AI Application Security Engineer

Brain Co.
San Francisco
Workplace: HybridFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Builder-first","Hands-on execution","Threat modeling","Cross-functional collaboration","High-agency mindset"]

Own application-layer security for AI-native, agentic products—securing development practices, agent authorization, third-party integrations, and data protection for regulated environments. Build and automate security tooling, integrate secure-by-default checks into CI/CD, and translate threat models into shipped controls. Partner with product and ML engineers to define safe agent patterns, validate outputs, and enforce access controls, audit logging, and filtering to prevent unauthorized data exposure.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Brain Co.
Brain Co.
3 months ago

AI Application Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live

Job Summary

Own application-layer security for AI-native, agentic products—securing development practices, agent authorization, third-party integrations, and data protection for regulated environments. Build and automate security tooling, integrate secure-by-default checks into CI/CD, and translate threat models into shipped controls. Partner with product and ML engineers to define safe agent patterns, validate outputs, and enforce access controls, audit logging, and filtering to prevent unauthorized data exposure.
Location: San Francisco
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Own secure development practices across products, including AuthN/AuthZ patterns, secrets management, secure-by-default standards, and secure input handling.
  • •Integrate security into the development lifecycle via code review, CI/CD pipelines, and pre-deployment checks, translating risk into concrete controls.
  • •Define and implement the application-layer security model for agentic products, including agent scoping, trust boundaries, and safe handling of user context.
  • •Develop reusable secure-by-default patterns for agent development and produce security artifacts such as threat models, architecture reviews, and documentation for regulated deployments.
  • •Set and enforce data protection standards at the application layer, including access controls, output filtering, and audit logging to prevent unauthorized data exposure.

Pay and Benefits

Equity and Bonus:Equity
Perks:Health InsuranceDentalVision401kPaid LeaveEquityMeal AllowanceCommuter Benefits

Key Requirements

  • •5+ years of experience in application security or product security with hands-on work on production systems at scale.
  • •Deep fluency in application security fundamentals including OWASP Top 10, AuthN/AuthZ, secure SDLC, secrets management, secure integration patterns, and cryptography basics.
  • •Understand agentic AI security across the product layer—how agents should be scoped, reviewed for risk, and designed for safe tool/permission boundaries.
  • •Protect sensitive data at the application layer, including access controls, audit logging, and preventing data exposure via third-party integrations and AI-generated outputs.
  • •Write code and ship security tooling as a builder-first role, embedding security into the engineering workflow rather than treating it as an afterthought.
Experience:5+ yearsApplication securityProduct securityAgentic AILLM securityRegulated industries
Skills:Builder-firstHands-on executionThreat modelingCross-functional collaborationHigh-agency mindset
Tech Stack:OWASP Top 10AuthN/AuthZCI/CDSecrets managementCryptographyAIPythonGoTypeScriptSASTDASTFedRAMPHIPAASOC 2ISO 27001Audit loggingPHIPII

Company Brief

Brain Co.
Brain Co. builds agent-native operating systems for regulated institutions across government, health, insurance, finance, and enterprise. Its platform emphasizes secure deployment, workflow integration, and AI applications tailored to complex operational environments.
Industry: AI & Machine Learning
Growth: Growth Stage Startup
Headquarters: San Francisco, United States
Founded: 2026
WebsiteLinkedIn