Jobs › Companies › Starburst › Senior Application Security Engineer

Sobre esta vaga de Senior Application Security Engineer na Starburst

Starburst · Presencial · Boston, MA

About Starburst

Starburst delivers enterprise intelligence at scale by giving organizations secure, governed access to all their data, wherever it lives. Built for distributed data environments, Starburst helps enterprises power AI and analytics without the cost and complexity of traditional data consolidation. With open standards including Trino and Apache Iceberg, Starburst enables trusted access to complete enterprise context while helping organizations avoid vendor lock-in. Leading global enterprises trust Starburst to fuel AI, analytics, and enterprise intelligence. Learn more at starburst.ai.

About the role

As our Senior Application Security Engineer, you'll be the technical owner of application and product security at Starburst — one person with outsized impact, backed by automation and AI rather than a large team. This is deep, hands-on engineering work: you'll build secure-by-default patterns into how our engineers design and ship, embed security controls earlier in the development lifecycle, and create the automation that lets you cover a large engineering organization. You'll get to stand up autonomous red-teaming and threat hunting against our own products, run vulnerability management across both our self-managed enterprise platform and our SaaS, and advance our software supply chain security. Because our biggest customers are global banks, you'll also be in the room with them, explaining how we secure what we ship — the kind of high-trust, high-stakes conversation that makes this work matter.

If you want to make products secure by design rather than chase what's already broken, own a program end to end, and use AI to build defensive tools, this is your opportunity. You'll work closely with Engineering, Product, and the field.

As a Senior Application Security Engineer at Starburst you will:

  • Own and mature the Application Security program, moving it from established practice to measurable, automated, and scaled across a large engineering organization.
  • Shift security left into the SDLC, embedding secure-by-default patterns, guardrails, threat modeling, and automated checks into design and development (including for AI-assisted development) so issues are prevented rather than found late.
  • Build autonomous red-teaming and threat hunting against our own products, using AI and automation to continuously probe for weaknesses instead of relying on point-in-time testing.
  • Own vulnerability management for everything we ship across our self-managed enterprise platform and SaaS product — container images, third-party dependencies, and first-party code — automating detection, triage, and routing, and advancing remediation through reachability/exploitability analysis and attack-surface reduction.
  • Own application and supply chain security tooling (SAST, SCA, DAST, container scanning), plus third-party penetration testing and the Vulnerability Disclosure Program.
  • Be the security voice with customers and leadership, working directly with enterprise customers on posture and assurance, and reporting on product security in executive, customer, and audit conversations.

Some of the things we look for:

  • Bachelor’s degree in Computer Science, Engineering, MIS, or equivalent practical experience.
  • 5-7 years of experience in application security, product security, software engineering with a security focus, or a related technical role.
  • Deep command of application and product security fundamentals, with the judgment to distinguish real exploitability from scanner noise.
  • Proven experience embedding security into the SDLC and getting engineering teams to actually adopt it — plus building and scaling processes that raise a program's overall maturity.
  • Demonstrated experience running vulnerability management for shipped software at scale, with strong knowledge of container/image security and JVM dependency and supply chain risk.
  • Offensive security experience and a drive to automate it: red-teaming, or threat hunting against your own products.
  • Threat modeling experience on distributed systems and data platforms, and a strong bias toward automation, including using AI to scale security work.
  • Experience in enterprise B2B software and working directly with enterprise customers on security, ideally in regulated industries such as financial services.
  • Experience leading and mentoring engineers.
  • Ability to Travel: This role will require 25% in-person travel for purposes including but not limited to new hire onboarding, team and department offsites, customer engagements, and other company events. Actual travel expectations may vary by role and business needs.

Starburst is dedicated to maintaining fair and equitable compensation practices. The salary range provided for this role reflects the minimum and maximum targets for candidates across all U.S. locations and could be inclusive of variable compensation, such as commission or bonus. All employees receive equity packages (ISOs) and have access to a comprehensive benefits offering. Actual compensation packages are determined based on relevant skills, experience, education and training, and specific work location. For more information, connect with the recruiting team or Hiring Manager during the process as they can provide more detailed information about the salary range.

Pay Range
$175,000—$215,000 USD

Build your career at Starburst

All-Stars have the opportunity and freedom to realize their true potential. By building alongside top talent, we’re empowered to take ownership of our careers and drive meaningful change. Anchored in industry-proven technology and unprecedented success, All-Stars are taking on the challenge everyday to disrupt our industry –  and the future. 

Our global workforce is supported by a competitive Total Rewards program that reflects our commitment to a rewarding and supportive work environment. This includes a variety of benefits like competitive pay, attractive stock grants, flexible paid time off, and more. 

We are committed to fostering an intentional, inclusive, and diverse culture that drives deep engagement, authentic belonging, and an exceptional All-Star experience. We believe that diversity of thought, perspective, background and experience will enable us to own what we do, drive our success and empower our All-Stars to show up authentically.

Starburst provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state
 or local laws.

Pronto para se candidatar à Starburst?
Candidatar-se à Starburst

Como este salário de Application Security se compara

Esta vaga paga $195,000/yr — em linha com da faixa típica para vagas de Application Security.

$107,933 a mediana $180,000 $260,180

Faixa típica $140,729–$223,000/yr, com base em 261 vagas de Application Security comparáveis na JobsRadar (pagamento anualizado em USD). Ver insights salariais de Application Security →

Vagas semelhantes

athenahealth
Lead Application Security Engineer- DevSecOps
athenahealth
⚡ Candidate-se cedo Boston MA Presencial $143,000–$243,000
● Nova 👁 Vista ✓ Candidatada há 1m
Phantom
Staff Product Security Engineer (Security)
Phantom
⚡ Candidate-se cedo Remote · local restrito $200,000–$250,000
● Nova 👁 Vista ✓ Candidatada há 4h
SA
Security Engineer, Product Security
Scale AI
⚡ Candidate-se cedo New York, NY; San Francisco, C... Presencial $237,600–$297,000
● Nova 👁 Vista ✓ Candidatada há 5h
Accenture Federal Services
Application Security Engineer - Sr
Accenture Federal Services
⚡ Candidate-se cedo Leesburg, VA Presencial $109,500–$213,500
● Nova 👁 Vista ✓ Candidatada há 5h
Accenture Federal Services
Application Security Engineer
Accenture Federal Services
⚡ Candidate-se cedo Leesburg, VA Presencial $94,000–$178,700
● Nova 👁 Vista ✓ Candidatada há 6h
TraceLink, Inc
Product Security Engineer, Senior
TraceLink, Inc
⚡ Candidate-se cedo APAC - India - Pune Presencial
● Nova 👁 Vista ✓ Candidatada há 6h
Asana
Product Security Engineer
Asana
⚡ Candidate-se cedo Vancouver, BC Híbrido
● Nova 👁 Vista ✓ Candidatada há 7h
MongoDB
Senior Software Engineer, Product Security
MongoDB
⚡ Candidate-se cedo Cork, Ireland; Dublin, Ireland... Presencial
● Nova 👁 Vista ✓ Candidatada há 9h
Datadog
Senior Product Security Engineer - AI Agents
Datadog
⚡ Candidate-se cedo Atlanta, Georgia, USA; Connect... · local restrito $192,000–$240,000
● Nova 👁 Vista ✓ Candidatada há 9h

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na Starburst

Ver todas as vagas na Starburst →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis