- Страна
- США
- Зарплата
- 185 000 $ – 280 000 $
Откликайтесь
на вакансии с ИИ

Security Engineer, Application Security
Высокая оценка обусловлена инновационностью компании (топ-10 инновационных компаний 2025 года), конкурентной заработной платой и возможностью работать на острие технологий ИИ и кибербезопасности. Единственный минус — требование гибридного формата работы в районе залива Сан-Франциско.
Сложность вакансии
Роль требует глубоких знаний в области безопасности цепочек поставок (OSS), контейнеризации и автоматизации CI/CD. Высокий порог входа обусловлен необходимостью не только находить уязвимости, но и самостоятельно писать код для инструментов безопасности на Go или Python.
Анализ зарплаты
Предлагаемый диапазон $185k – $280k полностью соответствует и даже несколько превышает рыночные стандарты для Senior/Staff AppSec инженеров в Сан-Франциско, где медиана составляет около $210k. Верхняя граница диапазона предполагает наличие исключительного опыта.
Сопроводительное письмо
I am writing to express my strong interest in the Security Engineer (Application Security) position at Glean. With over five years of experience in vulnerability management and a deep focus on securing CI/CD pipelines, I have consistently demonstrated my ability to mitigate supply chain risks and harden cloud-native infrastructures. My background in automating security validation and managing OSS dependencies aligns perfectly with Glean’s mission to provide a secure, enterprise-grade AI ecosystem.
In my previous roles, I have successfully integrated SAST/DAST tools and led cross-functional initiatives to foster a security-first culture among engineering teams. I am particularly impressed by Glean’s proactive approach to security, such as exploring Google’s Assured OSS, and I am eager to bring my expertise in Go and Python to develop custom security solutions that scale with your rapidly growing platform. I look forward to the possibility of contributing to the safety and integrity of the Work AI platform that is redefining enterprise productivity.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в gleanwork уже сейчас
Присоединяйтесь к лидерам в области ИИ и обеспечьте безопасность будущего корпоративного поиска — откликайтесь прямо сейчас!
Описание вакансии
About Glean:
Glean is the Work AI platform that helps everyone work smarter with AI. What began as the industry’s most advanced enterprise search has evolved into a full-scale Work AI ecosystem, powering intelligent Search, an AI Assistant, and scalable AI agents on one secure, open platform. With over 100 enterprise SaaS connectors, flexible LLM choice, and robust APIs, Glean gives organizations the infrastructure to govern, scale, and customize AI across their entire business - without vendor lock-in or costly implementation cycles.
At its core, Glean is redefining how enterprises find, use, and act on knowledge. Its Enterprise Graph and Personal Knowledge Graph map the relationships between people, content, and activity, delivering deeply personalized, context-aware responses for every employee. This foundation powers Glean’s agentic capabilities - AI agents that automate real work across teams by accessing the industry’s broadest range of data: enterprise and world, structured and unstructured, historical and real-time. The result: measurable business impact through faster onboarding, hours of productivity gained each week, and smarter, safer decisions at every level.
Recognized by Fast Company as one of the World’s Most Innovative Companies (Top 10, 2025), by CNBC’s Disruptor 50, Bloomberg’s AI Startups to Watch (2026), Forbes AI 50, and Gartner’s Tech Innovators in Agentic AI, Glean continues to accelerate its global impact. With customers across 50+ industries and 1,000+ employees in more than 25 countries, we’re helping the world’s largest organizations make every employee AI-fluent, and turning the superintelligent enterprise from concept into reality.
If you’re excited to shape how the world works, you’ll help build systems used daily across Microsoft Teams, Zoom, ServiceNow, Zendesk, GitHub, and many more - deeply embedded where people get things done. You’ll ship agentic capabilities on an open, extensible stack, with the craft and care required for enterprise trust, as we bring Work AI to every employee, in every company.
About the Role:
Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images, ensuring all open-source software (OSS) dependencies are scanned and patched, and integrating cutting-edge security tools into our CI/CD pipeline. The ideal candidate will drive the adoption of solutions like Google’s Assured Open Source Software (OSS) and explore alternative approaches to enhance software security.
This role will lead the vulnerability management charter at Glean, identifying, evaluating, and implementing new security technologies and processes to proactively protect our infrastructure.
You will:
- Own and lead the vulnerability management lifecycle, ensuring our entire tech stack is free from known CVEs.
- Implement and manage secure base OS images, ensuring all underlying systems remain hardened against security threats.
- Continuously scan, monitor, and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
- Research and evaluate trusted open-source security solutions like Google’s Assured Open Source Software and recommend their adoption where applicable.
- Work closely with engineering teams to integrate state-of-the-art SAST, DAST, and dependency scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early.
- Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
- Develop automated security validation tests to enforce vulnerability-free deployments across the stack.
- Lead the adoption and, if necessary, develop custom security solutions to manage and mitigate security risks at scale.
- Provide security guidance, training, and mentorship to engineering teams to foster a security-first culture at Glean.
About you:
- BA/BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience).
- 5+ years of experience in application security and vulnerability management.
- Deep understanding of software security vulnerabilities, including CVEs, OWASP Top 10, and supply chain risks.
- Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, GitHub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP).
- Strong familiarity with package managers (npm, pip, Maven, Go modules) and securing open-source dependencies.
- Coding experience in languages such as Go, Python, Java, or C++ to develop security test cases and tooling.
- Hands-on experience with cloud-native security best practices across AWS, GCP, or Azure.
- Knowledge of container security, Kubernetes security, and securing microservices architectures.
- Ability to lead cross-functional initiatives and drive security adoption within engineering teams.
Key Knowledge & Skills:
- A strong proactive approach to security, identifying risks before they become problems.
- Excellent problem-solving skills and the ability to balance security with performance and usability.
- Experience working in fast-paced, highly collaborative environments where security is a shared responsibility.
- Passion for open-source security and keeping up with the latest trends in software vulnerability management.
Why Join Us?
At Glean, we believe in empowering individuals to do their best work in an inclusive and diverse environment. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race. We’re building a culture that values curiosity, collaboration, and impact.
If you’re excited about leading the charge in securing a cutting-edge AI-powered search platform, we’d love to hear from you! 🚀
Benefits
- Competitive compensation
- Medical, Vision and Dental coverage
- Flexible work environment and time-off policy
- 401k
- Company events
- A home office improvement stipend when you first join
- Annual education stipend
- Wellness stipend
- Healthy lunches and dinners provided daily
Location:
- This role is hybrid (3-4 days a week in one of our SF Bay Area offices)
For California based applicants:
The standard base salary range for this position is $185,000 - $280,000 annually. Compensation offered will be determined by factors such as location, level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits.
We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. We're committed to an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.
#LI-HYBRID
AI-First Mindset at Glean:
At Glean, AI fluency is core to how we work and we're committed to ensuring every new hire feels confident integrating AI into their everyday work. As part of the interview process, you'll complete a brief AI-focused exercise or discussion so we can understand how you think about, design, and use AI to drive impact in your role. Feel free to reference any tools, platforms, or workflows you use today — prior Glean experience isn't required.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Go
- Python
- Java
- C++
- Snyk
- GitHub Dependabot
- Trivy
- Clair
- Burp Suite
- OWASP ZAP
- AWS
- GCP
- Azure
- Kubernetes
- Docker
- CI/CD
- SAST
- DAST
- Vulnerability Management
Возможные вопросы на собеседовании
Glean делает упор на безопасность цепочки поставок. Вопрос проверяет знание современных инструментов и стратегий защиты.
Как бы вы организовали процесс проверки и обновления OSS-зависимостей в крупном проекте, чтобы минимизировать риск атак типа 'dependency confusion'?
Вакансия подразумевает работу с облачными технологиями и K8s.
Опишите ваш подход к обеспечению безопасности базовых образов контейнеров и мониторингу уязвимостей в рантайме Kubernetes.
Роль требует интеграции безопасности в процесс разработки.
Как вы будете убеждать команду разработчиков внедрить блокирующий этап проверки безопасности в CI/CD, если они жалуются на замедление процесса деплоя?
Glean — это AI-платформа. Вопрос проверяет понимание специфических рисков.
Какие специфические риски безопасности вы видите в интеграции LLM с корпоративными данными и как их можно нивелировать на уровне приложения?
Проверка практических навыков кодинга для нужд безопасности.
Расскажите о самом сложном инструменте автоматизации безопасности, который вы разработали с нуля. Какие задачи он решал?
Похожие вакансии
Security Engineer
Principal Network Security Engineer
Security Engineer, Cloud Security
LMP IGA Developer_SCON
Privilege Access Management (PAM) Engineer
Future Opportunities: Cybersecurity
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США
- Зарплата
- 185 000 $ – 280 000 $