应用安全总监
Director, Application Security
**我们是谁**
Zeta Global(NYSE: ZETA)是一个由人工智能驱动的营销云平台,利用先进的人工智能(AI)和数万亿的消费者数据信号,帮助营销人员更高效地获取、增长和留住客户。通过 Zeta 营销平台(ZMP),我们的愿景是通过将身份识别、智能分析和全渠道激活整合到一个平台上——由行业最大的专有数据库和 AI 提供支持,使复杂的营销变得简单。我们的跨多个垂直领域的企业客户能够通过每个渠道为每位消费者提供个性化体验,从而提升营销活动的效果。Zeta 由 David A. Steinberg 和 John Sculley 于 2007 年创立,总部位于纽约市,并在全球设有办公室。了解更多,请访问 [www.zetaglobal.com](https://www.zetaglobal.com)。
**职位简介**
我们正在寻找一位应用安全总监,在 Zeta 构建并领导一个以 AI 为核心、由代理驱动的应用安全职能。
这是一个注重实战、兼具教练角色的领导职位,专注于将安全决策提前——将安全智能直接嵌入软件开发生命周期、CI/CD 管道和 AI 驱动的开发流程中。
与传统的门禁或评审职能不同,Zeta 的应用安全正在演变为一种持续、自主的能力:由政策即代码、安全代理、实时风险信号以及与工程师构建软件方式的深度集成所驱动。
Zeta 处于营销 AI 化转型的前沿,已推出 Athena by Zeta——一个深度嵌入 Zeta 营销平台的超级智能、对话式 AI 代理。随着 Zeta 加速进入这个由 AI 驱动、代理化的未来,安全是基础——而非可选。
**主要职责**
**领导力与战略(AI 原生的球员/教练)**
- 定义并推动 AI 原生的应用安全愿景和路线图。
- 设计代理化应用安全的运营模式,包括安全协作者和策略执行代理。
- 作为技术领导者,亲自参与塑造安全架构。
- 打造并培养一个专注于杠杆效应和自动化的现代应用安全团队。
**代理化威胁建模与持续验证**
- 将威胁建模演进为持续、系统感知的分析。
- 将自动化安全推理嵌入 CI/CD 和 AI/ML 管道中。
- 领导针对 AI 特定的高级威胁检测。
查看英文原文
**WHO WE ARE**
Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to [www.zetaglobal.com](https://www.zetaglobal.com).
**About the Role**
We’re looking for a Director of Application Security to architect and lead an AI-native, agent-driven Application Security function at Zeta.
This is a hands-on, player/coach leadership role focused on shifting security decisively left—embedding security intelligence directly into the software development lifecycle, CI/CD pipelines, and AI-powered development workflows.
Rather than operating as a traditional gate or review function, Application Security at Zeta is evolving into a continuous, autonomous capability: powered by policy-as-code, security agents, real-time risk signals, and deep integration with how engineers build software.
Zeta is at the forefront of the AI-native transformation of marketing, having launched Athena by Zeta—a superintelligent, conversational AI agent deeply embedded in the Zeta Marketing Platform. As Zeta accelerates into this AI-driven, agentic future, security is foundational—not optional.
**KEY RESPONSIBILITIES**
**Leadership & Strategy (AI-Native Player/Coach)**
- Define and drive an AI-native Application Security vision and roadmap.
- Design the operating model for agentic AppSec, including security copilots and policy-enforcing agents.
- Act as a hands-on technical leader shaping secure architectures.
- Build and mentor a modern Application Security team focused on leverage and automation.
**Agentic Threat Modeling & Continuous Validation**
- Evolve threat modeling into continuous, system-aware analysis.
- Embed automated security reasoning into CI/CD and AI/ML pipelines.
- Lead AI-specific adversarial testing (prompt injection, model abuse, data leakage).
**Shifting Security Left into the SDLC**
- Embed security agents directly into IDEs, PRs, and CI workflows.
- Deliver in-context security guidance without slowing velocity.
- Use continuous risk scoring to influence release decisions.
**AI & Emerging Threat Defense**
- Own AppSec strategy for AI systems, models, prompts, and agents.
- Translate emerging AI risks into automated guardrails.
**Security Culture & Enablement**
- Foster an ambient, automated security culture.
- Train engineers on secure AI-native system design.
**WHAT YOU NEED TO SUCCEED**
- 5–10+ years in AppSec, DevSecOps, or secure software development.
- Strong knowledge of OWASP, cloud-native systems, and API security.
- Familiarity with AI/ML security risks.
- Excellent communication and leadership skills.
**WHY THIS ROLE**
This is a foundational opportunity to define what Application Security looks like in an AI-native enterprise—securing not just code, but decisions, agents, and intelligence at scale.
**BENEFITS & PERKS**
- Unlimited PTO
- Excellent medical, dental, and vision coverage
- Employee Equity
- Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!
**SALARY RANGE**
The salary range for this role is $275,000-$315,000 TC, depending on location and experience.
**PEOPLE & CULTURE AT ZETA**
Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.
We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here: [https://zetaglobal.com/blog/a-look-into-zetas-ergs/](https://zetaglobal.com/blog/a-look-into-zetas-ergs/)
**ZETA IN THE NEWS!**
[https://zetaglobal.com/press/?cat=press-releases](https://zetaglobal.com/press/?cat=press-releases)
#LI-YW1