FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive expertise in application security and product security, with a strong focus on integrating security into CI/CD pipelines and developing secure development frameworks. Possesses advanced knowledge of AI-specific vulnerabilities and security standards, ensuring robust guardrail implementation across software development teams.
Highest-signal resume keywords
Application SecurityDevSecOps ProgramsCI/CD IntegrationOWASP Top 10CISSP Certification
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security Guardrail DevelopmentThreat ModelingSASTDASTPenetration TestingVulnerability Pattern AnalysisAI-Specific Attack VectorsDependency ScanningSecrets DetectionSecure Design Principles
Soft Skills
LeadershipCollaborationProblem-SolvingCommunication
Tools & Technologies
CI/CD ToolsSecurity Gate ControlsISO 27001NISTISO 42001
Certifications & Qualifications
CISSPCEH
Industry Keywords
Application Security StandardsAI Security AssessmentEU AI ActOpen-Source Security Tools
Tech Stack
Tools & technologiesOpen Source
About the role
Key responsibilities & impact- Own the architecture and evolution of Lhasa’s security guardrail files (.md and equivalent formats), including structure, scope, versioning, update frequency, and integration with development tools
- Define security requirements for AI engineers using AI to write code, covering data handling, authentication, injection prevention, and AI-specific vulnerability patterns
- Establish and continuously improve secure-by-design principles for Lhasa’s software development
- Continuously recalibrate guardrails as AI-powered programming tools, threat patterns, and product architecture evolve
- Lead guardrail adoption across solution teams, resolving ambiguities and handling exceptions with clear justifications
Requirements
What you’ll need- Extensive information security experience, with a strong focus on application security or product security
- Proven experience owning secure development frameworks, guardrail standards, or DevSecOps programs
- Demonstrated experience integrating security into CI/CD pipelines and automating security gate controls
- Experience leading application security assessments, including threat modeling, SAST/DAST, and penetration testing coordination
- Previous experience working with, or in close and continuous collaboration with, software development teams
- Track record of independently addressing complex product security challenges and delivering results across multiple teams
- Advanced knowledge of application security, including the OWASP Top 10 and equivalent frameworks
- Deep knowledge of vulnerability patterns in AI-generated code and how to address them at the framework and pipeline levels
- Strong knowledge of AI-specific attack vectors, including prompt injection, data poisoning, model manipulation, and risks associated with agentic systems
- Specialized knowledge of CI/CD tools and security gate implementation mechanisms, including SAST, DAST, dependency scanning, and secrets detection
- Practical knowledge of ISO 27001, NIST, and ISO 42001 as applied to software products
- CISSP, CEH, or equivalent certification (preferred)
- Experience with secure design of AI systems or formal AI security assessment frameworks (preferred)
- Familiarity with ISO 42001, the EU AI Act, or contributions to security standards or open-source security tools (preferred)
- Previous experience in software development or DevSecOps engineering (preferred)
Benefits
Comp & perks- The support needed to achieve professional success
- A collaborative and innovative environment
