Senior Security Engineer II, Application Security (Remote Eligible)
$175k - $245kSmartsheet
For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. Now, in our most ambitious chapter yet, we are uniting human teams with AI agents. By orchestrating the work agents do best, automating manual tasks and uncovering insights at scale, we create the space for people to focus on what truly matters: judgment, creativity, and big thinking. That is magic at work, and it's what we show up for every day.
AI is changing what application security can accomplish. We're not just securing AI; we're using it as a force multiplier to see more risk, act faster, and scale security across a platform used by millions of customers globally. We're looking for a Senior Security Engineer II to join our Application Security team who can do both: bring deep expertise in securing AI-integrated systems, and deploy AI and automation to drive risk visibility and reduction at a scale no traditional security program can match on its own. This is a high-ownership, technically demanding role for an experienced application security engineer. You will work at the intersection of threat-informed design, engineering automation, and applied AI, doing consequential security work that directly shapes the posture of a modern SaaS platform. If you're a security engineer who writes code to solve security problems, can read a production codebase to find what a scanner misses, and wants your work to matter beyond a ticket queue, we want to talk. You will report to the Manager, Application Security , based in our Bellevue, WA office, or you may work remotely from anywhere in the US where Smartsheet is a registered employer.You Will:
- Secure AI Systems and Use AI to Scale Security: Conduct security reviews and threat modeling of AI-integrated product features (LLM workflows, agentic pipelines, model APIs) with working knowledge of AI-specific risk classes including prompt injection, model manipulation, and runtime control gaps; and in parallel, deploy AI and automation as a force multiplier by building tooling, pipelines, and integrations that extend the team's reach, accelerate triage, and drive risk visibility at a scale manual effort alone cannot achieve.
- Deliver Application Security Reviews : Own end-to-end security assessments for high-risk features and services (threat modeling, architecture review, targeted code review, and security testing) embedded in the product development lifecycle. Work directly with engineering teams to surface and close risk before it ships, with enough technical credibility to influence design decisions, not just document findings.
- Advance CI/CD Pipeline Security : Operate and evolve the security scanning controls embedded in Smartsheet's GitLab pipelines (SAST, SCA, secrets, IaC scanning). Tune tools, engage teams on findings, and build automation that reduces false positive burden and improves how developers experience security feedback.
- Run Bug Bounty Operations: Serve as the expert validation layer for Smartsheet's bug bounty program, reproducing and assessing complex, multi-step researcher submissions requiring authenticated context and deep platform knowledge, making defensible severity and payout decisions, and owning program operations including researcher engagement, metrics, and continuous improvement.
- Experience : 8+ years in application security, with a track record of owning complex, multi-capability work in a product security or AppSec engineering role.
- Software engineering foundation : Fluent in one or more modern languages (Java, Python, TypeScript/JavaScript, Go, Ruby, or equivalent); you identify security-relevant patterns without relying on tooling and write automation that others adopt.
- AI security : Hands-on experience securing AI-integrated applications (LLM systems, agentic workflows, model APIs) and demonstrated experience deploying AI and automation to scale security functions or extend team reach. You bring both skill sets.
- Security review depth : Threat modeling, architecture review, and code review for complex SaaS features; you produce findings engineering teams can act on and carry enough technical credibility to influence design decisions, not just document them.
- Manual web application testing : Independent, hands-on validation of complex, multi-step authenticated vulnerabilities; you confirm what scanners flag and find what they miss.
- Bug bounty experience : Operator, active researcher, or both; direct experience with triage, severity calibration, and researcher communication.
- CI/CD pipeline security : Working knowledge of SAST, SCA, secrets, and IaC scanning in modern pipelines, with experience engaging teams on findings and improving signal quality.
- Cloud security fundamentals : Working knowledge of AWS, GCP, or Azure sufficient to tie application-layer risk to the infrastructure it runs on; you understand where the application ends and the cloud begins.
- Legally eligible to work in the U.S. on an ongoing basis
- BS or MS in Computer Science, a related field, or equivalent industry experience
- Experience with agentic security, MCP security, or adversarial evaluation of autonomous AI systems.
- GitLab CI/CD experience, including security policy pipeline configuration and scanning job integration.
- Active bug bounty researcher with published findings, CVE credits, or hall of fame recognition.
- Penetration testing program management experience: scope definition, vendor coordination, and finding validation with third-party testers.
