Application Security Engineer Threat & Vulnerability Management (AI Focus)
Dallas, TX - USA
Job Summary
Application Security Engineer - Threat & Vulnerability Management (AI Focus)
Secure-by-design engineering for agent code and pipelines
Role Summary
Drive secure-by-design engineering for agent code and pipelines and own vulnerability management for AI workloads. This role keeps agentic AI development moving fast while ensuring every agent is built tested and shipped securely.
Key Responsibilities
Embed SAST / DAST / SCA into agent CI/CD pipelines.
Build and maintain an AI/LLM software bill of materials (SBOM) capability.
Lead threat modeling for agents against the OWASP LLM Top-10 and Agentic Top-10.
Define and enforce vulnerability-management SLAs for AI workloads.
Establish secure-SDLC guardrails for maker and developer teams.
Required Skills & Qualifications
Strong application security background: SAST DAST SCA tooling and triage.
Threat modeling expertise; working knowledge of LLM/agent attack surfaces (prompt injection tool abuse data exfiltration).
Familiarity with AI/LLM supply-chain risk and SBOM practices.
Secure SDLC and DevSecOps pipeline integration experience.
Preferred Qualifications
Scripting/automation skills (Python) for security tooling integration.
Relevant certifications (e.g. GWAPT CSSLP OSCP).