Application Security Lead
serval · San Francisco
Job description
About the role
Serval is seeking an Application Security Lead to build and scale its product and application security program. You will define strategy and drive execution for secure software development, vulnerability management, threat modeling, and security architecture across the platform and AI‑driven agent systems.
Key responsibilities
- Design, implement and operate Serval’s application security program, including secure SDLC practices, threat modeling, secure design reviews, code reviews and vulnerability remediation.
- Build, lead and mentor a team covering product security, secure software development and vulnerability management, hiring as the platform grows.
- Establish engineering rigor through secure coding standards, reusable libraries, and security design patterns.
- Develop and tune automated tooling (SAST, DAST, SCA, secrets scanning, supply‑chain controls, CI/CD security gates) to catch issues early and make findings actionable.
- Own the end‑to‑end vulnerability lifecycle: intake, triage, severity assessment, remediation tracking and coordinated disclosure.
- Partner with Engineering, Product and Infrastructure to embed security by design, including authentication, authorization, tenant isolation, data protection and secrets management.
- Tackle novel AI‑agent security challenges such as prompt injection, unsafe tool use, data exfiltration and autonomous action abuse.
Required profile
- 10+ years of cybersecurity experience with deep expertise in application security, secure software development and vulnerability management.
- Proven track record building and leading application/product security and secure‑SDLC functions.
- Strong software engineering fundamentals; able to read, write and review production code as a peer.
- Excellent written and verbal communication, calm under pressure and able to influence cross‑functional teams.
- Understanding of modern adversary tactics, techniques and procedures and ability to translate them into practical secure‑design guidance.
Required skills
- SAST, DAST, SCA, secrets detection, fuzzing, software supply‑chain security.
- Secure SDLC, threat modeling, secure design review, code review.
- Vulnerability management lifecycle and coordinated disclosure.
- Secure coding standards, cloud‑native and distributed‑systems architecture.
- CI/CD security gates, authentication, authorization, tenant isolation, data protection, secrets management.
What we offer
- Impactful role shaping the security of a fast‑growing AI automation platform.
- Opportunity to build a fundamentally new AI product with support from experienced investors.
- Culture that values innovation, ownership, accountability and fun.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in the United States.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 5 hours ago
Expires 1 month from now
1 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
serval
San Francisco
Related job offers
-
Machine Learning Engineer
sift San Francisco -
Software Engineer – Horizon
sierra San Francisco -
Software Engineer – AI Agent for Tech, Media & Telecom
sierra San Francisco -
Director
Food Safety and Inspection Service Thitani location -
AI Safety Specialist (Short‑Term Project)
HumanitApp Thitani location