About Glean:
Glean is the Work AI platform that helps everyone work smarter with AI. What began as the industrys most advanced enterprise search has evolved into a full-scale Work AI ecosystem powering intelligent Search an AI Assistant and scalable AI agents on one secure open platform. With over 100 enterprise SaaS connectors flexible LLM choice and robust APIs Glean gives organizations the infrastructure to govern scale and customize AI across their entire business - without vendor lock-in or costly implementation cycles.
At its core Glean is redefining how enterprises find use and act on knowledge. Its Enterprise Graph and Personal Knowledge Graph map the relationships between people content and activity delivering deeply personalized context-aware responses for every employee. This foundation powers Gleans agentic capabilities - AI agents that automate real work across teams by accessing the industrys broadest range of data: enterprise and world structured and unstructured historical and real-time. The result: measurable business impact through faster onboarding hours of productivity gained each week and smarter safer decisions at every level.
Recognized by Fast Company as one of the Worlds Most Innovative Companies (Top 10 2025) by CNBCs Disruptor 50 Bloombergs AI Startups to Watch (2026) Forbes AI 50 and Gartners Tech Innovators in Agentic AI Glean continues to accelerate its global impact. With customers across 50 industries and 1000 employees in more than 25 countries were helping the worlds largest organizations make every employee AI-fluent and turning the superintelligent enterprise from concept into reality.
If youre excited to shape how the world works youll help build systems used daily across Microsoft Teams Zoom ServiceNow Zendesk GitHub and many more - deeply embedded where people get things done. Youll ship agentic capabilities on an open extensible stack with the craft and care required for enterprise trust as we bring Work AI to every employee in every company.
About the Role:
Glean is looking for an Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images ensuring all open-source software (OSS) dependencies are scanned and patched and integrating cutting-edge security tools into our CI/CD pipeline. The ideal candidate will drive the adoption of solutions like Googles Assured Open Source Software (OSS) and explore alternative approaches to enhance software security.
You will:
- Implement and improve the vulnerability management lifecycle ensuring our entire tech stack is free from known vulnerabilities/CVEs.
- Continuously scan monitor and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
- Work closely with engineering teams to integrate state-of-the-art SAST DAST and dependency scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early.
- Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
- Ensure secure posture in SDLC by securing designs conducting secure code reviews and penetration testing the features.
- Develop automated security validation tests to enforce vulnerability-free deployments across the stack.
- Lead the adoption and if necessary develop custom security solutions to manage and mitigate security risks at scale.
- Provide security guidance training and mentorship to engineering teams to foster a security-first culture at Glean.
About you:
- BA/BS in Computer Science Cybersecurity or a related field (or equivalent industry experience).
- 5 years of experience in application security and vulnerability management.
- Deep understanding of software security vulnerabilities including CVEs OWASP Top 10 and supply chain risks.
- Deep understanding security design principles including but not limited to authentication authorisation RBAC database security.
- Experience with SAST DAST dependency scanning and vulnerability management tools (e.g. Snyk GitHub Dependabot Trivy Clair Burp Suite OWASP ZAP).
- Strong familiarity with package managers (npm pip Maven Go modules) and securing open-source dependencies.
- Coding experience in languages such as Go Python Java or C to develop security test cases and tooling.
- Hands-on experience with cloud-native security best practices across AWS GCP or Azure.
- Knowledge of container security Kubernetes security and securing microservices architectures.
- Ability to lead cross-functional initiatives and drive security adoption within engineering teams.
- A strong proactive approach to security identifying risks before they become problems.
- Excellent problem-solving skills and the ability to balance security with performance and usability.
- Experience working in fast-paced highly collaborative environments where security is a shared responsibility.
- Passion for open-source security and keeping up with the latest trends in software vulnerability management.
Location:
- This role is hybrid (3 days a week in our Bangalore office)
We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. Were committed to an inclusive and diverse company. We do not discriminate based on gender ethnicity sexual orientation religion civil or family status age disability or race.
About Glean:Glean is the Work AI platform that helps everyone work smarter with AI. What began as the industrys most advanced enterprise search has evolved into a full-scale Work AI ecosystem powering intelligent Search an AI Assistant and scalable AI agents on one secure open platform. With over 10...
About Glean:
Glean is the Work AI platform that helps everyone work smarter with AI. What began as the industrys most advanced enterprise search has evolved into a full-scale Work AI ecosystem powering intelligent Search an AI Assistant and scalable AI agents on one secure open platform. With over 100 enterprise SaaS connectors flexible LLM choice and robust APIs Glean gives organizations the infrastructure to govern scale and customize AI across their entire business - without vendor lock-in or costly implementation cycles.
At its core Glean is redefining how enterprises find use and act on knowledge. Its Enterprise Graph and Personal Knowledge Graph map the relationships between people content and activity delivering deeply personalized context-aware responses for every employee. This foundation powers Gleans agentic capabilities - AI agents that automate real work across teams by accessing the industrys broadest range of data: enterprise and world structured and unstructured historical and real-time. The result: measurable business impact through faster onboarding hours of productivity gained each week and smarter safer decisions at every level.
Recognized by Fast Company as one of the Worlds Most Innovative Companies (Top 10 2025) by CNBCs Disruptor 50 Bloombergs AI Startups to Watch (2026) Forbes AI 50 and Gartners Tech Innovators in Agentic AI Glean continues to accelerate its global impact. With customers across 50 industries and 1000 employees in more than 25 countries were helping the worlds largest organizations make every employee AI-fluent and turning the superintelligent enterprise from concept into reality.
If youre excited to shape how the world works youll help build systems used daily across Microsoft Teams Zoom ServiceNow Zendesk GitHub and many more - deeply embedded where people get things done. Youll ship agentic capabilities on an open extensible stack with the craft and care required for enterprise trust as we bring Work AI to every employee in every company.
About the Role:
Glean is looking for an Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images ensuring all open-source software (OSS) dependencies are scanned and patched and integrating cutting-edge security tools into our CI/CD pipeline. The ideal candidate will drive the adoption of solutions like Googles Assured Open Source Software (OSS) and explore alternative approaches to enhance software security.
You will:
- Implement and improve the vulnerability management lifecycle ensuring our entire tech stack is free from known vulnerabilities/CVEs.
- Continuously scan monitor and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
- Work closely with engineering teams to integrate state-of-the-art SAST DAST and dependency scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early.
- Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
- Ensure secure posture in SDLC by securing designs conducting secure code reviews and penetration testing the features.
- Develop automated security validation tests to enforce vulnerability-free deployments across the stack.
- Lead the adoption and if necessary develop custom security solutions to manage and mitigate security risks at scale.
- Provide security guidance training and mentorship to engineering teams to foster a security-first culture at Glean.
About you:
- BA/BS in Computer Science Cybersecurity or a related field (or equivalent industry experience).
- 5 years of experience in application security and vulnerability management.
- Deep understanding of software security vulnerabilities including CVEs OWASP Top 10 and supply chain risks.
- Deep understanding security design principles including but not limited to authentication authorisation RBAC database security.
- Experience with SAST DAST dependency scanning and vulnerability management tools (e.g. Snyk GitHub Dependabot Trivy Clair Burp Suite OWASP ZAP).
- Strong familiarity with package managers (npm pip Maven Go modules) and securing open-source dependencies.
- Coding experience in languages such as Go Python Java or C to develop security test cases and tooling.
- Hands-on experience with cloud-native security best practices across AWS GCP or Azure.
- Knowledge of container security Kubernetes security and securing microservices architectures.
- Ability to lead cross-functional initiatives and drive security adoption within engineering teams.
- A strong proactive approach to security identifying risks before they become problems.
- Excellent problem-solving skills and the ability to balance security with performance and usability.
- Experience working in fast-paced highly collaborative environments where security is a shared responsibility.
- Passion for open-source security and keeping up with the latest trends in software vulnerability management.
Location:
- This role is hybrid (3 days a week in our Bangalore office)
We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. Were committed to an inclusive and diverse company. We do not discriminate based on gender ethnicity sexual orientation religion civil or family status age disability or race.
View more
View less