Demo

Senior Application Security Engineer

Zip
San Francisco, CA Full Time
POSTED ON 1/1/2026
AVAILABLE BEFORE 2/16/2026
The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today, enterprises spend $120T per year globally (>30 times larger than annual consumer e-commerce spend) and rely on vendors more than ever before to run their businesses.

Our cofounders started Zip in 2020 to address this seemingly intractable problem with a purpose-built procurement platform that provides a simple, consumer-grade user experience. Within the last 4 years, Zip has created a new category and developed the leading solution in this $50B TAM space. Today, the world’s leading companies like OpenAI, Snowflake, Anthropic, Coinbase, and Prudential rely on Zip to manage billions of dollars in spend.

We have a world-class team coming from category-defining companies like Airbnb, Meta, Stripe, Salesforce, Apple, and Google. With a $2.2 billion valuation and $370 million in funding from Y Combinator, Tiger Global, BOND, DST Global, and CRV, we’re focused on developing cutting-edge technology, expanding into new global markets, and—above all–driving incredible value for our customers. Join us!

The Security team at Zip is responsible for protecting the confidentiality and integrity of our customers’ data. As our first Application Security Engineer, you will take on a dynamic and high impact role. You will lead our efforts to build foundational security guardrails, launch key security initiatives, and solidify trust customers place in us. Your contributions will be pivotal to the success of Zip’s rapid growth as we launch new products, such as AI Agents and an App Marketplace, and enter into new markets, including EMEA and the Federal government space. We move quickly to solve a wide range of complex technical and product challenges. While we are an experienced team that can provide constant guidance and mentorship, we value engineers who can autonomously scope and solve complex technical challenges.

You will

  • Design and implement technical controls to eliminate or mitigate classes of security vulnerabilities.
  • Support the development of secure products through design reviews, threat models, static/dynamic scans, and hands-on security assessments.
  • Validate, triage, and coordinate security findings from bug bounty and third party pentests.
  • Mentor security analysts and security champions on security best practices and techniques.


Qualifications

  • Experience writing production-quality code for security tooling and services
  • Strong written and verbal communication with internal and external stakeholders
  • A solid understanding of security risks and the ability to balance security with business requirements
  • Experience with web applications, APIs, and cloud environments. At Zip, our stack includes Python, React, GraphQL, Kubernetes, and AWS


Nice to haves

  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, and FedRAMP
  • Hands-on experience in offensive security (eg, through bug bounty programs or CTFs)


The salary range for this role is $160,000 - $220,000. The salary for this position is determined based on a variety of job-related factors that may include location, relevant experience, education, or particular skills and expertise.

Perks & Benefits

At Zip, we’re committed to providing our employees with everything they need to do their best work.

  • 📈 Start-up equity
  • 🦷 Full health, vision & dental coverage
  • 🍽️ Catered lunches & dinners for SF employees
  • 🚍 Commuter benefit
  • 🚠 Team building events & happy hours
  • 🌴 Flexible PTO
  • 💻 Apple equipment plus home office budget
  • 💸 401k plan


We're looking to hire Zipsters and that means hiring people who take ownership, communicate openly, have an underdog mindset, and are excited to increase the pace of innovation for every business in the world. We encourage all candidates to apply even if your experience doesn't exactly match up to our job description. We are committed to building a diverse and inclusive workspace where everyone (regardless of age, religion, ethnicity, gender, sexual orientation, and more) feels like they belong. We look forward to hearing from you!

Salary : $160,000 - $220,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Application Security Engineer?

Sign up to receive alerts about other jobs on the Senior Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Zip

  • Zip York, NY
  • Proven success managing enterprise-scale partnerships in fintech, payments, or eCommerce, with a track record of influencing executive stakeholders and dri... more
  • 13 Days Ago

  • Zip San Francisco, CA
  • The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today,... more
  • 13 Days Ago

  • Zip San Francisco, CA
  • The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today,... more
  • 13 Days Ago

  • Zip San Francisco, CA
  • The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today,... more
  • 13 Days Ago


Not the job you're looking for? Here are some other Senior Application Security Engineer jobs in the San Francisco, CA area that may be a better fit.

  • Brex San Francisco, CA
  • Why join us Brex is the AI-powered spend platform. We help companies spend with confidence with integrated corporate cards, banking, and global payments, p... more
  • 23 Days Ago

  • Airwallex San Francisco, CA
  • About Airwallex Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infra... more
  • 27 Days Ago

AI Assistant is available now!

Feel free to start your new journey!