Senior/Staff Application Security Engineer
Abridge
About Abridge Abridge was founded in 2018 with the mission of powering deeper understanding in healthcare. Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation efficiencies while enabling clinicians to focus on what matters most—their patients. Our enterprise-grade technology transforms patient-clinician conversations into structured clinical notes in real-time, with deep EMR integrations. Powered by Linked Evidence and our purpose-built, auditable AI, we are the only company that maps AI-generated summaries to ground truth, helping providers quickly trust and verify the output. As pioneers in generative AI for healthcare, we are setting the industry standards for the responsible deployment of AI across health systems. We are a growing team of practicing MDs, AI scientists, PhDs, creatives, technologists, and engineers working together to empower people and make care make more sense. We have offices located in the Mission District in San Francisco, the SoHo neighborhood of New York, and East Liberty in Pittsburgh. The Role Want to work on building out security from the ground up at the leading edge of AI in healthcare globally? We\'re looking for a very experienced and highly motivated Senior or Staff Application Security Engineer to join our team as one of the first engineers on the Abridge Security team. In this role, you\'ll be a key technical leader, driving key initiatives that shape our product, infrastructure, and engineering practices. Impact both the vision and hands-on execution of our secure software development lifecycle (SDLC) across the entire product portfolio. You\'ll work cross-functionally with product and engineering teams to integrate security seamlessly, automate security capabilities and controls, and mentor others to build secure-by-default systems at scale in the age of AI. This position requires deep technical expertise, a builder\'s mindset, and excellent communication skills to influence security culture across the organization. What You’ll Do Secure Development & Architecture Leadership Lead Threat Modeling and Design Reviews: Impact the product from ideation through to code that is shipping to production. Conduct advanced threat modeling and security architecture reviews for complex systems, new products, and platform initiatives, providing expert guidance and requirements to meet Abridge’s security goals. Define Security Strategy: Define and implement the technical roadmap for the Application Security program, focusing on scalable assurance, proactive security measures, and setting clear standards and guardrails. Mentor and Enable: Act as a subject matter expert and trusted advisor to product and engineering teams, providing mentorship on security features, product defense, secure coding practices, application architecture, and vulnerability remediation strategies. Security Automation and Tooling Build Security Pipelines & Key Capabilities: Design, implement, and maintain advanced security automation tools and services, integrating them seamlessly into CI/CD pipelines (e.g., automated SAST, DAST, SCA, IaC, WAF, etc.). Tool Management & Tuning: Own the deployment, configuration, and maintenance of AppSec tooling, tuning scanners and custom rules to reduce false positives and maximize efficacy across various technology stacks. Drive Proactive Security: Develop custom scripts and tooling to automate repetitive security tasks, accelerate vulnerability detection, and enforce policy-as-code across the development environment. Vulnerability Management & Incident Response Code and Security Reviews: Perform and lead in-depth secure code reviews (both manual and tool-assisted) to identify complex security vulnerabilities and flaws, including logic and authorization vulnerabilities that automated tools often miss. Get hands on with assessing AI models, agents, and architectures. Vulnerability Program Oversight: Working with the AppSec team, oversee the end-to-end vulnerability management program for Abridge’s products and applications, ensuring timely identification, prioritization, and remediation of critical security issues while doing so in as developer-friendly a way as possible. Security Incident Response: Serve as an expert on Abridge’s products and applications for the security incident response team, assisting in investigating and resolving security events and incidents. What You’ll Bring Experience: 7+ years of direct experience in an Application Security role, with a demonstrated history of designing and implementing security improvements at scale. Programming Fluency: Deep proficiency in one or more major programming languages (Python and NextJS a big plus) and a solid background in software development principles. Cloud & Containers: Extensive experience securing applications deployed in Cloud environments (GCP a big plus) and knowledge of containerization technologies (Kubernetes). Technical Depth: Expert-level knowledge of web application security techniques and principles, APIs, IAM (including identity, authentication/authorization, RBAC, ABAC), applied cryptography, etc. SDLC/DevSecOps: Hands-on experience integrating security testing and tooling (SAST, DAST, SCA, IaC, WAF, etc.) and gates into modern development workflows and CI/CD systems. Bonus Points If… AI Security: Deep understanding of the security of AI and ML models, agents, and associated systems. Security Research: Proven experience contributing to or leveraging open-source security tools, publishing security research, managing bug bounty programs, and active engagement in the security industry. Cross-Functional Influence: Demonstrated ability to drive large, cross-functional technical projects that impact security posture across the entire organization. Data-Driven Security: Experience defining and utilizing security metrics to measure and report on the effectiveness of the AppSec program to both technical and executive audiences. Why Work at Abridge? At Abridge, we’re transforming