Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Application Security Engineer

Abridge

About Abridge Abridge was founded in 2018 with the mission of powering deeper understanding in healthcare. Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation efficiencies while enabling clinicians to focus on what matters most—their patients. Our enterprise-grade technology transforms patient‑clinician conversations into structured clinical notes in real‑time, with deep EMR integrations. Powered by Linked Evidence and our purpose‑built, auditable AI, we are the only company that maps AI-generated summaries to ground truth, helping providers quickly trust and verify the output. As pioneers in generative AI for healthcare, we are setting the industry standards for the responsible deployment of AI across health systems. We are a growing team of practicing MDs, AI scientists, PhDs, creatives, technologists, and engineers working together to empower people and make care make more sense. We have offices located in the Mission District in San Francisco, the SoHo neighborhood of New York, and East Liberty in Pittsburgh. The Role Want to work on building out security from the ground up at the leading edge of AI in healthcare globally? We’re looking for a very experienced and highly motivated Staff Application Security Engineer to join our team as one of the first engineers on the Abridge Security team. In this role, you’ll be a key technical leader, driving key initiatives that shape our product, infrastructure, and engineering practices. Impact both the vision and hands‑on execution of our secure software development lifecycle (SDLC) across the entire product portfolio. You’ll work cross‑functionally with product and engineering teams to integrate security seamlessly, automate security capabilities and controls, and mentor others to build secure‑by‑default systems at scale in the age of AI. This position requires deep technical expertise, a builder’s mindset, and excellent communication skills to influence security culture across the organization. What You’ll Do Secure Development & Architecture Leadership Lead Threat Modeling and Design Reviews: Impact the product from ideation through to code that is shipping to production. Conduct advanced threat modeling and security architecture reviews for complex systems, new products, and platform initiatives, providing expert guidance and requirements to meet Abridge’s security goals. Define Security Strategy: Define and implement the technical roadmap for the Application Security program, focusing on scalable assurance, proactive security measures, and setting clear standards and guardrails. Mentor and Enable: Act as a subject matter expert and trusted advisor to product and engineering teams, providing mentorship on security features, product defense, secure coding practices, application architecture, and vulnerability remediation strategies. Conduct Training & Awareness : Develop training materials for engineers to build a foundation of security best practices across the engineering organization. Vulnerability Management & Incident Response Code and Security Reviews: Perform and lead in-depth secure code reviews (both manual and tool‑assisted) to identify complex security vulnerabilities and flaws, including logic and authorization vulnerabilities that automated tools often miss. Get hands on with assessing AI models, agents, and architectures. Internal Penetration Testing : Lead internal penetration testing engagements for net new products and historical systems identify security risks across our environment. Vulnerability Program Oversight: Design and enhance the end‑to‑end vulnerability management program for Abridge’s products and applications, ensuring timely identification, prioritization, and remediation of critical security issues while doing so in as developer‑friendly a way as possible. Security Incident Response: Serve as an expert on Abridge’s products and applications for the security incident response team, assisting in investigating and resolving security events and incidents. What You’ll Bring Experience: 10+ years of direct experience in an Application Security role, with a demonstrated history of designing and implementing security improvements at scale. Programming Fluency: Deep proficiency in one or more major programming languages (Python and NextJS a big plus) and a solid background in software development principles. Cloud & Containers: Extensive experience securing applications deployed in Cloud environments (GCP a big plus) and knowledge of containerization technologies (Kubernetes). Technical Depth: Expert‑level knowledge of web application security techniques and principles, APIs, IAM (including identity, authentication/authorization, RBAC, ABAC), applied cryptography, etc. AI Security: Deep understanding of the security of AI and ML models, agents, and associated systems. Bonus Points If… Security Research: Proven experience contributing to or leveraging open‑source security tools, publishing security research, managing bug bounty programs, and active engagement in the security industry. Cross‑Functional Influence: Demonstrated ability to drive large, cross‑functional technical projects that impact security posture across the entire organization. Data‑Driven Security: Experience defining and utilizing security metrics to measure and report on the effectiveness of the AppSec program to both technical and executive audiences. Why Work at Abridge? At Abridge, we’re transforming healthcare delivery experiences with generative AI, enabling clinicians and patients to connect in deeper, more meaningful ways. Our mission is clear: to power deeper understanding in healthcare. We’re driving real, lasting change, with millions of medical conversations processed each month. Joining Abridge means stepping into a fast‑paced, high‑growth startup where your contributions truly make a difference. Our culture requires extreme ownership—every employee has the ability to (and is expected to) make an impact on our customers and our business. Beyond individual impact, you will have the opportunity to work alongside a team of curious, high‑achieving people in a supportive environment where success is shared, growth is constant, and feedback fuels progress. At Abridge, it’s not just what we do—it’s how we do it. Every decision is rooted in empathy, always prioritizing the needs of clinicians and patients. We’re committed to supporting your growth, both professionally and personally. Whether it’s flexible work hours, an inclusive culture, or ongoing learning opportunities, we are here to help you thrive and do the best work of your life. If you are ready to make a meaningful impact alongside passionate people who care deeply about what they do, Abridge is the place for you. How we take care of Abridgers: Generous Time Off : 14 paid holidays, flexible PTO for salaried employees, and accrued time off for hourly employees Comprehensive Health Plans : Medical, Dental, and Vision coverage for all full‑time employees and their families. Generous HSA Contribution : If you choose a High Deductible Health Plan, Abridge makes monthly contributions to your HSA. Paid Parental Leave : Generous paid parental leave for all full‑time employees. Family Forming Benefits : Resources and financial support to help you build your family. 401(k) Matching : Contribution matching to help invest in your future. Personal Device Allowance : Tax free funds for personal device usage. Pre‑tax Benefits : Access to Flexible Spending Accounts (FSA) and Commuter Benefits. Lifestyle Wallet : Monthly contributions for fitness, professional development, coworking, and more. Mental Health Support : Dedicated access to therapy and coaching to help you reach your goals. Sabbatical Leave : Paid Sabbatical Leave after 5 years of employment. Compensation and Equity : Competitive compensation and equity grants for full‑time employees. ... and much more! Equal Opportunity Employer Abridge is an equal opportunity employer and considers all qualified applicants equally without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, or disability. We provide reasonable accommodations throughout the interview process. If you need reasonable accommodation in applying, interviewing, completing any assessment or otherwise participating in the employee selection process, please contact us at View email address on click.appcast.io Staying safe – Protect yourself from recruitment fraud We are aware of individuals and entities fraudulently representing themselves as Abridge recruiters and/or hiring managers. Abridge will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Abridge recruiting team will come from an @abridge.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article. Please exercise caution and cease communications if something feels suspicious about your interactions. #J-18808-Ljbffr Abridge

