Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Engineer II, Application Security (Remote Eligible)

$175k - $245k

Smartsheet

For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. Now, in our most ambitious chapter yet, we are uniting human teams with AI agents. By orchestrating the work agents do best, automating manual tasks and uncovering insights at scale, we create the space for people to focus on what truly matters: judgment, creativity, and big thinking. That is magic at work, and it's what we show up for every day.

AI is changing what application security can accomplish. We're not just securing AI; we're using it as a force multiplier to see more risk, act faster, and scale security across a platform used by millions of customers globally. We're looking for a Senior Security Engineer II to join our Application Security team who can do both: bring deep expertise in securing AI-integrated systems, and deploy AI and automation to drive risk visibility and reduction at a scale no traditional security program can match on its own.

This is a high-ownership, technically demanding role for an experienced application security engineer. You will work at the intersection of threat-informed design, engineering automation, and applied AI, doing consequential security work that directly shapes the posture of a modern SaaS platform. If you're a security engineer who writes code to solve security problems, can read a production codebase to find what a scanner misses, and wants your work to matter beyond a ticket queue, we want to talk.

You will report to the Manager, Application Security , based in our Bellevue, WA office, or you may work remotely from anywhere in the US where Smartsheet is a registered employer.


You Will:
  • Secure AI Systems and Use AI to Scale Security: Conduct security reviews and threat modeling of AI-integrated product features (LLM workflows, agentic pipelines, model APIs) with working knowledge of AI-specific risk classes including prompt injection, model manipulation, and runtime control gaps; and in parallel, deploy AI and automation as a force multiplier by building tooling, pipelines, and integrations that extend the team's reach, accelerate triage, and drive risk visibility at a scale manual effort alone cannot achieve.
  • Deliver Application Security Reviews : Own end-to-end security assessments for high-risk features and services (threat modeling, architecture review, targeted code review, and security testing) embedded in the product development lifecycle. Work directly with engineering teams to surface and close risk before it ships, with enough technical credibility to influence design decisions, not just document findings.
  • Advance CI/CD Pipeline Security : Operate and evolve the security scanning controls embedded in Smartsheet's GitLab pipelines (SAST, SCA, secrets, IaC scanning). Tune tools, engage teams on findings, and build automation that reduces false positive burden and improves how developers experience security feedback.
  • Run Bug Bounty Operations: Serve as the expert validation layer for Smartsheet's bug bounty program, reproducing and assessing complex, multi-step researcher submissions requiring authenticated context and deep platform knowledge, making defensible severity and payout decisions, and owning program operations including researcher engagement, metrics, and continuous improvement.
You Have:
  • Experience : 8+ years in application security, with a track record of owning complex, multi-capability work in a product security or AppSec engineering role.
  • Software engineering foundation : Fluent in one or more modern languages (Java, Python, TypeScript/JavaScript, Go, Ruby, or equivalent); you identify security-relevant patterns without relying on tooling and write automation that others adopt.
  • AI security : Hands-on experience securing AI-integrated applications (LLM systems, agentic workflows, model APIs) and demonstrated experience deploying AI and automation to scale security functions or extend team reach. You bring both skill sets.
  • Security review depth : Threat modeling, architecture review, and code review for complex SaaS features; you produce findings engineering teams can act on and carry enough technical credibility to influence design decisions, not just document them.
  • Manual web application testing : Independent, hands-on validation of complex, multi-step authenticated vulnerabilities; you confirm what scanners flag and find what they miss.
  • Bug bounty experience : Operator, active researcher, or both; direct experience with triage, severity calibration, and researcher communication.
  • CI/CD pipeline security : Working knowledge of SAST, SCA, secrets, and IaC scanning in modern pipelines, with experience engaging teams on findings and improving signal quality.
  • Cloud security fundamentals : Working knowledge of AWS, GCP, or Azure sufficient to tie application-layer risk to the infrastructure it runs on; you understand where the application ends and the cloud begins.
  • Legally eligible to work in the U.S. on an ongoing basis
  • BS or MS in Computer Science, a related field, or equivalent industry experience
NICE TO HAVE:
  • Experience with agentic security, MCP security, or adversarial evaluation of autonomous AI systems.
  • GitLab CI/CD experience, including security policy pipeline configuration and scanning job integration.
  • Active bug bounty researcher with published findings, CVE credits, or hall of fame recognition.
  • Penetration testing program management experience: scope definition, vendor coordination, and finding validation with third-party testers.
Current US Perks & Benefits:
  • Employer subsidized medical/vision and dental coverage for full-time employees
  • 401k Match to help you save for your future (50% of your contribution up to the first 6% of your eligible pay)
  • Monthly stipend to support your work and productivity
  • Flexible Time Away Program, plus Sick Time Off
  • US employees are automatically covered under Smartsheet-sponsored life insurance, short-term, and long-term disability plans
  • US employees receive 12 paid holidays per year
  • Up to 24 weeks of Parental Leave
  • Personal paid Volunteer Day to support our community
  • Opportunities for professional growth and development including access to Udemy online courses
  • Company Funded Perks, including a counseling membership, local retail discounts, and your own personal Smartsheet account
  • Teleworking options from any registered location in the U.S. (role specific)

