Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal / Staff Application Security Engineer

$210k - $270k

AiDASH

Principal / Staff Application Security Engineer - AI Platform

AiDASH is an enterprise AI company and the leading provider of vegetation risk intelligence for electric utilities. Powered by proprietary VegetationAI™ technology, AiDASH delivers a unified remote grid inspection and monitoring platform that uses a SatelliteFirst approach to identify and address vegetation and other threats to the grid. With a prevention-first strategy to mitigate wildfire risk and minimize storm impacts, AiDASH helps more than 140 utilities reduce costs, improve reliability, and lower liability across their networks. AiDASH exists to safeguard critical utility infrastructure and secure the future of humanAIty™.

We are a Series C growth company backed by leading investors, including Shell Ventures, National Grid Partners, G2 Venture Partners, Duke Energy, Edison International, Lightrock, Marubeni, among others. We have been recognized by Forbes two years in a row as one of "America's Best Startup Employers." We are also proud to be one of the few software companies in Time Magazine's "America's Top GreenTech Companies 2024". Deloitte Technology Fast 500™ recently ranked us at No. 12 among San Francisco Bay Area companies, and No. 59 overall in their selection of the top 500 for 2024.

Join us in Securing Tomorrow!

AiDASH protects the critical infrastructure that delivers power to tens of millions of people. As we embed GenAI more deeply into our SaaS products (RAG pipelines, agentic / MCP services) and roll out AI-assisted development internally, the threat landscape is shifting fast. Autonomous adversaries, prompt injection, model exfiltration, and vibe-coded internal apps spun up by non-engineers are now part of the daily attack surface.

We're hiring a Principal or Staff Application Security Engineer to be our deepest technical voice on security. In the role, you'll own our AppSec program and lead AI/LLM security hardening across the platform. You'll embed security into every layer of the SDLC (from PR to production), and be the person who figures out what "secure agentic AI" actually looks like in a product that ships to critical infrastructure operators. You will report to senior leadership and work closely with Platform, ML, and DevOps across our US and India teams.

How you'll make an impact:

AppSec & DevSecOps

  • Own and mature the AppSec toolchain across CI/CD — SAST, DAST, SCA, secrets scanning, and IaC policy-as-code
  • Champion shift-left security: threat modeling and secure-design reviews embedded in PRs and sprint planning, not bolted on at release
  • Run SBOM/AIBOM tooling; enforce risk-tiered dependency controls; extend SLSA practices to model artifacts
  • Write and enforce IaC policy-as-code (OPA/Rego, Checkov, Kyverno, or equivalent) in live pipelines

AI & LLM Security

  • Harden production GenAI deployments on AWS (managed model APIs, agentic/MCP services) — IAM, VPC routing, prompt-layer guardrails, output filtering, rate and cost controls
  • Codify OWASP LLM Top 10 and MITRE ATLAS controls into the SDLC; introduce LLM eval-as-gate in CI
  • Govern internal AI-assisted developer tooling — DLP for what egresses to external model providers, sensitive-data discovery in prompts, acceptable-use telemetry
  • Stand up controls for shadow AI and vibe-coded apps: discover, classify, gate with sane defaults, and bring under the SDLC

Cloud Security (AWS)

  • Harden AWS posture across accounts — Organizations, SCPs, Control Tower — and mature Kubernetes security (admission controllers, runtime visibility)
  • Operate CSPM/CNAPP tooling; own vulnerability management across containers and IaC
  • Support zero-trust privileged access for production infra, databases, and Kubernetes (in partnership with DevOps)

Compliance Support

  • Support the company's path to ISO 27001 and ISO 42001 certifications in 2027 — gap assessments, control sets, evidence pipeline
  • Maintain SOC 2 Type II posture in partnership with the compliance team
  • Translate emerging AI regulation (EU AI Act, NIST AI RMF, utility-sector mandates) into concrete engineering requirements

What we're looking for:

Minimum Qualifications

  • 8+ years in security engineering with meaningful AppSec depth — you have shipped and operated SAST/DAST/SCA (Semgrep, CodeQL, Snyk, Veracode, or equivalent) at production scale
  • Hands-on experience securing production LLM or agentic AI deployments — IAM, guardrails, prompt injection controls, eval gating. RAG-demo experience alone does not meet the bar
  • Cloud-native security experience in AWS — comfortable with Organizations/SCPs, Kubernetes security, container hardening, and CSPM tooling
  • IaC policy-as-code in a live pipeline (OPA/Rego, Checkov, Kyverno, tfsec, or equivalent)
  • SBOM/AIBOM tooling at production scale (Interlynk, Anchore, Dependency-Track, or equivalent)
  • Compliance fluency: has personally contributed to a SOC 2 Type II or ISO 27001 audit — can read a control map without flinching
  • SF Bay Area based; able to work hybrid (2 days/week in Palo Alto)

Preferred Qualifications

  • Hands-on MCP work — design, hardening, or auth — even early-stage
  • LLM eval-as-gate in CI (Promptfoo, Garak, DeepEval, Giskard) and AI red-teaming experience
  • Prompt-layer DLP and AI runtime guardrails (Nightfall, Lakera Guard, Cyberhaven, Harmonic Security, Protect AI, NVIDIA NeMo Guardrails)
  • ISO 42001 familiarity; NIST AI RMF and EU AI Act high-risk system requirements
  • Experience securing SaaS sold into regulated sectors (utilities, energy, financial services, healthcare)
  • EDR/XDR operations experience (CrowdStrike, SentinelOne, Defender) — helpful but not the primary focus of this role
  • Comfort working across US/India time zones with a distributed team
  • Public signals: conference talks, open-source contributions in CI/CD, MCP, or LLM-deployment security

What you'll love:

  • Comprehensive Medical, Dental, and Vision Coverage: 100% coverage for employees and 80% for their spouses and children
  • Health Reimbursement Account (HRA): 100% funded by AiDASH to cover medical deductibles
  • 401(k) Plan: Begin contributing after three months of employment to prepare for your future. Currently, no company match is offered
  • Parental Leave: Supportive parental leave with 16 weeks for primary caregivers and 4 weeks for secondary caregivers
  • Generous Vacation Policy: Accrue 20 vacation days per year, plus enjoy an additional flex holiday to celebrate whatever feels most important to you!
  • Winter Break: From December 25th through January 1st, we give everyone time off to recharge and enjoy time with family and friends!

We are proud to be an equal-opportunity employer. We are committed to embracing diversity and inclusion in our hiring practices, and we promote a work environment where everyone, from any race, color, religion, sex, sexual orientation, gender identity, or national origin, can do their best work.

We offer a competitive base pay range for this full-time position, which is between $210,000 and $270,000 per year. This range reflects the anticipated base salary for new hires. In addition, this role is also eligible for an annual performance bonus and equity. We strive to ensure our compensation packages are equitable and aligned with industry standards. Your recruiter can share more about compensation during the hiring process.

We are committed to providing an inclusive and accessible interview experience for all candidates. Please let us know if you require any accommodation during the interview process, and we will make every effort to meet your needs. Read our Privacy Policy here:

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Principal / Staff Application Security Engineer in Palo Alto, CA vacancy
  • $210k - $270k

     ...it counts, and defend every decision, Securing Tomorrow across every mile of the grid...  ...vibe-coded internal apps spun up by non-engineers are now part of the daily attack surface. We're hiring a Principal or Staff Application Security Engineer to be our deepest... 
    Principal
    Full time
    Flexible hours
    Shift work
    2 days per week

    AiDASH, Inc.

    Palo Alto, CA
    19 hours ago
  • $260k - $300k

     ...Founded in 2017, Obsidian Security was created to close a critical gap: securing the SaaS applications where modern business happens-platforms like Microsoft...  ...define the future of SaaS security! Principal Product Security Engineer Position Overview We're looking... 
    Principal
    Work from home
    Flexible hours

    Obsidian Security

    Palo Alto, CA
    2 days ago
  • $200k - $245k

     ...founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence...  ...and innovative problem-solving. We are seeking a Senior Application Security Engineer to lead the technical execution of our product security... 
    Suggested
    Full time
    Work at office
    Worldwide

    BitGo, Inc.

