Cerebras Systems Inc. Logo

Cerebras Systems Inc.

Application Security Engineer

Posted 19 Days Ago
Be an Early Applicant
Hybrid
Sunnyvale, CA, USA
Entry level
Hybrid
Sunnyvale, CA, USA
Entry level
Own and improve vulnerability management across applications, dependencies, containers, operating systems, cloud infrastructure, and exposed services. Prioritize and validate vulnerabilities, partner with engineering teams on remediation, automate security workflows, integrate controls into CI/CD, identify systemic vulnerability patterns, conduct application security testing, develop risk metrics, and support incident response. The role also applies AI agents and advanced security models to vulnerability discovery, analysis, prioritization, and remediation.
The summary above was generated by AI

Cerebras Systems builds the world's largest AI chip, 56 times larger than GPUs. This architecture allows Cerebras to deliver industry-leading training and inference speeds; over 10 times faster than GPU-based hyperscale cloud inference services.
This order of magnitude increase in speed is transforming the user experience of AI applications, unlocking real-time iteration and increasing intelligence via additional agentic computation.
Cerebras works with the leading model labs, global enterprises, and cutting-edge AI-native startups. OpenAI recently announced a multi-year partnership with Cerebras, to deploy 750 megawatts of scale, transforming key workloads with ultra high-speed inference.

We are looking for an Application Security Engineer with a strong focus on Vulnerability Management to help secure Cerebras software, infrastructure, and AI platforms.

You will own and evolve key parts of our vulnerability management program from vulnerability discovery and risk prioritization through remediation and verification. This is not a ticket-management role. We are looking for an engineer who can understand vulnerabilities in context, work directly with engineering teams, automate repetitive security work, and help eliminate classes of vulnerabilities rather than simply track individual findings.

You will work closely with Engineering, Infrastructure, and IT teams to identify vulnerabilities across our products and environments and drive them to meaningful remediation.

Responsibilities
  • Own and continuously improve vulnerability management across applications, software dependencies, containers, operating systems, cloud infrastructure, and externally exposed services.

  • Use AI agents and advanced security models to augment vulnerability discovery, code analysis, adversarial testing, prioritization, and remediation.

  • Analyze vulnerabilities beyond scanner severity by considering exploitability, exposure, affected assets, available mitigations, and business impact.

  • Partner directly with engineering teams to triage findings, determine appropriate remediation, and drive vulnerabilities to closure within risk-based SLAs.

  • Build automation for vulnerability ingestion, deduplication, enrichment, prioritization, assignment, remediation tracking, and reporting.

  • Identify systemic vulnerability patterns and work with engineering teams to address root causes rather than repeatedly fixing individual findings.

  • Operate and improve application security capabilities including SAST, SCA, secrets detection, container scanning, infrastructure scanning, and external attack-surface monitoring.

  • Validate security findings through technical investigation and hands-on testing, distinguishing exploitable vulnerabilities from false positives and low-risk findings.

  • Perform targeted application security reviews and testing for high-risk services and features.

  • Help integrate security controls into CI/CD and developer workflows while minimizing unnecessary friction for engineering teams.

  • Develop metrics and reporting that provide meaningful visibility into vulnerability exposure, remediation performance, recurring vulnerability classes, and security risk.

  • Evaluate and integrate new security technologies as our software and infrastructure environments evolve.

  • Partner with security and engineering teams on incident response when vulnerabilities are actively exploited or require urgent remediation.

Skills & Qualifications

We are looking for candidates who:

  • Have strong application security or product security fundamentals and hands-on experience with vulnerability management.

  • Understand common vulnerability classes and exploitation techniques across web applications, APIs, authentication systems, cloud services, containers, and software supply chains.

  • Can read and reason about code and work effectively with software engineers on practical remediation.

  • Have experience with vulnerability scanning and application security technologies such as SAST, SCA, DAST, secrets scanning, container scanning, or CSPM.

  • Understand vulnerability prioritization concepts including CVSS, exploitability, asset criticality, internet exposure, compensating controls, and threat intelligence.

  • Are comfortable investigating security findings manually rather than relying exclusively on scanner output.

  • Can automate security workflows using languages such as Python, Go, or similar scripting/programming languages.

  • Have experience integrating security tooling into CI/CD and modern software development workflows.

  • Are comfortable working with Linux, Git, containers, and cloud environments.

  • Can communicate security risk clearly to both security specialists and engineering teams.

  • Approach security with an automation-first mindset and look for scalable solutions instead of manual processes.

Preferred Qualifications

Experience in one or more of the following areas is a plus:

  • Application Security or Security engineering background.

  • Securing AI/ML platforms, inference services, or large-scale compute infrastructure.

  • Building or operating vulnerability management programs at scale.

  • AWS, Kubernetes, Docker, and cloud-native environments.

  • Software supply-chain security and dependency management.

  • GitHub and CI/CD security.

  • Threat modeling and secure design reviews.

  • Penetration testing or offensive security.

  • External attack-surface management.

  • Vulnerability research or exploit validation.

  • Security data pipelines, APIs, and workflow automation.

  • Using LLMs, AI agents, or AI-assisted security tooling for vulnerability research, code analysis, penetration testing, or remediation.

What Success Looks Like

You will help Cerebras move beyond simply finding vulnerabilities toward an engineering-driven vulnerability management program where:

  • The vulnerabilities that create the most meaningful risk are identified and prioritized quickly.

  • Engineering teams receive actionable findings with clear remediation guidance.

  • High-risk vulnerabilities are consistently remediated within defined SLAs.

  • Security findings are increasingly validated, prioritized, and routed automatically.

  • Recurring vulnerability classes are addressed systematically.

  • AI and automation reduce manual security work and accelerate both vulnerability discovery and remediation.

Most importantly, you will help build security processes that scale with the speed at which Cerebras builds and deploys some of the most advanced AI systems in the world.ADD DESCRIPTION HERE

Why Join Cerebras

People who are serious about software make their own hardware. At Cerebras, we have built a breakthrough architecture that is unlocking new opportunities for the AI industry. With dozens of model releases and rapid growth, we’ve reached an inflection point in our business. Members of our team tell us there are five main reasons they joined Cerebras:

  1. Build a breakthrough AI platform beyond the constraints of the GPU.

  2. Publish and open source their cutting-edge AI research.

  3. Work on one of the fastest AI supercomputers in the world.

  4. Enjoy job stability with startup vitality.

  5. Our simple, non-corporate work culture that respects individual beliefs.

Find out more about what it's like to work at Cerebras here!

Apply today and become part of the forefront of groundbreaking advancements in AI!

Cerebras Systems is committed to creating an equal and diverse environment and is proud to be an equal opportunity employer. We celebrate different backgrounds, perspectives, and skills. We believe inclusive teams build better products and companies. We try every day to build a work environment that empowers people to do their best work through continuous learning, growth and support of those around them.

This website or its third-party tools process personal data. For more details, click here to review our CCPA disclosure notice.

Similar Jobs

17 Days Ago
Easy Apply
Hybrid
San Francisco, CA, USA
Easy Apply
165K-295K Annually
Expert/Leader
165K-295K Annually
Expert/Leader
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Leads Samsara’s application security and vulnerability management programs across cloud, firmware, IoT, and corporate systems. Responsibilities include setting technical strategy, reducing remediation time, developing automation, guiding engineering teams, mentoring security engineers, assessing high-profile vulnerabilities, supporting incident investigations, and participating in on-call response. The role requires extensive security experience, programming proficiency, AWS expertise, vulnerability management knowledge, and practical use of AI/LLM tooling.
Top Skills: Ai/Llm ToolingAWSAws LambdaC/C++Ci/CdCvssDastEpssFedrampGoJavaScriptPythonSastScaSemgrepTinesWiz
18 Days Ago
Remote or Hybrid
Santa Clara, CA, USA
176K-308K Annually
Senior level
176K-308K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Secure ServiceNow instances by assessing configurations against security baselines, identifying misconfigurations, validating customer-reported findings, and providing actionable remediation guidance. The role develops hardening guidance, distinguishes product vulnerabilities from configuration issues, partners with Product Security and Engineering, supports customer escalations, and drives scalable improvements to security tooling, detection, and risk-reduction processes.
Top Skills: Ai-Powered ToolsApplication SecuritySaas Security Posture ManagementServicenowServicenow Platform
3 Days Ago
In-Office or Remote
2 Locations
139K-282K Annually
Senior level
139K-282K Annually
Senior level
Cloud • Information Technology • Internet of Things • Professional Services • Software
Secure AI and cloud-native applications by embedding controls into the Secure SDLC, CI/CD pipelines, Kubernetes environments, APIs, and software supply chains. Lead threat modeling, secure design reviews, vulnerability remediation, container hardening, runtime policy enforcement, and AI/ML workload protection. Partner with engineering teams to establish secure coding standards and improve enterprise security posture.
Top Skills: Ai/Ml SecurityApi SecurityAWSAzureCi/CdContainer SecurityDastEncryptionGCPGenerative AiIamKubernetesNetwork SecurityOwasp Top 10SastScaSecrets Scanning

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account