Smartsheet provides a competitive base salary range for roles that may be hired in different geographic areas we are licensed to operate our business from. Actual compensation is determined by several factors including, but not limited to, level of professional, educational experience, skills, and specific candidate location. In addition, this role will be eligible for a market competitive incentive opportunity.

US Base Salary Pay Range

$175,000-$245,000 USD

Get to Know Us:

At Smartsheet, your ideas are heard, your potential is supported, and your contributions have real impact. You'll have the freedom to explore, push boundaries, and grow beyond your role. We welcome diverse perspectives and nontraditional paths-because we know that impact comes from individuals who care deeply and challenge thoughtfully. When you're doing work that stretches you, excites you, and connects you to something bigger, that's magic at work. Let's build what's next, together.

Equal Opportunity Employer:

Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, Japan, Bulgaria, and India. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.


If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.

#LI-Remote
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Security Engineer II, Application Security (Remote Eligible) in United States vacancy
  • Smartsheet Inc is looking for a Senior Security Engineer II for its Application Security team. The role focuses on ensuring the security of AI-integrated...  ...Bellevue, WA, the position offers flexibility to work remotely within the U.S. Generous employee benefits include health... 
    Remote job
    Application
    Senior

    Smartsheet Inc

    Bellevue, WA
    4 days ago
  •  ...Senior Security Engineer II - Threat Detection & Response Location : New York City, NY (4 days onsite is a must, 1 day remote) Contract: 6+ Months Job Description: Client is seeking...  ...knowledge of cloud, identity, application, and data attack paths. What... 
    Remote work
    Application
    Senior
    Contract work
    Immediate start

    Winmax Systems

    New York, NY
    2 days ago
  •  ...Senior Security Engineer II For Identity And Access Management (Iam) As a Senior Security Engineer...  ...enterprise, cloud-native environments, and applications. We are seeking a dedicated...  ...join a collaborative, inclusive and remote-first culture - you've come to the right... 
    Remote work
    Application
    Senior
    Temporary work
    Flexible hours

    Aledade, Inc.

    Bethesda, MD
    12 days ago
  •  ...As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a...  ...enterprise, cloud-native environments, and applications. We are seeking a dedicated...  ...join a collaborative, inclusive and remote-first culture - you've come to the right... 
    Remote work
    Application
    Senior
    Temporary work
    Flexible hours

    Aledade, Inc.

    United States
    11 days ago
  • $125k - $155k

     ...class of spacecraft. Engineered to survive the...  ...a Kardashev Type II (K2) civilization....  ...operating, and refining security controls across...  ..., and secure remote access Monitor...  ...accommodation as part of your application for employment or...  ...0.15 or otherwise eligible for a federally... 
    Remote work
    Application
    Senior
    Permanent employment
    Shift work

    K2 Space

    Los Angeles, CA
    3 days ago
  • $165k - $242k

     ...The Enterprise Security team at CoreWeave...  ...business applications protected in a modern...  ...the Role: As a Senior Security Engineer, Enterprise...  ...ZTNA) in hybrid or remote-friendly environments...  ...(all based on eligibility). What We...  ...citizen or national, (ii) U.S. lawful... 
    Remote work
    Application
    Senior
    Permanent employment
    Temporary work
    For contractors
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    22 days ago
  • $125k - $155k

     ...Senior Security Engineer, Operations K2 is building the largest...  ...become a Kardashev Type II (K2) civilization. If...  ..., and secure remote access Monitor security...  ...accommodation as part of your application for employment or...  ...120.15 or otherwise eligible for a federally... 
    Remote work
    Application
    Senior
    Permanent employment
    Shift work

    K2 Space

    Los Angeles, CA
    2 days ago
  •  ...As a Senior Network Security Engineer II you will lead the design, implementation, and maintenance of our organization...  ...join a collaborative, inclusive and remote-first culture - you've come to the...  ...this job, you agree to Aledade's Applicant Privacy Policy available at We... 
    Remote work
    Application
    Senior
    Flexible hours

    Aledade, Inc.

