New York Licensed Application Security Engineer
Location: Remote
Compensation: Salary
Reviewed: Tue, Jul 21, 2026
This job expires in: 28 days
Job Summary
As a Staff Application Security Engineer, the full-time position will own the technical strategy to secure critical attack surfaces, lead architecture reviews, and design AI agents to enhance the secure software development lifecycle, with a hybrid work arrangement based in New York.
Key responsibilities:
- Own and evolve the Gemini Secure Software Development Lifecycle guardrails as an application security subject matter expert
- Lead architecture reviews, threat modeling, code reviews, and penetration testing for high-risk applications and services
- Design and build AI agents throughout the SDLC for automated threat modeling and secure code generation
Required qualifications:
- Proven ability to perform design reviews, threat modeling, secure code reviews, and penetration testing with an attacker mindset
- Strong background in application security best practices and familiarity with common vulnerabilities
- Deep code review proficiency in Scala, Java, Go, or other common languages, with hands-on experience in Python or Go
- Experience implementing custom detection and prevention application security controls beyond OWASP Top 10
- Typically 7-10+ years of experience in application security, product security, or similar roles
COMPLETE JOB DESCRIPTION
The job description is available to subscribers. Subscribe today to get the full benefits of a premium membership with Virtual Vocations. We offer the largest remote database online...