Application security engineer in AI-driven platforms
Job in
Los Angeles, Los Angeles County, California, 90079, USA
Listed on 2026-10-03
Listing for:
HireHi
Full Time
position Listed on 2026-10-03
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Solvd Inc. is an AI-native consulting and technology services firm delivering enterprise transformation across cloud, data, software engineering, and artificial intelligence. Following the acquisition of Tooploox, it provides end-to-end delivery from strategic advisory and solution design to custom AI development and enterprise-scale implementation.
Задачи- Define and validate application and platform security controls across all delivery phases;
- Perform architecture and threat-model reviews at the design stage and as the platform evolves;
- Review authentication, authorization, and privileged-access controls across CMS, APIs, and integrated services;
- Validate API and integration security across a composable, multi-vendor platform architecture;
- Review secrets, credentials, and token-management practices across the full stack;
- Support vulnerability scanning and penetration-testing activities by coordinating findings and remediation;
- Validate encryption and secure data handling across storage, transit, and third-party integrations;
- Review security logging, monitoring, and incident-response requirements;
- Support GDPR and privacy engineering requirements throughout delivery;
- Conduct third-party security assessments for integrated services and vendors;
- Provide remediation guidance and produce security acceptance evidence ahead of launch.
- 5+ Years of experience in application security, security engineering, or a closely related role;
- Experience performing threat modelling and architecture security reviews on complex, multi-component platforms;
- Strong knowledge of authentication and authorization patterns, including OAuth, OIDC, RBAC, and privileged access management;
- Hands-on experience validating API security and reviewing integration patterns across third-party services;
- Solid understanding of secrets management, credential handling, and token lifecycle best practices;
- Experience supporting or coordinating vulnerability scanning and penetration testing programmes;
- Knowledge of encryption standards and secure data handling practices across storage and transit;
- Familiarity with GDPR and privacy-by-design engineering requirements;
- Ability to produce clear remediation guidance and security acceptance documentation for engineering and delivery teams;
- Nice to have: experience securing composable CMS or media platform architectures such as AEM or Amplience, experience with high-traffic public-facing platforms, security logging and monitoring tooling including SIEM and incident response playbooks, third-party vendor security assessment processes, CISSP/OSCP/CEH or equivalent certification, experience working within a phased full-lifecycle delivery programme alongside engineering and architecture teams.
No conditions specified.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×