Notion Logo

Notion

Application Security Engineer

Posted Yesterday
Be an Early Applicant
Hybrid
2 Locations
230K-255K
Mid level
Hybrid
2 Locations
230K-255K
Mid level
As an Application Security Engineer, you'll enhance security in Notion's products by providing guidance, creating analysis rules, and leading incident responses while advocating for secure coding practices.
The summary above was generated by AI
About Us:

Notion helps you build beautiful tools for your life’s work. In today's world of endless apps and tabs, Notion provides one place for teams to get everything done, seamlessly connecting docs, notes, projects, calendar, and email—with AI built in to find answers and automate work. Millions of users, from individuals to large organizations like Toyota, Figma, and OpenAI, love Notion for its flexibility and choose it because it helps them save time and money.

In-person collaboration is essential to Notion's culture. We require all team members to work from our offices on Mondays and Thursdays, our designated Anchor Days. Certain teams or positions may require additional in-office workdays.


About the role:

Millions of people use Notion — and this number is increasing every day. Our users depend on us to deliver a secure and trustworthy experience, and we value this more than anything. We want to keep building on that trust, while also continuing to amaze our users with the tools they can build in Notion. This is where you come in — to help us forge a strong, reliable path forward to the future. The Notion application is flexible, powerful and always evolving. With a product that needs to scale to meet the needs of many thousands of businesses globally. They rely on us to protect their data and that of their customers.

Notion is looking for security engineers that have a passion for making it as easy as possible for developers to write secure code. As an Application Security Engineer you will be a consultant, advocate and builder that is hyper focused on preventing and eliminating software vulnerabilities across Notion's product suite.

What You'll Achieve:
  • As an early member of Notion’s Application Security team, you will have a large input in defining the direction and goals of the program.

  • Make the secure path the easy path for product teams by providing design guidance and finding solutions that eliminate classes of vulnerabilities.

  • Create static and dynamic analysis rules that detect weaknesses in our codebase.

  • Provide developers guidance and education on security and privacy best practices that prevent the authoring of vulnerabilities.

  • Participate in and drive mitigation strategies during AppSec related incident responses.

  • Build and maintain tools that prevent vulnerabilities or automate remediation.

Skills You'll Need to Bring:
  • Security Architecture expertise: You have at least 3+ years of experience working with product teams to design and/or build secure software.

  • Thoughtful problem-solving: For you, problem-solving starts with a clear and accurate understanding of the context. You can decompose tricky problems and work towards a clean solution, by yourself or with teammates. You're comfortable asking for help when you get stuck.

  • Ability to advocate for and lead cross functional projects: You regularly advocate for security hardening projects that you then lead by partnered with product engineering teams to improve the security story of the products you are responsible to secure.

  • Pragmatic and business-oriented: You care about business impact and prioritize projects accordingly — As a product security expert you communicate and facilitate understand of the threat model and risks with the goal to balance the right security investments with the right bottom line outcomes.

  • Empathetic communication: You communicate nuanced ideas clearly, whether you're explaining technical decisions in writing or brainstorming in real time. In disagreements, you engage thoughtfully with other perspectives and compromise when needed.

  • Startup mentality: You are comfortable navigating the fast moving, unstructured nature of a hyper-growth startup. You are self-motivated to add value and bias towards action.

Nice to Haves:
  • Participation in bug bounty programs or capture the flag exercises

  • Published reports of vulnerabilities you have found or AppSec related blog posts

  • Involvement in local or regional security user groups or conferences

We hire talented and passionate people from a variety of backgrounds because we want our global employee base to represent the wide diversity of our customers. If you’re excited about a role but your past experience doesn’t align perfectly with every bullet point listed in the job description, we still encourage you to apply. If you’re a builder at heart, share our company values, and enthusiastic about making software toolmaking ubiquitous, we want to hear from you.

Notion is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Notion is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, please let your recruiter know.

Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role’s scope and complexity, and the candidate’s experience and expertise, and may vary from the range provided below. For roles based in San Francisco and New York, the estimated base salary range for this role is $230,000 - $255,000 per year. For qualified candidates, Notion may consider a full-time remote candidate.

By clicking “Submit Application”, I understand and agree that Notion and its affiliates and subsidiaries will collect and process my information in accordance with Notion’s Global Recruiting Privacy Policy.

#LI-Onsite

Top Skills

Dynamic Analysis
Static Analysis

Similar Jobs at Notion

An Hour Ago
Remote or Hybrid
3 Locations
Mid level
Mid level
Artificial Intelligence • Productivity • Software
The AI QA Specialist will perform QA reviews on AI support interactions, validate AI scoring metrics, update designs, and identify automation opportunities.
Top Skills: Knowledge Base ManagementLlm-Powered SystemsMaestroqa
Yesterday
Hybrid
2 Locations
247K-290K
Mid level
247K-290K
Mid level
Artificial Intelligence • Productivity • Software
Lead a team to improve AI Meeting Notes product, focusing on engineering management, collaboration with cross-functional teams, and ensuring quality and value delivery.
Top Skills: AIMachine Learning
Yesterday
Hybrid
New York, NY, USA
130K-190K
Mid level
130K-190K
Mid level
Artificial Intelligence • Productivity • Software
You'll build new product features for the iOS app, improve its performance, and help develop internal tools with a focus on users and business impact.
Top Skills: Node.jsObjective-CPostgresReactSwiftTypescript

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account