Braze · 1 day ago
Staff Application Security Engineer
Braze is a leading customer engagement platform that empowers brands to deliver exceptional customer experiences. They are seeking a Staff Application Security Engineer to enhance the security of their production applications and provide guidance on secure architecture to development teams.
AnalyticsCRMMarketingMarketing AutomationSoftware
Responsibilities
Work with the existing Application Security team to better protect production applications and their related application infrastructure
Provide expert level guidance to development teams around secure architecture for their systems
Effectively, accurately, and holistically identify security issues in application architecture, in code, and in application running states
Communicate security requirements to developers, technical teams, and non-technical parties
Articulate implementation importance and reasoning to high-level engineers, academics, and management
Handle complex security incidents and escalations as a technical incident commander
Process several simultaneous technical and administrative inputs while consistently working towards clear goals for remediation and containment
Qualification
Required
10+ years of experience securing an application at a company at an IC level or higher
Demonstrable experience in consistently locating novel security vulnerabilities in web software
5+ years experience conducting penetration tests both as a single tester and on a team
5+ years of experience in application incident response
Experience with active testing against AI/LLM integrated web applications and APIs
Experience with scripting languages and automation
Direct experience in the triage/validation of vulnerabilities in systems they may not be familiar with, and the ability to properly articulate risk and provide accurate mitigation recommendations
Ability to read and understand Javascript, Ruby, and Kotlin (Development level proficiency not required)
5+ years of experience as an Application Security leader or sole responsible party
Preferred
Experience with Mail Delivery systems/experience in the MarTech space
Experience managing a public bug bounty program
CVE's or published vulnerabilities, and corresponding conference talks
Involvement with an open source project
Experience with the review and risk evaluations of 3rd party integrations
Experience with mobile application penetration testing (including testing methodologies that include location of security vulnerabilities in applications with pinned certificates)
Benefits
Competitive compensation that may include equity
Retirement and Employee Stock Purchase Plans
Flexible paid time off
Comprehensive benefit plans covering medical, dental, vision, life, and disability
Family services that include fertility benefits and equal paid parental leave
Professional development supported by formal career pathing, learning platforms, and a yearly learning stipend
A curated in-office employee experience, designed to foster community, team connections, and innovation
Opportunities to give back to your community, including an annual company-wide Volunteer Week and donation matching
Employee Resource Groups that provide supportive communities within Braze
Collaborative, transparent, and fun culture recognized as a Great Place to Work®
Company
Braze
Braze is a customer engagement platform that enables customer-centric interactions between brands and consumers.
H1B Sponsorship
Braze has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (16)
2024 (10)
2023 (5)
2022 (16)
2021 (6)
2020 (4)
Funding
Current Stage
Public CompanyTotal Funding
$314.29MKey Investors
SnowflakeMeritech Capital PartnersICONIQ Growth,Meritech Capital Partners
2025-04-10Post Ipo Equity· $139.19M
2023-06-21Grant
2021-11-17IPO
Recent News
thefly.com
2026-01-16
POCIT. Telling the stories and thoughts of the underrepresented in tech.
2025-12-24
The Motley Fool
2025-12-11
Company data provided by crunchbase