k - $220k
...the Role Abnormal AI is seeking a Senior Security Engineer to ensure Abnormal's FedRAMP... ...security impact analyses (SIAs) for system/application changes and provide recommendations.... ...addition to base salary, this role may be eligible for bonus or incentive compensation,...Remote workApplicationSenior$145k - $180k
...latest trends in Agentic Security, Data Security Posture Management... ...and much more. The Senior Security Engineer will be essential to our team... ...5, and all manner of SaaS applications. Design and build... ...This role is exempt meaning it is not overtime pay eligible.Remote workApplicationSeniorWork at office$130.1k - $187k
...Abnormal AI is looking for a Application Security Engineer II to help build the next generation of... ...cybersecurity applications at scale. This is a senior IC-level role that blends deep... ...addition to base salary, this role may be eligible for bonus or incentive compensation,...Remote workApplication- ...Senior Security Engineer Northwood is a modern space infrastructure company... ...Zero Trust. Design secure remote access and inter-site communication... ...~ Experience with application security reviews for vendor... ...by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations...Remote workApplicationSeniorPermanent employment
$170k - $300k
...Senior Security Engineer (Remote – US) Compensation: $170K–$300K base + equity Type: Full-time Location: Remote... ...IC role with broad ownership across: Application security Cloud / infrastructure... ...KMS, etc.) Own and evolve SOC 2 Type II compliance Establish a secure SDLC with...Remote workApplicationSeniorFull time- ...Security Identity & Access Management Engineer Bring your IT career and talents to CDW, where you can have a greater impact, be inspired by our mission... ...the enterprise infrastructure and business line applications. In this role, you will implement and support the Entra...Remote workApplicationSenior
- ...Senior Security Engineer Project Eleven is an applied lab of builders and technologists... ...role is a full-time, fully remote position in Europe (GMT to... ...Building out our application security program: secure SDLC... ...program (SOC 2 Type II as the first milestone) and...Remote workApplicationSeniorFull time
$110k - $165k
...passionate about breaking applications, devices, services and... ...s most advanced cyber security adversaries? The... .../SOC and Detection Engineering to convert TTPs into durable... ...handling) and brief senior leadership. Mentor... ...regarding who is eligible for hire at P&G along...Remote workApplicationSeniorFull timeWork at officeWorldwide$96k - $181k
...Serves as the senior process owner for... ...advance an information security processes, culture... ...with best practices, applicable federal and... ...Offensive Security Engineer is a key member of... ...This position is eligible to earn a base salary... ...****@*****.***. #LI-RemoteRemote workApplicationSeniorWork experience placementWork at officeFlexible hours- ...Mid-Tier Security Engineer Solvd Inc. is a rapidly growing AI-native consulting and technology... ...strategies across our core SaaS applications (e.g., Google Workspace, Microsoft 365,... ...security frameworks such as SOC 2 Type II, ISO 27001, and GDPR. SaaS Security...Remote workApplication
- ...About this role We're hiring Senior Security Engineers to design, harden, and continuously test... ...deep, hands-on security experience - application security, cloud security (AWS in particular... ...contexts ~ Leading SOC 2 Type II, ISO 27001, or comparable certification...Remote workApplicationSenior
$160k - $205k
...Senior Full Stack Pentester At Bank of... ...best information security professionals in... ...'s technologies, applications, and cyber security... ...mentoring junior engineers, and assist with... ...Ability to work remotely if/when necessary... ...Discretionary incentive eligible. This role is...Remote workApplicationSeniorWork at officeShift workDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer II, Application Security (Remote Eligible). Be the first to apply!
- information system security engineer United States
- staff security engineer United States
- senior application security engineer United States
- sr information security engineer United States
- security engineering manager United States
- electronic security engineer United States
- java security engineer United States
- security operations engineer United States
- junior network security engineer United States
- cloud security engineer United States

