Remote job
Director, Application Security
Job details
About this role
Role overview
A senior security leader is needed to build and run an AI-native Application Security function for a data-driven marketing technology platform. This player/coach role will embed security directly into the software development lifecycle, CI/CD pipelines, and AI-powered development workflows, shifting the practice from a traditional review-and-gate model to a continuous, automated capability driven by policy-as-code, security agents, and real-time risk signals. The position is foundational, shaping how application security operates across conventional codebases and emerging AI/agent systems at enterprise scale.
Responsibilities
- Define and execute an AI-native Application Security vision, roadmap, and operating model, including security copilots and policy-enforcing agents. - Lead and mentor an application security team that emphasizes automation, leverage, and a modern engineering culture. - Evolve threat modeling into continuous, system-aware analysis and embed automated security reasoning into CI/CD and AI/ML pipelines. - Run AI-specific adversarial testing covering prompt injection, model abuse, and data leakage across models, prompts, and agents. - Embed security agents into IDEs, pull requests, and CI workflows, delivering in-context guidance without slowing engineering velocity. - Translate emerging AI risks into automated guardrails and influence release decisions through continuous risk scoring.
Requirements
- 5–10+ years of experience in Application Security, DevSecOps, or secure software development. - Strong working knowledge of OWASP, cloud-native architectures, and API security. - Familiarity with AI/ML security risks and the threat landscape around models and intelligent agents. - Demonstrated leadership and communication skills, with the ability to operate as a hands-on technical contributor. - Track record of building or scaling application security functions within modern engineering organizations.
Nice to have
- Experience designing agentic security tooling, policy-as-code frameworks, or security copilots. - Background securing AI systems end-to-end, from training data through inference.
Benefits and work setup
- Remote-friendly posture with salary ranges tied to location and experience. - Unlimited paid time off, comprehensive medical, dental, and vision coverage, employee equity, and additional perks such as virtual wellness classes and pet insurance.