Staff Application Security Engineer
Bangun keamanan aplikasi dari awal di perusahaan AI kesehatan
Staff Application Security Engineer akan membangun keamanan aplikasi dari awal di Abridge, perusahaan AI kesehatan. Anda akan menjadi pemimpin teknis, mempengaruhi visi dan eksekusi praktis dari lifecycle pengembangan perangkat lunak yang aman. Kerja sama dengan tim produk dan engineering untuk mengintegrasikan keamanan, mengotomatisasi kontrol keamanan, dan membina sistem yang aman secara default.
Kenapa Menarik?
Bergabung dengan tim yang mengembangkan standar industri untuk penggunaan AI yang bertanggung jawab di sistem kesehatan
Tanggung Jawab Utama
- Melakukan threat modeling dan uji desain keamanan untuk sistem kompleks
- Mendefinisikan dan menerapkan strategi keamanan teknis untuk produk Abridge
- Mengintegrasikan keamanan ke dalam proses pengembangan perangkat lunak
- Mengotomatisasi kontrol keamanan dan membina sistem yang aman secara default
- Membina budaya keamanan di seluruh organisasi
Persyaratan
- Pemahaman mendalam tentang keamanan aplikasi dan arsitektur
- Pengalaman dalam mengembangkan strategi keamanan teknis
- Kemampuan untuk bekerja sama dengan tim produk dan engineering
- Kemampuan komunikasi yang baik untuk mempengaruhi budaya keamanan
- Pengalaman dalam mengotomatisasi kontrol keamanan
Skills Wajib
Konteks Indonesia
- Overlap Jam Kerja:
- Fleksibel — atur jam kerjamu sendiri
Keywords
Lihat Deskripsi Asli dari Ashby Job Boards
Deskripsi asli dari Ashby Job Boards
ABOUT ABRIDGE Abridge was founded in 2018 with the mission of powering deeper understanding in healthcare. Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation efficiencies while enabling clinicians to focus on what matters most—their patients. Our enterprise-grade technology transforms patient-clinician conversations into structured clinical notes in real-time, with deep EMR integrations. Powered by Linked Evidence and our purpose-built, auditable AI, we are the only company that maps AI-generated summaries to ground truth, helping providers quickly trust and verify the output. As pioneers in generative AI for healthcare, we are setting the industry standards for the responsible deployment of AI across health systems. We are a growing team of practicing MDs, AI scientists, PhDs, creatives, technologists, and engineers working together to empower people and make care make more sense. We have offices located in the Mission District in San Francisco, the SoHo neighborhood of New York, and East Liberty in Pittsburgh. THE ROLE Want to work on building out security from the ground up at the leading edge of AI in healthcare globally? We're looking for a very experienced and highly motivated Staff Application Security Engineer to join our team as one of the first engineers on the Abridge Security team. In this role, you'll be a key technical leader, driving key initiatives that shape our product, infrastructure, and engineering practices. Impact both the vision and hands-on execution of our secure software development lifecycle (SDLC) across the entire product portfolio. You'll work cross-functionally with product and engineering teams to integrate security seamlessly, automate security capabilities and controls, and mentor others to build secure-by-default systems at scale in the age of AI. This position requires deep technical expertise, a builder's mindset, and excellent communication skills to influence security culture across the organization. WHAT YOU’LL DO SECURE DEVELOPMENT & ARCHITECTURE LEADERSHIP - Lead Threat Modeling and Design Reviews: Impact the product from ideation through to code that is shipping to production. Conduct advanced threat modeling and security architecture reviews for complex systems, new products, and platform initiatives, providing expert guidance and requirements to meet Abridge’s security goals. - Define Security Strategy: Define and implement the technical roadmap for the Application Security program, focusing on scalable assurance, proactive security measures, and setting clear standards and guardrails. - Mentor and Enable: Act as a subject matter expert and trusted advisor to product and engineering teams, providing mentorship on security features, product defense, secure coding practices, application architecture, and vulnerability remediation strategies. - Conduct Training & Awareness: Develop training materials for engineers to build a foundation of security best practices across the engineering organization. VULNERABILITY MANAGEMENT & INCIDENT RESPONSE - Code and Security Reviews: Perform and lead in-depth secure code reviews (both manual and tool-assisted) to identify complex security vulnerabilities and flaws, including logic and authorization vulnerabilities that automated tools often miss. Get hands on with assessing AI models, agents, and architectures. - Internal Penetration Testing: Lead internal penetration testing engagements for net new products and historical systems identify security risks across our environment. - Vulnerability Program Oversight: Design and enhance the end-to-end vulnerability management program for Abridge’s products and applications, ensuring timely identification, prioritization, and remediation of critical