Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Application Security Engineer image - Rise Careers
Job details

Senior Application Security Engineer

About the Company:

World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all. It is built to connect, empower, and be owned by everyone.

About the company:

World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all. It is built to connect, empower, and be owned by everyone.

Tools for Humanity is a technology company building for humans in the age of AI. We are home to over 400 developers, scientists, engineers, designers, creatives, economists and other various optimists currently building tools for World. World is a network that provides Identity, finance and community for every human. It is built using cutting edge hardware, software and blockchain technology that makes it possible to provide a Proof of Humanity that can be used and trusted anywhere in the world. Currently, over 10 million people have verified at one of more than 1400 orbs around the world. With more than 100 mini-apps and numerous third party integrations with World App, the World network is rapidly growing in scale and utility. To reach our goal of having the network accessible to every person in the world as quickly as possible, we must design and deploy some of the most security forward, privacy aware, transparent, high-scale, and decentralized technologies ever built.

We are looking for an Application Security Engineer to join and continue developing our Application Security program.

About the Security team:

Well beyond “regular company security” the goal of security at Tools For Humanity is to enable the World project to build a global network that can be trusted by all parties. 

The security team is central to the success of the company and the World protocol. It must navigate complex systems while delivering the state-of-the-art in hardware and software security. The team of 15+ engineers helps guide, blockchain, device, cloud, mobile and application security across all of our technologies. For example, it works with engineering teams that are designing novel new zero knowledge proofs and cryptographic solutions (such as AMPC) that enable the World network.

As a global network that enables identity, financial, and community services the team must consider a wide range of threats that span tampering with devices, visual spoofing of devices, in-person attempts to commit fraud, and traditional web / cloud services security. The team must work closely with fraud and data science teams to design systems to detect potential abuse while maintaining privacy and security for users.

About the Role:

In this role, you'll join a passionate team tackling complex security challenges throughout our product lifecycle. As a key architect of our security strategy, you'll ensure robust measures are integrated into every product from conception to deployment. You'll leverage your expertise to assess risks, influence product design decisions, and serve as a trusted advisor to development teams. Through strategic insight and collaborative problem-solving, you'll help evolve our application security program, making a lasting impact on how we protect our products and stay ahead of threats.

You will:

  • Perform threat modeling to identify risks in the design of new products and drive their mitigation.

  • Architect and implement security solutions to mitigate identified risks.

  • Work closely with engineering teams to integrate security into the development lifecycle.

  • Identify vulnerabilities through code reviews and penetration testing, and drive their remediation.

  • Improve and build, such as scanners and implementation of secure defaults, to scale our application security program.

  • Manage and contribute to the continuous improvement of the World bug bounty program.

  • Work with stakeholders across the company to advocate for security best practices through training and outreach.

About you

  • At least 5 years of experience in web, mobile, application or blockchain security.

  • Ability to understand and critically think about application and system architectures holistically.

  • Expertise in performing threat modeling to systematically assess risks and architect mitigations that align with both technical and business goals.

  • Strong understanding of state-of-the-art authentication protocols, cryptographic principles, identity management, and data protection mechanisms.

  • Proficiency developing in one or more programming languages (e.g. Python, Typescript, Go).

  • Experience communicating effectively with technical, non-technical and executive-level audiences.

  • Desire to work in a high growth and high speed environment that is truly trying to change the world.

Nice to have:

  • Background in software engineering or computer science.

  • Experience developing or securing mobile applications for iOS or Android.

  • Familiarity with blockchain fundamentals or experience auditing or writing smart contracts.

What we offer

The reasonably estimated salary for this role at Tools for Humanity ranges from $272,000 to $320,000, plus a competitive long-term incentive package. Actual compensation is based on factors such as the candidate's skills, qualifications, and experience. In addition, Tools for Humanity offers a wide range of best-in-class, comprehensive, and inclusive employee benefits for this role, including healthcare, dental, vision, 401(k) plan and match, life insurance, flexible time off, commuter benefits, professional development stipend, and much more.

By submitting your application, you consent to the processing and internal sharing of your CV within the company, in compliance with the GDPR.

