Jump App

Application Product Security Engineer

United StatesRemoteFull time$130,000 - $170,000 / yearPosted 18 days ago
Apply on Jump App →

Sign into see who you know at Jump App.

Application & Product Security Engineer

Remote (US) | Full-Time | Security / Engineering

About Jump

Jump builds AI-powered tools that help financial advisors automate meeting prep, notes, and follow-up — which means our customers trust us with some of their most sensitive client data. Security isn’t a checkbox for us; it’s core to the product and to earning that trust every day.

About the Role

We’re hiring our first dedicated Application & Product Security Engineer. You’ll partner with engineering and product teams from the earliest design conversations to make sure security is built into what we ship — not bolted on afterward. This is a hands-on, high-ownership role at a startup: some days you’ll be threat modeling a new feature, other days reviewing code, tuning our security tooling, or jumping in on an incident. If you like variety and want your work to directly shape how a product is built, this role is for you.

What You’ll Do

- Partner with product and engineering teams during design and planning to identify risks early and build security into new features from the start.

- Lead threat modeling and secure design reviews for new products, features, and architecture changes.

- Perform security-focused code reviews and help engineers fix vulnerabilities — and understand how to avoid them next time.

- Build and maintain application security tooling (SAST, dependency scanning, secrets detection) integrated into CI/CD.

- Participate in incident response: triage, investigate, contain, and drive post-incident learning.

- Triage findings from bug bounty reports, pen tests, and vulnerability scans, and drive remediation with owning teams.

- Develop lightweight security guidance, paved-road patterns, and training that make the secure way the easy way.

- Wear multiple hats as needed — from customer security questionnaires to cloud and corporate security improvements.

What We’re Looking For

- 2–4 years of experience in application security, produ...