Senior Software Engineer, Application Security - AV and Software Infrastructure

Nvidia•Published 19 hours ago•First seen 1 hours ago

NVIDIA’s Autonomous Vehicle Infrastructure and Software Infrastructure teams build platforms that engineers use to develop, test, and deliver software at scale. We are looking for an application security engineer to help secure the services, APIs, developer tools, and data platforms behind these workflows.

In this role, you will work closely with software engineers and NVIDIA’s security teams to identify risks, build protections, and make secure development easier. Your work will span architecture, code, and production systems, with particular attention to identity, authorization, sensitive data, and the software development lifecycle.

What you’ll be doing:

  • Review application designs and code, develop threat models, and help teams address security risks before deployment.
  • Design and implement authentication and authorization controls for APIs, services, and applications, including service identities, tenant isolation, and resource-level access.
  • Build reusable libraries, tooling, and reference implementations that make secure patterns straightforward to adopt.
  • Improve how applications handle credentials, secrets, sensitive data, and security-relevant logging.
  • Integrate practical security checks into development and CI/CD workflows, with actionable findings and clear remediation paths.
  • Investigate application vulnerabilities, develop fixes with service owners, and add regression coverage.
  • Partner with infrastructure and corporate security teams to prioritize improvements and measure their effectiveness.

What we need to see:

  • 12+ years of relevant experience and a BS or MS in Computer Science, Computer Engineering, or a related field, or equivalent experience.
  • Experience building and operating production software, with substantial work in application or product security.
  • Strong programming skills in Go, Python, Java, C++, or a comparable language, and the ability to review and modify unfamiliar code.
  • Practical understanding of web and API security, authentication, authorization, and common vulnerability classes.
  • Experience with threat modeling and security reviews for distributed systems.
  • Ability to turn security findings into concrete engineering changes and prioritize work based on risk and impact.
  • Clear communication and experience working collaboratively with engineering teams.

Ways to stand out from the crowd:

  • Experience with OAuth 2.0, OpenID Connect, service identity, and authorization policy systems.
  • Experience securing multi-tenant services, data platforms, or developer infrastructure.
  • Familiarity with Kubernetes, cloud IAM, infrastructure as code, and CI/CD systems.
  • Experience improving vulnerability detection or dependency security while reducing noisy findings.
  • A record of building security capabilities that engineering teams adopt and use.
Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 224,000 USD - 356,500 USD.

You will also be eligible for equity and benefits.

Applications for this job will be accepted at least until October 9, 2026.

This posting is for an existing vacancy. 

NVIDIA uses AI tools in its recruiting processes.

NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.