About Datadog We're on a mission to build the best platform in the world for engineers to understand and scale their systems, applications, and teams. We operate at high scale with trillions of data points per day, enabling seamless collaboration and problem-solving among Dev, Ops, and Security teams for tens of thousands of companies globally. Our engineering culture values pragmatism, honesty, and simplicity to solve hard problems the right way. The Team The Datadog Security Libraries team owns the customer-side integrations behind our run-time security products App & API Protection , Workload Protection , and Code Security . Our libraries let customers automatically manage application security risk with continuous, real-time monitoring of vulnerabilities and threats against their web applications, serverless applications, and APIs, in production. Automatically integrated with Application Performance Monitoring (APM) distributed tracing and code-level context, our software empowers development, operations, and security teams to build and run secure applications. As a polyglot team we ship and maintain the security capabilities of Datadog's tracing libraries across .NET , Java , Go , Node.js , Python , Ruby , and PHP , on top of a shared C++ core and a set of HTTP proxy integrations (primarily Envoy, NGINX, and HAProxy). Our code runs inside thousands of production applications around the world. Recent work spans exploit prevention (RASP) and WAF detections, API Security, code security (IAST and SCA), and AI-assisted ("agentic") onboarding, always measured by real product outcomes and operational telemetry. The Opportunity We're looking for a senior, polyglot engineer to contribute across several of our security libraries, with .NET or Java expertise. You'll design and build security integrations and detection features, take them from prototype to production-hardened, and own them operationally as they instrument thousands of applications. As a se
Jobiba hiring network
Application Security Head Jobs
4,781 active opportunities · Updated for October 2026
Fresh results
15 shown
Explore current application security head jobs. Use filters to narrow by work mode, employment type, experience and date posted.
About Datadog We're on a mission to build the best platform in the world for engineers to understand and scale their systems, applications, and teams. We operate at high scale with trillions of data points per day, enabling seamless collaboration and problem-solving among Dev, Ops, and Security teams for tens of thousands of companies globally. Our engineering culture values pragmatism, honesty, and simplicity to solve hard problems the right way. The Team The Datadog Security Libraries team owns the customer-side integrations behind our run-time security products App & API Protection , Workload Protection , and Code Security . Our libraries let customers automatically manage application security risk with continuous, real-time monitoring of vulnerabilities and threats against their web applications, serverless applications, and APIs, in production. Automatically integrated with Application Performance Monitoring (APM) distributed tracing and code-level context, our software empowers development, operations, and security teams to build and run secure applications. As a polyglot team we ship and maintain the security capabilities of Datadog's tracing libraries across .NET , Java , Go , Node.js , Python , Ruby , and PHP , on top of a shared C++ core and a set of HTTP proxy integrations (primarily Envoy, NGINX, and HAProxy). Our code runs inside thousands of production applications around the world. Recent work spans exploit prevention (RASP) and WAF detections, API Security, code security (IAST and SCA), and AI-assisted ("agentic") onboarding, always measured by real product outcomes and operational telemetry. The Opportunity We're looking for a senior, polyglot engineer to contribute across several of our security libraries, with .NET or Java expertise. You'll design and build security integrations and detection features, take them from prototype to production-hardened, and own them operationally as they instrument thousands of applications. As a se
About the Team OpenAI’s Cyber team works to make frontier AI safe, trusted, and transformative for developers and enterprises. This team is building the security foundation for Codex: the native controls that govern what Codex can access and do, and the interfaces that allow customers and security partners to inspect, constrain, approve, and respond to Codex activity. Our goal is to make Codex secure by default, governable by enterprises, and interoperable with the security products customers already trust . This extends the existing product direction around tenant-scoped tools, guarded actions, approval systems, and scalable partner interfaces. About the Role We are looking for a deeply technical Product Manager to help build Codex security controls and the partner ecosystem around them. This role focuses on securing Codex itself : how identity, permissions, tools, MCP servers, repositories, secrets, networks, and