Senior AI Application Security Engineer at PepsiCo
Plano, TX
$93,500–$156,450from the description
Jul 14, 2026
Plano, TX
Jul 21, 2026
What this job asks for AI summary
A senior individual contributor role focused on securing AI-powered applications at enterprise scale. The work centers on designing and building security controls for LLMs, AI agents, RAG pipelines, and related architectures — covering threats like prompt injection, model poisoning, and insecure tool execution — while embedding those controls into cloud-native platforms and CI/CD workflows. The role suits an experienced engineer with hands-on background in both application security and modern AI system design.
Senior level · National · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
No work location is specified in the posting beyond references to San Francisco and Los Angeles fair-chance ordinances, which are boilerplate EEO language and do not confirm those as work sites. CBSA and state fields are left blank accordingly.
The role sits at the intersection of security engineering and software development — it requires writing security libraries, frameworks, and reference implementations in Python/Go, but the primary mission is AI application security. 15-1212 (Information Security Analysts) is the primary classification; 15-1252 (Software Developers) is a credible runner-up given the heavy engineering output expected.
AWS is listed as 'preferred' within the qualifications block ('AWS (preferred), Azure, or GCP'), so Azure and GCP are captured as alternatives rather than separate required skills.
Python and Go are presented as interchangeable ('Python and/or Go') in the qualifications; emitted as one skill with Go as the alternative.
AI security tooling (Promptfoo, Garak, etc.) and AI development frameworks (LangChain, etc.) appear under qualifications but are framed with 'such as' / 'or similar', indicating familiarity rather than hard gates; marked preferred with named alternatives populated.
The title carries no explicit seniority level word, so the title states no level; the scope and responsibilities clearly support a Senior classification.
No minimum total years of experience is stated in the posting.
Ignored 3 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): AI threat modeling, identity and authorization security, secrets management.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.