Lead Application Security Engineer
$140k - $180kZeta Global
WHO WE ARE
Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to
About the Role
We’re seeking a Lead Application Security Engineer to help advance Zeta Global’s application and platform security posture through AI-native security practices, intelligent automation, and scalable security engineering. You’ll play a critical role in embedding security throughout the software development lifecycle by using AI-driven tools, automated controls, and data-informed risk prioritization to ensure our systems, applications, and AI-powered platforms are built securely from the ground up.
Zeta operates at massive scale, powering billions of consumer profiles and petabytes of data across real-time, AI-powered marketing platforms. In this role, you’ll collaborate with Engineering, Product, QA, DevOps, and AI platform teams to identify risks, design secure-by-default patterns, and build automated security capabilities that enable secure innovation at speed.
This position offers significant technical scope, cross-functional visibility, and the opportunity to directly influence the company’s security maturity through AI-enabled threat modeling, automated validation, intelligent vulnerability management, and proactive defense.
Key Responsibilities
AI-Driven Threat Modeling & Security Validation
- Use AI-assisted threat modeling capabilities to identify application, platform, API, cloud, data, and AI/ML security risks early in the design and development process.
- Leverage automated security review tools to evaluate architecture, design documents, code changes, APIs, and data flows for security gaps and control weaknesses.
- Drive AI-assisted code security reviews using SAST, DAST, SCA, secrets detection, IaC scanning, container scanning, and contextual risk analysis.
- Use automation and intelligent correlation to assess third-party libraries, APIs, vendor integrations, and open-source dependencies for security, compliance, and supply-chain risk.
- Support AI-enabled red team, blue team, and incident response simulations to validate detection, prevention, and response capabilities.
Embedding AI-Native Security into the SDLC
- Partner with developers and QA engineers to embed AI-driven security testing and automated risk detection into CI/CD pipelines.
- Build and improve security automation that provides real-time feedback to developers during design, coding, testing, release, and deployment.
- Use AI-assisted analysis to review architecture and design artifacts, identify risks earlier, and recommend secure implementation patterns.
- Contribute to intelligent security checkpoints that reduce manual review effort while improving consistency, traceability, and developer velocity.
- Help design scalable guardrails, reusable security controls, and policy-as-code capabilities across application and platform teams.
Emerging Threat Monitoring & Proactive Defense
- Monitor evolving application, cloud, API, AI/ML, and data security risks using AI-assisted threat intelligence, vulnerability intelligence, and attack-pattern analysis.
- Identify and evaluate AI-specific threats such as prompt injection, data poisoning, model abuse, model leakage, insecure tool use, and sensitive data exposure.
- Assist in designing and deploying proactive defense mechanisms across applications, APIs, data platforms, and AI-powered systems.
- Use automated signals, telemetry, and risk scoring to support investigations, post-incident analysis, and continuous improvement of prevention and detection capabilities.
- Translate recurring vulnerabilities and incidents into feedback loops that improve threat models, secure design patterns, and SDLC controls.
Security Awareness, Standards & Scalable Enablement
- Promote secure coding and secure design practices through AI-assisted guidance, reusable playbooks, automated recommendations, and developer-friendly documentation.
- Contribute to internal security standards, secure engineering patterns, and AI-native security playbooks.
- Help teams adopt security self-service capabilities that reduce dependency on manual AppSec review.
- Collaborate closely with Engineering, DevOps, QA, Product, and AI platform teams to foster a security-first and automation-first culture.
- Use metrics and insights to measure control effectiveness, remediation trends, developer adoption, and overall security maturity.
What You Need to Succeed
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- 5+ years of experience in Application Security, DevSecOps, Secure Software Development, or Security Engineering.
- Strong understanding of OWASP Top 10, SANS CWE Top 25, secure design principles, and application threat modeling.
- Familiarity with AI/ML security concepts such as prompt injection, data poisoning, adversarial testing, model integrity, model abuse, and AI supply-chain risks.
- Experience building or integrating AI-assisted security workflows, security bots, automated triage systems, or risk scoring models.
- Experience using AI-assisted or automation-driven approaches to improve security testing, vulnerability analysis, code review, or risk prioritization.
- Experience with modern application frameworks and architectures such as React, Node.js, Django, FastAPI, or similar technologies.
- Knowledge of securing APIs, microservices, authentication, and authorization mechanisms such as OAuth2, OIDC, JWT, and service-to-service authentication.
- Experience with cloud platforms such as AWS, GCP, or Azure, and containerized environments such as Docker and Kubernetes.
