





Senior niche AppSec role with AI/LLM specialization, strong company visibility, and metro location.
Highly domain-specific AppSec and LLM security requirements limit cross-industry transferability.
Multiple mandatory senior technical qualifications, compliance audit experience, and an explicit 8+ years requirement enforce strict filters.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own and mature the Application Security (AppSec) program and DevSecOps toolchain including SAST, DAST, SCA, secrets scanning, and IaC policy-as-code across CI/CD pipelines.
Lead AI/LLM security hardening for GenAI production deployments; implement controls such as IAM, VPC routing, prompt-layer guardrails, eval gating, and governance of internal AI-assisted tooling.
Support cloud (AWS) security hardening, Kubernetes security, compliance adherence (SOC 2 Type II, ISO 27001/42001), and translate emerging AI regulatory requirements into engineering controls.
8+ years in security engineering with deep AppSec experience including production-scale use of SAST, DAST, SCA tools (e.g. Semgrep, CodeQL, Snyk).
Hands-on experience securing production LLM or agentic AI deployments with knowledge of IAM, guardrails, prompt injection controls, and eval gating.
Proficient in AWS cloud-native security including Organizations, SCPs, Kubernetes security, container hardening, and CSPM tooling.
Experience with IaC policy-as-code (OPA/Rego, Checkov, Kyverno) in live pipelines and SBOM/AIBOM tooling at production scale; compliance proficiency (SOC 2 Type II or ISO 27001 audit).
Location Requirement: San Francisco Bay Area based with hybrid work (2 days/week in Palo Alto).
Experienced leader with a strong background in embedding security into software development lifecycle and cloud-native environments, specifically with AI/LLM products.
Demonstrates significant expertise in securing complex AI/ML platforms and SaaS products used by critical infrastructure or regulated sectors such as utilities or energy.
Comfortable operating across distributed US and India teams and engaging with senior leadership to define and implement enterprise security strategy.