high-impact actions are governed across Codex products. You will also help define standard interfaces through which authorized customer and partner systems can provide security context, inspect activity, return policy decisions, receive telemetry, and initiate bounded responses. You will work closely with Codex product and engineering, OpenAI Security and Safety, enterprise customers, and partners across application security, identity, cloud security, data security, infrastructure, and security operations. In this Role you Will Build native security controls for Codex Partner with engineering, design, security, and safety teams to develop controls for: Identity, roles, permissions, and tenant isolation. Access to repositories, files, tools, MCP servers, secrets, networks, and infrastructure. Read, write, execute, and deployment authority. Human and policy-based approvals. Prompt-injection and untrusted-content defenses. Audit trails, provenance, stop conditions, revocation, and rollback. Help establish a graduated authority model in which local, read-only
About the Team The Solutions Engineering team consists of trusted technical advisors who help organizations adopt OpenAI’s technology safely, effectively, and responsibly. We partner closely with customers, Sales, Product, Engineering, Research, and Security to translate frontier AI capabilities into practical workflows that create measurable impact. Cybersecurity is one of the most important areas where AI can help. As frontier models become increasingly capable of reasoning across code, logs, infrastructure, vulnerabilities, and security evidence, customers need expert guidance to evaluate and deploy these systems safely. Our Field Security Specialists help security leaders and practitioners apply OpenAI models, APIs, Codex, agentic workflows, and emerging cyber capabilities to real defensive challenges. About the Role We are looking for a Manager of Field Security Specialists to build and lead our customer-facing cyber solutions engineering function. This is a hands-on leadership role for someone who can develop an exceptional team while remaining close to the technology and our customers. You will establish the operating model for the function, raise the quality of specialist engagements, and personally support our most strategic and technically complex customer opportunities. You will work across CISO-level strategy, practitioner-level cybersecurity challenges, and hands-on solution design. Your team will help customers explore workflows including application security, secure software development, vulnerability management, threat modeling, cloud and identity security, SOC operations, detection engineering, incident response, and security validation. This is not an internal CISO or corporate incident-response role. It is a customer-facing leadership opportunity focused on helping defenders achieve safe, measurable outcomes with frontier AI. In this role, you will: Hire, coach, develop, and lead a high-performing team of Field Security Specialists. Establish the
Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world. About The role As a Vulnerability Management Engineer, you will support the identification, assessment, prioritization, and remediation of vulnerabilities across applications and infrastructure. Working under the guidance of senior team members, you will assist in understanding how vulnerable dependencies enter an application, identifying remediation options, and engaging with engineering teams to track fixes. You will contribute to the maintenance of internal vulnerability-management tools, such as scripts, documentation, and reporting. The ideal candidate will have a desire to grow their AppSec expertise, will be eager to learn about modern security tooling and automation, and will be comfortable using AI tools like Claude to assist with documentation, investigation, and scripting tasks while following company security and data-handling requirements. What you’ll do Perform regular vulnerability assessments using different tools. Regularly drive remediation and reporting of cataloged vulnerabilities. Assess discovered vulnerabilities and properly prioritize their scope, impact and necessary response actions. Conduct security reviews of our products and production infrastructure. Contribute to vulnerability management, application security and/or offensive/red-team operations. Engage in security audit