If you don't think you meet all of the criteria but are still interested in the job, please apply. Nobody checks every box, and we're looking for someone excited to join the team.

Tools for Humanity Glassdoor Company Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Tools for Humanity DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Tools for Humanity
Tools for Humanity CEO photo
Unknown name
Approve of CEO

Average salary estimate

$296000 / YEARLY (est.)
min
max
$272000K
$320000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Application Security Engineer, Tools for Humanity

Welcome to Tools for Humanity, where we're on a mission to revolutionize how the world interacts in the age of AI! As a Senior Application Security Engineer, your role will be vital in safeguarding our innovative technologies. Based in the vibrant city of San Francisco, you'll join a diverse and passionate team of over 400 professionals dedicated to building a global network that champions privacy and inclusivity. In this exciting position, you'll leverage your expertise in web, mobile, application, and blockchain security to address complex security challenges throughout our product lifecycle. Your insights will help influence product design, assess risks, and ensure robust security measures are deeply integrated into our development process. As part of our forward-thinking security team, you will also implement security solutions, conduct thorough threat modeling, and oversee our bug bounty program, contributing to the continuous evolution of our security landscape. With opportunities to enhance collaboration among cross-functional teams and advocate for security best practices, you'll truly make a difference in how we protect our products and users. If you have at least five years of relevant experience and a passion for changing the world through secure technology, we can't wait to hear from you!

Frequently Asked Questions (FAQs) for Senior Application Security Engineer Role at Tools for Humanity
What are the responsibilities of a Senior Application Security Engineer at Tools for Humanity?

As a Senior Application Security Engineer at Tools for Humanity, your responsibilities will include performing thorough threat modeling to identify potential risks in new product designs, architecting and implementing security solutions, conducting code reviews, and penetration testing to identify vulnerabilities. You will also work closely with engineering teams to embed security practices throughout the development lifecycle and contribute to our bug bounty program.

Join Rise to see the full answer
What qualifications do I need to apply for the Senior Application Security Engineer position at Tools for Humanity?

To apply for the Senior Application Security Engineer role at Tools for Humanity, you should have a minimum of five years of experience in web, mobile, application, or blockchain security. Strong knowledge of authentication protocols, cryptographic principles, and data protection mechanisms is essential, alongside proficiency in programming languages like Python, Typescript, or Go.

Join Rise to see the full answer
How does the security team at Tools for Humanity contribute to the overall mission?

The security team at Tools for Humanity plays a critical role in enabling the company to build a trusted global network by addressing complex security challenges. They assess risks, support engineering in implementing security measures, and advocate for best practices, empowering the organization to develop innovative tools that prioritize user safety and privacy.

Join Rise to see the full answer
What is the bug bounty program at Tools for Humanity?

The bug bounty program at Tools for Humanity is a key initiative aimed at identifying and remediating vulnerabilities in our products by engaging with the security community. As a Senior Application Security Engineer, you will manage and contribute to this program, enhancing our ability to detect potential issues and continuously improve our security posture.

Join Rise to see the full answer
What does the salary range look like for a Senior Application Security Engineer at Tools for Humanity?

The salary range for a Senior Application Security Engineer at Tools for Humanity is reasonably estimated between $272,000 and $320,000, depending on factors such as your skills, qualifications, and experience. In addition, employees enjoy a competitive incentive package and comprehensive benefits, making it an attractive opportunity!

Join Rise to see the full answer
Common Interview Questions for Senior Application Security Engineer
Can you describe your experience with threat modeling?

When answering this question, focus on specific methodologies you've used for threat modeling and any notable projects where your assessment significantly improved security. Highlight your ability to translate risk assessments into actionable recommendations.

Join Rise to see the full answer
How do you approach vulnerability assessment and remediation?

Discuss your experience with various tools for vulnerability assessment and the processes you follow for remediation. Provide examples of how you've effectively communicated vulnerabilities to technical teams and ensured timely fixes.

Join Rise to see the full answer
What programming languages are you proficient in, and how do they relate to security?

Mention the programming languages you've worked with and explain how your proficiency helps you identify and mitigate security issues in the code. Discuss any specific security features or best practices you apply in your development processes.

