Senior AppSec Engineer

Reposted 14 Days Ago
Be an Early Applicant
Bengaluru, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
Security • Software • Cybersecurity
The Role
Lead application security across cloud, SaaS, and AI-enabled platforms by performing threat modeling, AppSec reviews, triaging SAST/DAST/SCA/IaC/container findings, guiding remediation, improving tooling and processes, mentoring engineers, and driving secure-by-design practices across the SDLC.
Summary Generated by Built In

At Arctic Wolf, you won’t just watch the cybersecurity industry evolve – you'll help lead the change. Our global Pack is made up of people who thrive on solving hard problems, moving fast, and building technology that protects organizations around the world. We’re proud to be recognized by Forbes, CNBC, Fortune, CRN, Gartner Peer Insights and IDC MarketScape – but what matters most is the work behind it: delivering real outcomes for customers through award winning innovation like our Aurora Platform.

If you’re looking for meaningful work, smart teammates and the chance to make a real impact in a high-growth company that’s redefining security operations, Arctic Wolf is the right place for you!

Our mission is simple: End Cyber Risk. We’re looking for a Senior AppSec Engineer to be part of making this happen.   

Position Overview and Objective

At Arctic Wolf, we are transforming our Application Security function to be AI-first, fundamentally changing how security work is executed and scaled across the organization. We are seeking a Senior Application Security Engineer to help scale secure-by-design practices across our cloud, SaaS, and AI-enabled platforms.  

In this role, you will partner closely with engineering teams to identify, assess, and reduce application security risk throughout the software development lifecycle. 
You will independently execute threat modeling activities, perform security assessments, triage vulnerabilities, and provide actionable remediation guidance to development teams. You will also contribute to improving AppSec processes, tooling, and standards while helping strengthen the organization’s overall security posture. 
Responsibilities

You will excel in this role if you are:

  • Conduct threat modeling exercises for applications, APIs, microservices, and AI/LLM-enabled capabilities 

  • Perform application security reviews and vulnerability assessments across the SDLC 
  • Triage and validate findings from SAST, DAST, SCA, IaC, container, and other AppSec security tools 
  • Partner with engineering teams to provide clear, actionable remediation guidance and support risk-based decision making 
  • Support secure development practices by identifying opportunities for process, tooling, and workflow improvements 
  • Contribute to the refinement of security standards, SOPs, playbooks, and reusable security guidance 
  • Help drive adoption and optimization of AppSec tooling and automation across engineering teams 
  • Collaborate with developers, product managers, architects, and Security Champions to improve security awareness and maturity 
  • Mentor junior engineers, interns, or peers and contribute to a culture of continuous learning 
  • Stay current on emerging application security risks, attack techniques, vulnerabilities, and industry best practices 
Experience and Requirements
  • 5+ years of experience in application security, secure software development, or related security engineering roles 
  • Strong understanding of application security fundamentals including OWASP Top 10, secure coding principles, and common attack patterns 
  • Experience conducting threat modelling and security architecture reviews 
  • Hands-on experience with AppSec tooling such as SAST, DAST, SCA and vulnerability management platforms 
  • Experience validating and triaging security findings and working directly with engineering teams on remediation 
  • Familiarity with cloud-native application architectures and modern development practices 
  • Ability to communicate technical security risks and recommendations clearly to developers, product managers, and leadership audiences 
  • Strong analytical and problem-solving skills with the ability to identify root causes and propose practical solutions 
  • Ability to independently manage multiple priorities and drive deliverables to completion 
Preferred Qualifications 
  • Experience securing cloud environments in AWS, Azure, or GCP 
  • Familiarity with AI/GenAI application security concepts and frameworks such as the OWASP Top 10 for LLMs 
  • Experience in SaaS environments, microservices architectures, or large-scale engineering organizations 
  • Familiarity with CI/CD pipelines and DevSecOps practices 

On-Camera Policy

To support a fair, transparent, and engaging interview experience, candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection, improves communication, and allows for full engagement from both candidates and interviewers. We understand that technical, bandwidth, or location-related challenges may occasionally prevent video use. If this applies, candidates are required to notify us in advance so we can explore appropriate accommodations.

About Arctic Wolf

At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA (2021-2025), Best Places to Work – USA (2021-2025), Great Place to Work – Canada (2021-2024), Great Place to Work – UK (2024-2026), and Kununu Top Company – Germany (2024-2026). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 10,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.

Our Values  

Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people’s and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good.  

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.   

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.  

All India wolves receive compelling compensation and benefits packages, including:  

  • Equity for all employees 

  • Flexible annual leave, paid holidays and volunteer days 

  • Comprehensive private benefits plan including medical insurance for you and your family, life insurance (3x compensation), and personal accident insurance. 

  • Fertility support and paid parental leave 

  • Employee Assistance Program

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodation by emailing [email protected].  View our Hiring Page to learn more about our application process.

Security Requirements 

  • Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes, and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies). 

  • Background checks are required for this position.  

  • This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (“EAR”).  Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations. 


Skills Required

  • 5+ years of experience in application security, secure software development, or related security engineering roles
  • Strong understanding of OWASP Top 10, secure coding principles, and common attack patterns
  • Experience conducting threat modeling and security architecture reviews
  • Hands-on experience with AppSec tooling such as SAST, DAST, SCA and vulnerability management platforms
  • Experience validating and triaging security findings and working directly with engineering teams on remediation
  • Familiarity with cloud-native application architectures and modern development practices
  • Ability to communicate technical security risks and recommendations clearly to developers, product managers, and leadership
  • Strong analytical and problem-solving skills with ability to identify root causes and propose practical solutions
  • Ability to independently manage multiple priorities and drive deliverables to completion
  • Background checks are required for this position
  • Potential requirement for authorization to receive software or technology controlled under U.S. export control laws (offer conditioned on authorization, if applicable)
  • Experience securing cloud environments in AWS, Azure, or GCP
  • Familiarity with AI/GenAI application security concepts and frameworks such as the OWASP Top 10 for LLMs
  • Experience in SaaS environments, microservices architectures, or large-scale engineering organizations
  • Familiarity with CI/CD pipelines and DevSecOps practices

Arctic Wolf Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Arctic Wolf and has not been reviewed or approved by Arctic Wolf.

  • Strong & Reliable Incentives Incentive plans in sales roles are seen as strong when targets are met, with on‑target earnings positioned as competitive. This dynamic helps explain notably higher satisfaction in sales relative to other functions.
  • Equity Value & Accessibility Equity is included for all employees across offers, broadening ownership beyond limited groups. Broad access to equity can provide meaningful upside tied to company performance.
  • Leave & Time Off Breadth Flexible paid time off and dedicated volunteer time off are core parts of the package. These options expand avenues for time away beyond standard vacation and holidays.

Arctic Wolf Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Eden Prairie, CA
810 Employees
Year Founded: 2012

What We Do

The cybersecurity industry has an effectiveness problem. Every year new technologies, vendors, and solutions emerge, and yet despite this constant innovation we continue to see high profile breaches in the headlines. All organizations know they need better security, but the dizzying array of options leave resource-constrained IT and security leaders wondering how to proceed. At Arctic Wolf, our mission is to End Cyber Risk through effective security operations. To achieve this, we believe that organizations must do three key things:

Similar Jobs

Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
289097 Employees
Remote or Hybrid
2 Locations
289097 Employees

CrowdStrike Logo CrowdStrike

MSSP Alliance Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
11000 Employees

LogicMonitor Logo LogicMonitor

Contract Management Analyst

Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software
Easy Apply
Hybrid
2 Locations
1100 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account