Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Application Security Engineer

$140k - $180k
Full-time

Zeta Global

Role Description

We’re seeking a Lead Application Security Engineer to help advance Zeta Global’s application and platform security posture through AI-native security practices, intelligent automation, and scalable security engineering. You’ll play a critical role in embedding security throughout the software development lifecycle by using AI-driven tools, automated controls, and data-informed risk prioritization to ensure our systems, applications, and AI-powered platforms are built securely from the ground up.

Zeta operates at massive scale, powering billions of consumer profiles and petabytes of data across real-time, AI-powered marketing platforms. In this role, you’ll collaborate with Engineering, Product, QA, DevOps, and AI platform teams to identify risks, design secure-by-default patterns, and build automated security capabilities that enable secure innovation at speed.

This position offers significant technical scope, cross-functional visibility, and the opportunity to directly influence the company’s security maturity through AI-enabled threat modeling, automated validation, intelligent vulnerability management, and proactive defense.

Key Responsibilities

  • AI-Driven Threat Modeling & Security Validation
    • Use AI-assisted threat modeling capabilities to identify application, platform, API, cloud, data, and AI/ML security risks early in the design and development process.
    • Leverage automated security review tools to evaluate architecture, design documents, code changes, APIs, and data flows for security gaps and control weaknesses.
    • Drive AI-assisted code security reviews using SAST, DAST, SCA, secrets detection, IaC scanning, container scanning, and contextual risk analysis.
    • Use automation and intelligent correlation to assess third-party libraries, APIs, vendor integrations, and open-source dependencies for security, compliance, and supply-chain risk.
    • Support AI-enabled red team, blue team, and incident response simulations to validate detection, prevention, and response capabilities.
  • Embedding AI-Native Security into the SDLC
    • Partner with developers and QA engineers to embed AI-driven security testing and automated risk detection into CI/CD pipelines.
    • Build and improve security automation that provides real-time feedback to developers during design, coding, testing, release, and deployment.
    • Use AI-assisted analysis to review architecture and design artifacts, identify risks earlier, and recommend secure implementation patterns.
    • Contribute to intelligent security checkpoints that reduce manual review effort while improving consistency, traceability, and developer velocity.
    • Help design scalable guardrails, reusable security controls, and policy-as-code capabilities across application and platform teams.
  • Emerging Threat Monitoring & Proactive Defense
    • Monitor evolving application, cloud, API, AI/ML, and data security risks using AI-assisted threat intelligence, vulnerability intelligence, and attack-pattern analysis.
    • Identify and evaluate AI-specific threats such as prompt injection, data poisoning, model abuse, model leakage, insecure tool use, and sensitive data exposure.
    • Assist in designing and deploying proactive defense mechanisms across applications, APIs, data platforms, and AI-powered systems.
    • Use automated signals, telemetry, and risk scoring to support investigations, post-incident analysis, and continuous improvement of prevention and detection capabilities.
    • Translate recurring vulnerabilities and incidents into feedback loops that improve threat models, secure design patterns, and SDLC controls.
  • Security Awareness, Standards & Scalable Enablement
    • Promote secure coding and secure design practices through AI-assisted guidance, reusable playbooks, automated recommendations, and developer-friendly documentation.
    • Contribute to internal security standards, secure engineering patterns, and AI-native security playbooks.
    • Help teams adopt security self-service capabilities that reduce dependency on manual AppSec review.
    • Collaborate closely with Engineering, DevOps, QA, Product, and AI platform teams to foster a security-first and automation-first culture.
    • Use metrics and insights to measure control effectiveness, remediation trends, developer adoption, and overall security maturity.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
  • 5+ years of experience in Application Security, DevSecOps, Secure Software Development, or Security Engineering.
  • Strong understanding of OWASP Top 10, SANS CWE Top 25, secure design principles, and application threat modeling.
  • Familiarity with AI/ML security concepts such as prompt injection, data poisoning, adversarial testing, model integrity, model abuse, and AI supply-chain risks.
  • Experience building or integrating AI-assisted security workflows, security bots, automated triage systems, or risk scoring models.
  • Experience using AI-assisted or automation-driven approaches to improve security testing, vulnerability analysis, code review, or risk prioritization.
  • Experience with modern application frameworks and architectures such as React, Node.js, Django, FastAPI, or similar technologies.
  • Knowledge of securing APIs, microservices, authentication, and authorization mechanisms such as OAuth2, OIDC, JWT, and service-to-service authentication.
  • Experience with cloud platforms such as AWS, GCP, or Azure, and containerized environments such as Docker and Kubernetes.
  • Working knowledge of security testing and automation tools such as Semgrep, SonarQube, Burp Suite, OWASP ZAP, Trivy, Snyk, GitHub Advanced Security, or similar tools.
  • Ability to analyze security findings, correlate risk context, and drive practical remediation guidance for engineering teams.
  • Strong collaboration and communication skills with the ability to work across Engineering, Product, QA, DevOps, and Security teams.

Nice to Have

  • Experience with policy-as-code, infrastructure-as-code security, CI/CD security controls, and automated governance.
  • Experience with automation frameworks and scripting for security testing, vulnerability validation, and remediation workflows.
  • Relevant certifications such as OSCP, GWAPT, CSSLP, cloud security certifications, or AI/ML-specific security certifications.

Benefits

  • Unlimited PTO
  • Excellent medical, dental, and vision coverage
  • Employee Equity
  • Employee Discounts, Virtual Wellness Classes, and Pet Insurance
  • And more!!

Salary Range

The salary range for this role is $140,000 - $180,000, depending on location and experience.

People & Culture at Zeta

Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.

We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another.

Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Lead Application Security Engineer in Remote vacancy
  • $99k - $225k

    Application Security Engineer, LeadThe Opportunity: A well-designed network is critical to move data and enable financial institutions to achieve...  ...develop the exact network financial institutions need.As a Lead Application Security Engineer on our team, you’ll use your... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Colorado Springs, CO
    5 days ago
  • $86.9k - $198k

    Application Security EngineerThe Opportunity: Everyone is trying to “harness the cloud”, but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Pensacola, FL
    1 day ago
  •  ...hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our...  ...to protect the organization’s systems and data. This role leads security monitoring, vulnerability management, and... 
    Suggested
    Full time
    Local area
    Remote work
    Flexible hours
    Shift work

    Amerisure Insurance Company

    Farmington Hills, MI
    1 day ago
  • $99k - $225k

    Application Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Huntsville, AL
    2 days ago
  • $90k - $125k

     ...united by our mission of creating opportunities for people where they live, learn, and work.We are seeking a highly skilled Application Security Engineer with strong experience across secure code review, penetration testing, automation, and modern SDLC practices—including... 
    Suggested
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    3 days per week

    Nelnet

    Lincoln, NE
    1 day ago
  • Opportunity OverviewTeam Overview:The Application Security Engineer, Agentic Secure Code Harness Engineer is a hands-on role responsible for operating, monitoring, and improving an AI-enabled AppSec harness used to evaluate application and infrastructure source code for... 
    Temporary work
    Work at office
    Home office
    Flexible hours
    3 days per week

    Edward Jones

    Tempe, AZ
    2 days ago
  • $70 - $75 per hour

     ...intelligence data to inform security protocols and architectural standards...  ...Lifecycle Management:• Lead the triage and remediation of...  ...QualificationsCore Skills:• Application Security (AppSec)• Secure Software...  ...Research & Reverse Engineering• Python and C Programming• Infrastructure... 
    Contract work
    Temporary work
    Remote work

    TEKsystems

    Dearborn, MI
    4 days ago
  •  ...just getting started.About The RoleOur Security Engineering team builds intelligent systems that...  ...matter, not gates where they don't.As our Application Security Engineer, you'll own how we...  ...so root causes get addressed quickly. Lead threat modeling and security design... 
    Work at office
    Monday to Friday
    Shift work

    Opendoor

    Miami, FL
    3 days ago
  • $100.63k - $167.79k

     ...your success while helping clients pursue their financial goals. Job Overview:As a member of the Information Security team, the Sr. Application Security Engineer will be responsible for helping to develop, mature, and sustain the Application Security program for the... 
    Full time
    Work from home

    LPL Financial

    Austin, TX
    4 days ago
  • $160.3k - $240.5k

     ...energy, and government. Our Product Security team keeps that platform, and the software...  ...their users.We are seeking a Senior Application Security Engineer with profound expertise in...  ...UnityUnity [NYSE: U] is the world’s leading game engine, powering play for more than... 
    Full time
    Work at office
    Remote work
    Worldwide

    Unity Technologies

    Texas
    1 day ago
  • $111k - $144.4k

     .../ Reno, NVAdministration - Enterprise Information Security /Full-Time /RemoteThe Sr. Application Security Engineer is responsible for validating that application services...  ...the introduction of program design flaws that may lead to exploitation. As issues are uncovered, the... 
    Full time
    Temporary work
    Work experience placement
    Remote work

    Clear Capital

    Reno, NV
    4 days ago
  • $120.38k - $192.6k

     ...office location.Relocation assistance: is not available for this opportunity.Requisition #: 76525The Role at a GlanceThe Lead Application Security Engineer is responsible for working with application development and infrastructure teams to ensure applications are designed,... 
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Lincoln Financial Group

    Radnor, PA
    1 day ago
  •  ...Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we...  ...role focuses on comprehensive application security testing and vulnerability management across...  ...and Python as needed for security engineering and automation.Vulnerability Management... 
    Full time
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Jersey City, NJ
    5 days ago
  •  ...customers’ business challenges, Take2 will work as a partner to best resolve client needs. Take2 is hiring a Senior Application Security Engineer. This is a fully remote role. Job Description ~6+ years of Information Technology experience ~3+ years of experience... 
    Full time
    Remote work