About the Team Codex is OpenAI's software engineering agent. Codex Security extends that work into one of the most important product areas in AI: helping organizations find, validate, prioritize, and fix real vulnerabilities in the software they build and depend on. The Codex Cyber team is building the product and platform foundations for AI-native application security. This includes Codex Security product experiences, cloud-based security analysis, platform controls across Codex, customer deployment and support tooling, and infrastructure that helps security researchers and cyber models improve over time. The team is early, small, and growing quickly, with a mandate to move fast and hire exceptional builders. About the Role We are looking for software engineers first: strong full-stack or product-minded generalists who can own ambiguous product and platform problems end to end. Security experience is helpful, and security curiosity is important, but this is not a role for security specialists who only occasionally write code. The right person is an excellent builder who is excited to work in security and can turn complex research, product, and customer needs into reliable systems. You will work across user-facing product surfaces, developer workflows, backend services, security analysis pipelines, cloud infrastructure, and internal tooling. You may build features that make Codex Security more useful for application security teams, systems that scale cloud-based security analysis, platform controls that make agentic coding safer, or infrastructure that helps security researchers and models become more effective. You will collaborate closely with engineering, product, security research, infrastructure, and customer-facing partners as Codex Cyber becomes a major product and platform investment for OpenAI. In this role, you will: Build end-to-end product features for Codex Security, from developer-facing interfaces to APIs, backend services, and workflow tooling. Own a
*Max notice period - 30 Days Technical Skills: Customize and extend Oracle Fusion modules. Experience on development of SaaS extensions using Oracle Visual Builder Cloud Service (VBCS) or Application Composer, Process Cloud Service (PCS) Knowledge on Oracle Financial Modules AP, GL- Familiar with tables, API's and interfaces. Should have expertise in Oracle Fusion Cloud tools such as FBDI, ADFdi, Application Security, Workflows, BPM Workflows, Page Customizations & Extensions, FSR, BI Publisher, OTBI, Alerts etc. Understanding of REST services Understanding on Oracle Cloud Infrastructure, Architecture and Network Topology Understand how to integrate multiple systems with Oracle Fusion using various integration patterns and technologies and OIC Basic skills in Shell scripting Additional knowledge on APEX. Expertise in SQL, PLSQL, Oracle Reports, WEBADI, Oracle Workflow, XML Publisher, and Oracle Application Framework. Expertise in Oracle Forms would be an added advantage Expertise in Github, CICD, Automation Testing would be an added advantage Good debugging skills using above mentioned technical tools. Should have experience in development/support/implementation of CEMLIs. Functional Skills Should have understanding of high-level functionalities of following modules General Ledger Payables Assets Expenses Procurement Soft Skills Able to influence multiple teams on technical considerations, increasing their productivity and effectiveness, by sharing deep knowledge and experience. Self-motivator and self-starter, Ability to own and drive things without supervision and works collaboratively with the teams across the organization.
About Us At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company. At Cloudflare, we’re not looking for people who wait for a polished roadmap; we’re looking for the builders who see the cracks in the Internet that everyone else has simply learned to live with. We value candidates who have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools. Our culture is built on iteration, leveraging AI to ship faster today to make it better tomorrow, while ensuring that every improvement, no matter how small, is shared across the team to lift everyone up. If you’re the type of person who values curiosity over bureaucracy, and that AI is a partner in solving tough problems to keep the Internet moving forward, you’ll fit right in. Available Location: Singapore or Sydney About the role: Cloudflare provides advisory and hands-on-keyboard implementation and migration services for enterprise customers. As an Professional Services Consultant for Application Security and Performance, you are an individual contributor working in the post-sales landscape, responsible for the technical execution of solutions and guidance to our customers to get the most value possible from their Clo
About Us At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company. At Cloudflare, we’re not looking for people who wait for a polished roadmap; we’re looking for the builders who see the cracks in the Internet that everyone else has simply learned to live with. We value candidates who have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools. Our culture is built on iteration, leveraging AI to ship faster today to make it better tomorrow, while ensuring that every improvement, no matter how small, is shared across the team to lift everyone up. If you’re the type of person who values curiosity over bureaucracy, and that AI is a partner in solving tough problems to keep the Internet moving forward, you’ll fit right in. Available Locations: Austin, US About the role: Cloudflare provides advisory and hands-on-keyboard implementation and migration services for enterprise customers. As an Professional Services Consultant for Application Security and Performance, you are an individual contributor working in the post-sales landscape, responsible for the technical execution of solutions and guidance to our customers to get the most value possible from their Cloudflare
Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . As an Internal Audit IT Associate Manager, you'll join the Internal Audit team and lead the execution of IT and security audits across Coinbase's global cloud infrastructure, security operations, and crypto-native products. This team delivers independent, third-line assurance over technology, information security, and IT governance, helping Coinbase protect customers and maintain trust at scale. You'll own audits end-to-end, from planning through reporting, mentor junior team members supporting your engagements, and translate complex technical findings into clear, actionable insights for senior leadership. What you'll do: Own end-to-end execution of IT and security audits covering cloud infrastructure (AWS, GCP), application security, identity and access management, vendor/third-party risk, and blockchain-related products including wallets and cold storage. Lead audit planning, fieldwork, and stakeholder management, synthesizing findings into evidence-based reports and presentations for senior leadership and the Audit Committee. Direct and develop junior audit team members supporting your engagements, providing day-to-day guidance, reviewing workpapers, and coaching on technical and professional growth. Drive continuous monitoring and validation of remediated audit findings, tracking management responses and flagging delays or emerging risk themes. Partner with Engin
Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . As an Internal Audit IT Manager, you'll join the Internal Audit team and own a portfolio of complex IT and security audits across Coinbase's global cloud infrastructure, security operations, and crypto-native products. This team delivers independent, third-line assurance over technology, information security, and IT governance, helping Coinbase protect customers and maintain trust at scale. . You'll shape audit coverage, ensure that findings from complex audit work are communicated appropriately to executive and Board-level audiences, and lead team members to build a best-in-class IT audit function. What you'll do: Own and coordinate a portfolio of IT and security audits covering cloud infrastructure (AWS, GCP), application security, identity and access management, vendor/third-party risk, and blockchain-related products including wallets and cold storage. Shape the execution of the multi-year IT and security audit roadmap, coordinating coverage with co-sourced partners and aligning with enterprise risk initiatives. Synthesize complex audit findings into high-impact reports and presentations for executive leadership, the Chief Audit Executive, and the Audit Committee, ensuring conclusions are rigorous and actionable. Drive remediation strategy for IT and security findings, challenging management on risk-based solutions, validating corrective actions, and escala
The Engineering Lead Analyst – SonarQube & Code Quality Engineering is a senior-level engineering role responsible for leading static code analysis, automated code quality governance, security vulnerability remediation, and AI-augmented developer enablement across enterprise software delivery pipelines. In this role, you will champion software reliability, maintainability, clean-coding standards, and automated quality gates. You will partner with development teams, system architects, and platform engineering to integrate and manage enterprise-scale code quality platforms (such as SonarQube) both on-premises and in cloud/SaaS environments. Additionally, you will drive modern engineering practices by embedding Behavior-Driven Development (BDD) within your own software delivery and leveraging Agentic AI workers and Model Context Protocol (MCP) architectures to optimize developer experience, streamline code governance, and boost engineering velocity. Key Responsibilities 1. Code Quality & Static Analysis Platform Ownership Lead the architecture, deployment, administration, and continuous enhancement of enterprise Static Application Security Testing (SAST) and Code Quality platforms (e.g., SonarQube , DeepSource, Codacy, Semgrep). Configure, calibrate, and enforce automated Quality Gates, code rulesets, technical debt calculation models, and code-coverage baselines across multi-language enterprise repositories. Oversee version upgrades, patching, high availability, and operational maintenance for on-premises and SaaS/cloud-hosted code quality infrastructure. 2. CI/CD & Pipeline Integration <li style=
