Owning the application security strategy, the full-time Staff Application Security Engineer will design secure development paths and automation for software deployment while working remotely within the United States or Canada. Key responsibilities Drive the AppSec/DevSecOps program roadmap, embedding security into the SDLC through automation and shift-left practices Design and maintain DevSecOps tooling in Kubernetes and Google Cloud Platform, supporting AI/ML workloads Lead the integration of security into CI/CD pipelines, partnering with engineering teams to ensure seamless adoption Required qualifications 10+ years of experience in Security Engineering, DevSecOps, SRE, or related roles Deep expertise in securing Kubernetes environments and container security Strong experience with Application Security tooling and CI/CD pipeline integration Proficiency with Infrastructure-as-Code tools like Terraform and security scanning for cloud resources Strong understanding of cloud services, particularly Google Cloud Platform