SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 120,000 - 150,000 / annual
Shift Technology is an AI-driven SaaS platform serving the insurance industry, delivering AI agents that transform critical insurance workflows. The company combines deep domain expertise with advanced data resources to provide accurate, explainable, and secure solutions trusted by hundreds of leading insurers globally.
As an Application Security / DevSecOps Engineer, you will drive application security and DevSecOps practices across Shift's software delivery pipeline, from initial code development through CI/CD deployment. You will work closely with data scientists, software delivery teams, and engineers to embed security by design throughout the development lifecycle. Additionally, you will serve as a first responder within the Security Operations function, monitoring, triaging, investigating, and responding to security alerts and incidents across the environment.
Key responsibilities span three primary areas:
**Secure by Design (Shift Left):** Work with development teams to ensure technical security standards are understood and best practices followed. Drive application security by defining and championing technical policies, standards, and guidelines. Identify systemic and cultural developer security issues and remediation opportunities. Promote secure development mindsets, transfer security knowledge, and act as a subject matter expert. Lead and facilitate threat modeling exercises.
**Secure the Build & Deploy Pipeline (DevSecOps/AppSec):** Automate security testing including SAST, DAST, SCA, and vulnerability management. Ensure full code and infrastructure coverage. Implement code and artifact integrity through automated signing and attestation in the CI/CD pipeline. Establish guardrails for AI-assisted development to ensure AI-generated code is vetted for security vulnerabilities. Enforce best practices for secret management, infrastructure-as-code security, and SBOM. Conduct security audits of company and partner-developed software. Operate a software vulnerability management program with meaningful metrics and reporting. Prioritize and manage code defect remediation.
**Security Monitoring & Incident Response (SecOps):** Monitor and triage security alerts from Microsoft Sentinel, EDR platforms, cloud security tools, and other technologies. Investigate suspicious activity and determine severity, scope, and impact. Validate alerts, differentiate false positives from actionable incidents, and escalate appropriately. Serve as first responder for security incidents, executing response procedures and containment actions per established playbooks. Gather evidence, coordinate with stakeholders, and ensure timely remediation. Maintain investigation records and participate in post-incident reviews.
You will also collaborate across teams, communicate findings clearly to technical and non-technical stakeholders, participate in purple team exercises, and continuously develop technical and security knowledge.
**Requirements:**
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or equivalent experience
- 7+ years of experience in Security Operations, Incident Response, Cybersecurity Monitoring, or similar security role
- Experience with SIEM platforms, preferably Microsoft Sentinel
- Experience with at least one EDR platform (Microsoft Defender for Endpoint, CrowdStrike, Cortex XDR, or similar)
- Experience with application vulnerability management tools (GitHub Advanced Security, Tenable, or similar)
- Knowledge of API, web application, and software supply chain security (SBOM)
- Familiarity with major language frameworks (C#, Java, React, Python)
- Awareness of security considerations for AI/ML integrations (e.g., prompt injection risks)
- Familiarity with SaaS application security concepts (tenant isolation, secure API design)
- Familiarity with Microsoft Azure environments and development platforms (GitHub, GitHub Actions)
- Understanding of networking fundamentals and network security concepts
- Proficiency in at least one scripting or programming language (Python, PowerShell, JavaScript, Go)
- Familiarity with KQL or similar query languages (preferred)
- Understanding of common cybersecurity threats, attack techniques, and defensive controls
- Familiarity with MITRE ATT&CK framework
- Basic understanding of cloud security, identity security, endpoint security, and vulnerability management
- Awareness of security and compliance frameworks (ISO 27001, NIST CSF, SOC 2, HIPAA, GDPR)
- Strong analytical and investigative mindset
- Excellent written and verbal communication skills
- Strong organizational skills and attention to detail
- Disciplined, process-oriented approach to operational work
- Ability to prioritize and manage multiple investigations simultaneously
- Collaborative team player with desire to learn and grow in cybersecurity
- Ability to remain calm and methodical during security incidents