    Palo Alto, CA
    3 days ago
  • $150k - $200k

     ...Principal LLM Application Engineer Palo Alto, California, United States $ 150,000.00 - 200,000.00 (US Dollar) About AllyNd's Client AllyNd's client is driving SOC transformation with its unique application of AI computing, initially focusing on generative AI-powered... 
    Principal
    Work experience placement

    AllyNd Partners

    Palo Alto, CA
    3 days ago
  • $180k

    About the Role We are seeking a skilled and innovative Application Security Engineer to join our technology-driven company. In this role, you will be responsible for ensuring the security and integrity of our cloud-native applications and systems throughout the software... 
    Suggested

    Pantera Capital

    Palo Alto, CA
    5 days ago
  • $150k - $220k

     ...be considered by exception.) Meet our engineers on the Vehicle OS team! Vehicle OS is a...  ...update complete vehicle software and AI applications. Learn more about what the team is...  ...is looking for a multifaceted Product Security Engineer who can play a crucial role in... 
    Full time
    For contractors
    For subcontractor
    Casual work
    Work at office
    Remote work
    Flexible hours
    Day shift

    Decisive Point

    Mountain View, CA
    4 days ago
  • $77.5k - $140.9k

    Ernst & Young Oman is looking for an Application Security Engineer to manage security and development platforms. You will collaborate with cybersecurity professionals to ensure that applications are secure, while also optimizing performance and usability. This role requires... 

    Ernst & Young Oman

    Palo Alto, CA
    2 days ago
  • $180k

    A technology-driven company in Palo Alto is looking for an Application Security Engineer. This role focuses on ensuring the security and integrity of cloud-native applications throughout the development lifecycle. Key responsibilities include conducting in-depth code reviews... 

    Pantera Capital

    Palo Alto, CA
    5 days ago
  • $126k - $204.5k

     ...Palo Alto Networks, Inc. is looking for a candidate to engage in security research, focusing on vulnerabilities and AI applications for threat detection. Responsibilities include designing security tools, analyzing network traffic, and collaborating with teams. A degree... 
    Principal

    Palo Alto Networks

    Santa Clara, CA
    3 days ago
  • $154.68k - $231.7k

     ...Principal Applications Engineer Marvell's semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, and carrier architectures, our innovative technology is enabling new possibilities... 
    Principal
    Immediate start

    Marvell

    Santa Clara, CA
    1 day ago
  • $124.42k - $227.53k

     ...Applications & Security Technical Marketing Engineer Keysight is on the forefront of technology innovation, delivering breakthroughs and trusted insights in electronic design, simulation, prototyping, test, manufacturing, and optimization. Our ~15,000 employees create... 
    Work experience placement
    Flexible hours

    Keysight Technologies

    Santa Clara, CA
    3 days ago
  • $154.68k - $231.7k

     ...High-Speed Serdes Ip Integration Engineer Marvell's semiconductor solutions are the essential building blocks of the data infrastructure...  ...High-Speed SerDes (HSS) IPs, covering a broad range of applications including cloud data center, AI/ML infrastructure, 5G wireless... 
    Principal
    Permanent employment
    Internship
    Work at office
    Work from home

    Marvell

    Santa Clara, CA
    1 day ago
  • Application Security Engineer, Amazon Stores Sunnyvale, United States | Posted on 09/15/2023 The AppSec Engineer position at Amazon Stores requires a minimum of a BS in Computer Science or a related field with a focus on security engineering and a minimum of 3 years of... 

    Career-Mover

    Sunnyvale, CA
    2 days ago
  • GlobalFoundries is seeking a Principal Field Applications Engineer based in Santa Clara. In this role, you will be responsible for providing technical support to customers, develop proposals, and drive design win strategies. Candidates should have a Bachelor’s degree in... 
    Principal

    GlobalFoundries

    Santa Clara, CA
    2 days ago
  • $145k - $236k

    GlobalFoundries is seeking a Principal Field Applications Engineer in Santa Clara, CA. The role involves providing ongoing support to customers, developing technical presentations, and managing client relationships. The ideal candidate will have a Bachelor's Degree in Electrical... 
    Principal

    GlobalFoundries

    Santa Clara, CA
    5 days ago
  • $77.5k - $140.9k

     ...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Palo Alto, CA
    2 days ago
  • $145.53k - $218k

     ...Principal FaE Marvell's semiconductor solutions are the essential building blocks of the data infrastructure that connects...  ...Your Team, Your Impact You'll join a high-impact Field Applications Engineering team at the forefront of high-speed networking and optical... 
    Principal
    Permanent employment
    Internship

    Marvell

    Santa Clara, CA
    5 days ago
  • $105k - $169.05k

    Position Overview As Principal Applications Integration Engineer, you will be responsible for designing, developing...  ...solutions are scalable, secure, and maintainable. Provide technical...  ...developers, business analysts, and other IT staff to ensure successful integration. Lead... 
    Principal
    Temporary work
    Local area

    6947-SHOCKWAVE MEDICAL INC. Legal Entity

    Santa Clara, CA
    2 days ago
  •  ...individuals to perform system design reviews and support data center applications. Candidates will engage with clients, resolve issues, and...  ...ideal applicant will have a degree in Electrical or Computer Engineering and possess strong analytical skills. This position offers a... 

