Application Security Engineer

Glean
United States
Workplace: RemoteFull timeUSD 185,000 - 260,000 annuallyFunction: CybersecurityExperience: 8+ yearsEducation: bachelorsSkills: ["Problem-solving","Collaboration","Proactive mindset","Pragmatism","Cross-functional leadership"]

Own the vulnerability management lifecycle for Glean’s technology stack, from discovery and prioritization through remediation, reporting, and measurement. Harden base OS images and secure open-source dependencies, package managers, and the software supply chain. Integrate SAST, DAST, dependency scanning, and automated security validation into CI/CD, while evaluating and adopting security tooling such as Google Assured OSS. Lead secure-coding practices and drive adoption across engineering teams.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Glean
Glean
3 days ago

Application Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 15 hours agoStatus: Live
Reposted: similar role first listed 3 months ago

Job Summary

Own the vulnerability management lifecycle for Glean’s technology stack, from discovery and prioritization through remediation, reporting, and measurement. Harden base OS images and secure open-source dependencies, package managers, and the software supply chain. Integrate SAST, DAST, dependency scanning, and automated security validation into CI/CD, while evaluating and adopting security tooling such as Google Assured OSS. Lead secure-coding practices and drive adoption across engineering teams.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Own the vulnerability management lifecycle across Glean’s technology stack, from discovery and prioritization through remediation, reporting, and measurement.
  • •Harden base OS images and secure open-source dependencies, package managers, and the broader software supply chain.
  • •Integrate SAST, DAST, dependency scanning, and automated security validation into CI/CD pipelines.
  • •Evaluate, adopt, and develop security solutions and tooling, including Google’s Assured OSS and comparable approaches.
  • •Define secure-coding practices and drive engineering adoption through guidance, training, and mentorship.

Pay and Benefits

Salary: USD 185,000 - 260,000 annually
Perks:MedicalVisionDental401kHome Office

Key Requirements

  • •BA/BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience).
  • •8+ years of experience in application security and vulnerability management.
  • •Deep understanding of software vulnerabilities, including CVEs, OWASP Top 10, and supply chain risks.
  • •Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, GitHub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP).
  • •Hands-on experience with cloud-native security across AWS and GCP, including containers, Kubernetes, and microservices.
Experience:8+ yearsApplication securityVulnerability managementCloud-native security
Education:Bachelor's
Skills:Problem-solvingCollaborationProactive mindsetPragmatismCross-functional leadership
Tech Stack:AWSGCPKubernetesContainersMicroservicesCI/CDSASTDASTDependency scanningSnykGitHub DependabotTrivyClairBurp SuiteOWASP ZAPOWASP Top 10CVEs

Company Brief

Glean
Provides an enterprise search and knowledge discovery platform that helps organizations find information across apps, drives, and internal tools, improving employee productivity and onboarding through AI-powered search and relevance ranking.
Industry: Enterprise Software
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Headquarters: San Francisco, United States
Founded: 2017
WebsiteLinkedIn