healthcare delivery experiences with generative AI, enabling clinicians and patients to connect in deeper, more meaningful ways. Our mission is clear: to power deeper understanding in healthcare. We’re driving real, lasting change, with millions of medical conversations processed each month. Joining Abridge means stepping into a fast-paced, high-growth startup where your contributions truly make a difference. Our culture requires extreme ownership—every employee has the ability to (and is expected to) make an impact on our customers and our business. Beyond individual impact, you will have the opportunity to work alongside a team of curious, high-achieving people in a supportive environment where success is shared, growth is constant, and feedback fuels progress. At Abridge, it’s not just what we do—it’s how we do it. Every decision is rooted in empathy, always prioritizing the needs of clinicians and patients. We’re committed to supporting your growth, both professionally and personally. Whether it\'s flexible work hours, an inclusive culture, or ongoing learning opportunities, we are here to help you thrive and do the best work of your life. If you are ready to make a meaningful impact alongside passionate people who care deeply about what they do, Abridge is the place for you. How we take care of Abridgers: Generous Time Off : 13 paid holidays, flexible PTO for salaried employees, and accrued time off for hourly employees. Comprehensive Health Plans : Medical, Dental, and Vision plans for all full-time employees. Abridge covers 100% of the premium for you and 75% for dependents. If you choose a HSA-eligible plan, Abridge also makes monthly contributions to your HSA. Paid Parental Leave : 16 weeks paid parental leave for all full-time employees. 401k and Matching : Contribution matching to help invest in your future. Pre-tax Benefits: Access to Flexible Spending Accounts (FSA) and Commuter Benefits. Learning and Development Budget : Yearly contributions for coaching, courses, workshops, conferences, and more. Sabbatical Leave : 30 days of paid Sabbatical Leave after 5 years of employment. Compensation and Equity : Competitive compensation and equity grants for full time employees. ... and much more! Equal Opportunity Employer Abridge is an equal opportunity employer and considers all qualified applicants equally without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, or disability. Staying safe - Protect yourself from recruitment fraud We are aware of individuals and entities fraudulently representing themselves as Abridge recruiters and/or hiring managers. Abridge will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Abridge recruiting team will come from an @ abridge.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article. Please exercise caution and cease communications if something feels suspicious about your interactions. #J-18808-Ljbffr Abridge
- ...Senior Security Engineer – Secure Code Review San Francisco, California On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software...SeniorFull time
- ...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout...SeniorContract workRemote workFlexible hours
$160k - $240k
..., and suppliers with the help of AI agents, companies can secure the resources they need to innovate faster than ever before... ...and integrity of our customers' data. As our first Application Security Engineer , you will take on a dynamic and high impact role. You will...SeniorHome officeFlexible hours$165k - $225k
...Senior Application Security Engineer Denver, CO or Long Beach, CA or SF Bay Area, CA Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it. True Anomaly delivers decisive capabilities for...SeniorShift work- A leading software company in San Francisco is looking for an Application Security Engineer. This hybrid role requires strong experience in automated vulnerability scanning and penetration testing. Responsibilities include developing secure coding practices, conducting...Senior
$325k - $405k
A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience...SeniorRemote job$170k - $190k
A leading software security company is hiring an Application Security Engineer in San Francisco. This hybrid role involves conducting security assessments, implementing best practices, and addressing vulnerabilities in the software. Candidates should have a BA/BS in Computer...Senior$160k - $220k
...leading procurement platform company in San Francisco is looking for an Application Security Engineer to join their team. This role involves designing and implementing security measures, mentoring staff, and ensuring the security of the company's products. The ideal...SeniorFlexible hours- BitGo is searching for a Senior Application Security Engineer in San Francisco to lead the security strategy for high-growth digital asset platforms. This full-time onsite role involves collaborating with cross-functional teams to integrate security controls into the software...SeniorFull time
$220k - $350k
...everyone safe, we encourage all applicants to pay close attention to... ...be ignored and considered a security risk. About Us Quanata... ...technology innovation company that engineers advanced risk prediction and... ...impact. The role As a Senior Application Security Engineer...SeniorRemote jobExtra incomeLocal areaWork from homeHome officeFlexible hours$176k - $220k
Location San Francisco, CA Employment Type Full time Department Engineering Compensation $176K - $220K For cash compensation, we set... ...expertise, and may vary from the amounts listed above. Senior Application Security Engineer At Handshake, we believe security should be...SeniorFull timeWork at officeLocal areaRemote workFlexible hours- ...within a Vulnerability Management Program that understands Application Security with 5-7 years of security experience. Experience with any... ...code review experience using automated toolsets Software Engineering career experience Following Certifications: CISSP, CEH, GWAPT...Senior
