App Sec Engineer
, • Direct Hire • September 05, 2026 • 90238
Job Title: App Sec Engineer
Job ID: 90238
Location: San Francisco, California
What you will be doing:
Secure Development Lifecycle
-
Own the secure SDLC end-to-end: threat modeling, design reviews, code reviews -- you set the bar
-
Run and coordinate app pentests (internal and external) and drive findings to closure
-
Build and own SAST/DAST/SCA tooling wired into CI/CD so security ships with the code
-
Triage and remediate vulnerabilities from every angle -- bug bounty, internal scans, the works
Software Security Engineering
-
Build and maintain the security-critical stuff: encryption services, authz enforcement, authn flows
-
Own the Auth0 ? Opal integration -- tokens, sessions, MFA, SSO (SAML, OIDC, OAuth 2.0)
-
Ship production Go and TypeScript to harden APIs, enforce least-privilege, and close vuln classes for good
-
Create shared libraries that make the secure path the easy path for every product engineer
Incident Response & Cloud Security
-
Be first on the scene for security incidents: investigate, contain, find the root cause, fix it
-
Partner with Infra on cloud hardening -- AWS IAM, EKS, KMS, network segmentation
-
Level up detection and response by writing detection rules and improving logging and alerting
Security Culture
-
Mentor engineers on secure coding, common vuln patterns, and security architecture -- you make the org smarter
-
Help set the security roadmap by grounding it in real product risk
-
Be the security teammate engineers want to work with -- a collaborator, not a bottleneck
What you must have:
-
Have 4+ years in application security or software security engineering
-
Actually write production code -- findings reports are the floor, not the ceiling
-
Know auth cold: OAuth 2.0, OIDC, SAML, session management, token lifecycle
-
Are comfortable in AWS and containerized environments (Kubernetes, Docker)
-
Bonus points for familiarity with our stack: Go, TypeScript, React, PostgreSQL, Redis, GraphQL
-
Have led complex, cross-functional security initiatives from kickoff to completion
-
Have run or participated in external pentests and seen findings through remediation
-
Thrive on ownership and ambiguity -- you'd rather write the playbook than wait for one
Salary/Rate Range: $150.00 - $250.00
Thank you for your interest in this opportunity. If you are selected to move forward in the process, we will contact you directly. If you do not hear from us, we encourage you to continue visiting our website for other roles that may be a good fit.
For more information about TEEMA and to consider other career opportunities, please visit our website at www.teemagroup.com