    United States
    3 days ago
  •  ...Senior II Enterprise Security Architect Are you passionate about cutting edge technology and ensuring...  ...Enterprise Security, Identity, Application Access products and Microsegmentation...  ...or managing your savings, we're the engine behind the scenes. We provide the world... 
    Remote work
    Application
    Senior
    Work at office

    Akamai

    United States
    2 days ago
  •  ...Senior Enterprise Security Architect II Are you passionate about cutting-edge technology and customer success? Do Software Defined Segmentation...  ...developing and selling Enterprise Security, Identity, Application Access products and Microsegmentation. Our goal is to... 
    Remote work
    Application
    Senior
    Permanent employment
    Work at office
    Work from home
    Worldwide
    Flexible hours

    Akamai

    United States
    20 hours ago
  • $95.3k - $158.8k

     ...office 2-3 days a week. Senior Security Engineer II - Compliance Automation & Controls...  ...with various flexible and remote working options available...  ...rates. This job is eligible for an annual incentive bonus...  ...us know by completing our Applicant Request Support Form or please... 
    Remote work
    Senior
    Work at office
    Local area
    Flexible hours
    2 days per week
    3 days per week

    RELX

    Raleigh, NC
    3 days ago
  • $100k - $160k

     ...Devsecops Engineer Ii Our Opportunity: Chewy is seeking...  ..., and our Information Security team plays a critical...  ...monitoring and remote access solutions) and...  ..., infrastructure, and application teams to align controls...  ...addition, this position is eligible for 401k and a new... 
    Remote work
    Application
    Local area
    Flexible hours

    Chewy

    Fort Lauderdale, FL
    1 day ago
  • $114k - $142k

    Cyber Security Architect/Engineer II - Active Directory/IAM We are seeking a Cyber...  ...this role, you will work remotely and report directly to our...  ...our Privilege Identity (PI) applications and monitoring the daily operations...  ..., Honeywell employees are eligible for a comprehensive... 
    Remote job
    Application
    Permanent employment
    Temporary work
    Work experience placement
    Flexible hours

    Honeywell International, Inc.

    Raleigh, NC
    2 days ago
  •  ...Your Impact As a Senior Security Operations Engineer, you'll play a key role in...  ...the flexibility to work remotely on Mondays, unless there...  ...management into cloud-native applications and services. Maintain...  ...roles may also require legal eligibility to work in a firearms... 
    Remote work
    Application
    Senior
    Work at office

    Axon

    Scottsdale, AZ
    3 days ago
  • $165k - $242k

     ...Do We are seeking a Senior Security Engineer to build the Vulnerability...  ...and enterprise AI applications. You’ll solve...  ...program (all based on eligibility). Medical, dental, and...  ...hybrid work environment, remote work may be considered...  ...or national, (ii) U.S. lawful permanent... 
    Remote work
    Application
    Senior
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Flexible hours
    Shift work

    Neura Market

    Livingston, NJ
    2 days ago
  • $115k - $190k

     ...Requisition ID : 65592 Title :Sr II - Embedded Product Security Engineer Salary Range: Salary Minimum: $115,000 Salary Maximum: $190,000 Seeking...  ...to a broader design perspective and considers how an application interacts with the underlying infrastructure or... 
    Remote work
    Application
    Senior
    Flexible hours

    Arthrex

    United States
    2 days ago
  • $153k - $220k

     ...the Role Abnormal AI is seeking a Senior Security Engineer to ensure Abnormal's FedRAMP...  ...security impact analyses (SIAs) for system/application changes and provide recommendations....  ...addition to base salary, this role may be eligible for bonus or incentive compensation,... 
    Remote work
    Application
    Senior

    Abnormal AI, Inc.