Our vision is to transform how the world uses information to enrich life for all . Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever. This role is for fresh-graduate or candidates with experience under 2 years. Key Responsibilities: You will work closely with multiple teams that make up IT, Information security and Technology to drive impactful change. Design, engineering and implementation of application security solutions in a scalable way for a worldwide enterprise. Analyze and troubleshoot systems issues. Ensure that the potential impact of software development changes is well understood, using data to support understanding of upstream and downstream dependencies. Collaborate closely with cross-functional teams for end-to-end testing and performance analysis of real-time data applications, solve issues, proactively identify new opportunities, and drive initiatives through to completion Preferred Qualifications: - Strong programming skills in C, C++, C#, or Perl - Ability to read, debug, and maintain existing production code - Experience with software design, development, testing, and troubleshooting - Passion for problem-solving and continuous improvement AI Relevant Job Responsibilities: Integrates AI-assisted tools and insights into daily work to improve efficiency, quality, or effectiveness, exercising sound judgment and complying with organizational standards and legal requirements. Contributes to a culture of continuous improvement b
About Backblaze Backblaze provides reliable, high-availability cloud storage trusted by consumers, SMBs, enterprises, and developers in over 150 countries. Backblaze B2 Cloud Storage supports data-intensive workloads including backup, media, analytics, and modern AI pipelines. Our teams focus on building secure, durable, scalable systems with a strong emphasis on application security from day one and protecting customers to keep them safe. While there is a lot to celebrate in our past, there are greater opportunities ahead of us. About the Role We are seeking a Back-End Engineer for our Computer Backup Team. This team focuses on the services supporting our Computer Backup product. In this role, you will build and maintain systems to back up and restore exabytes of data. We are looking for an engineer who is excited to learn to develop high-performance, highly multithreaded architectures. We value versatility and are looking for someone comfortable designing and working across any technology as our needs evolve. Responsibilities Design and develop highly scalable, performant services and APIs in a Java ecosystem. Integrate AI coding agents and frameworks into your workflow to accelerate development, refactor legacy components, and improve code quality. Collaborate on the full technical lifecycle, including estimation, design, development, and delivery. Collaborate across the organization to ensure project success. You will often engage with QA, Data Centers, Marketing, Product Management, Support, Legal/Compliance, and Security to gather necessary context and requirements to implement solutions correctly, help customers, and solve problems. Diagnose complex issues and maintain the stability of large-scale production systems. Collaborate across functional teams and provide technical leadership to foster engineering excellence. Required Qualifications A broad track record of project deliveries and successfully shipping software systems. 3+ years of experience with Java
About the Role We’re looking for a senior individual contributor to lead GTM Strategy & Operations for Security & Safety, in close partnership with the Policy team. This role will help translate policy, security, and safety considerations into clear GTM strategies, operating models, launch plans, and scalable execution mechanisms. You’ll work across Product, Policy, Safety, Security, Legal, Data, Sales, Customer Success, Marketing, and Revenue Operations to understand customer and field needs, shape business recommendations, and support the successful adoption of security- and safety-critical products and capabilities. This role is ideal for someone who combines strong strategic and operational judgment with the ability to work effectively on complex policy-adjacent topics. You’ll help ensure that GTM plans reflect relevant policy requirements and that recurring customer and field insights inform future policy and product decisions. In this role, you will: Define the GTM operating model for the Security & Safety program, including ownership, decision forums, planning cadences, and escalation paths. Partner with Policy, Product, Security, Safety, Legal, and Data to translate policy considerations into actionable GTM guidance and operating processes. Develop go-to-market strategy for cybersecurity models, including target customers, use cases, commercialization approach, launch readiness, success metrics, and field enablement. Build mechanisms to capture recurring customer and field needs related to security, safety, application security, and policy implementation. Translate customer feedback and field requirements into recommendations for product roadmaps, policy development, enablement, and operational priorities. Support the operationalization of data-retention policies and related customer or deployment requirements across GTM. Track customer demand, implementation blockers, and market signals to refine GTM strategy and inform Policy and Product partne
Get new application security head jobs by email
Daily job updates · Unsubscribe anytime