AdTechTalent
Engineering9 days agoOn-site

The Trade Desk

Sr Application Security Engineer

application securitysecurity engineeringSASTDASTvulnerability managementthreat modelingKubernetescontainer securitycloud securityAI securitymachine learning securityC#JavaPythonGoJavaScriptDevSecOpsCI/CDGitHub ActionsGitLabJenkinsArgoCDSTRIDEPASTAGenAILLMpenetration testing

Key details

Salary

$114K – $208K

Employment type

Full-time

Seniority

Senior

Years experience

5-10

Location

Bellevue, United States

Full job description

The Trade Desk seeks a Senior Application Security Engineer to join the Cybersecurity Department. The role involves owning and extending application security tooling, leading threat modeling, and hardening security programs for a global platform. Responsibilities include integrating SAST/DAST pipelines, managing vulnerabilities, conducting security code reviews and penetration tests, writing security automation code, securing AI/ML systems, and driving security culture and governance. Candidates must have 6-8+ years in application security with hands-on software development experience in C#, Java, Python, Go, or JavaScript, expertise in SAST, DAST, SCA, secrets management, threat modeling, vulnerability management, Kubernetes, container and cloud security, and preferably AI/ML security experience. Strong communication skills and relevant certifications are a plus. Benefits include comprehensive healthcare, retirement plans, disability coverage, life insurance, tuition reimbursement, parental leave, sick and vacation time, paid holidays, stock purchase plans, and variable incentives. The base salary range is $113,500 to $208,100 USD. Location: Bellevue, Washington, United States.

What you'll do

  • Extend and own scalable AppSec tooling across SAST/DAST pipeline integration, vulnerability management, threat modeling frameworks, and security posture
  • Validate findings end-to-end by triaging and reproducing scanner output, contextualizing risk for engineering teams
  • Review and assess new features, APIs, and architectural changes; conduct security-focused code reviews and application-layer penetration tests
  • Write production-quality security automation and tooling alongside security guidance
  • Assess and help secure AI/ML systems including inference APIs, LLM integrations, and GenAI attack surfaces; build AI-augmented tooling
  • Drive security culture through engineering partnership by advising on secure-by-design patterns and raising security standards
  • Participate in and drive security governance frameworks including developing and publishing standards, guidelines, procedures, secure baselines, and policies

Requirements

  • BS degree or equivalent experience
  • 6-8+ years in application security with tooling and automation experience
  • Active software development experience in at least one language: C#, Java, Python, Go, or JavaScript
  • Hands-on experience with SAST, DAST, SCA, and secrets management tooling including CI/CD integration
  • Practical threat modeling experience (STRIDE, PASTA, or equivalent)
  • Experience with vulnerability management workflows including aggregation, triage, prioritization, and remediation
  • Working knowledge of Kubernetes and container security (Docker, Helm, Istio)
  • Cloud security fundamentals in at least one major platform (AWS, GCP, or Azure)
  • Experience in AI/ML security including securing AI pipelines, assessing LLM integrations, understanding GenAI attack surfaces, or building AI-assisted security tooling
  • Strong written and verbal communication skills
  • Certifications such as OSWE, GWAPT, CSSLP, OSCP, or cloud security certifications are a plus
  • Experience in ad tech, large-scale SaaS, or other high-throughput consumer or enterprise platforms is a plus

Tech stack

C#JavaPythonGoJavaScriptSASTDASTSCAsecrets management toolingGitHub ActionsGitLabJenkinsArgoCDKubernetesDockerHelmIstioAWSGCPAzureAI/ML securityLLM integrationsGenAI

Benefits

Comprehensive healthcare (medical, dental, vision) with premiums paid in full for employees and dependentsRetirement benefits including 401k plan and company matchShort and long-term disability coverageBasic life insuranceWell-being benefitsTuition reimbursement for certain expensesParental leaveSick time accrual of 1 hour per 30 hours workedVacation time up to 120 hours in the first year and 160 hours thereafter for full-time employeesAround 13 paid holidays per yearEmployee Stock Purchase Plan with discounted stock purchaseVariable compensation-based incentives and commissions depending on role

Apply now

Ready to take the next step in your career? Click the button below to continue to the application process.

Similar jobs

More roles worth a look

Related opportunities based on specialty and working model so candidates can keep momentum.