security issues while doing so in as developer-friendly a way as possible. - Security Incident Response: Serve as an expert on Abridge’s products and applications for the security incident response team, assisting in investigating and resolving security events and incidents. WHAT YOU’LL BRING - Experience: 10+ years of direct experience in an Application Security role, with a demonstrated history of designing and implementing security improvements at scale. - Programming Fluency: Deep proficiency in one or more major programming languages (Python and NextJS a big plus) and a solid background in software development principles. - Cloud & Containers: Extensive experience securing applications deployed in Cloud environments (GCP a big plus) and knowledge of containerization technologies (Kubernetes). - Technical Depth: Expert-level knowledge of web application security techniques and principles, APIs, IAM (including identity, authentication/authorization, RBAC, ABAC), applied cryptography, etc. - AI Security: Deep understanding of the security of AI and ML models, agents, and associated systems. BONUS POINTS IF… - Security Research: Proven experience contributing to or leveraging open-source security tools, publishing security research, managing bug bounty programs, and active engagement in the security industry. - Cross-Functional Influence: Demonstrated ability to drive large, cross-functional technical projects that impact security posture across the entire organization. - Data-Driven Security: Experience defining and utilizing security metrics to measure and report on the effectiveness of the AppSec program to both technical and executive audiences. WHY WORK AT ABRIDGE? At Abridge, we’re transforming healthcare delivery experiences with generative AI, enabling clinicians and patients to connect in deeper, more meaningful ways. Our mission is clear: to power deeper understanding in healthcare. We’re driving real, lasting change, with millions of medical conversations processed each month. Joining Abridge means stepping into a fast-paced, high-growth startup where your contributions truly make a difference. Our culture requires extreme ownership—every employee has the ability to (and is expected to) make an impact on our customers and our business. Beyond individual impact, you will have the opportunity to work alongside a team of curious, high-achieving people in a supportive environment where success is shared, growth is constant, and feedback fuels progress. At Abridge, it’s not just what we do—it’s how we do it. Every decision is rooted in empathy, always prioritizing the needs of clinicians and patients. We’re committed to supporting your growth, both professionally and personally. Whether it's flexible work hours, an inclusive culture, or ongoing learning opportunities, we are here to help you thrive and do the best work of your life. If you are ready to make a meaningful impact alongside passionate people who care deeply about what they do, Abridge is the place for you. HOW WE TAKE CARE OF ABRIDGERS: - Generous Time Off: 14 paid holidays, flexible PTO for salaried employees, and accrued time off for hourly employees - Comprehensive Health Plans: Medical, Dental, and Vision coverage for all full-time employees and their families. - Generous HSA Contribution: If you choose a High Deductible Health Plan, Abridge makes monthly contributions to your HSA. - Paid Parental Leave: Generous paid parental leave for all full-time employees. - Family Forming Benefits: Resources and financial support to help you build your family. - 401(k) Matching: Contribution matching to help invest in your future. - Personal Device Allowance: Tax free funds for personal device usage. - Pre-tax Benefits: Access to Flexible Spending Accounts (FSA) and Commuter Benefits. - Lifestyle Wallet: Monthly contributions for fitness, professional development, coworking, and more. - Mental Health Support: Dedicated access to therapy and coaching to help you reach your goals. - Sabbatical Leave: Paid Sabbatical Leave after 5 years of employment. - Compensation and Equity: Competitive compensation and equity grants for full time employees. - ... and much more! EQUAL OPPORTUNITY EMPLOYER Abridge is an equal opportunity employer and considers all qualified applicants equally without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, or disability. We're committed to providing reasonable accommodations throughout the interview process. Once you submit your application, we'll follow up with details on how to request an accommodation for interviewing, completing any assessments, or otherwise participating in the selection process. STAYING SAFE - PROTECT YOURSELF FROM RECRUITMENT FRAUD We are aware of individuals and entities fraudulently representing themselves as Abridge recruiters and/or hiring managers. Abridge will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Abridge recruiting team will come from an @abridge.com http://abridge.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article https://consumer.ftc.gov/consumer-alerts/2023/05/scammers-are-hijacking-job-ads-heres-how-spot-fakes. Please exercise caution and cease communications if something feels suspicious about your interactions.
