Senior Software Engineer, Application Security

Decagon
San Francisco, New York
Workplace: OnsiteFull timeUSD 200,000 - 330,000 annuallyFunction: Software EngineeringSkills: ["Collaboration","Cross-functional partnership"]

Lead application security for an AI conversational platform serving enterprise customers at massive scale. Design and implement security controls (secure coding, threat modeling, vulnerability management), integrate security across the SDLC with product engineering, and establish testing programs using SAST/DAST/IAST. Own security code reviews and architecture assessments, build security automation for CI/CD, and coordinate incident response and post-incident improvements.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Decagon
Decagon
1 month ago

Senior Software Engineer, Application Security

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 21 hours agoStatus: Live

Job Summary

Lead application security for an AI conversational platform serving enterprise customers at massive scale. Design and implement security controls (secure coding, threat modeling, vulnerability management), integrate security across the SDLC with product engineering, and establish testing programs using SAST/DAST/IAST. Own security code reviews and architecture assessments, build security automation for CI/CD, and coordinate incident response and post-incident improvements.
Location: San Francisco, New York
Workplace: Onsite
Employment Type: Full time
Job Function: Software Engineering
Seniority: Mid level

Key Responsibilities

  • •Design and implement application security controls across the AI agent platform, including secure coding practices, threat modeling, and vulnerability management.
  • •Partner with product engineering to integrate security throughout the SDLC from design and coding to PR and deployment.
  • •Establish application security testing programs using SAST, DAST, and IAST tailored for AI applications.
  • •Lead security code reviews and architecture assessments for new features, with focus on AI model integration points and customer data handling.
  • •Build security tooling and automation for fast vulnerability identification and remediation, and coordinate remediation and post-incident improvements during security incidents.

Pay and Benefits

Salary: USD 200,000 - 330,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVisionLife InsuranceDisability BenefitsRetirementParental Leave

Key Requirements

  • •5+ years of hands-on application security engineering experience.
  • •Expertise in secure software development, including threat modeling, secure code review, and vulnerability assessment.
  • •Strong software engineering background to review code across multiple languages and AI/ML frameworks.
  • •Experience implementing application security testing tools and integrating security into CI/CD pipelines.
  • •Knowledge of OWASP Top 10, common application vulnerabilities, and modern application security frameworks.
Experience:AI/ML
Skills:CollaborationCross-functional partnership
Tech Stack:Application securitySecure codingThreat modelingVulnerability managementSASTDASTIASTCI/CDOWASP Top 10SemgrepCodeQLCursor Bug BotXBOWGoogle CloudContainer securitySOC 2ISO 27001GDPRPrompt injectionModel extraction

Company Brief

Decagon
Builds conversational AI agents and a platform that automates customer support across chat, email, and voice, enabling brands to deliver concierge-level customer experiences at scale.
Industry: AI & Machine Learning
Company Size: Medium (51 to 250 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series C
Headquarters: San Francisco, United States
Founded: 2023
Glassdoor
Glassdoor: 3.9
WebsiteLinkedInGlassdoor