Staff Application Security Engineer

Abridge Abridge · Vertical AI · San Francisco, CA · Builder

Staff Application Security Engineer at Abridge, a healthcare AI company. The role focuses on building and leading application security initiatives, including threat modeling, secure SDLC, vulnerability management, and incident response, with a specific emphasis on securing AI models, agents, and associated systems. Requires deep technical expertise, a builder's mindset, and experience in cloud environments and programming languages.

What you'd actually do

  1. Lead Threat Modeling and Design Reviews
  2. Define Security Strategy
  3. Mentor and Enable
  4. Conduct Training & Awareness
  5. Code and Security Reviews

Skills

Required

  • 10+ years of direct experience in an Application Security role
  • designing and implementing security improvements at scale
  • Deep proficiency in one or more major programming languages (Python and NextJS a big plus)
  • solid background in software development principles
  • Extensive experience securing applications deployed in Cloud environments (GCP a big plus)
  • knowledge of containerization technologies (Kubernetes)
  • Expert-level knowledge of web application security techniques and principles
  • APIs
  • IAM (including identity, authentication/authorization, RBAC, ABAC)
  • applied cryptography
  • Deep understanding of the security of AI and ML models, agents, and associated systems

Nice to have

  • Python
  • NextJS
  • GCP
  • Security Research
  • contributing to or leveraging open-source security tools
  • publishing security research
  • managing bug bounty programs
  • active engagement in the security industry
  • Cross-Functional Influence
  • Data-Driven Security
  • defining and utilizing security metrics

What the JD emphasized

  • building out security from the ground up
  • one of the first engineers on the Abridge Security team
  • deep technical expertise
  • builder's mindset
  • expert guidance
  • setting clear standards
  • subject matter expert
  • trusted advisor
  • expert on Abridge’s products and applications
  • Deep understanding of the security of AI and ML models, agents, and associated systems

Other signals

  • AI-powered platform
  • generative AI for healthcare
  • AI-generated summaries
  • auditable AI
  • responsible deployment of AI
  • AI scientists
  • security of AI and ML models, agents, and associated systems