Konteks Gaji
Posisi Engineering serupa di LokerDollar dibayar sekitar $215k/yr (kisaran $19.575k–2745.996k/yr, dari 426 listing aktif).
Perekrutan di Abridge
Abridge punya 16 lowongan aktif lain di LokerDollar dan telah merekrut di sini sejak 20 Jul 2026 — di kategori Engineering, Operations, Design.
Lihat semua lowongan Abridge →Akun gratis · tanpa kartu kredit · Masuk
Pro Rp39rb/bln · lamar tanpa batas + resume AI
Pertanyaan yang sering diajukan
- Apakah Staff Application Security Engineer di Abridge bisa dikerjakan remote?
- Posisi ini berlokasi di Remote. Detail remote/onsite ada di deskripsi lowongan.
- Berapa gaji untuk Staff Application Security Engineer di Abridge?
- Rentang gaji yang tercantum untuk posisi ini adalah $228k–290k/yr.
- Jenis pekerjaan apa Staff Application Security Engineer di Abridge?
- Posisi ini adalah pekerjaan full time.
- Bagaimana cara melamar?
- Klik tombol "Lamar" pada halaman ini untuk menuju halaman aplikasi resmi Abridge.
Jelajahi lebih lanjut
Data & laporan pasar
Riset gaji & permintaan skill dari data lowongan kami sendiri.
- Lowongan IT Indonesia vs Remote Global (2026)Analisis data primer 2.049 lowongan: metodologi, klasifikasi, dataset bisa diunduh.
- Permintaan Skill AI: Indonesia vs Global (2026)10.000+ lowongan, classifier taxonomy-first, Wilson CI, pra-registrasi sebelum analisis.
- Laporan Hiring Indonesia: Tech vs Non-TechPermintaan lowongan per bidang dari hitungan agregat — bukan listing per-listing.
- Benchmark Gaji IndonesiaKisaran gaji agregat lintas peran, dengan metodologi dan dataset terbuka.
- Indeks Gaji & Permintaan Kerja Remote untuk IndonesiaBerapa banyak lowongan remote global yang terbuka untuk Indonesia, dan gajinya (USD) per bidang.
- Laporan Kuartalan Pasar Kerja IndonesiaPHK, pendanaan, gaji & skill per kuartal — agregat terbuka.
- Laporan Pasar Remote per PeranLaporan otomatis per kelompok peran — skill, senioritas, perusahaan, gaji.
- Benchmark Gaji Remote GlobalGaji tahunan per bidang & mata uang, plus porsi lowongan terbuka untuk seluruh dunia.
Dari blog kami
- 10 Remote Jobs Nobody Wants (Yet!)Ada lowongan remote yang sepi pelamar? Kami tunjukkan 10 posisi yang permintaannya tinggi, tapi pasokannya minim – dan kenapa skill-mu mungkin cocok.
- Tren Lowongan Freelance Juni 2026Analisis pasar kerja freelance remote berdasarkan 7 lowongan terbaru di Loker Dollar. Range gaji, contrarian take, dan rekomendasi apply.
- Loker Remote Juli 2026Temukan lowongan kerja remote USD terbaru di Juli 2026 untuk developer, desainer, dan profesional lainnya. Gaji dan tips apply!
Akun gratis · tanpa kartu kredit · Masuk
Pro Rp39rb/bln · lamar tanpa batas + resume AI
