
Senior Application Security Engineer
Overview
RevenueCat removes the headaches of building and scaling in‑app subscriptions. Since graduating from YC’s S18 batch we’ve grown into the default monetization platform for mobile.
Job Description
We’re a remote‑first crew of 120+, spread across 25 countries, and guided by values we actually practice: Customer Obsession, Always Be Shipping, Own It, and Balance.
Responsibilities
- - Participate in security code and system reviews, threat modeling and risk assessments.
- - Support the Bug Bounty program, helping teams on triaging, prioritizing and fixing issues.
- - Collaborate closely with infra security to level up our security posture.
Required Skills
- - Deep understanding of common security flaws and ways to address them, both in web and mobile app environments.
- - Experience identifying security issues through code review.
- - Familiarity with new AI security risks regarding MCPs, prompt injection and others.
- - Experience securing mobile SDKs (iOS/Android) and backend services (Python) is highly valued.
About the company
In-app subscriptions are a pain. The code can be hard to write, time-consuming to maintain, and full of edge cases. RevenueCat makes it simple, plus provides analytics, integrations, and tools to grow so you can get back to building your app.
All Job Openings at RevenueCat