Artera is seeking a Senior Application Security Engineer to work alongside AI builders and Systems Engineers to threat-model agentic and LLM-powered features, harden PHI/PII-handling workflows, and ship secure SDLC guardrails.
Requirements
- AppSec Tenure: 6–10 years in Application Security, with a hands-on engineering orientation
- LLM & Agent Security: Demonstrable experience with LLM and agent security — OWASP LLM Top 10, MITRE ATLAS, prompt/output filtering, agent identity, and tool-use risk
- Threat Modeling Expertise: You’ve built end-to-end threat models for production platforms and translated them into corrective controls
- Pipeline Scanning Tools: SAST, DAST, and infrastructure scanning tools in production CI/CD environments
- Shift-Left Security Experience: Taking policy, codifying it as infrastructure-as-code (Terraform), and gating CI/CD pipelines on security findings
- Cloud Depth: Significant AWS experience (GCP or Azure background acceptable; AWS is learnable, but cloud depth is required)
- Regulated Environment Experience: Background in regulated environments — healthcare (HIPAA/HITRUST), federal (FedRAMP), or fintech (PCI)
Benefits
- Full health benefits (medical, dental, and vision)
- Flexible spending accounts
- Company paid life insurance
- Company paid short-term & long-term disability
- Company equity
- Voluntary benefits
- 401(k)