- Employer subsidized medical/vision and dental coverage for full-time employees
- 401k Match to help you save for your future (50% of your contribution up to the first 6% of your eligible pay)
- Monthly stipend to support your work and productivity
- Flexible Time Away Program, plus Sick Time Off
- US employees are automatically covered under Smartsheet-sponsored life insurance, short-term, and long-term disability plans
- US employees receive 12 paid holidays per year
- Up to 24 weeks of Parental Leave
- Personal paid Volunteer Day to support our community
- Opportunities for professional growth and development including access to Udemy online courses
- Company Funded Perks, including a counseling membership, local retail discounts, and your own personal Smartsheet account
- Teleworking options from any registered location in the U.S. (role specific)
Smartsheet provides a competitive base salary range for roles that may be hired in different geographic areas we are licensed to operate our business from. Actual compensation is determined by several factors including, but not limited to, level of professional, educational experience, skills, and specific candidate location. In addition, this role will be eligible for a market competitive incentive opportunity. US Base Salary Pay Range $175,000-$245,000 USD Get to Know Us: At Smartsheet, your ideas are heard, your potential is supported, and your contributions have real impact. You'll have the freedom to explore, push boundaries, and grow beyond your role. We welcome diverse perspectives and nontraditional paths-because we know that impact comes from individuals who care deeply and challenge thoughtfully. When you're doing work that stretches you, excites you, and connects you to something bigger, that's magic at work. Let's build what's next, together. Equal Opportunity Employer: Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, Japan, Bulgaria, and India. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know. #LI-Remote
- Smartsheet Inc is looking for a Senior Security Engineer II for its Application Security team. The role focuses on ensuring the security of AI-integrated... ...Bellevue, WA, the position offers flexibility to work remotely within the U.S. Generous employee benefits include health...Remote jobApplicationSenior
- ...Senior Security Engineer II - Threat Detection & Response Location : New York City, NY (4 days onsite is a must, 1 day remote) Contract: 6+ Months Job Description: Client is seeking... ...knowledge of cloud, identity, application, and data attack paths. What...Remote workApplicationSeniorContract workImmediate start
- ...Senior Security Engineer II For Identity And Access Management (Iam) As a Senior Security Engineer... ...enterprise, cloud-native environments, and applications. We are seeking a dedicated... ...join a collaborative, inclusive and remote-first culture - you've come to the right...Remote workApplicationSeniorTemporary workFlexible hours
- ...As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a... ...enterprise, cloud-native environments, and applications. We are seeking a dedicated... ...join a collaborative, inclusive and remote-first culture - you've come to the right...Remote workApplicationSeniorTemporary workFlexible hours
$125k - $155k
...class of spacecraft. Engineered to survive the... ...a Kardashev Type II (K2) civilization.... ...operating, and refining security controls across... ..., and secure remote access Monitor... ...accommodation as part of your application for employment or... ...0.15 or otherwise eligible for a federally...Remote workApplicationSeniorPermanent employmentShift work$165k - $242k
...The Enterprise Security team at CoreWeave... ...business applications protected in a modern... ...the Role: As a Senior Security Engineer, Enterprise... ...ZTNA) in hybrid or remote-friendly environments... ...(all based on eligibility). What We... ...citizen or national, (ii) U.S. lawful...Remote workApplicationSeniorPermanent employmentTemporary workFor contractorsCasual workWork at officeFlexible hours$125k - $155k
...Senior Security Engineer, Operations K2 is building the largest... ...become a Kardashev Type II (K2) civilization. If... ..., and secure remote access Monitor security... ...accommodation as part of your application for employment or... ...120.15 or otherwise eligible for a federally...Remote workApplicationSeniorPermanent employmentShift work- ...As a Senior Network Security Engineer II you will lead the design, implementation, and maintenance of our organization... ...join a collaborative, inclusive and remote-first culture - you've come to the... ...this job, you agree to Aledade's Applicant Privacy Policy available at We...Remote workApplicationSeniorFlexible hours
- ...Senior II Enterprise Security Architect Are you passionate about cutting edge technology and ensuring... ...Enterprise Security, Identity, Application Access products and Microsegmentation... ...or managing your savings, we're the engine behind the scenes. We provide the world...Remote workApplicationSeniorWork at office
- ...Senior Enterprise Security Architect II Are you passionate about cutting-edge technology and customer success? Do Software Defined Segmentation... ...developing and selling Enterprise Security, Identity, Application Access products and Microsegmentation. Our goal is to...Remote workApplicationSeniorPermanent employmentWork at officeWork from homeWorldwideFlexible hours
$95.3k - $158.8k
...office 2-3 days a week. Senior Security Engineer II - Compliance Automation & Controls... ...with various flexible and remote working options available... ...rates. This job is eligible for an annual incentive bonus... ...us know by completing our Applicant Request Support Form or please...Remote workSeniorWork at officeLocal areaFlexible hours2 days per week3 days per week$100k - $160k
...Devsecops Engineer Ii Our Opportunity: Chewy is seeking... ..., and our Information Security team plays a critical... ...monitoring and remote access solutions) and... ..., infrastructure, and application teams to align controls... ...addition, this position is eligible for 401k and a new...Remote workApplicationLocal areaFlexible hours$114k - $142k
