SentinelOne
cybersecurity
Sr.StaffBack-EndAppSecEngineer
Neural analysis suggests this role is
optimal for Senior candidates.
“Sr. Staff Back-End AppSec Engineer at SentinelOne. Skills: Python, Node.js, Application Security, SAST, Customer Engagements. Lead Wayfinder Frontier AI Services customer engagements end-to-end. Scope the work”
What You'll Achieve.
Give the advantage to those who secure our future; Protect global enterprises, critical infrastructure, and the technologies shaping tomorrow; Reduce noise, simplify complexity, and empower security teams to focus on what truly matters; Drive better, faster, smarter outcomes; Ensure every finding that reaches the customer is a decision they can act on; Scale the practice; Raise the technical bar of the practice; Shape the service line's methodology, engagement playbooks, and scoping templates
Industry & Context.
Problem-solvers; Validate findings; Eliminate noise; Translate technical risk into business impact; Map exposures into end-to-end exploitation chains
U. S. role
What They're Looking For.
Must Have
7+ years in application security or product security with a software development background, Proven track record translating complex findings into technical and executive-level debriefs, Excellent written and verbal communication is essential, Experience delivering customer-facing or consulting-style engagements end-to-end, comfortable in a distributed remote organization, Expert-level Python backend Django, Flask, FastAPI, Expert-level Node. js / Express, NestJS, Working knowledge of front-end framework (React, Next. js, or Angular) and can follow how auth, CSRF, and data move between the client and the API, Mastery of OWASP Top 10, CWE Top 25, and modern authentication infrastructure (SAML, OAuth, OIDC, JWT internals), Hands-on experience authoring custom static-analysis rules and queries for modern SAST, familiarity with AI-assisted code review workflows and validating findings produced by automated and agentic analysis pipelines, Working knowledge of Python and JS packaging and dependency-resolution behaviors (pip/Poetry/uv; npm/pnpm/yarn) and the supply-chain failure modes specific to each, Fluency with Git-based source control and CI/CD pipelines, including build-pipeline security controls, runner hardening, and release-gate enforcement, Experience with AI accelerated development / code scanning methodologies
Nice to Have
Mentor Senior-level AppSec engineers and dev-skilled threat raise the technical bar of the practice and shape the service line's methodology, engagement playbooks, and scoping templates
What You'll Do.
Lead Wayfinder Frontier AI Services customer engagements end-to-end
Deliver the technical findings
Present results to executive and technical stakeholders
Review and triage findings from our agentic code scanning pipeline against customer Python and JS codebases
Validate true positives
and ensure every finding that reaches the customer is a decision they can act on
Conduct deep code review across Python and Node. js code and common frameworks
Present findings to stake holders
translate technical risk into business impact and map exposures into end-to-end exploitation chains
Author and maintain SAST rule packs that scale across the customer base
Partner with our AI/ML engineers to improve our agentic scanning engine
Provide expert remediation guidance to customer development teams
Validate fixes through follow-up review
Work closely with our engineering teams to enhance our agentic code scanning pipeline
Reduce false positives
Mentor Senior-level AppSec engineers and dev-skilled threat raise the technical bar of the practice and shape the service line's methodology
and scoping templates
How You'll Work.
Team & Collaboration
Partner with our AI/ML engineers; Work closely with our engineering teams; Mentor Senior-level AppSec engineers
Communication Scope
Excellent written and verbal communication; Deliver results to diverse technical and leadership audiences; Present findings to stake holders; Translate technical risk into business impact
Process & Methodology
Scope the work, Lead customer engagements end-to-end
Full Job Description
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them becomes more critical than ever. When you join SentinelOne, your work helps protect global enterprises, critical infrastructure, and the technologies shaping tomorrow. If you are motivated by meaningful challenges and want your impact to be real, measurable, and global, you will find purpose here. About Us SentinelOne is a company at the intersection of AI and security, pioneering a new operating model for cybersecurity. Our AI-native platform unifies protection across endpoint, cloud, identity, data, and AI systems to deliver autonomous detection and response with clarity and speed. By combining real-time analytics, intelligent automation, and a unified data foundation, we reduce noise, simplify complexity, and empower security teams to focus on what truly matters. Our teams are builders, problem-solvers, and innovators committed to shaping the future of security. If you are excited to solve hard problems alongside talented, mission-driven people, we invite you to help us build a safer future for humanity. What Are We Looking For? We’re looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes. As a Sr. Staff Back-End AppSec Engineer you will be tasked with becoming the trusted advisor customers turn to on Python and NodeJs stacks when the stakes are highest. You'll work directly on top of the output of our agentic code scanning pipeline, validate findings with human judgment, deliver results to diverse technical and leadership
Applying for this Sr. Staff Back-End AppSec Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about SentinelOne?
Real rants from real employees. Read before you apply.