Security Engineer - Application Security (Senior)
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 13d ago
The date the source published, not the day we noticed it (2026-09-01). Last seen at its source 3h ago.
Is it remote?
Remote US
That is the location the employer filed this posting under. Quoted as written — we do not re-word the source's own location.
Who may apply?
United States
The description states no restriction of its own. This is the source's own tag.
Pay
$100k–300k/yr
Read out of the job description by us, not from a structured field. Shown in the posting's own currency and period; we never convert.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
ashby employer's own board first seen 11d ago · last seen 3h ago
The listing
Cogent is an Applied AI Lab building the next generation of AI agents for cybersecurity. AI has fundamentally changed how attacks happen, allowing malicious actors to operate at unprecedented speed and scale. Cogent’s "AI Taskforce" assesses petabytes of enterprise data to remediate these issues before critical breaches occur.
To stay at the cutting edge, we blend frontier research with real-world execution. Alongside our core product work, Cogent Research serves as our applied AI lab, providing the research horsepower needed to make truly agentic security workflows a reality.
Since coming out of stealth, Cogent has experienced rapid growth. We partner with Fortune 500 companies to secure some of the most complex production environments in the world.
We’re backed by Greylock and we’ve built a team with the best minds in applied AI. Our team is comprised of people from:
Top universities like Stanford, Berkeley, Penn, Duke, Carnegie Mellon, Waterloo
Preeminent research labs like Deepmind and SAIL
Unicorn, high-growth companies like Scale AI, Databricks, Stripe, Tesla, Coinbase
World class cybersecurity experts from Wiz, Abnormal AI, Zscaler
We're hiring a Senior Application Security Engineer to own the security of the software we build. You'll partner closely with engineering to embed security into the Software Development Lifecycle (SDLC), keep our dependencies and supply chain safe, and make sure the product our customers trust is built on a secure foundation. You’ll also have the chance to influence our product, as an internal SME and early security user, your feedback loop directly shapes what we ship.
What You’ll Do
Embed security into the software development lifecycle: threat modeling, secure design reviews, and secure-coding guidance that engineers actually adopt
Own application security testing - code review, SAST/DAST, and triage - and drive issues to remediation rather than just filing them
Harden our software supply chain: dependency verification, safe dependency management, and CI/CD pipeline security
Build and automate security tooling and guardrails so security scales with engineering, not against it
Serve as the internal security SME on product and workflow decisions, and as an early user of what we build
Partner across all teams on architecture and design so security is a default, not an afterthought
What We're Looking For
5+ years of extensive security engineering experience within product / application security, upholding the highest Trust standards
Strong hands-on engineer who ships - you produce and automate, you don't just manage process
Strong software engineering skills; comfortable working in code across the stack (e.g. Python, Go, Typescript, and/or similar)
Depth in application/product security: secure SDLC, threat modeling, code scanning, and supply-chain / dependency security
Fluency with the modern AI landscape and how it’s influencing the security picture - staying up to date with the rapidly changing environment
Able to flex up and down: strategic when it matters, in the weeds when it counts
Comfortable being an early security hire at a startup - high ownership, ambiguity, and direct impact
Bonus Points
Experience securing AI/ML products or agentic systems
Background contributing to developer-enablement or security-champions programs
Prior experience as an early security hire or building an AppSec function from scratch
For California Based Applicants
The standard base salary range for this position is $100,000 - $300,000 annually. Compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits.
We are committed to building an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.