Senior Security Engineer - AppSec

EverpureSanta Clara, CA
$186,000 - $279,000Onsite

About The Position

As a Senior Security Engineer at Everpure, you will advance the scalability and maturity of application security across the enterprise by designing automated, paved-road solutions rather than acting as a traditional gatekeeper. Embedded within the Global Information Security Office (GISO), you will collaborate closely with product, platform, and engineering teams to integrate security directly into modern software development lifecycles. Your mission is to enable rapid engineering velocity while establishing consistent, robust defense-by-default standards that safeguard our global platform.

Requirements

  • AppSec & DevSecOps Expertise: Demonstrated mastery in embedding security controls natively into modern CI/CD pipelines, Git-based workflows, and GitOps environments to automate risk detection.
  • Automation & Scripting Skills: Advanced proficiency in Python or equivalent programming languages to construct custom automation, interface with web APIs, and integrate security tooling directly into developer platforms.
  • Architecture & Secure Development Knowledge: Deep technical understanding of secure coding practices, modern cloud-native architectures (including microservices, APIs, and containerized workloads), and industry-standard software vulnerability frameworks (such as OWASP).
  • Collaboration & Governance Capabilities: Proven ability to build consensus, drive engineering alignment, and influence the adoption of uniform security baselines across distributed engineering, product, and DevOps teams.

Responsibilities

  • Own the CI/CD and GitOps security integration lifecycle, building automated, paved-road application security controls (including SAST, DAST, SCA, and secrets scanning) to eliminate manual engineering friction and ensure frictionless, secure-by-default code deployment across all Everpure product teams.
  • Develop scalable automation and API-driven tooling using Python to streamline vulnerability detection, compliance reporting, and remediation tracking, directly scaling the operational capability of the GISO without impeding developer velocity.
  • Establish and drive company-wide AppSec standards, baselines, and metrics in partnership with Security Architecture, translating abstract compliance guidelines into practical, uniform development baselines that measurably mature Everpure's engineering risk posture.
  • Collaborate as a trusted security partner with product, platform, and DevOps teams at our Santa Clara headquarters to champion secure coding practices, support large-scale vulnerability prioritization, and architect robust protection across core applications, APIs, and microservices.

Benefits

  • flexible time off
  • wellness resources
  • company-sponsored team events
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service