- Working knowledge of security testing and automation tools such as Semgrep, SonarQube, Burp Suite, OWASP ZAP, Trivy, Snyk, GitHub Advanced Security, or similar tools.
- Ability to analyze security findings, correlate risk context, and drive practical remediation guidance for engineering teams.
- Strong collaboration and communication skills with the ability to work across Engineering, Product, QA, DevOps, and Security teams.
Nice to Have
- Experience with policy-as-code, infrastructure-as-code security, CI/CD security controls, and automated governance.
- Experience with automation frameworks and scripting for security testing, vulnerability validation, and remediation workflows.
- Relevant certifications such as OSCP, GWAPT, CSSLP, cloud security certifications, or AI/ML-specific security certifications.
BENEFITS & PERKS
- Unlimited PTO
- Excellent medical, dental, and vision coverage
- Employee Equity
- Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!
SALARY RANGE
The salary range for this role is $220,000-$250,000 TC, depending on location and experience.
PEOPLE & CULTURE AT ZETA
Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.
We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here:
ZETA IN THE NEWS!
#LI-TS1
$165.2k - $295k
...thousands of connected devices. The Samsara Application Security team protects this vast footprint end-... ...field.As a Staff Application Security Engineer, you’ll drive the overarching technical... ...do your best.In this role, you will: Lead the ongoing strategy, operation, and...SuggestedFull timeRemote workFlexible hoursShift work- ...Senior Application Security Engineer ID87004 Full time | AgileEngine | United States Job Information City San Francisco State/Province... ...top-tier clients that include Fortune 500 enterprises and leading product brands. Flextime : Tailor your schedule for an...SuggestedFull timeWork at officeWork from homeVisa sponsorshipWork visa
- ...Partner with the engineering team to provide hands-on technical guidance... ...lifecycle. Perform secure code reviews, validate false... ...technical audiences. Experience leading training, speaking internally... ...at least 1 year working in Application Security or performing security...Suggested
$213k - $295k
...Responsibilities Build security capabilities, automation, and guardrails for mobile applications and backend/API services. Perform application and API/backend... ...vulnerabilities across Chime products. Partner with engineering and product teams to embed security into the...SuggestedFull timeWork at officeLocal areaRemote work- ...number one goal, we want to hear from you. As our Senior Application Security Engineer, you will be the primary owner and driver of our application... .... What You’ll Do Application Security Ownership ~Lead and evolve the company’s application security strategy, roadmap...SuggestedFull time
$213k
...About the role We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team. This role is hands-on and impact driven. You will work directly with mobile, backend, and platform engineering...Full time$100k - $196k
...are seeking a highly motivated and skilled Senior Cyber Security Application Penetration Testing Engineer to join our Technology Cybersecurity department. In this technical role, you will be responsible for leading and conducting penetration testing on applications,...Full timeWork experience placementWork at officeFree visa2 days per week3 days per week$117.2k - $176.7k
...to level-up your career at the company leading workforce transformation in the... ...future of Salesforce.Job Title: Product Security Engineer, InfrastructureJob Category: Technology... ...public cloud environments, including web applications, distributed systems, and virtualized...Full time$160k - $250k
...see it in full.About the teamAirwallex’s Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems,... ...related to the security of our networks, systems and applications.What you’ll be doingPartner with other teams within...Temporary workLocal area$172.5k - $313.7k
...to level-up your career at the company leading workforce transformation in the... ...the future of Salesforce.The MeshMesh Security Engineer safeguards the platform and its customers... ...of the system, from infrastructure to application code.ResponsibilitiesConduct security...Full time- ...company, working on cutting-edge AI and working on data-driven solutions. We are a team of passionate engineers and data experts, and we are currently looking for an Application Engineer to join our team and help us develop and expand our tools and products. The Role...Work experience placement
- ...addresses.About The RoleWe're looking for a hands-on staff security engineer to play a key role in building Rippling's Product... ...infrastructure with terraformOur Product Security lead talked about the Future Application Security EngineersOur Security Engineering lead talk...Work at officeRelocation3 days per week1 day per week
$172.5k - $313.7k
...-up your career at the company leading workforce transformation in the... ...Salesforce.Job Title: Principal Engineer, Product SecurityThe ExperienceThe Product Security team sits within Trust &... ...experience in a Product Security, Application Security, or Security Architecture...Full time- ...Role Overview As a Senior Software Engineer on the Product Security team at Harvey, you will have the... ...growth opportunity. What You’ll Do Lead critical security initiatives with... ...of experience in product security, application security, offensive security, and/or...Work experience placement
- ...Product Security Engineer San Francisco Engineering Hybrid Full-time About BackOps BackOps AI transforms supply... ...in CI with a triage path engineers actually use. Run application vulnerability management end to end. Find it, prioritize it...Full timeWork at officeFlexible hours
- ...why we’re able to serve a wide range of leading companies. For example, Reddit relies on... ...identity verification infrastructure where security isn't a layer we add later, it's core to... .... As AI tooling expands what engineers can build and how fast they can build it...Full timeFor contractorsInternshipRelocation package
- ...Zof AI is seeking a Product Security Engineer to own the security posture of a platform that... ...repository. If you have worked as an Application Security Engineer, Product Security Engineer... ...detection. Experience leading enterprise security reviews or SOC 2 audit...Full time
$175k - $200k
...Doppel is building the future of social engineering defense. Our AI-native platform uses agentic... ..., Human Risk Management and Email Security, Doppel connects threats into a real-time... ...security awareness at scale. Backed by leading investors including Andreessen Horowitz...Work at officeImmediate startRemote workFlexible hours- ...Doppel is building the future of social engineering defense with an AI-native platform. We seek a Product Security Engineer to embed security into engineering workflows... ...engineering teams to scale security programs, lead vulnerability management, and enable secure AI-...
