Senior Application Security Engineer at Hippo Insurance

Hippo

US Posted 37 days ago $151,000$226,250 / year

At a glance

AI generated

TL;DR

The Senior Application Security Engineer role at Hippo is a senior individual contributor position within the Cybersecurity team, focusing on driving application security outcomes across engineering. This expert will provide deep technical guidance and influence secure design decisions in areas like CI/CD pipelines, cloud environments, and identity systems, while independently resolving complex security challenges with broad organizational impact. Key responsibilities include threat modeling, risk assessment, mentoring engineers, and operationalizing automated security tooling. Ideal candidates have over six years of application security experience, strong knowledge of CIAM protocols, and proficiency in modern programming languages. Experience with cloud-native architectures, Kubernetes, and regulated environments is a plus.

Skills

OAuth2 OIDC SAML JWT MFA CI/CD Kubernetes SAST DAST SCA Python PostgreSQL AWS Azure GitHub Swagger RESTful APIs JSON Web Tokens OWASP Top 10 DevSecOps

What you'll do

  • Serve as a senior subject matter expert in application security, providing authoritative guidance.
  • Identify and assess application-centric security risks across code, CI/CD pipelines, identity systems, and cloud environments.
  • Independently own and drive resolution of complex application security challenges with broad organizational impact.
  • Apply threat modeling and adversarial thinking to inform defensive improvements and strengthen application resilience.
  • Mentor engineers and security partners, elevating application security maturity by embedding secure design principles.

What we're looking for

  • 6+ years of experience in application security or product security roles.
  • Strong understanding and hands-on experience with CIAM, authentication protocols (OAuth2, OIDC, SAML, JWT).
  • Proven track record of improving application security outcomes across multiple teams and systems.
  • Deep expertise securing web applications, APIs, distributed systems, WAFs, and customer identity platforms.
  • Solid understanding of cloud-native architectures and CI/CD pipelines from an application risk perspective.
  • Experience designing or maintaining automated security tooling (SAST, DAST, SCA, secrets detection).
  • Proficiency in one or more modern programming languages.

Market check

Salary context

This $151,000–$226,250 range sits above 53% of similar postings on FindRole.

Peer median band

$149,400$230,000

Median floor and ceiling across peers.

Typical midpoint (25–75%)

$151,206$236,125

Middle half of comparable postings.

Based on 240 comparable postings.

* 240 is the maximum number of comparable postings sampled.

Employer

About Hippo

Hippo Insurance is a home insurance company that offers proactive home insurance products using smart home technology and data to help homeowners prevent claims before they happen. Industry: Insurance Technology & Homeowners Insurance

Hippo currently has 5 open roles on FindRole.

Most-posted roles

View all roles at Hippo

More like this

Similar roles

Senior Software Engineer, Security Platform

Robinhood

Bellevue, Washington, US 21 days ago $196,000$230,000
Python Go Java AWS Kubernetes PostgreSQL Kafka Spark Snowflake CI/CD Docker Prometheus Grafana Terraform