Description
Flagstone is hiring a Senior Application Security Engineer to own application security across its development lifecycle, from threat modelling and secure design review through secure code review, tooling, vulnerability management, penetration testing, remediation, incident response, and application cyber risk. The role is hands-on engineering work with product engineering teams, not compliance or customer-facing, and requires at least five years of application security or security engineering experience, including SDLC security, SAST/DAST/SCA, OWASP, secure coding, adversarial testing, and AI system security. The position is hybrid.