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Staff Application Security Engineer in San Francisco, CA vacancy
  •  ...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout... 
    Suggested
    Contract work
    Remote work
    Flexible hours

    ZetaChain

    San Francisco, CA
    3 days ago
  • $140k - $170k

     ..., religion, national origin, age (40 and over), disability, military status, genetic information or any other basis protected by applicable federal, state, or local laws. Jobot also prohibits harassment of applicants or employees based on any of these protected categories... 
    Suggested
    Permanent employment
    Work at office
    Local area

    Jobot

    San Francisco, CA
    7 hours ago
  •  ...within a Vulnerability Management Program that understands Application Security with 5-7 years of security experience. Experience with any...  ...Secure code review experience using automated toolsets Software Engineering career experience Following Certifications: CISSP, CEH,... 
    Suggested

    Bridge Technologies and Solutions

    San Francisco, CA
    1 day ago
  • $231.9k - $318.25k

     ...directly with business data, and meets the highest standards of security and governance. AI is redefining what it means to build...  ...program have grown with it. We’re looking for an Application Security Engineer who combines deep security fundamentals with real engineering... 
    Suggested
    Shift work

    Retool

    San Francisco, CA
    1 day ago
  •  ...About Opal Security: At Opal, we’re building modern identity governance for the AI era...  ...down innovation. The Role: Most security engineers spend their careers bolting locks onto...  ...This is not that job. We're hiring an Application Security Engineer to own security across... 
    Suggested

    Opal Security

    San Francisco, CA
    1 day ago
  • $200k - $245k

     ...founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence...  ...and innovative problem-solving. We are seeking a Senior Application Security Engineer to lead the technical execution of our product security... 
    Full time
    Work at office
    Worldwide

    Blockchain Capital

    San Francisco, CA
    1 day ago
  •  ...Senior Security Engineer – Secure Code Review San Francisco, California On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software... 
    Full time

    AGS

    San Francisco, CA
    2 days ago
  •  ...Application Security Engineer San Francisco, California Heartflow is a medical technology company advancing the diagnosis and management of coronary artery disease, the #1 cause of death worldwide, using cutting-edge technology. The flagship product—an AI-driven,... 
    Work at office
    Local area
    Worldwide
    Relocation
    3 days per week

    HeartFlow

    San Francisco, CA
    4 days ago
  •  ...some of the most cutting edge software/security solutions platforms in the world Why...  ...Details RESPONSIBILITIES Perform application security assessments including manual...  ...backed workflows with customer product and engineering teams. Integrate security tooling (... 
    Long term contract
    Work at office
    Local area

    Jobot

    San Francisco, CA
    3 days ago
  •  ...Application Security Engineer The Application Security Engineer will be responsible for analyzing software code repositories, code designs, processes...  ...interpersonal skills, with the ability to enable fellow staff through training, communication and mentorship Problem... 

    Central Business Solutions

    San Francisco, CA
    4 days ago
  • $165k - $190k

     ...Senior Application Security Engineer San Francisco, California, United States Tatari is on a mission to revolutionize TV advertising. Founded in 2016 to help transform the antiquated world of TV advertising through the intelligent application of AI and machine learning... 
    Work at office
    2 days per week

    Tatari

    San Francisco, CA
    5 days ago
  •  ...and catch regressions — turning production data into better AI with every release. About the role We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted... 
    Flexible hours

    Brain Trust Inc

    San Francisco, CA
    1 day ago
  • $165k - $225k

     ...Senior Application Security Engineer Denver, CO or Long Beach, CA or SF Bay Area, CA Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it. True Anomaly delivers decisive capabilities for space... 
    Permanent employment
    Shift work

    True Anomaly

    San Francisco, CA
    3 days ago
  •  ...A mission-driven software company in San Francisco seeks a Principal Security Engineer to enhance security measures in their applications. The role includes conducting assessments, responding to incidents, and improving security architecture while maintaining a collaborative... 

    Binti Inc

    San Francisco, CA
    1 day ago
  • $225k - $400k

     ...Pinterest, Canva, and CDW. We grew 6x in 2025 and are continuing to scale fast. The Role We're hiring our first dedicated Lead Application Security Engineer to own the security of the Ivo platform end to end. You'll partner directly with our Head of IT & Security and embed... 
    Contract work
    Work at office
    Visa sponsorship
    Relocation package

    IVO Inc

    San Francisco, CA
    1 day ago
  • $160k - $240k

     ..., and suppliers with the help of AI agents, companies can secure the resources they need to innovate faster than ever before...  ...and integrity of our customers' data. As our first Application Security Engineer , you will take on a dynamic and high impact role. You will... 
    Home office
    Flexible hours

