Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

About Air Apps

At Air Apps, we believe in thinking bigger—and moving faster. We’re a family-founded company on a mission to create the world’s first AI-powered Personal & Entrepreneurial Resource Planner (PRP), and we need your passion and ambition to help us change how people plan, work, and live. Born in Lisbon, Portugal in 2018—and now with offices in both Lisbon and San Francisco—we’ve remained self-funded while reaching over 100 million downloads worldwide.

Our long-term focus drives us to challenge the status quo every day, pushing the boundaries of AI-driven solutions that truly make a difference. Here, you’ll be a creative force, shaping products that empower people across the globe.

Join us on this journey to redefine resource management—and change lives along the way.

The Role

As a Security Engineer at Air Apps, you will be responsible for safeguarding our applications, infrastructure, and data from threats and vulnerabilities. You will work closely with development, DevOps, and IT teams to implement secure coding practices, vulnerability scanning, and threat modeling to ensure our systems remain resilient against cyber threats.

Your expertise will help build and maintain a secure development lifecycle (SDLC), security monitoring frameworks, and proactive risk mitigation strategies.

Responsibilities

  • Develop and implement threat modeling to identify security risks across applications and infrastructure.

  • Conduct vulnerability scanning, penetration testing, and security assessments to detect weaknesses.

  • Define and enforce secure coding practices in collaboration with development teams.

  • Work with DevOps to integrate security into CI/CD pipelines and automate security testing.

  • Monitor and respond to security incidents, conducting root cause analysis and implementing preventative measures.

  • Ensure compliance with security standards and regulations (e.g., ISO 27001, GDPR, SOC 2).

  • Design and implement identity and access management (IAM) policies, encryption standards, and authentication mechanisms.

  • Collaborate with product teams to conduct security reviews of features, APIs, and third-party integrations.

  • Develop incident response plans, security documentation, and best practices.

  • Stay ahead of emerging threats, vulnerabilities, and security technologies.

Requirements

  • Around 4+ years of experience in cybersecurity, application security, or security engineering.

  • Strong knowledge of secure coding principles, OWASP Top 10, and threat modeling techniques.

  • Experience with vulnerability scanning tools (Nessus, Qualys, Burp Suite) and penetration testing methodologies.

  • Hands-on experience with SIEM, intrusion detection systems (IDS), and security monitoring tools.

  • Proficiency in scripting and automation (Python, Bash, PowerShell) for security tasks.

  • Familiarity with cloud security in AWS, Azure, or GCP, including IAM and workload protection.

  • Knowledge of encryption protocols, network security, and API security best practices.

  • Experience working with DevSecOps, integrating security into CI/CD pipelines.

  • Ability to analyze security logs, detect anomalies, and mitigate potential threats.

  • Excellent problem-solving skills and ability to communicate security concepts to non-technical stakeholders.

What benefits are we offering?

  • Remote-first approach with flexible working hours.

  • Apple hardware ecosystem for work.

  • Annual Bonus.

  • Medical Insurance (including vision & dental).

  • Disability insurance - short and long-term.

  • 401k up to 4% contribution.

  • Air Stipend of $3,120/year, paid over 12 monthly installments (for home office, learning, wellness, etc.).

  • Air Conference 2025 in Las Vegas – an opportunity to meet the team, collaborate, and grow together.

Diversity & Inclusion

At Air Apps, we are committed to fostering a diverse, inclusive, and equitable workplace. We enthusiastically welcome applicants from all backgrounds, experiences, and perspectives. We celebrate diversity in all its forms and believe that varied voices and experiences make us stronger.

Application Disclaimer

At Air Apps, we value transparency and integrity in our hiring process. Applicants must submit their own work without any AI-generated assistance. Any use of AI in application materials, assessments, or interviews will result in disqualification.

What You Should Know About Security Engineer, Air Apps

At Air Apps, located in the vibrant city of San Francisco, we’re looking for a talented Security Engineer to join our innovative team. With our commitment to revolutionizing personal and entrepreneurial resource planning through AI, your role will be pivotal in ensuring the security of our applications and data. You’ll collaborate with our development, DevOps, and IT teams to create a robust security framework that mitigates cyber threats and upholds the integrity of our platform. In this dynamic environment, you’ll implement secure coding practices, conduct vulnerability assessments, and stay ahead of emerging security technologies. Your expertise will shape our secure development lifecycle, ensuring that our solutions are not only cutting-edge but also safe from potential dangers. You will conduct thorough threat modeling and vulnerability scanning, define IAM policies, and lead incident response efforts. With 4+ years of experience in cybersecurity, you’ll bring a wealth of knowledge around secure coding principles and cloud security, and your skills in automation will streamline our security operations. At Air Apps, we’re enthusiastic about empowering our team to think creatively and work collaboratively. This role is the perfect opportunity to make a significant impact in a company driven by a mission to improve the way people manage resources worldwide. Join us on this exciting journey and be a part of a passionate team dedicated to changing lives through enhanced planning capabilities.

Frequently Asked Questions (FAQs) for Security Engineer Role at Air Apps
What are the main responsibilities of a Security Engineer at Air Apps?

As a Security Engineer at Air Apps, your key responsibilities will include implementing threat modeling, conducting vulnerability scanning and penetration testing, and defining secure coding practices. You’ll work closely with development and DevOps teams to integrate security into our continuous integration and delivery pipelines, as well as monitor and respond to security incidents effectively.

Join Rise to see the full answer
What qualifications are necessary for becoming a Security Engineer at Air Apps?

To qualify for the Security Engineer position at Air Apps, candidates should possess around 4 or more years of experience in cybersecurity or security engineering. Strong knowledge of secure coding principles, experience with vulnerability scanning tools like Nessus or Burp Suite, and familiarity with cloud security in AWS or Azure are essential for success in this role.

Join Rise to see the full answer
How does Air Apps ensure the security of its applications and data?

Air Apps prioritizes security by implementing a comprehensive secure development lifecycle guided by our Security Engineer. This includes ongoing vulnerability assessments, strict adherence to coding practices aligned with OWASP Top 10, and regular security reviews of features, APIs, and third-party integrations to protect our applications and data from cyber threats.

Join Rise to see the full answer
What type of work environment can a Security Engineer expect at Air Apps?

At Air Apps, Security Engineers can expect a flexible, remote-first work environment. We value work-life balance and offer flexible hours, allowing you to collaborate with your team while enjoying the comfort of your own workspace. Our team is committed to supporting creativity and innovation in a dynamic atmosphere.

Join Rise to see the full answer
What are the benefits of working as a Security Engineer at Air Apps?

Working as a Security Engineer at Air Apps comes with a range of benefits, including an annual bonus, comprehensive medical insurance, and a generous Air Stipend for home office and wellness needs. You also get the chance to participate in our annual Air Conference, providing a valuable opportunity for team collaboration and growth.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
Can you describe your experience with threat modeling as a Security Engineer?

In your response, highlight specific instances where you’ve implemented threat modeling to identify vulnerabilities. Discuss your approach to analyzing potential threats and how you collaborated with others to enhance security measures. Show that you understand the importance of this practice in maintaining a secure environment.

Join Rise to see the full answer
What vulnerability scanning tools have you used, and how effective have they been?

Mention the tools you've used, such as Nessus or Qualys, and describe how you utilized them. Emphasize your methods for interpreting the results and remediating identified vulnerabilities. Demonstrating your hands-on experience and understanding of tool efficacy will illustrate your capability for the Security Engineer role.

Join Rise to see the full answer
How do you integrate security with Agile development practices?

Discuss strategies you've used to encourage collaboration between security and development teams. Mention your experience with DevSecOps to seamlessly incorporate security measures within CI/CD pipelines. It’s crucial to show that you can advocate for security without hindering the development process.

Join Rise to see the full answer
What’s your experience with incident response planning?

