Application Security Engineer II
Job Overview
About the Role Abnormal AI is looking for an Application Security Engineer II to secure the AI-powered systems at the core of our AWS-based platform (LLM-integrated features, agentic workflows, MCP connectors, and the model supply chain) against threats like prompt injection at production scale.
This is an individual contributor role that blends deep application security expertise with strong engineering fundamentals.
Job Description
You'll coach developers across the engineering organization on application security principles, act as a technical liaison across teams, and contribute directly to keeping our applications and customers secure.
This role reports to the Director of Security Engineering.
Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines. Design and deploy automated security testing to identify vulnerabilities early in the development process.
Serve as a hands-on technical contributor during security incidents by analyzing application-level behavior and enhancing response processes. Coach developers on secure coding, security architecture, and threat modeling for AI-native systems.
Key Responsibilities
- You'll focus on integrating security into every phase of our software development lifecycle, conducting comprehensive security reviews, and partnering with engineering teams to build defensible architectures.
- You will own the security architecture and development of secure coding practices while ensuring security is a foundational partner to our engineering stakeholders.
- What you will do Lead threat modeling and security architecture reviews with engineering teams by translating security risks into concrete development actions, with particular focus on AI-powered features (LLM integrations, agentic workflows, MCP connectors).
- Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines.
- Define and track key security posture metrics, building dashboards or reports to visualize security coverage and vulnerability trends.
- Hands-on experience with commercial security tools (Veracode, Checkmarx, SonarQube, Wiz, Semgrep, Burp Suite) Prior experience building security telemetry pipelines or vulnerability management frameworks.
Required Skills and Qualifications
- Must Haves 5+ years of experience in application security engineering roles, ideally securing AWS or comparable cloud-native environments with modern development practices.
- Experience securing AI/ML-powered systems, or a clear ability to ramp fast on prompt injection, model supply chain, and agentic-workflow risks.
- Strong programming skills in Python, Go, Java, or JavaScript/TypeScript.
- Hands-on experience threat modeling and running security architecture reviews.
- Nice to Have Experience working in fast-paced or startup environments, comfortable defining scope in a growing security program.
- Hands-on experience with commercial security tools (Veracode, Checkmarx, SonarQube, Wiz, Semgrep, Burp Suite) Prior experience building security telemetry pipelines or vulnerability management frameworks.
- #LI-PP1 Actual compensation will be determined based on several non-discriminatory factors including skills, experience, qualifications, and geographic location.
- Further, if your application is successful and Abnormal AI makes a conditional offer of employment, we will carry out pre-employment checks which must be successfully completed to progress to a final offer.
Benefits and Perks
- Expertise in web application security including OWASP Top 10, authentication/authorization, cryptography, and secure API design, including securing modern architectures (microservices, containers, cloud-native).
- In addition to base salary, this role may be eligible for bonus or incentive compensation, equity, and a comprehensive benefits package.
USA Jobs Today role summary
Role Summary
Application Security Engineer II at Abnormal is a remote United States position and is listed as Full Time.
About the Role Abnormal AI is looking for an Application Security Engineer II to secure the AI-powered systems at the core of our AWS-based platform (LLM-integrated features, agentic workflows, MCP connectors, and the model supply chain) against threats like prompt injection at production scale.
Review the employer's original description and official application page before applying; USA Jobs Today organizes source-supported details for readability without changing stated requirements.
Application Checklist
- Review the stated qualifications, including: Must Haves 5+ years of experience in application security engineering roles, ideally securing AWS or comparable cloud-native environments with modern development practices. Experience securing AI/ML-powered systems, or a clear ability to ramp fast on prompt injection, model supply chain, and agentic-workflow risks.
- Confirm that the official application page still lists the role as open.
- Verify the work location and any United States eligibility or work-authorization requirements.
- Tailor your resume to the responsibilities and qualifications stated by Abnormal.
- Apply only through the official link shown on this page and never pay USA Jobs Today to submit an application.
Original job information is provided by the hiring organization or listed source. USA Jobs Today organizes source-supported details for readability without inventing salary, benefits, qualifications, sponsorship, or remote eligibility.
Work Location and Schedule
This role is listed as Remote USA with location information shown as Remote USA. The employment type is Full Time.
About the Company
Abnormal is the organization connected with this listing. USA Jobs Today displays this opportunity for job discovery only, so applicants should verify company details, application instructions, and eligibility on the official employer website.
Application Notes
This job was reviewed for USA-only relevance. Always apply through the official employer website, review the full job details carefully, and avoid sharing sensitive personal or payment information outside a trusted application process.
Report this job if it looks expired, suspicious, inaccurate, or unsafe.More USA job search options
Related resources for this job seeker
Use these links to browse more USA jobs, compare related categories, prepare your resume, and read USA job search guidance before applying.
