
Sr Application Security Engineer
Henry Schein One4 hours ago
Remote, United StatesSenior
Base Salary
$125k - $160k/yr
Responsibilities
- Implement and maintain the application security program across research, development, quality assurance, support, and IT systems.
- Advise on and participate in secure product and architecture design.
- Perform architecture security reviews, security-focused code reviews, and security testing.
- Collaborate with engineering and product teams to implement security-related systems and functionality, including secure code when needed.
- Verify threat models, risk, and security posture and build risk-based security processes.
- Monitor software usage and perform forensics to verify adherence to security standards.
- Track developments in web and client application security and provide direction on emerging standards and practices.
- Communicate technical security concepts and objectives to senior management and varied audiences.
- Participate in meetings required for product delivery within the Software Development Life Cycle.
- Use AI/ML tools to enhance security testing, threat modeling, and code review workflows.
Requirements
- 5+ years of relevant Information Security and/or Software Engineering experience.
- Knowledge of secure application programming, coding lifecycles, software design, and implementing code from technical specifications.
- Strong understanding of security principles, architectures, tools, processes, and best practices.
- Working knowledge of multiple current operating systems and hosting environments.
- Knowledge of software and network architecture, standards, and authentication protocol building blocks and methods.
- Ability to conduct threat assessments, assess risk, and build risk-based security processes across development methodologies.
- Working knowledge of reverse engineering techniques and tools.
- Knowledge of data storage formats, tools, and languages and familiarity with programming languages used in secured products.
- Familiarity with AI/LLM-specific security risks, including OWASP Top 10 for LLM Applications, prompt injection, model poisoning, and data exfiltration.
- Experience evaluating or securing AI-powered application features, AI coding assistants, or responsible AI/ML data handling and privacy practices.
- Bachelor’s degree in Computer Science or Information Security is preferred.
- One or more relevant certifications such as CISSP, CEH, PNPT, OSWE, GWAPT, OSED, or OSCP is preferred.
- Completion of the company’s technical challenge is required.
Benefits
- Remote within the United States with up to 10% travel as needed.
- Benefits include health coverage, retirement savings with company match, paid time off, parental leave, wellbeing resources, education support, and other benefits.
- The position is eligible for a bonus target not reflected in the posted salary range.
- The company does not currently hire individuals residing in Delaware, Hawaii, North Dakota, Rhode Island, Vermont, Puerto Rico, and other U.S. territories.