Cyber Security Architect/Engineer II - Active Directory/IAM We are seeking a Cyber... ...this role, you will work remotely and report directly to our... ...our Privilege Identity (PI) applications and monitoring the daily operations... ..., Honeywell employees are eligible for a comprehensive...Remote jobApplicationPermanent employmentTemporary workWork experience placementFlexible hours- ...Your Impact As a Senior Security Operations Engineer, you'll play a key role in... ...the flexibility to work remotely on Mondays, unless there... ...management into cloud-native applications and services. Maintain... ...roles may also require legal eligibility to work in a firearms...Remote workApplicationSeniorWork at office
$165k - $242k
...Do We are seeking a Senior Security Engineer to build the Vulnerability... ...and enterprise AI applications. You’ll solve... ...program (all based on eligibility). Medical, dental, and... ...hybrid work environment, remote work may be considered... ...or national, (ii) U.S. lawful permanent...Remote workApplicationSeniorPermanent employmentTemporary workCasual workWork at officeFlexible hoursShift work$115k - $190k
...Requisition ID : 65592 Title :Sr II - Embedded Product Security Engineer Salary Range: Salary Minimum: $115,000 Salary Maximum: $190,000 Seeking... ...to a broader design perspective and considers how an application interacts with the underlying infrastructure or...Remote workApplicationSeniorFlexible hours$153k - $220k
...the Role Abnormal AI is seeking a Senior Security Engineer to ensure Abnormal's FedRAMP... ...security impact analyses (SIAs) for system/application changes and provide recommendations.... ...addition to base salary, this role may be eligible for bonus or incentive compensation,...Remote workApplicationSenior- ...Security Operations Engineer II It's exhilarating to find yourself at a pivotal... ...employee is bonus or commission eligible ~ Generous PTO, Paid... ...physical security systems and applications. You bring technical... ...construction and installation of remote systems and expansion of...Remote workApplicationFor contractorsImmediate startWorldwideFlexible hours
$209k - $245k
...are seeking an exceptional Senior Security Engineer to join our Security Engineering... ...: This role is open to remote candidates across the U.S.... ...networks, systems, applications, and databases Participate... ...compensation, this role is eligible to participate in our equity...Remote workApplicationSeniorWork at officeFlexible hours- ...Senior Security Engineer Northwood is a modern space infrastructure company... ...Zero Trust. Design secure remote access and inter-site communication... ...~ Experience with application security reviews for vendor... ...by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations...Remote workApplicationSeniorPermanent employment
$145k - $180k
...latest trends in Agentic Security, Data Security Posture Management... ...and much more. The Senior Security Engineer will be essential to our team... ...5, and all manner of SaaS applications. Design and build... ...This role is exempt meaning it is not overtime pay eligible.Remote workApplicationSeniorWork at office- ...Description Job Description Senior Security & Network Engineer | PJ Dick-Trumbull-The... ...strategy Wireless and remote site connectivity ~... ...annual performance bonus eligibility; f ree employee parking... ...Employer and welcome all applications from a wide range of candidates...Remote workApplicationSeniorTemporary workFor contractors
- ...Security Identity & Access Management Engineer Bring your IT career and talents to CDW, where you can have a greater impact, be inspired by our mission... ...the enterprise infrastructure and business line applications. In this role, you will implement and support the Entra...Remote workApplicationSenior
- A health care innovation firm is seeking a Senior Security Engineer II specializing in Identity and Access Management. This role will be responsible... ...and a strong background in IAM principles. Join our remote-first culture where your contribution will directly impact...Remote jobSenior
- ...Senior Security Engineer Project Eleven is an applied lab of builders and technologists... ...role is a full-time, fully remote position in Europe (GMT to... ...Building out our application security program: secure SDLC... ...program (SOC 2 Type II as the first milestone) and...Remote workApplicationSeniorFull time
- ...About this role We're hiring Senior Security Engineers to design, harden, and continuously test... ...deep, hands-on security experience - application security, cloud security (AWS in particular... ...contexts ~ Leading SOC 2 Type II, ISO 27001, or comparable certification...Remote workApplicationSenior
$96k - $181k
...Serves as the senior process owner for... ...advance an information security processes, culture... ...with best practices, applicable federal and... ...Offensive Security Engineer is a key member of... ...This position is eligible to earn a base salary... ...****@*****.***. #LI-RemoteRemote workApplicationSeniorWork experience placementWork at officeFlexible hours- ...Mid-Tier Security Engineer Solvd Inc. is a rapidly growing AI-native consulting and technology... ...strategies across our core SaaS applications (e.g., Google Workspace, Microsoft 365,... ...security frameworks such as SOC 2 Type II, ISO 27001, and GDPR. SaaS Security...Remote workApplication
- ...Senior Security Engineer Hopper's Security team is small by design and consequential by impact-... ...automation, and processes that keep our applications secure across their entire lifecycle,... ...coverage. HSA that covers eligible medical and dental expenses. All employees...Remote workApplicationSeniorTemporary workWork from homeShift work
- ...Moveworks' Reasoning Engine and natural language capabilities... .... The Moveworks Security team at ServiceNow is... ...personas (flexible, remote, or required in office... ...here ( . To determine eligibility for a work persona,... .... All qualified applicants will receive consideration...Remote workApplicationSeniorWork at officeImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer II, Application Security (Remote Eligible). Be the first to apply!
- security infrastructure engineer United States
- electronic security engineer United States
- senior cloud security engineer United States
- azure security engineer United States
- senior application security engineer United States
- java security engineer United States
- lead security engineer United States
- physical security engineer United States
- security engineering manager United States
- endpoint security engineer United States