    Take2 Consulting LLC

    McLean, VA
    1 day ago
  • $120k

     ...Job Posting Title: Senior Application Security Engineer ---- Hiring Department: Dell Medical School ---- Position Open To:...  ...platform, and enterprise application environments. This role leads secure code review, application security testing, vulnerability... 
    For contractors
    Work at office
    Immediate start

    University of Texas at Austin

    Austin, TX
    2 days ago
  •  ...Affirm is seeking a security-focused professional to evaluate third-party risk and automate GRC workflows. You will apply security policy...  ...to replace manual work, partnering with procurement and engineering teams. You will develop expertise in security risk, produce dashboards... 
    Remote work

    Affirm

    Portland, OR
    1 day ago
  •  ...Senior Application Security Engineer (AI-First Development) The primary responsibility of the Senior Application Security Engineer (AI-First Development...  ...security experience, including time in senior or lead positions owning the design and delivery of non-trivial security... 
    Remote work

    Las Vegas Sands Corp.

    United States
    1 day ago
  • $85k - $105k

     ...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship

    Bright Vision Technologies

    United States
    4 days ago
  • $70 - $75 per hour

     ...intelligence data to inform security protocols and architectural standards...  ...Lifecycle Management: • Lead the triage and remediation of...  ...environment. Skills Application security, Owasp, Security...  ...Vulnerability Research & Reverse Engineering • Python and C Programming... 
    Contract work
    Temporary work
    Remote work

    TEKsystems

    Dearborn, MI
    5 days ago
  • $102k - $157k

     ...technologies in support of U.S. National Security and Defense. For the past forty-five...  ...require U.S. citizenship for all employees. Applicants that do not meet this requirement will...  ...an immediate opportunity for a talented engineer to support our programs delivering Next-... 
    Temporary work
    For contractors
    Work experience placement
    Immediate start
    Remote work
    Flexible hours

    SciTec

    Boulder, CO
    1 day ago
  • $140k - $200k

     ...Senior Application Security Engineer New York, New York; Miami, Florida; Remote (USA) Gemini is a global crypto and Web3 platform founded by...  ...tools to make this vision secure. Responsibilities: Lead secure design reviews, threat modeling, code review, and... 
    Work at office
    Remote work
    Flexible hours

    Gemini, Inc.

    Miami, FL
    4 days ago
  • $175k

     ...Overview Corporate Tools is hiring an Security Engineer for $175,000/year. You will be a traditional company employee. This is a remote...  ...of security knowledge of testing mobile, native applications, web applications, distributed and database systems ~ Must... 
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours
    Weekend work

    Corporate Tools

    United States
    1 day ago
  • $100k - $135k

     ...Diversified Services Network, Inc. (DSN) is seeking a full-time Sr. Application Security Engineer to join our team in Chicago, IL. We offer remote work, with occasional onsite work, based in Chicago, IL, full benefits, PTO, 401k, and more! If you're looking to grow your... 
    Full time
    Casual work
    Remote work

    Diversified Services Network

    United States
    1 day ago
  •  ...Application Security Engineer This role is primarily focused on security administration for ERP applications such as Oracle HCM Cloud, PeopleSoft...  ...formal supervisory responsibilities in this position. May lead small projects and security enhancements.... 
    Remote work

    TriOptus LLC

    United States
    1 day ago
  •  ...Application Security Engineer Remote At Ardent, we hire people who want more than a job — they want to serve a mission that matters. Our teams support the federal government's most critical national security and defense priorities, helping protect the nation, strengthen... 
    Local area
    Remote work
    Flexible hours

    Ardent Services

    United States
    2 days ago
  •  ...As a Sr. Application Security Engineer at vCluster Labs, you are the architect of trust in our diverse ecosystem. In this role, you will be responsible...  ...our multi-tenant architecture. Threat Modeling: Lead the threat modeling process for new features, proactively... 
    Remote work
    Flexible hours
    Shift work

    vCluster

    Canada, KY
    2 days ago
  • $82k - $118k

     ...Application Security Engineer Guild Mortgage Company, closing loans and opening doors since 1960. As a mortgage banking firm we are dedicated to serving the home owner/buyer. Our goal is to provide affordable home financing for our customers, utilizing the best terms... 
    Minimum wage
    Work at office
    Local area
    Remote work
    Work from home
    Monday to Friday
    Shift work

    Guild Mortgage

    United States
    5 days ago
  •  ...Application Security Engineer We are looking for an application security engineer who is based in the UK for a majority remote role based in London. In order to be considered, the candidate must have the following experience: Experience assessing security impacts... 
    Remote work

    hackajob

    United States
    5 days ago
  •  ...Application Security Engineer We are hiring an Application Security Engineer to help embed security into the software development lifecycle and improve the security posture of applications before they reach production. In this role, you will review application design... 
    Remote work

    Vurke

    United States
    4 days ago
  •  ...Application security engineer - threat & vulnerability management (ai focus) Us remote, cst zone Application security engineer - threat...  ...software bill of materials (sbom) capability. ~ Lead threat modeling for agents against the owasp llm top-10... 
    Remote work

    Lorven Technologies

    United States
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Application Security Engineer. Be the first to apply!