
Senior Application Security Engineer
Commure
Posted 2026-07-27
USD 160,000 - USD 190,000 per year
Tech & Engg
Job Description
Ovii's Interpretation of the Role
We need a senior security engineer who dives into code, finds systemic vulnerabilities, and builds tooling to protect our AI‑driven healthcare platform. The role blends deep application security expertise with fast‑paced product development and direct interaction with engineers and enterprise customers.
Role Snapshot
- Senior Application Security Engineer
- Hybrid (Mountain View, CA)
- Security tooling & automation
- Threat modeling & secure code reviews
- AI‑accelerated development focus
- Enterprise security presentations
Must-Have Requirements
- Application security
- Threat modeling
- Secure code review
- SAST/SCA integration
- Static analysis tooling
- Software engineering
Nice-to-Have Signals
- AI/LLM security considerations
- Healthcare regulated data security (HIPAA)
- Offensive security background
- Enterprise customer experience
- AI‑driven system security
- Healthcare regulated industry security
- Offensive security
Work Setup
- Location: Mountain View, United States
- Work mode: HYBRID
- Remote scope: UNSPECIFIED
- Employment type: Full-Time
Not Specified in JD
- Salary range
- Visa sponsorship
- Remote eligibility
- Travel requirement
- Security clearance
What You'll Likely Work On
- Identify systemic security gaps in the codebase and engineering workflows, then drive durable fixes with engineering teams.
- Build and maintain security tooling and automation, including SAST/SCA pipelines and custom static analysis checks.
- Conduct secure code and security design reviews for major product initiatives, especially AI‑driven features and data pipelines.
- Lead threat modeling for new features and translate findings into actionable guidance for engineers.
- Evaluate how AI‑accelerated development impacts risk detection and remediation, applying AI tools where they add value.
- Present the organization’s security posture to enterprise customers, focusing on healthcare and regulated‑data contexts.
Good Fit If You Have
- Enjoys deep code analysis and root‑cause bug hunting.
- Thrives in a fast‑moving, autonomous environment.
- Communicates clearly and earns engineers’ trust.
- Interest in AI‑driven security challenges.
- Experience with regulated‑industry (HIPAA) security.
Skills
- Application security
- Threat modeling
- Secure code review
- SAST / SCA integration
- Static analysis tooling
- AI/LLM security considerations
- Healthcare regulated data compliance (HIPAA)
- Offensive security techniques