Temporal Technologies Logo

Temporal Technologies

Senior Application Security Engineer

Posted An Hour Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Opportunity, WA
180K-225K Annually
Senior level
In-Office or Remote
Hiring Remotely in Opportunity, WA
180K-225K Annually
Senior level
Lead application security across product, pipeline, and customer environments by partnering with engineering to integrate secure design, conduct threat modeling and risk assessments, manage code and supply-chain security (SAST/DAST), triage bug bounty findings, harden Kubernetes and multi-tenant architectures, and participate in on-call rotation.
The summary above was generated by AI
About Us
Temporal is an open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things like delivering features faster. We are on a mission to be the reliable foundation of every developer’s toolbox, and are building the team that will make that happen.
 
Our values guide us —they are present in how we show up, make decisions, and work together to make an impact. We’re curious, driven, collaborative, genuine and humble.
 
Temporal is growing and we are looking for those who share our values, challenge 'standard' thinking, and want to influence our future. If you have a passion for improving the developer experience, building world-class open-source software and communities, and want to be a part of our amazing team, we'd love to hear from you!
Summary

Join our dynamic team as a Senior Application Security Engineer, where you'll play a pivotal role in securing the Temporal development pipeline, product, and customer execution environment. In this position, you'll work closely with software engineering teams and customers to build security deeply into our platform across multiple clouds. You'll also help shape how we use AI responsibly in both our product and our engineering processes. We're looking for individuals who are passionate about enabling engineering teams to build and ship securely, serving as trusted security partners across the organization.

What You’ll Do
  • Collaborate with product and engineering teams to integrate security principles into the design and architecture of products.
  • Conduct threat modeling and risk assessments to identify vulnerabilities and potential attack vectors across the full product surface.
  • Manage the Secure Development pipeline including code security and 3rd party library supply chain security.
  • Stay current on emerging standards and guidance (e.g. OWASP Top 10 for LLMs, MCP security specifications) and translate these into actionable internal policy.
  • Triage Bug Bounty findings and responsibility disclosed vulnerabilities.
  • Able to participate in on-call rotation.
What You’ll Bring
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
  • 5+ years in application or product security or a related role.
  • Proven partnership with engineering teams, bringing security expertise to the planning and development process.
  • Knowledge of encryption, authentication, and secure communication protocols.
  • Familiarity with tools like SAST, DAST, and penetration testing frameworks.
  • A deep understanding of application architecture and design principles, ability to effectively identify vulnerabilities across multiple programming languages
  • Excellent communication and ability to explain complex security concepts to non-technical stakeholders.
  • Kubernetes security posture management and auditing, including workload hardening, RBAC design, and admission control.
  • Demonstrated experience with multi-tenant security architecture, including data plane isolation, control plane hardening, and cross-tenant data leakage prevention.
  • Excellent collaboration and communication skills.
  • Expertise in at least one programming language, familiarity with Python and Go.
Nice to Have
  • Distributed computing and related vulnerability experience.
  • Running a Security Champions program.
  • Open Source automation or automation projects.
  • Expertise in other areas of security.
  • Security conference talks or published research.
Compensation
  • The estimated pay range for this role is $180,000 - $225,000, depending on qualifications and location.
  • This role is eligible to participate in Temporal's equity plan.
Compensation ranges reflect salary and commission compensation (when applicable) across several geographic markets. Employment offers carefully consider multiple factors, including prior experience, knowledge, expertise, skillset, market location, and job level assessed during the interview process.
 
Employee benefits and perks below are for full-time employees, part-time or temporary positions are excluded. 
 
U.S. Benefits 
  • Unlimited PTO, 12 Holidays + 2 Floating Holidays
  • 100% Premiums Coverage for Medical, Dental, and Vision
  • AD&D, LT & ST Disability, and Life Insurance (Standard & Supplemental Available)
  • Empower 401K Plan
  • Additional Perks for Learning & Development, Lifestyle Spending, Home Office Setup, Professional Memberships, WFH Meals, Internet Stipend and more!
International Benefits

Paid Time Off (PTO) and Benefits outside the United States vary by country, and are issued in partnership with Remote.com.  Additionally, Temporal offers perks to all international employees for learning & career development, a lifestyle spending account, home office setup, professional memberships, work-from-home meals, and access to the Calm app for mental wellness.

Travel

Temporal is a globally distributed, collaborative team that values opportunities for in-person connection. Occasional travel may be required for company events, team offsites, and other meaningful moments that bring us together.


Temporal Technologies is an Equal Opportunity Employer. Temporal Technologies does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status, or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need. We embrace and celebrate differences and diversity.
 
Temporal is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. If you need to request a reasonable accommodation, please let your Recruiter know so we can assist.
 
We are not working with external recruitment agencies, thanks.

Similar Jobs

3 Days Ago
Remote or Hybrid
USA
160K-250K Annually
Senior level
160K-250K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead application security for products by performing threat modeling, manual secure code reviews, and penetration testing. Collaborate with engineers to remediate defects, build AppSec automation and tooling, secure cloud/containerized applications, and drive bug-bounty responses to harden platform security.
Top Skills: Ai TechnologiesApi SecurityAppsec ToolsAspmAWSAzureBug BountyChromeCspmDastDockerDspmElectronFirefoxGCPGo (Golang)JavaScriptKotlinKubernetesNode.jsPythonReactSastScalaStrideTypescriptWebassembly (Wasm)
An Hour Ago
Remote
United States
Senior level
Senior level
Other • Travel
Lead application security by embedding AppSec into the SDLC, owning tooling and automation (SAST/DAST/SCA), partnering with developers and platform teams, triaging findings, securing AWS and Kubernetes, scanning containers and IaC, and automating compliance evidence for SOC 2/ISO 27001.
Top Skills: AquaAWSBurp SuiteCheckmarxDastFalcoGithub ActionsGitopsGoGuarddutyHelmIamIso 27001JavaScriptKmsKubernetesNetwork PoliciesOpa/GatekeeperOwasp ZapPythonRbacSastScaSecurity HubSnykSoc 2SonarqubeTerraformTrivyWaf
4 Hours Ago
Remote or Hybrid
USA
Senior level
Senior level
Aerospace • Artificial Intelligence • Defense • Manufacturing
Lead application security across the SDLC: perform threat modeling, code reviews, vulnerability assessments (including scanner-less testing), define security maturity initiatives, integrate and automate SAST/DAST in CI/CD, advise stakeholders on mitigations, and act as subject-matter expert between application/hardware teams and InfoSec.
Top Skills: AsmAWSCC++Ci/CdCryptographyDynamic Application Security Testing (Dast)GCPGoIdentity Access ManagementOauthOidcPythonRubySAMLSource ControlStatic Application Security Testing (Sast)Threat ModelingUnixWindows

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account