    NVIDIA Gruppe

    Santa Clara, CA
    2 days ago
  • $220.5k - $300k

     ...A leading aerospace company in California seeks a Principal Security Software Engineer for its Starshield project. The role involves developing security-critical software and leveraging AI to enhance security measures. Candidates must have a bachelor's degree and at least... 
    Principal

    SPACE EXPLORATION TECHNOLOGIES CORP

    Palo Alto, CA
    3 days ago
  • $113.4k - $252k

     ...The Senior Product Security Engineer will be responsible for securing Navan products, by identifying risks early in the SDLC and developing application security tooling & processes to promote a 'shift left' security culture. You will be responsible for developing and... 
    Shift work

    Navan

    Palo Alto, CA
    5 days ago
  • $162k - $260k

     ...follow us on LinkedIn. Aurora's Product Security team's mission is to discover, mitigate...  ...contributing and documenting security engineering processes and the resulting product...  ...state law. Aurora considers qualified applicants with criminal histories, consistent with... 
    Work experience placement
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    Mountain View, CA
    1 day ago
  • $153.09k - $180.86k

     ...wallet that simplifies how individuals securely prove their identity online. Consumers can...  ...looking for a Senior Product Security Engineer to join our Product Security organization...  ...vulnerability remediation workflows for application, container, Cloud, and SaaS vulnerabilities... 
    Full time
    Temporary work
    Work at office
    Flexible hours

    ID.me

    Mountain View, CA
    3 days ago
  •  ...our expertise across connectivity, AI, security and more, we'll map a new way forward. Working...  ...Summary As the Product Security Engineer, you will work closely with the product...  ...of ISO:21434 and UN R155 and their application with regards to security validation to achieve... 
    Full time
    Contract work
    Local area

    Rivian and Volkswagen Group Technologies

    Palo Alto, CA
    1 day ago
  • $127k - $185k

     ...efficient and accessible for all. We're seeking a Senior Applications Engineer (PLM 3DExperience/HW Applications) to manage and optimize...  ...infrastructure management, performance tuning, platform upgrades, security, and end-user enablement. This includes building automation... 
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    Mountain View, CA
    5 days ago
  • $147.3k - $231.3k

    3D Print - Applications Engineer This role will support all of 3D metals nationally. Applies developed subject matter knowledge to solve common and complex business issues within established guidelines and recommends appropriate alternatives. Works on problems of... 
    Full time
    Temporary work
    Local area
    Relocation
    Flexible hours
    Shift work

    HP Development Company, L.P.

    Palo Alto, CA
    5 days ago
  • $35 - $50 per hour

     ...grow in complexity, high‑fidelity 3D visual databases and models play a critical role in enabling realistic simulation scenarios for engineers, researchers, and operators. The Code AF Software Facility is seeking an experienced 3D Visualization & Training Engineer to... 
    Hourly pay
    Part time
    Visa sponsorship

    Metis Technology Solutions, Inc.

    Mountain View, CA
    3 days ago
  • $105k - $165k

     ...Join to apply for the Application Engineer - Postsales role at Applied Intuition Join to apply for the Application Engineer - Postsales role at Applied Intuition About Applied Intuition Applied Intuition is the vehicle intelligence company that accelerates... 
    Full time
    For contractors
    For subcontractor
    Casual work
    Work at office
    Remote work
    Day shift

    Applied Intuition

    Mountain View, CA
    3 days ago
  •  ...A digital identity verification provider is seeking a Product Security Engineer to enhance security solutions while tackling complex challenges. The role requires 5+ years in security or software engineering, expertise in programming with Python or Java, and extensive... 

    ID.me

    Mountain View, CA
    3 days ago
  • $220.5k - $300k

    SpaceX is looking for a Principal Security Software Engineer for its Starshield program in Palo Alto, CA. This role involves leading the development of security-focused AI agents and automating security efforts while ensuring safe integration of AI systems. Required qualifications... 
    Principal

    jobs.frontdoordefense.com - Jobboard

    Palo Alto, CA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal / Staff Application Security Engineer. Be the first to apply!