Tatari Logo

Senior Application Security Engineer

💰 $165k-$190k

Job Description

Tatari is on a mission to revolutionize TV advertising. Founded in 2016 to help transform the antiquated world of TV advertising through the intelligent application of AI and machine learning, Tatari helps some of the world’s fastest growing brands including Chime, Calm, Tecovas, Manscaped, Saatva, and Liquid I.V., reach their customers using linear and streaming TV ads. Our platform combines sophisticated media buying with proprietary analytics to turn TV advertising into an automated, digital-like experience, enabling businesses of any size to advertise on TV.

That approach has earned Tatari broad industry recognition, including being named Best CTV AdTech Platform in the 8th annual MarTech Breakthrough Awards, as well as honors from Digiday (Best Connected TV Platform), AdExchanger (Most Innovative TV Advertising Technology), and Business Insider(Hottest AdTech Companies). Tatari has also been recognized as the Best Place to Work by Inc. Magazine. Backed by an executive team of former founders and senior leaders from companies including Shazam, TrueCar, AdapTV, LiveRail, Amazon, Google, Meta, Microsoft, and Yahoo, Tatari continues to scale rapidly as TV advertising enters its next major era.

We’re a late-stage AdTech company with a recently attained SOC2 Type II attestation, and a clear mandate to mature our security and privacy posture.

We’re looking for the right engineer to make it happen.

The Role:

As our first dedicated Application Security Engineer, you will define the security architecture for everything we ship. You will work directly with our Engineering teams to identify vulnerabilities, design mitigations, and build the tooling and automation that makes secure development the path of least resistance. You will report to the Head of Security as a key technical contributor to Tatari’s Security program.

You write production-quality code. You think like an attacker. And you know how to bring engineers along with you.

Responsibilities:

  • Design and execute greenfield AppSec initiatives across Tatari’s SaaS platform from threat modeling to remediation
  • Build and maintain security automation integrated into CI/CD pipelines and manage software supply chain risk
  • Own container security across build and runtime
  • Develop internal tooling and libraries that make secure coding easier for application engineers
  • Own SAST/DAST/SCA tooling: selection, tuning, CI/CD integration, and triage
  • Conduct application security reviews and threat models for new features and architectural changes
  • Identify and remediate vulnerabilities across APIs, services, and data pipelines
  • Partner with Engineering teams to establish secure coding standards and provide hands-on guidance
  • Assess and mitigate LLM-introduced risks in product features
  • Integrate agentic tooling into AppSec workflows to reduce toil
  • Contribute to security incident response when application-layer issues are involved

Qualifications:

  • Production Python experience with the engineering depth to review code meaningfully and build security tooling; Java or Rust is a bonus
  • Significant hands-on application security experience, ideally at a SaaS company, including working knowledge of established standards (OWASP Top 10, API Security Top 10, ASVS, SPVS, AISVS) and how common vulnerability classes manifest in production systems
  • Threat modeling experience with Product and Engineering teams
  • Experience building security tooling or automation (scripts, pipelines, libraries)
  • Familiarity with AWS and Kubernetes security controls as they relate to application-layer risks
  • Working knowledge of how LLMs introduce new attack surfaces and how to mitigate them, with practical experience using AI tools in security or engineering workflows
  • Demonstrated experience reviewing API designs and implementations for auth anti-patterns, token mismanagement, injection risks, and sensitive data exposure
  • Track record embedding with Engineering teams: code review, design consultation, and standards definition
  • Experience building or maturing an AppSec program where coverage, tooling, or process needed to be defined from scratch

Benefits:

  • Total compensation ($165,000-$190,000)
  • Equity compensation
  • Health insurance coverage for you and your dependents
  • 401K, FSA, and commuter benefits
  • $150 monthly spending account
  • $1,000 annual continued education benefit
  • $500 Newbie Productivity Perk
  • Unlimited PTO and sick days
  • Monthly Company Wellness Day Off
  • Snacks, drinks, and catered lunches at the office
  • Team building events
  • Hybrid RTO of 2 days per week in office.

At Tatari, we believe in the importance of cultivating teams with diverse backgrounds and offering equal opportunities to all. We strive to create a welcoming, inclusive environment where every team member feels valued and diversity is celebrated.

#LI-HYBRID

Share this job:
Please let Tatari know you found this job on Remote First Jobs 🙏

5686 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Tatari

Find your next opportunity with companies that specialize in Media Buying, Software Engineering, Data Science, and Tv Advertising. Explore remote-first companies like Tatari that prioritize flexible work and home-office freedom.

Streamhub Logo

Streamhub

A total video analytics platform for cross-platform measurement across advertising and content.

View company profile →
Conviva Logo

Conviva

Real-time analytics platform

View company profile →
Sojern Logo

Sojern

201-500 sojern.cc

Provides a travel marketing platform and agency solutions for hotels, attractions, destinations, and airlines.

View company profile →
Reddit, Inc. Logo

Reddit, Inc.

1001-5000 redditinc.com

Operates a social networking platform where users create and engage with communities centered around diverse interests.

View company profile →
Nielsen Logo

Nielsen

10001+ nlsn.co

Global audience insights, data, and analytics for media and content across various channels and platforms.

View company profile →
VerticalScope Inc. Logo

VerticalScope Inc.

A digital community platform for online enthusiasts across high-consumer spending verticals.

View company profile →

Project: Career Search

Rev. 2026.6

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply