Shield AI is a defense-tech company dedicated to protecting service members and civilians through intelligent systems, including autonomous software and advanced aircraft. We are seeking a Staff Application Security Engineer to build and advance a scalable, developer-centered application security program that integrates seamlessly into our engineering workflows.
Key responsibilities
- Establish and improve company-wide secure SDLC policies, standards, and control objectives.
- Assess development team maturity and lead practical improvement roadmaps for CI/CD pipelines and release processes.
- Partner with engineering teams to identify, triage, and remediate application security findings.
- Operationalize security tooling, including SAST, DAST, SCA, and container scanning, ensuring actionable results.
- Mature software supply-chain security practices, including SBOM management and build integrity controls.
Requirements
- 7+ years of experience in application security, product security, or DevSecOps.
- Demonstrated success in maturing secure SDLC programs across multiple engineering teams.
- Strong knowledge of secure coding practices, vulnerability management, and software delivery principles.
- Hands-on experience integrating security controls into CI/CD, build, and deployment workflows.
- Ability to communicate technical risks and tradeoffs effectively to developers and leadership.
What we offer
- Opportunity to influence enterprise-wide security strategy at a high-impact defense-tech company.
- Collaborative environment working on cutting-edge autonomous systems and high-assurance products.
- Professional growth through leadership of security initiatives and developer enablement programs.