Jobs and Careers
QU

Senior Application Security Engineer [Remote-US]

Quanata, LLC
UKRemotefull_timeVerifiedPosted 15 Apr 2026
💰 $350,000/yr($220,000/yr$350,000/yr)

About the role

To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search. When applying for a position online you are at risk of being targeted by malicious actors looking for personal data. Please be aware we will only reach out via email using the domain quanata.com. Anything that does not match those domains should be ignored and considered a security risk.

About Us

Quanata is on a mission to help ensure a better world through context-based insurance solutions. We are an exceptional, customer centered team with a passion for creating innovative technologies, digital products, and brands. We blend some of the best Silicon Valley talent and cutting-edge thinking with the long-term backing of leading insurer, State Farm.

Learn more about us and our work at quanata.com   Our Team   Quanata, LLC is an insurance technology innovation company that engineers advanced risk prediction and prevention solutions, develops risk-focused acquisition capabilities, and builds/supports a full-stack, flexible, digital & increasingly AI-native insurance platform. This helps our primary clients, State Farm and HiRoad Assurance Company, adapt to evolving market needs. Quanata, LLC is wholly owned and funded by State Farm.

As a company that prioritizes an inclusive and positive culture, we believe the core of our success is in hiring talented people — across disciplines — who want to help us make a quantifiable impact.

The role

As a Senior Application Security Engineer, you will serve as the primary partner for web and backend engineering teams, helping embed security best practices throughout the software development lifecycle. You will support secure design, conduct threat modeling, review backend and frontend code, and lead integration of security tools into developer workflows. Your role bridges frontend and API security, and you'll be responsible for helping developers resolve complex security challenges across product surfaces.

Your day-to-day

  1. Partner with one product portfolio to facilitate overall product security management, emphasis on AI/ML-specific security concerns and cross-functional work with data science teams
  2. Perform security design reviews and threat modeling on APIs, web features, and service integrations, including integrating SAST, SCA, and DAST tools into CI/CD pipelines
  3. Support secure development practices across security champions and engineering
  4. Review source code and deployment configurations for security vulnerabilities
  5. Collaborate with developers to triage, fix, and validate vulnerability findings
  6. Participate in cross-functional incident response and remediation planning
  7. Draft and maintain AppSec guidance for engineering teams and security champions
  8. Contribute to security awareness and enablement across the engineering org
  9. Develop AppSec related integrations and deployments of automation solutions (ASVS scanning, burpsuite enterprise)
  10. Support application security integration reviews, saas security assessments, oss reviews

About you

  • Bachelor’s degree or equivalent relevant experience and;
  • 6 - 8 years of experience in application security or full-stack development with security expertise
  • Strong understanding of secure coding in JavaScript/TypeScript, Node.js, and web standards
  • Familiar with application risk and vulnerabilities (OWASP Top 10, API Security, SSRF, etc.)
  • Experience with code scanning tools (e.g., CodeQL, Semgrep, SonarQube, Snyk)
  • Comfortable reading and debugging complex codebases across the stack
  • Clear and thoughtful communicator with the ability to guide engineers at all levels
  • Working concepts of offensive security testing such as pentesting or bug bounties"

Bonus points

  • Experience with GraphQL security
  • Participation in security champions programs or secure SDLC rollouts
  • Contributions to open-source security tooling
  • Familiarity with infrastructure-as-code and container security

Salary: $220,000 to $350,000*

*Please note that the final salary offered will be determined based on the selected candidate's skills, and experience, as well as the internal salary structure at Quanata. Our aim is to offer a competitive and equitable compensation package that reflects the candidate's expertise and contributions to our organization.

Additional Details: 

  • Benefits: We provide a wide variety of health, wellness and other benefits.These include medical, dental, vision, life insurance and supplemental income plans for you and your depe

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Quanata, LLC

View company profile →