EngineerJobs.io
← Back to all jobs

Job Description

Benefits and why you’ll thrive in this role

Skill offers a remote, contract opportunity for a senior Application Security Engineer focused on AI powered automation. This role provides the flexibility of a remote arrangement, a competitive hourly range of USD 90 to 92, and the chance to shape security tooling that leverages frontier large language models for vulnerability identification, code reasoning, triage acceleration, and automated remediation. You will collaborate with distributed teams to impact how security is integrated into developer workflows, with emphasis on unified triage, software supply chain defense, and governance for new AI capabilities across the enterprise.

Responsibilities

  • AI and Automation Engineering: Test, implement, and optimize application security tooling that uses frontier LLMs to identify vulnerabilities, reason about code, speed triage, and drive automated remediation.
  • Modern Triage and Incident Response: Deliver unified triage coverage for SCA, SAST, and DAST findings. Lead rapid assessment and routing of threat intelligence escalations and critical patch events (PatchNow).
  • Software Supply Chain Defense: Strengthen open-source dependency selection, package intake, and SBOM visibility. Build guardrails to detect malicious packages and enforce security policies across developer pipelines.
  • Secure Developer Workflows: Assess and secure developer environments, including IDEs, plugins/extensions, package managers, and AI coding assistants against malicious code and unsafe configurations.
  • AI Governance Support: Assist with technical proofs of value, data handling reviews, and model output evaluations required to safely onboard new AI capabilities across the enterprise.

Requirements

  • Experience: 3+ years of hands-on Application Security, with deep familiarity across the vulnerability lifecycle (SCA, SAST, DAST, and manual verification).
  • Automation Mindset: Strong engineering fundamentals with scripting languages (Python, Go), APIs, CI/CD pipelines (GitHub Actions, GitLab CI), and developer tool integrations.
  • AI Curiosity: Practical familiarity or hands-on experimentation with frontier models, AI coding assistants (e.g., Copilot), prompt engineering, or AI orchestration frameworks.
  • Supply Chain Knowledge: Experience securing software supply chains, package managers, and third-party dependencies against modern attack vectors.
  • Communication: Ability to translate complex vulnerabilities into clear, actionable remediation guidance for software engineering teams.

Technologies

  • Python
  • Go
  • GitHub Actions
  • GitLab CI
  • Copilot

Bonus Points

  • Contributions to open-source security tools or AI/LLM security projects (for example, OWASP Top 10 for LLMs).
  • Experience building custom integrations or LLM agents to automate security analyst workflows.

Similar Jobs