Application Security Engineer
Listed on 2026-06-05
-
IT/Tech
Cybersecurity, Systems Engineer
Meet the Team
Join Cisco’s Enterprise AI team, the core group enabling Generative AI powered experiences across Cisco. Our mission is to build secure, scalable AI platforms that empower teams to safely develop, deploy, and operationalize AI-powered solutions. We operate at the intersection of applied AI, cloud infrastructure and security —partnering across engineering, security, compliance, and product teams to bring trusted AI to life at enterprise scale.
We are a fast-growing, highly collaborative team of platform engineers, AI engineers, and data scientists who value technical depth, ownership, and pragmatic execution. What makes this team exciting is the opportunity to define how secure Generative AI is built and governed inside a global technology leader.
Your ImpactEmbed security into the Secure SDLC by defining and implementing guardrails across design, development, testing, and deployment phases.
Integrate and optimize application security tooling, including SAST, DAST, SCA and secrets scanning, within CI/CD pipelines to proactively identify and remediate vulnerabilities.
Lead threat modeling and secure design reviews for cloud‑native and microservices‑based applications.
Drive container and Kubernetes security practices, including image hardening, vulnerability management and runtime controls.
Define and enforce API security standards, including authentication, authorization, rate limiting and protection against common API threats.
Partner with engineering teams to triage, prioritise and remediate security findings, improving overall security posture and developer experience.
Establish secure coding standards and provide guidance on common vulnerabilities (e.g. OWASP Top 10) and remediation best practices.
Enhance software supply chain security through dependency management, artifact integrity and build pipeline protections.
Bachelor’s degree in Computer Science, Information Security or related field with 6+ years of experience in cybersecurity or cloud security engineering.
3+ years of hands‑on experience securing GCP, Azure or AWS environments in production enterprise environments.
Experience integrating security controls into CI/CD pipelines and Kubernetes environments, including container image hardening, vulnerability scanning, image signing and runtime policy enforcement.
Experience securing AI/ML workloads and Generative AI systems, including model, data and inference endpoint protection.
Cybersecurity background and operational experience.
Certifications from ISC2 (e.g. CISSP, CCSP) or ISACA (e.g. SSCP, CC, CISA, CISM).
Experience designing and managing IAM, encryption and network security controls.
The starting salary range posted for this position is $ to $ and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation, equity or benefits.
Individual pay is determined by the candidate’s hiring location, market conditions, job‑related skillset, experience, qualifications, education, certifications or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.
U.S. employees are offered benefits, subject to Cisco’s plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short‑ and long‑term disability coverage and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.
U.S. employees are eligible for paid time away as described below, subject to Cisco’s policies:
10 paid holidays per full calendar year, plus 1 floating holiday for non‑exempt employees.
1 paid day off for employee’s birthday, paid year‑end holiday shutdown and 4 paid days off for personal wellness determined by Cisco.
Non‑exempt employees receive…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).