Application Security Engineer designing and operating AI-assisted vulnerability management workflows for Eclipse Foundation. Collaborating across open source projects to enhance security processes and outcomes.
Responsibilities
Design, build, and operate AI-assisted vulnerability management workflows across Eclipse Foundation open source projects
Build pipelines and integrate AI-assisted analysis into developer and CI/CD workflows
Evaluate findings critically and reduce false positives
Collaborate with project maintainers to land real fixes
Deliver measurable improvements in how the Foundation discovers, prioritizes, and resolves security issues
Help define safe and appropriate use of AI tooling
Produce internal playbooks, technical write-ups, and metrics dashboards
Participate in vulnerability disclosure processes, CVE management, and security advisories as needed
Requirements
Degree in software engineering, computer science, cybersecurity, or a related field is welcome
Equivalent practical experience is highly valued
Strong application security background
Familiarity with common vulnerability classes such as OWASP Top 10 and CWE
Secure coding practices and practical exploitability analysis
Hands-on experience conducting security code reviews, audits, or assessments using SAST, DAST, SCA, dependency scanning, or other code analysis tools
Ability to build and integrate developer-facing tooling using languages such as Python, Java, TypeScript, or similar
Practical experience applying LLMs or AI-assisted tools to code analysis, vulnerability research, developer productivity, or security automation
Familiarity with open source development workflows, including Git, GitHub or GitLab, pull requests, issue tracking, and CI/CD
Strong written communication skills, including the ability to write actionable security findings, advisories, issues, and remediation guidance for maintainers with varying security backgrounds.
NetSuite Application Engineer at Mozilla optimizing ERP systems and supporting financial processes. Collaborating across teams to enhance business operations and ensure system performance.
Application Support Engineer providing L2/L3 support for cryptocurrency trading systems. Maintaining system stability and optimizing operational processes in a hybrid work environment.
Application Engineer Co - op Student maintaining and enhancing Salesforce platform for Guest Services at Arc'teryx. Collaborating with engineers to ensure platform stability and performance.
Technical Application Engineer providing advanced automation solutions and support to customers. Collaborating with teams to drive product revenue and market share in Canada.
Senior Software Systems Engineer for cloud - driven networking solutions and CI/CD infrastructure at Extreme Networks. Collaborates with development teams while staying current in DevOps best practices.
Vehicle Applications Engineer responsible for supporting production contracts and bids for heavy - duty transit buses. Collaborating with teams to manage technical requirements and mitigate risks in production contracts.
Senior Cloud Application Security Engineer securing Trulioo’s AWS - hosted SaaS platform. Collaborating with teams to automate security in CI/CD pipelines and safeguard application integrity.
Application Engineer analyzing customer specifications and selecting appropriate G&W products. Collaborating with engineering team to develop custom solutions for technical requirements.