Staff Application Security Engineer

Brex

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$240,000–$300,000 / yr
Posted
23 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $188k
This role $270k
$124k most similar roles pay here $319k

This role pays more than 99% of similar roles. Most pay $159,000–$217,500 — the shaded band above. At the midpoint, this role pays about $270k versus about $188k for comparable roles.

Based on 240 similar postings.

Employer

About Brex

Brex is a financial technology company providing corporate credit cards, cash management accounts, and expense management software designed specifically for startups and growing technology companies. Industry: Financial Technology & Corporate Banking

Brex currently has 61 open roles on FindRole.

Listed pay typically runs $192,000–$240,000 across 61 roles with salary data.

Most-posted roles

View all roles at Brex

At a glance

TL;DR · Staff Application Security Engineer

As a Staff Application Security Engineer, you will join the Security team to lead the technical vision and strategic roadmap for application security. You will establish technical standards and secure defaults across the engineering organization while mentoring others on security expertise. Your daily work involves architecting and securing novel AI/ML and agentic workflows against risks like prompt injection and data poisoning. You will also drive proactive vulnerability discovery, execute complex attack chains, and partner with infrastructure teams to ensure microservices are secure by design. The role requires proficiency in Python or Go for building internal tooling and automation, alongside expertise in AWS, Kubernetes, and cloud-native container security. You will solve critical security challenges within the product platform, ensuring that core APIs and distributed systems remain protected against evolving adversarial AI vectors.

What you'll do

  • Lead the technical vision and strategic roadmap for the Application Security team.
  • Establish technical standards and secure defaults across the entire engineering organization.
  • Architect and secure novel AI/ML and agentic workflows against risks like prompt injection and data poisoning.
  • Mentor and coach engineers to improve their security expertise and accelerate delivery.
  • Drive proactive vulnerability discovery and offensive security testing strategies to prioritize remediation.
  • Partner with infrastructure and data teams to ensure microservices are secure by design.

What we're looking for

  • At least 8 years of experience in Application Security, Product Security, or software engineering with a focus on offensive and defensive security.
  • Proven track record of technical leadership and mentoring teams on complex security engineering initiatives.
  • Deep proficiency in AI security, including securing agentic architectures, LLM gateways, and evaluating adversarial AI vectors.
  • Experience defining secure product development lifecycles, threat modeling, and cloud-native container security using AWS and Kubernetes.
  • Proficiency in Python, Go, or similar languages to build internal tooling and automation engines.
  • Exceptional written and verbal communication skills to influence technical leaders and navigate ambiguity.

More like this

Similar roles

Application Security Engineer

Opendoor

Miami, FL 86 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Application Security Engineer

Opendoor

Toronto, Canada 86 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Staff Application Security Engineer

Datadog

101 days ago $244,000$305,000
Application Security Go Python Rust OWASP Top 10 SAST DAST API Security Threat Modeling Software Supply Chain Security Cryptography Infrastructure Security Observability
Hybrid

Staff Product Security Engineer

Reddit

Remote 135 days ago $217,000$303,900
Go Python CI/CD LLM Authentication Authorization Cloud-Native Platforms Product Security Application Security Software Engineering
8+ yrs exp Remote

Senior Application Security Engineer

Brex

Remote 56 days ago $192,000$240,000
Application Security Penetration Testing SAST DAST Python Kotlin gRPC GraphQL Kubernetes AWS Threat Modeling Incident Response Scripting Distributed Systems
5+ yrs exp Remote

Senior Application Security Engineer

Upstart

Remote (Canada) 7 days ago $166,900$230,900
Application Security Threat Modeling SAST DAST SCA CI/CD Python Java Go Ruby API Security Microservices GraphQL REST GenAI Secrets Management Cloud-Native AWS CISSP CSSLP CCSP
5+ yrs exp Remote