$175k - $215k
...looking for someone to make sure it's built securely from the ground up. As part of the... ...ll be building it, working closely with engineering teams, shipping production code,... ...models ~ Production experience with application security tooling (SAST, DAST, SCA) and...Temporary work$172.5k - $285.8k
...Join Salesforce as a Security Engineer (Senior/Lead) in San Francisco, CA (onsite) , helping protect the platform and customers by embedding security across infrastructure and application code . You will contribute to how new capabilities are designed, validated,...- ...Field Applications EngineerOur client is a leading semiconductor technology company specialising in advanced RFIC products, mixed-signal baseband/modem... ...and defence.We are recruiting for a Field Applications Engineer (FAE) to support and grow the business across the Americas...
$109k - $130k
...key to this person’s success at LITEON. Base pay range $109,000.00/yr – $130,000.00/yr JOB DUTIES AND RESPONSIBILITIES Field Application Engineer located in Bay Area, CA / Boston, MA; serve as regional FAE for 1st tier & 2nd tier customers with immediate responsibility...Odd jobFull timeLocal areaImmediate start$160k - $230k
...the next generation of computing. We are seeking a Field Application Engineer to join our growing Sales Support team. Efficient's Field Application... ...Sales Managers, distributors and representatives to secure design-wins and drive them to production Provide hands‑on...Immediate start- .... And everything you learn feeds straight back into product, engineering, and sales. Responsibilities Own every technical conversation... ...more years in a customer facing technical role such as Field Applications Engineer, Systems Engineer, or something similar A solid grasp...Work at office
$107.4k - $155.7k
Software Product Security Engineer - HP IQ Description - About the Role As a Software Engineer specializing in Device Security , you... ...TrustZone, TEE, kernel-level, or other hardware-backed security applications with guidance from experienced engineers. Help implement...Full timeTemporary workLocal areaRelocationFlexible hoursShift work- ...is a global Tier‑1 supplier with a strong manufacturing and engineering footprint across North America (United States, Mexico, Canada... ...robotics, AI cooling, power/energy, and other next-generation applications Support product design, material selection, process selection...
- ...evolving and innovating. Join us and be part of a company that values creativity, agility, and impactful work. The Field Application Engineer is responsible for providing pre-sales customer support and training for SolarEdge products. Location : West Coast, Southwest...Remote workWorldwide
$190k - $240k
...Ouster, we build sensors and tools for engineers, roboticists, and researchers, so they can... ...autonomous cars, drones and many other applications. If you’re motivated by solving big problems... ...Field Application Engineer to build and lead the team that sits between Ouster’s...Full timeWork experience placementLocal areaWorldwide- ...Job Description Job Description Job Description: Entry Level Lighting Controls Application Engineer I. You will gain exciting real-world experience and understanding of architectural and electrical drawing sets, Title 24 building code requirements, hands on design...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Application Security Engineer. Be the first to apply!
- lead operating engineer San Francisco, CA
- lead infrastructure engineer San Francisco, CA
- lead engineer San Francisco, CA
- network applications engineer San Francisco, CA
- field applications engineer San Francisco, CA
- project application engineer San Francisco, CA
- application security engineer San Francisco, CA
- application support engineer San Francisco, CA
- hydraulic application engineer San Francisco, CA
- technical application engineer San Francisco, CA