Share details about your experience in creating and implementing incident response plans. Highlight specific incidents you've managed, focusing on your role in the investigations and the measures you took to prevent similar issues in the future. This demonstrates your readiness for real-world scenarios.

Join Rise to see the full answer
Explain how you stay updated with emerging security threats.

Outline your methods for staying informed, such as following security blogs, attending conferences, and participating in forums. You might also mention memberships in professional organizations or online resources that help you continuously enhance your knowledge as a Security Engineer.

Join Rise to see the full answer
Can you discuss your experience with identity and access management (IAM)?

It's important to describe the IAM policies you’ve developed or implemented, the tools you utilized, and how these contributed to enhanced security within your organization. Show your understanding of IAM’s relevance in safeguarding sensitive information and regulating user access.

Join Rise to see the full answer
How would you approach a security assessment of a new application feature?

Explain your process for conducting a security assessment, which might include reviewing design documents, performing static code analysis, and collaborating with developers. Highlight the importance of early identification of risks and your proactive strategies to mitigate them.

Join Rise to see the full answer
What scripting or automation techniques do you use in security tasks?

Discuss your proficiency in scripting languages like Python, Bash, or PowerShell, and give examples of how you’ve automated security processes. Automating routine tasks can significantly enhance efficiency and demonstrate your technical expertise as a Security Engineer.

Join Rise to see the full answer
Describe a time you identified and mitigated a significant security threat.

If possible, share a real-life example where your intervention prevented a security incident from escalating. Detail your approach to identifying the threat, the action steps you took, and the impact of your measures on your team and organization.

Join Rise to see the full answer
What do you consider the most challenging aspect of being a Security Engineer?

Reflect on the challenges you’ve faced, such as keeping up with rapidly evolving cyber threats or educating non-technical staff about security best practices. Sharing your thoughts shows self-awareness and a mature understanding of the role’s complexities in today's tech landscape.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Air Apps Remote San Francisco
Posted 4 days ago
Photo of the Rise User
Air Apps Remote San Francisco
Posted 4 days ago
Photo of the Rise User
Accellor Remote No location specified
Posted 8 days ago
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
City of Philadelphia Hybrid 1234 Market St, Philadelphia, PA 19107, USA
Posted 6 days ago
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 14 days ago

Air Apps is a leading mobile development company creating essential apps for your daily tasks.

26 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 28, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
R
Someone from OH, Toledo just viewed Global Marketing Intern at Reebok International, Ltd
Photo of the Rise User
Someone from OH, Toledo just viewed Intern, Corporate Communications at E.L.F. BEAUTY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Immigration - E2 Visa at Upwork
Photo of the Rise User
Someone from OH, Dayton just viewed Senior Director - Brand & Marketing Content at Cielo
Photo of the Rise User
24 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Cleveland just viewed Scheduling Coordinator at Window Nation
T
Someone from OH, Columbus just viewed Power BI Developer - Remote at Two95 International Inc.
Photo of the Rise User
Someone from OH, Dayton just viewed Front Desk Clerk at Marriott International
Photo of the Rise User
Someone from OH, Hilliard just viewed Junior Digital Analyst at Jellyfish
Photo of the Rise User
Someone from OH, Hilliard just viewed Junior Digital Data Analyst at AECOM
Photo of the Rise User
Someone from OH, Columbus just viewed Data Analyst/R Programmer at Peet's
Photo of the Rise User
Someone from OH, Grandview Heights just viewed Service Drive Greeter at Jeff Wyler Automotive Family
Photo of the Rise User
41 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
Someone from OH, Washington Court House just viewed Administration and Clerical at Walmart
Photo of the Rise User
Someone from OH, Dover just viewed Finance Intern - Summer 2025 at Spectrum
F
Someone from OH, Columbus just viewed Mortgage Loan Officer Assistant at Fulton Bank
Photo of the Rise User
Someone from OH, Cincinnati just viewed Amazon Work from Home Data Entry Jobs – Entry Level at Amazon
V
Someone from OH, Toledo just viewed Sports Event Coordinator at Ventures With Jen