SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Writer is an enterprise generative AI platform that enables leading companies like Mars, Marriott, Uber, and Vanguard to build and deploy AI agents grounded in their data. As a Security Engineer for Application Security, you'll be responsible for building security foundations that protect AI systems at enterprise scale, working at the intersection of application security, AI infrastructure, and developer enablement.
You will conduct threat modeling sessions with product teams to design secure architectures for new AI features, ensuring security shapes product decisions from inception. You'll own and evolve the application security program by establishing SAST/DAST scanning in CI/CD pipelines, conducting security code reviews for critical changes, and building automation to catch vulnerabilities before production. A key focus is partnering with engineering teams to establish secure coding standards and create reusable security patterns that make it easier for developers to build securely by default.
You'll design and recommend security features that help protect customer environments, integrate AI agents to increase velocity for the security and engineering teams, and lead security assessments and penetration testing of Writer's applications, AI services, and APIs. You'll also design and implement security controls for protecting data pipelines, model training environments, and customer-facing AI agents, while staying ahead of emerging threats in the AI/ML security landscape.
The role requires 4+ years of hands-on application security engineering experience in large-scale production systems, ideally in fast-growing startups. You need technical expertise in at least two programming languages (Python, Java, Go, JavaScript/TypeScript) and the ability to read and review code across multiple languages. Knowledge of security tools and methodologies including SAST/DAST solutions, vulnerability management platforms, and DevSecOps practices is essential. Strong communication skills to translate complex security concepts for both technical and non-technical audiences are critical. You should have a builder's mindset focused on automation, scaling, and empowering teams rather than creating bottlenecks, understanding that security enables business velocity.
About Writer
AI / Data / Infrastructure; SaaS / Enterprise Software — enterprise generative AI platform for business teams.