Zeta Global · 21 hours ago
Lead Application Security Engineer
Zeta Global is an AI-Powered Marketing Cloud that utilizes advanced artificial intelligence to enhance marketing efficiency. They are seeking a Lead Application Security Engineer to oversee application and platform security initiatives, ensuring secure practices throughout the development lifecycle and safeguarding high-performance systems against emerging threats.
Responsibilities
Lead threat modeling and security architecture reviews for distributed, event-driven systems
Integrate security code reviews, SAST/DAST, Software Composition Analysis (SCA), and container scanning into CI/CD and AI/ML pipelines
Coordinate and lead incident simulations specific to AI systems; oversee red/blue team exercises to validate defensive posture
Conduct security reviews of third-party vendors and tools to ensure alignment with enterprise security standards
Collaborate with engineers and product teams to build secure features without impeding innovation
Establish and lead security checkpoints across the software development lifecycle
Review system designs, architecture, and data flow diagrams to identify and mitigate risks early
Collaborate with key stakeholders to drive informed Go/No-Go security decisions for all major production deployments
Stay on the forefront of security innovations, including OWASP, cloud-native, and API security practices
Monitor modern threat vectors like LLM jailbreaks, prompt injection, and data poisoning
Recommend and implement forward-looking controls to safeguard AI models and data platforms
Evangelize secure coding and AI security through training, brown bag sessions, and workshops
Develop and roll out internal security policies, standards, and best practices
Raise awareness of security threats through documentation and hands-on engagement
Foster a security-first culture across engineering, product, and data teams
Qualification
Required
Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent experience
5+ years of experience in Application Security, DevSecOps, or secure software development
In-depth understanding of OWASP Top 10, SANS CWE Top 25, MITRE ATT&CK for ML, and adversarial threat modeling
Experience securing modern frameworks and architectures (e.g., React, Node.js, Django, FastAPI)
Familiarity with AI/ML attack vectors including model inversion, adversarial examples, and training pipeline integrity
Strong foundation in OAuth2, OpenID Connect, JWT, and securing APIs and microservices
Experience with cloud-native security (e.g., AWS, GCP, Azure) and container technologies (e.g., Docker, Kubernetes)
Strong communication and stakeholder management skills
Preferred
Hands-on with tools like Semgrep, Veracode, Checkmarx, SonarQube, Burp Suite, Zap, Trivy, Brakeman, or LangSec
Certifications such as OSCP, CSSLP, GWAPT, or ML-specific certs (e.g., MITRE ATT&CK Defender for ML)
Benefits
Unlimited PTO
Excellent medical, dental, and vision coverage
Employee Equity
Employee Discounts, Virtual Wellness Classes, and Pet Insurance
Company
Zeta Global
Zeta offers technology and marketing services to help brands acquire, engage, and retain customers.
H1B Sponsorship
Zeta Global has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (20)
2024 (17)
2023 (11)
2022 (6)
2021 (8)
2020 (16)
Funding
Current Stage
Public CompanyTotal Funding
$1.46BKey Investors
BofA Securities
2024-09-04Post Ipo Secondary· $105.26M
2024-09-04Post Ipo Equity· $204.94M
2024-09-03Post Ipo Debt· $550M
Leadership Team
Recent News
Destination CRM
2026-01-07
The Motley Fool
2026-01-07
Company data provided by crunchbase