    United States
    4 days ago
  •  ...Security Operations Engineer II It's exhilarating to find yourself at a pivotal...  ...employee is bonus or commission eligible ~ Generous PTO, Paid...  ...physical security systems and applications. You bring technical...  ...construction and installation of remote systems and expansion of... 
    Remote work
    Application
    For contractors
    Immediate start
    Worldwide
    Flexible hours

    QTS Data Centers

    Cedar Rapids, IA
    2 days ago
  • $209k - $245k

     ...are seeking an exceptional Senior Security Engineer to join our Security Engineering...  ...: This role is open to remote candidates across the U.S....  ...networks, systems, applications, and databases Participate...  ...compensation, this role is eligible to participate in our equity... 
    Remote work
    Application
    Senior
    Work at office
    Flexible hours

    Garner Health

    New York, NY
    22 days ago
  •  ...Senior Security Engineer Northwood is a modern space infrastructure company...  ...Zero Trust. Design secure remote access and inter-site communication...  ...~ Experience with application security reviews for vendor...  ...by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations... 
    Remote work
    Application
    Senior
    Permanent employment

    Northwood Space

    Los Angeles, CA
    2 days ago
  • $145k - $180k

     ...latest trends in Agentic Security, Data Security Posture Management...  ...and much more. The Senior Security Engineer will be essential to our team...  ...5, and all manner of SaaS applications. Design and build...  ...This role is exempt meaning it is not overtime pay eligible.
    Remote work
    Application
    Senior
    Work at office

    MAP SSG Inc

    United States
    20 hours ago
  •  ...Description Job Description Senior Security & Network Engineer | PJ Dick-Trumbull-The...  ...strategy Wireless and remote site connectivity ~...  ...annual performance bonus eligibility; f ree employee parking...  ...Employer and welcome all applications from a wide range of candidates... 
    Remote work
    Application
    Senior
    Temporary work
    For contractors

    PJ Dick-Trumbull-Lindy Group

    Pittsburgh, PA
    8 days ago
  •  ...Security Identity & Access Management Engineer Bring your IT career and talents to CDW, where you can have a greater impact, be inspired by our mission...  ...the enterprise infrastructure and business line applications. In this role, you will implement and support the Entra... 
    Remote work
    Application
    Senior

    CDW

    United States
    4 days ago
  • A health care innovation firm is seeking a Senior Security Engineer II specializing in Identity and Access Management. This role will be responsible...  ...and a strong background in IAM principles. Join our remote-first culture where your contribution will directly impact... 
    Remote job
    Senior

    Aledade

    New York, NY
    3 days ago
  •  ...Senior Security Engineer Project Eleven is an applied lab of builders and technologists...  ...role is a full-time, fully remote position in Europe (GMT to...  ...Building out our application security program: secure SDLC...  ...program (SOC 2 Type II as the first milestone) and... 
    Remote work
    Application
    Senior
    Full time

    Project Eleven

    United States
    3 days ago
  •  ...About this role We're hiring Senior Security Engineers to design, harden, and continuously test...  ...deep, hands-on security experience - application security, cloud security (AWS in particular...  ...contexts ~ Leading SOC 2 Type II, ISO 27001, or comparable certification... 
    Remote work
    Application
    Senior

    Nova Intelligence

    United States
    2 days ago
  • $96k - $181k

     ...Serves as the senior process owner for...  ...advance an information security processes, culture...  ...with best practices, applicable federal and...  ...Offensive Security Engineer is a key member of...  ...This position is eligible to earn a base salary...  ...****@*****.***. #LI-Remote
    Remote work
    Application
    Senior
    Work experience placement
    Work at office
    Flexible hours

    Key Bank

    Brooklyn, OH
    4 days ago
  •  ...Mid-Tier Security Engineer Solvd Inc. is a rapidly growing AI-native consulting and technology...  ...strategies across our core SaaS applications (e.g., Google Workspace, Microsoft 365,...  ...security frameworks such as SOC 2 Type II, ISO 27001, and GDPR. SaaS Security... 
    Remote work
    Application

    Solvd

    United States
    4 days ago
  •  ...Senior Security Engineer Hopper's Security team is small by design and consequential by impact-...  ...automation, and processes that keep our applications secure across their entire lifecycle,...  ...coverage. HSA that covers eligible medical and dental expenses. All employees... 
    Remote work
    Application
    Senior
    Temporary work
    Work from home
    Shift work

    Hopper

    United States
    1 day ago
  •  ...Moveworks' Reasoning Engine and natural language capabilities...  .... The Moveworks Security team at ServiceNow is...  ...personas (flexible, remote, or required in office...  ...here ( . To determine eligibility for a work persona,...  .... All qualified applicants will receive consideration... 
    Remote work
    Application
    Senior
    Work at office
    Immediate start
    Flexible hours

    ServiceNow

    Mountain View, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Engineer II, Application Security (Remote Eligible). Be the first to apply!