    ZIP

    San Francisco, CA
    2 days ago
  •  ...Find out more about our hiring culture: Dream Team Culture Job Description At ZetaChain, we are seeking a dedicated Protocol Security Engineer to play a pivotal role in fortifying the security of our cutting-edge protocol. You will be deeply involved in the development... 
    Contract work
    Remote work
    Home office

    Blockchain Works

    San Francisco, CA
    2 days ago
  • $200k - $340k

     ...Application Security Engineer Palo Alto, CA About XAI XAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This... 
    Temporary work

    Xai

    San Francisco, CA
    4 days ago
  • A leading procurement technology firm in San Francisco is seeking its first Application Security Engineer to build security guardrails and enhance product security across their platforms. The successful candidate will lead security initiatives, collaborate on product launches... 

    ZipHQ, Inc.

    San Francisco, CA
    3 days ago
  • A leading software company in San Francisco is looking for an Application Security Engineer. This hybrid role requires strong experience in automated vulnerability scanning and penetration testing. Responsibilities include developing secure coding practices, conducting... 

    Ironclad Inc.

    San Francisco, CA
    5 days ago
  • $170k - $190k

    A leading software security company is hiring an Application Security Engineer in San Francisco. This hybrid role involves conducting security assessments, implementing best practices, and addressing vulnerabilities in the software. Candidates should have a BA/BS in Computer... 

    Ironclad

    San Francisco, CA
    5 days ago
  • Application Security Engineer (Senior) ID71672 Full time | AgileEngine | United States Posted On 06/18/2026 Job Information City San Francisco State/Province California 94111 IT Services Job Description AgileEngine is an Inc. 5000 company that creates award-winning... 
    Full time
    Work at office
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    AgileEngine, LLC.

    San Francisco, CA
    4 days ago
  • Application Security Engineer (Middle) ID71671 Full time | AgileEngine | United States Posted On 06/18/2026 Job Information City: San Francisco State/Province: California Zip: 94111 Department: IT Services Job Description AgileEngine is an Inc. 5000 company that creates... 
    Full time
    Work at office
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    AgileEngine, LLC.

    San Francisco, CA
    4 days ago
  • $325k - $405k

    A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience... 
    Remote job

    OpenAI

    San Francisco, CA
    1 day ago
  • $215k

    Quanata is seeking an Application Security Engineer to ensure secure application development within our AI-native insurance platform. This role involves collaborating with Product, Engineering, and Security teams to integrate security controls throughout the software lifecycle... 
    Remote job

    Quanata

    San Francisco, CA
    3 days ago
  • Opal Security is looking for an Application Security Engineer to take charge of security across its product and platform. You will work closely with engineers to integrate security into the design and development process, ensuring that the systems are robust and secure... 

    Opal Security

    San Francisco, CA
    2 days ago
  • $230k - $255k

     ...Full time Location Type Hybrid Department Security About Us: Notion helps you build...  ...path forward to the future. The Notion application is flexible, powerful and always evolving...  ...customers. Notion is looking for security engineers that have a passion for making it as... 
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours

    Monograph

    San Francisco, CA
    4 days ago
  • Braintrust, based in San Francisco, is seeking an Application Security Engineer to ensure security in their high-availability data platform. This role involves reviewing code, leading security initiatives related to AI models, and managing vulnerabilities. The ideal candidate... 
    Flexible hours

    Braintrust

    San Francisco, CA
    1 day ago
  • Retool Inc. in San Francisco is seeking an Application Security Engineer to enhance our security posture by identifying and addressing systemic security gaps in our codebase. This role is crucial as you will work closely with engineering teams to ensure secure practices... 

    Retool

    San Francisco, CA
    1 day ago
  • Ivo Inc. in San Francisco is seeking a Lead Application Security Engineer to own the security of its platform, ensuring the protection of sensitive contracts for enterprise clients. This hands-on role involves vulnerability testing, threat modeling, and mentoring engineering... 
    Work at office

    Ivo Inc.

    San Francisco, CA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Application Security Engineer. Be the first to apply!