Staff Application Security Engineer
Quick Summary
Ironclad is the leading AI contracting platform that transforms agreements into assets. Contracts move faster, insights surface instantly, and agents push work forward, all with you in control.
AI penetration testing. Experience with git and software branching and workflow strategies. Experience working with modern, microservice architectures including in Kubernetes or other containerized environments.
Ironclad is the leading AI contracting platform that transforms agreements into assets. Contracts move faster, insights surface instantly, and agents push work forward, all with you in control. Whether you’re buying or selling, Ironclad unifies the entire process on one intelligent platform, providing leaders with the visibility they need to stay one step ahead. That’s why the world’s most transformative organizations, from Rivian to the World Health Organization and the Associated Press, trust Ironclad to accelerate their business.
Responsibilities
~1 min read- →
Develop and implement secure coding practices, procedures, and standards for software development teams.
- →
Conduct application security assessments and vulnerability testing to identify and mitigate risks.
- →
Perform security reviews of code changes and ensure that security issues are addressed.
- →
Collaborate with cross-functional teams to remediate software vulnerabilities and implement secure coding practices.
- →
Integrate security review processes into Ironclad’s CI/CD pipeline.
- →
Conduct threat modeling and risk analysis to protect sensitive data.
- →
Provide domain expertise on protective controls including system, network, encryption, and authentication services.
- →
Work closely with members of the SRE, Development, IT, and Security teams to drive impactful changes to Ironclad’s cybersecurity posture.
- →
Work closely with the risk and governance teams to implement compliance and security requirements.
- →
Contribute to secure coding and other cybersecurity training programs.
- →
Stay up-to-date with the latest security trends, vulnerabilities, and attack techniques.
- →
Provide technical leadership and mentorship to other members of the engineering and security teams.
BA/BS/MS in Computer Science or related field or equivalent experience.
3+ Years of experience working in application security or software development, preferably with SaaS companies or in regulated fields.
In-depth knowledge of application security concepts and practices, including OWASP Top 10 and SANS Top 25.
Experience with security testing tools such as Burp Suite, AppScan, and Nessus.
Strong proficiency in either Typescript or Javascript.
Experience operating in any cloud provider (AWS, GCP, Azure, Digital Ocean etc.).
Ability to appropriately prioritize and respond to different escalations.
Experience working collaboratively with cross-functional teams.
Strong desire to take ownership of problems.
Comfort working in a rapidly evolving environment and dealing with ambiguity.
Excellent communication, analytical and problem-solving skills.
Team and goal-oriented.
High output, low ego.
Nice to Have
~1 min readAI penetration testing.
Experience with git and software branching and workflow strategies.
Experience working with modern, microservice architectures including in Kubernetes or other containerized environments.
Experience with enterprise observability platforms such as ELK, Datadog, Prometheus, Grafana, etc.
Knowledge of Terraform or other infrastructure-as-code and configuration management solutions.
Experience with SOC 2, ISO 27001, NIST, and CIS standards and frameworks.
Experience with SAST and SCA tools such as Snyk, Checkmarx, Veracode, WhiteSource, or Black Duck.
The base salary range represents the minimum and maximum of the salary range for this position based at our San Francisco headquarters. The actual base salary offered for this position will depend on numerous factors, including individual proficiency, anticipated performance, and the location of the selected candidate. Our base salary is just one component of Ironclad’s competitive total rewards package, which also includes equity awards (a new hire grant, along with opportunities for additional awards throughout your tenure), competitive health and wellness benefits, and a commitment to career growth and development.
What We Offer
~1 min readLocation & Eligibility
Listing Details
- Posted
- April 8, 2026
- First seen
- May 6, 2026
- Last seen
- May 7, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 28%
- Scored at
- May 6, 2026
Signal breakdown
Please let ironcladhq know you found this job on Jobera.
4 other jobs at ironcladhq
View all →Explore open roles at ironcladhq.
Similar Security Engineer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.