×
Register Here to Apply for Jobs or Post Jobs. X

Security Engineer, Application Security

Job in San Francisco, San Francisco County, California, 94199, USA
Listing for: Glean
Full Time position
Listed on 2026-05-04
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 185000 - 280000 USD Yearly USD 185000.00 280000.00 YEAR
Job Description & How to Apply Below

About the Role

Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images, ensuring all open-source software (OSS) dependencies are scanned and patched, and integrating cutting‑edge security tools into our CI/CD pipeline.

You will
  • Own and lead the vulnerability management lifecycle, ensuring our entire tech stack is free from known CVEs.
  • Implement and manage secure base OS images, ensuring all underlying systems remain hardened against security threats.
  • Continuously scan, monitor, and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
  • Research and evaluate trusted open‑source security solutions like Google’s Assured Open Source Software and recommend their adoption where applicable.
  • Work closely with engineering teams to integrate state‑of‑the‑art SAST, DAST, and dependency‑scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early.
  • Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
  • Develop automated security validation tests to enforce vulnerability‑free deployments across the stack.
  • Lead the adoption and, if necessary, develop custom security solutions to manage and mitigate security risks at scale.
  • Provide security guidance, training, and mentorship to engineering teams to foster a security‑first culture at Glean.
About you
  • BA/BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience).
  • 5+ years of experience in application security and vulnerability management.
  • Deep understanding of software security vulnerabilities, including CVEs, OWASP Top 10, and supply chain risks.
  • Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, Git Hub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP).
  • Strong familiarity with package managers (npm, pip, Maven, Go modules) and securing open‑source dependencies.
  • Coding experience in languages such as Go, Python, Java, or C++ to develop security test cases and tooling.
  • Hands‑on experience with cloud‑native security best practices across AWS, GCP, or Azure.
  • Knowledge of container security, Kubernetes security, and securing microservices architectures.
  • Ability to lead cross‑functional initiatives and drive security adoption within engineering teams.
  • A strong proactive approach to security, identifying risks before they become problems.
  • Excellent problem‑solving skills and the ability to balance security with performance and usability.
  • Experience working in fast‑paced, highly collaborative environments where security is a shared responsibility.
  • Passion for open‑source security and keeping up with the latest trends in software vulnerability management.
Location
  • This role is remote from the US.

The standard base salary range for this position is $185,000 - $280,000 annually. Compensation offered will be determined by factors such as location, level, job‑related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits.

EEO Statement

We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. We're committed to an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race. As set forth in Glean’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary