Full-Time

Senior Application Security Engineer

Confirmed live in the last 24 hours

Vercel

Vercel

501-1,000 employees

Platform for building and deploying web applications

Compensation Overview

$216k - $324k/yr

Senior

San Francisco, CA, USA

This is a hybrid role with three days in the office per week.

Category
Cybersecurity
IT & Security
Required Skills
JavaScript
Node.js
TypeScript
Requirements
  • 5+ years of experience in an Application Security or Product Security role (or related field)
  • Strong familiarity with JavaScript/TypeScript and Node.js runtime security
  • Demonstrated ability to perform threat modeling and architectural risk analysis for complex applications
  • Hands-on experience with application security tooling such as static application security testing (SAST), dynamic testing (DAST), dependency vulnerability scanners, and CI/CD pipeline security integration
  • Knowledge of open-source security best practices
  • Exposure to running or participating in a bug bounty program or vulnerability disclosure process
  • Solid understanding of cloud architecture and serverless environments from a security perspective
  • Proven ability to drive security initiatives and influence engineering teams to adopt best practices
Responsibilities
  • Partner with engineering and product teams to perform threat modeling for new and existing features
  • Conduct secure code reviews and security assessments on applications and services
  • Oversee Vercel’s open-source security efforts
  • Evaluate, select, and integrate security tools into our Software Development Life Cycle
  • Own and expand Vercel’s bug bounty program
  • Lead and contribute to security projects that span multiple teams and disciplines
  • Work closely with customer success and product marketing on security-related initiatives
Desired Qualifications
  • Prior software development experience beyond security (e.g. as a frontend or backend engineer)
  • Hold relevant security certifications or recognitions (for example, OSCP, OSWE, CISSP, or notable bug bounty hall of fame entries)
  • Experience with security policy-as-code or infrastructure as code security
  • Have built or implemented security features in a product
  • Active participant in the security community (e.g., contributing to open source security projects, writing blog posts or research, attending or speaking at security conferences)

Vercel provides a platform for web development and cloud infrastructure, helping developers and businesses build, deploy, and manage modern web applications. Its services are utilized by 1.5 million developers and 10,000 enterprise clients. Vercel offers tools that enhance image and video workflows through AI features like smart cropping and object detection, as well as full lifecycle management for media, including auto-tagging and access control. The company operates a managed global rendering layer that simplifies serverless architecture, ensuring content delivery with high uptime and security through automatic HTTPS, DDoS mitigation, and firewall protection. Vercel's subscription-based model caters to a range of clients, from individual developers to large enterprises, making it a significant player in the web development market.

Company Size

501-1,000

Company Stage

Series E

Total Funding

$563M

Headquarters

San Francisco, California

Founded

2015

Simplify Jobs

Simplify's Take

What believers are saying

  • Vercel's ARR reached $200M, doubling revenue in 15 months.
  • The company raised $250M, enhancing its AI-driven Frontend Cloud platform.
  • Vercel's AI model, V0-1.0-md, supports modern web development with advanced tools.

What critics are saying

  • Vercel faces strong competition from Cloudflare Pages in the cloud PaaS market.
  • Rapid growth may lead to operational challenges and resource strain.
  • Adoption of Vercel Fluid may be slow due to competition with established serverless models.

What makes Vercel unique

  • Vercel offers a managed global rendering layer for modern web applications.
  • The company integrates advanced AI features for image and video workflow optimization.
  • Vercel provides full lifecycle media management, including auto-tagging and access control.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Stock Options

Company Equity

Professional Development Budget

Unlimited Paid Time Off

Remote Work Options

Home Office Stipend

Growth & Insights and Company News

Headcount

6 month growth

2%

1 year growth

0%

2 year growth

-1%
LinkedIn
Jun 9th, 2025
Vercel reaches $200M ARR, powered by AI and developers | Marten Abrahamsen posted on the topic | LinkedIn

Vercel just crossed $200M in ARR, doubling our revenue in 15 months. We’re proud of the numbers, but what matters more is why teams choose Vercel: - To ship fast without compromising scale or security - To ship AI-native apps that scale from idea to millions of users - To give their developers the best possible platform to build on What’s driving the growth? The answer isn’t one customer, one use case, or one industry shift. It’s a new kind of software stack: powered by AI, built by developers, and deployed on Vercel. The Information's Natasha Mascarenhas covered our growth. While we’re much more than an OpenAI vendor, the momentum we’re seeing across the AI ecosystem is real, and we’re proud to be powering so much of it. Thanks to our customers, partners, and team for getting us here. https://lnkd.in/gyrv4ZFU | 32 comments on LinkedIn

LinkedIn
Jun 9th, 2025
Vercel will be a $50B+ company in the next 5 years. Vercel is a… | MD Fazal Mustafa

Vercel will be a $50B+ company in the next 5 years. Vercel is a 10-year-old company that has raised $563M. It has 6 million developers, with 1 million monthly active developers. Personally, this is why I believe that it's going to be a $50B+ company just in the next 5 years. Humble beginnings & Competition : The start was not that outrageous as the company is now. Vercel took 4 years to hit $1M in 2019 and has been on an exponential path since. By 2019-2020, Vercel had competition from Netlify, Heroku, AWS Amplify, and now even in 2025 still competes with Cloudflare Pages. Exponential Growth: Vercel has blown up from 2022 onwards with a very extreme focus on devrel. They are very, very invested in developers; in fact their CAC for a developer is between $150 to $300. Here is the revenue growth of Vercel. 2022: $51M revenue (143% growth) 2023: $86M revenue (69% growth) 2024: Exceeded $100M annual revenue 2025: $172M ARR run rate (80% YoY growth) New launches: The AI-powered v0 tool launched by Vercel achieved $4M ARR within 34 days of launch. Also, Vercel has a template to work with every model as a service platform like FAL AI, Deepinfra, etc, and even with AI tools layer companies like Pinecone, langchain, and many other platforms. Market Expansion into $450B Enterprise Development: Vercel is now doubling down on Enterprise. By integrating security features and enterprise workflows, Vercel wants to capture a growing share of the $450B enterprise application development market. The platform’s AI SDK adoption (1M weekly downloads) and Next.js dominance (1M+ monthly developers) create switching costs that lock in enterprise clients. Immediate Future: It's very evident now by the recent ongoing round of Cursor, which is now raising at a valuation of $10B after crossing the $200M ARR mark. We can expect the same from Vercel, too. Vercel is now the 5th largest player in terms of Cloud PaaS. So it's safe to say it's going to be a $10B company in the next 24 months. My bet of $50B+ Company: If Vercel sustains 80% YOY growth for 5 years, then their 5th year annualised revenue would be at $3.25B. 3rd year(2028), they would be crossing the $1B revenue mark. Maybe by 2030, Vercel might go public, or even if they remain private, we have enough precedent that a company doing $3.25B will be pegged at a $50B+ valuation. Thus my reason to believe so.

Afghan Job Center
May 23rd, 2025
Vercel Releases v0 AI Model for Web Application Development, Compatible with OpenAI API

Vercel, the company behind the vibe coding platform for web application development, v0, is now releasing an artificial intelligence (AI) model.

BizPartner
May 23rd, 2025
Shein Prices May Rise for French Consumers Ahead of EU Fee

Meanwhile, Vercel introduced an AI model specifically designed for web development tasks.

Creative Me
May 23rd, 2025
V0-1.0-md by Vercel: A Cutting-Edge AI Model for Modern Web Developers

As AI continues to reshape web development, Vercel, the well-known platform for building and deploying websites, has unveiled V0-1.0-md - a powerful AI model designed specifically for frontend and full-stack development in the modern web era.