Senior Application Security Engineer [Remote-US]
Quick Summary
To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search.
About Us
Quanata is on a mission to help ensure a better world through context-based insurance solutions. We are an exceptional, customer centered team with a passion for creating innovative technologies, digital products, and brands. We blend some of the best Silicon Valley talent and cutting-edge thinking with the long-term backing of leading insurer, State Farm.
Learn more about us and our work at quanata.comAs a Senior Application Security Engineer, you will serve as the primary partner for web and backend engineering teams, helping embed security best practices throughout the software development lifecycle. You will support secure design, conduct threat modeling, review backend and frontend code, and lead integration of security tools into developer workflows. Your role bridges frontend and API security, and you'll be responsible for helping developers resolve complex security challenges across product surfaces.
- Partner with one product portfolio to facilitate overall product security management, emphasis on AI/ML-specific security concerns and cross-functional work with data science teams
- Perform security design reviews and threat modeling on APIs, web features, and service integrations, including integrating SAST, SCA, and DAST tools into CI/CD pipelines
- Support secure development practices across security champions and engineering
- Review source code and deployment configurations for security vulnerabilities
- Collaborate with developers to triage, fix, and validate vulnerability findings
- Participate in cross-functional incident response and remediation planning
- Draft and maintain AppSec guidance for engineering teams and security champions
- Contribute to security awareness and enablement across the engineering org
- Develop AppSec related integrations and deployments of automation solutions (ASVS scanning, burpsuite enterprise)
- Support application security integration reviews, saas security assessments, oss reviews
- Bachelor’s degree or equivalent relevant experience and;
- 6 - 8 years of experience in application security or full-stack development with security expertise
- Strong understanding of secure coding in JavaScript/TypeScript, Node.js, and web standards
- Familiar with application risk and vulnerabilities (OWASP Top 10, API Security, SSRF, etc.)
- Experience with code scanning tools (e.g., CodeQL, Semgrep, SonarQube, Snyk)
- Comfortable reading and debugging complex codebases across the stack
- Clear and thoughtful communicator with the ability to guide engineers at all levels
- Working concepts of offensive security testing such as pentesting or bug bounties"
Nice to Have
~1 min read- Experience with GraphQL security
- Participation in security champions programs or secure SDLC rollouts
- Contributions to open-source security tooling
- Familiarity with infrastructure-as-code and container security
What We Offer
~3 min readListing Details
- First seen
- March 26, 2026
- Last seen
- April 21, 2026
Posting Health
- Days active
- 25
- Repost count
- 0
- Trust Level
- 43%
- Scored at
- April 21, 2026
Signal breakdown

Quanata is an AI-powered insights platform helping businesses make smarter decisions by enabling them to collect, analyze, and act on data more effectively.
View company profilePlease let Quanata know you found this job on Jobera.
3 other jobs at Quanata
View all →Explore open roles at Quanata.
Similar Application Security Engineer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.