Application Product Security Engineer

Jump

Completely RemoteFull TimeInformation Technology
Posted Yesterday

Job description

About the Company

Jump builds AI-powered tools that help financial advisors automate meeting prep, notes, and follow-up — which means our customers trust us with some of their most sensitive client data. Security isn’t a checkbox for us; it’s core to the product and to earning that trust every day.

Responsibilities

  • Partner with product and engineering teams during design and planning to identify risks early
  • Lead threat modeling and secure design reviews for new products and architecture changes
  • Perform security-focused code reviews and assist engineers with vulnerability remediation
  • Build and maintain application security tooling (SAST, dependency scanning, secrets detection) in CI/CD
  • Participate in incident response, including triage, investigation, and containment
  • Triage findings from bug bounty reports, pen tests, and vulnerability scans
  • Develop lightweight security guidance and paved-road patterns
  • Handle customer security questionnaires and cloud/corporate security improvements

Requirements

  • 2–4 years of experience in application security, product security, or software engineering
  • Solid grasp of common vulnerability classes (OWASP Top 10, authn/authz, injection, SSRF)
  • Experience with threat modeling and secure design reviews
  • Hands-on incident response experience
  • Ability to read and write code (Python, TypeScript/JavaScript, Go, or similar)
  • Strong communication and collaboration skills
  • Comfort with ambiguity and shifting priorities

Preferred Qualifications

  • Prior security experience at a startup or small security team
  • Cloud security experience (AWS, GCP, or Azure) and infrastructure-as-code familiarity
  • Experience securing AI/LLM-powered products or working with sensitive financial data
  • Familiarity with compliance frameworks (SOC 2, GDPR)
  • Contributions to CTFs, bug bounty, or open-source security tools

Benefits

  • Base salary: $130,000–$170,000 plus equity
  • Health, dental, and vision coverage
  • Flexible PTO
  • Remote-first work environment

Skills & tools

Application SecurityPythonTypeScript

What the team is looking for

Use this list as a quick fit check before you apply.

  1. 012–4 years application security experience
  2. 02Knowledge of OWASP Top 10
  3. 03Threat modeling experience
  4. 04Incident response experience
  5. 05Coding proficiency in Python, TypeScript, or Go
NeverApplyAd

Wake up to a shortlist, not a search results page.

NeverApply scores every new listing against your CV, salary floor and visa. A handful of real matches by morning.

Get your daily matches