jobloom

JobLoom finds jobs directly from company career sites before many job boards, then routes you into detailed role pages like this one.

security

Posted 2 days ago

Senior Application Security Engineer

at Prolific

United KingdomRemote

Requirements

  • Prolific is not just another player in the AI space – we are the architects of the human data infrastructure that's reshaping the landscape of AI development.
  • In a world where foundational AI technologies are increasingly commoditized, it's the quality and diversity of human-generated data that truly differentiates products and models. The role
  • As a company trusted by world-leading research institutions and AI labs to handle sensitive data at scale, the security of our application layer is critical.
  • Strong knowledge of OWASP Top 10 (Web & API) and modern attack paths (e.g. auth flaws, SSRF, injection, business logic abuse, supply chain) •
  • Experience working with complex, large-scale systems and modern architectures
  • Python for security tooling, automation, or custom detection (Django a plus) •
  • Experience implementing and tuning SAST, SCA, DAST, and secret scanning in CI/CD
  • Practical threat modelling experience, including leading lightweight sessions
  • Experience with Django, Vue.js, MongoDB, GCP
  • Hands-on certifications (OSCP, GWAPT, BSCP) •
  • Experience in scaling environments building out security practices
  • This data is the cornerstone of developing more accurate, nuanced, and aligned AI systems.
  • We believe that the next leap in AI capabilities won't come solely from scaling existing models but from integrating diverse human perspectives and behaviors into AI development.
  • By providing this crucial human data infrastructure, Prolific is positioning itself at the forefront of the next wave of AI innovation—one that reflects the breadth and the best of humanity.
  • Working for us will place you at the forefront of AI innovation, providing access to our unique human data platform and opportunities for groundbreaking research.

Experience

  • Several years in application/product security and a background in software engineering

Benefits

  • Security champions or bug bounty programmes
  • Join us to enjoy a competitive salary, benefits, and remote working within our impactful, mission-driven culture.

Additional details

  • Security at Prolific isn't an afterthought, it's foundational to how we build.
  • We handle participant data, researcher credentials, payment flows, and API integrations that demand rigorous protection at the code level.
  • You'll work hands-on with our engineering teams to find and fix vulnerabilities in our codebase, perform security testing, build security tooling, and embed secure development practices into how we ship software.
  • This isn't a governance or policy role, you'll be in the code, reviewing pull requests, threat modeling new features, and building the automation that keeps our platform secure as we scale.
  • You'll report to the Head of Engineering/Platform and work cross-functionally with product engineering, platform, data, and TechOps teams.
  • experience (especially Burp Suite) across web apps and APIs
  • Strong collaboration skills, able to clearly explain issues and drive remediation
  • Builder mindset, you automate wherever possible Nice to haves •
  • Supply chain security (SCA, SBOMs, dependency review)
  • You'll help secure Prolific’s applications end-to-end, from hands-on testing and code review to threat modeling and CI/CD security.

Find more real-time jobs on JobLoom.