Join Rise to see the full answer
Can you give an example of how you integrated security into the development lifecycle?

Provide a detailed example that showcases your collaboration with engineering teams to incorporate security into each phase of the development lifecycle. Discuss specific challenges you faced and how you overcame them to maintain security standards.

Join Rise to see the full answer
What strategies do you employ to ensure secure coding practices?

Talk about your approach to promoting secure coding practices among developers, such as conducting training sessions, creating documentation, or implementing automated tools that check for security compliance in code.

Join Rise to see the full answer
Describe a time you successfully mitigated a major security risk.

Use the STAR (Situation, Task, Action, Result) method to structure your response, focusing on the actions you took to identify and mitigate the risk, how you communicated it to stakeholders, and the outcome of those efforts.

Join Rise to see the full answer
How familiar are you with blockchain security, and why is it important?

Discuss your understanding of blockchain security principles, such as smart contracts and consensus mechanisms. Emphasize the critical importance of security in blockchain technologies, especially in relation to user data protection and transaction integrity.

Join Rise to see the full answer
How do you stay up-to-date on the latest security threats and trends?

Highlight the resources you utilize to stay informed, such as security blogs, forums, industry reports, and conferences. Explain how staying updated helps you proactively address potential security issues in your role.

Join Rise to see the full answer
What role does collaboration play in your security strategy?

Discuss the importance of collaboration with various teams, such as engineering, fraud detection, and data science. Give examples of how this collaboration has led to effective security solutions and strengthened the overall security posture.

Join Rise to see the full answer
What measures do you take to ensure compliance with data protection regulations?

Explain your understanding of key data protection regulations, such as GDPR, and how you've implemented measures to ensure compliance in past roles. Discuss the importance of balancing compliance with effective security practices.

Join Rise to see the full answer
Similar Jobs
Posted 13 days ago
Photo of the Rise User
ANS Remote Manchester
Posted 7 days ago
Photo of the Rise User
Posted 6 days ago
Posted 8 days ago
Photo of the Rise User
Posted 18 hours ago
Photo of the Rise User
Posted 7 days ago
Brightspeed Remote Works From Home, Charlotte, NC
Posted 3 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Posted 12 days ago
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 19, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Data Scientist at Apex Systems
Photo of the Rise User
Someone from OH, Mansfield just viewed POS Install Tech at TEKsystems
Photo of the Rise User
10 people applied to ITSM Specialist at Datacom
Photo of the Rise User
Someone from OH, Dublin just viewed Sr. Manager UX Design Research at Visa
Photo of the Rise User
Someone from OH, Columbus just viewed Case Manager at Release Recovery
Photo of the Rise User
54 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
Someone from OH, Cincinnati just viewed Recruiting Coordinator (Contractor) at Anduril Industries
Photo of the Rise User
Someone from OH, Dublin just viewed Field Support Technicians - (Phoenix) at Nordstrom
Photo of the Rise User
Someone from OH, Stow just viewed IT Asset administrator at Ergomed
Photo of the Rise User
Someone from OH, Loveland just viewed Senior Buyer (wholesale) (m/f/d) at ABOUT YOU SE & Co. KG
Photo of the Rise User
Someone from OH, Cincinnati just viewed Summer 2025 Internship: Talent at Hylant
C
Someone from OH, Cincinnati just viewed Senior Instructional Designer at CXG
Photo of the Rise User
Someone from OH, Youngstown just viewed Compliance Specialist, Anti-Corruption Program at ServiceNow
Photo of the Rise User
Someone from OH, Cleveland just viewed Finance Intern - Summer 2025 at Spectrum
Photo of the Rise User
Someone from OH, Cleveland just viewed QC Engineer at QODE
Photo of the Rise User
Someone from OH, Cleveland just viewed Getinge is hiring: UI/UX Developer in Streetsboro at Getinge
Photo of the Rise User
Someone from OH, Westerville just viewed Data analyst | Mid at Nord Security
Photo of the Rise User
Someone from OH, North Canton just viewed Researcher-NBC Sports at NBCUniversal