- A leading tech organization is seeking a Product Security Engineer to lead security initiatives and safeguard its innovative products. This hands-on role involves embedding security throughout the development lifecycle, performing in-depth code reviews, and managing vulnerability...Senior
$221k - $250k
...the internet, people, institutions, and applications need a trusted way to confirm who is a... ...hardware, software, AI, cryptography, mobile engineering, and global operations. Our teams come... ...event. About the Team The Security team at Tools for Humanity operates at...SeniorFlexible hours$180k - $240k
...satellites provide dedicated, secure networks to highly-... ...Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs... ...Northern California, USA. Senior Product Security Engineer... ...processes, operating systems, and applications from a security-first...SeniorPermanent employmentFlexible hours$180k - $285k
...satellites provide dedicated, secure networks to highly-... ...Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs... ...Northern California, USA. Senior Product Security Engineer... ...focuses primarily on product/application security while contributing to...SeniorPermanent employmentFlexible hours$162k - $260k
...follow us on LinkedIn. Aurora's Product Security team's mission is to discover, mitigate... ...contributing and documenting security engineering processes and the resulting product... ...state law. Aurora considers qualified applicants with criminal histories, consistent with...SeniorWork experience placementWork at officeLocal area3 days per week$144.8k - $261.45k
...could be yours. The Opportunity The Adobe Security Engineering Partnerships (SEP) team is seeking a Senior Product Security Engineer to scale security... ...~6+ years of experience in Product Security, Application Security, Cloud Security, or a related field....SeniorTemporary workLocal areaWorldwide$175k - $215k
...someone to make sure it's built securely from the ground up. As part... ...it, working closely with engineering teams, shipping production code... ...path. We're seeking a Senior Product Security Engineer... ...Production experience with application security tooling (SAST, DAST...SeniorTemporary work- ...team Airwallex's Information Security team partners closely with engineering, IT, and other stakeholders to... ...blocker. Your role As a Senior Security Engineer at Airwallex, you... ...security of our networks, systems and applications. What you'll be doing...SeniorWorldwide
- ...identity verification infrastructure where security isn't a layer we add later, it's core to... .... As AI tooling expands what engineers can build and how fast they can build it... ...data, identity, etc. The team Small and senior by design. High ownership from day one —...SeniorFull timeFor contractorsInternshipRelocation package
$170k - $190k
...collaboration and connection. There may be additional in-office days for team or company events. Ironclad is seeking a skilled Application Security Engineer with a passion for securing modern software platforms and protecting sensitive data. We are looking for someone with...Full timeContract workWork at office- ...Find out more about our hiring culture: Dream Team Culture Job Description At ZetaChain, we are seeking a dedicated Protocol Security Engineer to play a pivotal role in fortifying the security of our cutting-edge protocol. You will be deeply involved in the development...Remote jobContract workHome office
- ...and catch regressions — turning production data into better AI with every release. About the role We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted...Flexible hours
- About Opal Security: At Opal, we’re building modern identity governance for the AI era—... ...down innovation. The Role: Most security engineers spend their careers bolting locks onto... ...This is not that job. We're hiring an Application Security Engineer to own security...
- Opal Security is looking for an Application Security Engineer to take charge of security across its product and platform. You will work closely with engineers to integrate security into the design and development process, ensuring that the systems are robust and secure...
$272k - $320k
..., empower, and be owned by everyone. About the Security team: Well beyond “regular company security” the... ...and software security. The team of 15+ engineers helps guide, blockchain, device, cloud, mobile and application security across all of our technologies. For example...SeniorFlexible hours- Braintrust, based in San Francisco, is seeking an Application Security Engineer to ensure security in their high-availability data platform. This role involves reviewing code, leading security initiatives related to AI models, and managing vulnerabilities. The ideal candidate...Flexible hours
$230k - $255k
...Full time Location Type Hybrid Department Security About Us: Notion helps you build... ...path forward to the future. The Notion application is flexible, powerful and always evolving... ...customers. Notion is looking for security engineers that have a passion for making it as...Full timeWork at officeLocal areaRemote workFlexible hours- ...and Andrej Karpathy. We are building AI applications for the world's most important... ...Databricks About the Role As our Security Engineer, Application & AI, you will own the security... ...work and impact. Work alongside senior engineers from Tesla, DeepMind, Databricks...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior/Staff Application Security Engineer. Be the first to apply!
- assistant engineering manager San Francisco, CA
- assistant mechanical engineer San Francisco, CA
- staff data engineer San Francisco, CA
- staff design engineer San Francisco, CA
- engineering aide San Francisco, CA
- software engineer staff San Francisco, CA
- assistant chief engineer San Francisco, CA
- staff automation engineer San Francisco, CA
- project engineer assistant project manager San Francisco, CA
- technology administrator San Francisco, CA



