Staff Application Security Engineer
IroncladSan Francisco$170k – $190kPosted 9 April 2026
Job Description
Staff Application Security Engineer
Ironclad is the leading AI contracting platform that transforms agreements into assets. Contracts move faster, insights surface instantly, and agents push work forward, all with you in control. Whether you’re buying or selling, Ironclad unifies the entire process on one intelligent platform, providing leaders with the visibility they need to stay one step ahead. That’s why the world’s most transformative organizations, from Rivian to the World Health Organization and the Associated Press, trust Ironclad to accelerate their business.
We’re consistently recognized as a leader in the industry: a Leader in the Forrester Wave and Gartner Magic Quadrant for Contract Lifecycle Management, a Fortune Great Place to Work, and one of Fast Company’s Most Innovative Workplaces. Ironclad has also been named to Forbes’ AI 50 and Business Insider’s list of Companies to Bet Your Career On. We’re backed by leading investors including Accel, Y Combinator, Sequoia, BOND, and Franklin Templeton. For more information, visit www.ironcladapp.com http://www.ironcladapp.com or follow us on LinkedIn.
This is a hybrid role. Office attendance is required at least twice a week on Tuesdays and Thursdays for collaboration and connection. There may be additional in-office days for team or company events.
Ironclad is seeking a skilled Application Security Engineer with a passion for securing modern software platforms and protecting sensitive data. We are looking for someone with strong experience in automated vulnerability scanning and penetration testing to strengthen our application security program. The ideal candidate will have experience in software development or testing at SaaS companies or in regulated fields.
This role will be responsible for conducting security assessments, identifying and mitigating risks, and implementing security best practices and process improvements across Ironclad’s Product, Platform and Engineering teams.
Roles & Responsibilities:
- Develop and implement secure coding practices, procedures, and standards for software development teams.
- Conduct application security assessments and vulnerability testing to identify and mitigate risks.
- Perform security reviews of code changes and ensure that security issues are addressed.
- Collaborate with cross-functional teams to remediate software vulnerabilities and implement secure coding practices.
- Integrate security review processes into Ironclad’s CI/CD pipeline.
- Conduct threat modeling and risk analysis to protect sensitive data.
- Provide domain expertise on protective controls including system, network, encryption, and authentication services.
- Work closely with members of the SRE, Development, IT, and Security teams to drive impactful changes to Ironclad’s cybersecurity posture.
- Work closely with the risk and governance teams to implement compliance and security requirements.
- Contribute to secure coding and other cybersecurity training programs.
- Stay up-to-date with the latest security trends, vulnerabilities, and attack techniques.
- Provide technical leadership and mentorship to other members of the engineering and security teams.
Key Skills:
- BA/BS/MS in Computer Science or related field or equivalent experience.
- 3+ Years of experience working in application security or software development, preferably with SaaS companies or in regulated fields.
- In-depth knowledge of application security concepts and practices, including OWASP Top 10 and SANS Top 25.
- Experience with security testing tools such as Burp Suite, AppScan, and Nessus.
- Strong proficiency in either Typescript or Javascript.
- Experience operating in any cloud provider (AWS, GCP, Azure, Digital Ocean etc.).
- Ability to appropriately prioritize and respond to different escalations.
- Experience working collaboratively with cross-functional teams.
- Strong desire to take ownership of problems.
- Comfort working in a rapidly evolving en ... (truncated, view full listing at source)
Apply Now
Direct link to company career page
AI Resume Fit Check
See exactly which skills you match and which are missing before you apply. Free, instant, no spam.
Check my resume fitFree · No credit card