SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior / Staff Application Security Engineer

Suno - Boston, MA, United States - In-office - posted 2026-08-04

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 230,000 - 330,000 / annual

Suno is building the world's first creative entertainment platform for music creation, backed by leading investors including Bond Capital, Menlo Ventures, Lightspeed, and NVIDIA. The company is the fastest-growing consumer entertainment company and leader in AI music, with users ranging from casual creators to Grammy winners. You will own the security of how Suno's product is built as a Senior Application Security Engineer. This is a foundational security hire responsible for establishing and scaling the application security practice from the ground up. Key responsibilities include: - Execute application security end-to-end: threat-model features and services, drive remediation of significant risks - Secure the application layer against critical vulnerabilities (injection, broken authentication/authorization, insecure APIs) - Build and run a secure SDLC with code-review guardrails, SAST/DAST, dependency and supply-chain security, secrets management, and pre-production testing - Harden authentication, authorization, and session/identity handling across the product - Secure AI-specific application surfaces including model and inference endpoints, prompt handling, and generative-AI vulnerability classes - Partner with product and platform engineering to design security early and raise the security bar across the codebase - Set standards for how engineering reasons about and ships secure code Required qualifications: - 6+ years in security engineering with deep, hands-on application-security expertise - Strong command of vulnerability classes that cause incidents and how to eliminate them at the source - Proven track record building AppSec practices and secure-SDLC tooling, not just operating established ones - Fluency in modern application stacks and comfort with AWS - Ability to work collaboratively with engineers and raise the bar without becoming a blocker - Ability to write and ship production-quality code, not only review it - Curiosity about emerging AI/LLM threat classes and defense strategies Nice-to-have experience includes consumer product at scale, secure-by-design work on generative-AI or ML product surfaces, and early security-hire experience. Compensation: $230,000–$330,000 annually. Benefits include equity, 401(k) with 3% match, medical/dental/vision, 11 paid holidays plus unlimited PTO, 16 weeks paid parental leave, creative education stipend, commuter allowance, and in-office lunch daily. Role requires onsite work at one of three offices.

Similar roles