Ovii Job Board

Senior Application Security Engineer

Commure

Mountain View, USA • Hybrid - Mountain View, USA • Full-Time • 5+ years

Posted 2026-07-27 USD 160,000 - USD 190,000 per year Tech & Engg

Apply on employer site

Job Description

Ovii's Interpretation of the Role

We need a senior security engineer who dives into code, finds systemic vulnerabilities, and builds tooling to protect our AI‑driven healthcare platform. The role blends deep application security expertise with fast‑paced product development and direct interaction with engineers and enterprise customers.

Role Snapshot

  • Senior Application Security Engineer
  • Hybrid (Mountain View, CA)
  • Security tooling & automation
  • Threat modeling & secure code reviews
  • AI‑accelerated development focus
  • Enterprise security presentations

Must-Have Requirements

  • Application security
  • Threat modeling
  • Secure code review
  • SAST/SCA integration
  • Static analysis tooling
  • Software engineering

Nice-to-Have Signals

  • AI/LLM security considerations
  • Healthcare regulated data security (HIPAA)
  • Offensive security background
  • Enterprise customer experience
  • AI‑driven system security
  • Healthcare regulated industry security
  • Offensive security

Work Setup

  • Location: Mountain View, United States
  • Work mode: HYBRID
  • Remote scope: UNSPECIFIED
  • Employment type: Full-Time

Not Specified in JD

  • Salary range
  • Visa sponsorship
  • Remote eligibility
  • Travel requirement
  • Security clearance

What You'll Likely Work On

  • Identify systemic security gaps in the codebase and engineering workflows, then drive durable fixes with engineering teams.
  • Build and maintain security tooling and automation, including SAST/SCA pipelines and custom static analysis checks.
  • Conduct secure code and security design reviews for major product initiatives, especially AI‑driven features and data pipelines.
  • Lead threat modeling for new features and translate findings into actionable guidance for engineers.
  • Evaluate how AI‑accelerated development impacts risk detection and remediation, applying AI tools where they add value.
  • Present the organization’s security posture to enterprise customers, focusing on healthcare and regulated‑data contexts.

Good Fit If You Have

  • Enjoys deep code analysis and root‑cause bug hunting.
  • Thrives in a fast‑moving, autonomous environment.
  • Communicates clearly and earns engineers’ trust.
  • Interest in AI‑driven security challenges.
  • Experience with regulated‑industry (HIPAA) security.

Skills

  • Application security
  • Threat modeling
  • Secure code review
  • SAST / SCA integration
  • Static analysis tooling
  • AI/LLM security considerations
  • Healthcare regulated data compliance (HIPAA)
  • Offensive security techniques