About the job
At RegScale, we are redefining how organizations manage their security, risk, and compliance programs through our innovative continuous controls monitoring (CCM) platform. As we evolve from a startup to a robust enterprise-ready engineering organization, we are building a skilled team that will drive this transformation. In our mission to handle sensitive security and regulatory data for both enterprise and government clients, we prioritize security as a fundamental engineering principle embedded in our software development process.
The Role
We are seeking a highly autonomous and experienced Senior Application Security Engineer who excels in navigating complex engineering landscapes. As the lead application security expert at RegScale, you will identify security risks, develop comprehensive strategies to mitigate them, and drive initiatives from inception to measurable outcomes. You will operate independently without a dedicated team, influencing cross-functional engineering teams to enhance security practices.
Your role will encompass collaboration with various engineering disciplines, including Core Engineering, Platform and AI, Compliance as Code, Quality Engineering, SRE, Infrastructure, and external security teams. Your success will be measured by your ability to foster security awareness among engineers and integrate security principles into the design, development, and deployment phases of our software.
RegScale serves a diverse clientele, including enterprises and government agencies, adhering to regulatory frameworks such as FedRAMP, NIST, and CMMC. This position reports to the SRE and Infrastructure teams and requires not only deep technical security knowledge but also the influence and ownership mentality necessary to instill security as a shared value across engineering.

