
Application Product Security Engineer
Jump
Completely RemoteFull TimeInformation Technology
Posted Yesterday
Job description
About the Company
Jump builds AI-powered tools that help financial advisors automate meeting prep, notes, and follow-up — which means our customers trust us with some of their most sensitive client data. Security isn’t a checkbox for us; it’s core to the product and to earning that trust every day.
Responsibilities
- Partner with product and engineering teams during design and planning to identify risks early
- Lead threat modeling and secure design reviews for new products and architecture changes
- Perform security-focused code reviews and assist engineers with vulnerability remediation
- Build and maintain application security tooling (SAST, dependency scanning, secrets detection) in CI/CD
- Participate in incident response, including triage, investigation, and containment
- Triage findings from bug bounty reports, pen tests, and vulnerability scans
- Develop lightweight security guidance and paved-road patterns
- Handle customer security questionnaires and cloud/corporate security improvements
Requirements
- 2–4 years of experience in application security, product security, or software engineering
- Solid grasp of common vulnerability classes (OWASP Top 10, authn/authz, injection, SSRF)
- Experience with threat modeling and secure design reviews
- Hands-on incident response experience
- Ability to read and write code (Python, TypeScript/JavaScript, Go, or similar)
- Strong communication and collaboration skills
- Comfort with ambiguity and shifting priorities
Preferred Qualifications
- Prior security experience at a startup or small security team
- Cloud security experience (AWS, GCP, or Azure) and infrastructure-as-code familiarity
- Experience securing AI/LLM-powered products or working with sensitive financial data
- Familiarity with compliance frameworks (SOC 2, GDPR)
- Contributions to CTFs, bug bounty, or open-source security tools
Benefits
- Base salary: $130,000–$170,000 plus equity
- Health, dental, and vision coverage
- Flexible PTO
- Remote-first work environment
Skills & tools
Application SecurityPythonTypeScript
What the team is looking for
Use this list as a quick fit check before you apply.
- 012–4 years application security experience
- 02Knowledge of OWASP Top 10
- 03Threat modeling experience
- 04Incident response experience
- 05Coding proficiency in Python, TypeScript, or Go
AdWake up to a shortlist, not a search results page.
NeverApply scores every new listing against your CV, salary floor and visa. A handful of real matches by morning.
Get your daily matches
Jump
Job details
- Work model
- Completely Remote
- Commitment
- Full Time
- Category
- Information Technology
- Posted
- Yesterday
AdWake up to a shortlist, not a search results page.
NeverApply scores every new listing against your CV, salary floor and visa. A handful of real matches by morning.
Get your daily matches