Job Description
Team: IT
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Application Security Engineer based in the United States.
This role sits at the intersection of cybersecurity consulting and hands-on engineering, supporting a diverse portfolio of clients in strengthening their application security posture. You will act as a trusted advisor and technical expert, helping organizations design, configure, and operationalize modern AppSec programs across complex environments. The position combines deep technical assessments with strategic guidance, ensuring security is embedded throughout the software development lifecycle. You will work across industries, engaging with engineering teams, security leaders, and stakeholders to improve secure coding practices and reduce risk exposure. The environment is fast-paced, client-facing, and highly collaborative, with significant autonomy to shape solutions. It is ideal for a practitioner who enjoys both technical depth and advisory impact. You will also contribute to the adoption of modern tools, automation, and AI-driven security practices.
Accountabilities:
- Lead implementation, configuration, and optimization of application security tools such as SAST, DAST, and SCA platforms across client environments.
- Conduct manual application and API security assessments, identifying vulnerabilities and recommending remediation strategies.
- Advise clients on secure SDLC practices, vulnerability management, and application security best practices aligned with frameworks such as OWASP.
- Support and troubleshoot client use of AppSec tooling including platforms like Veracode, Checkmarx, Snyk, and Invicti.
- Perform source code reviews across languages such as Java, Python, JavaScript, C#, and C++ to identify security vulnerabilities and design flaws.
- Collaborate with client engineering teams to integrate security tools into CI/CD pipelines such as Jenkins.
- Embrace emerging technologies, including AI-driven security tooling, to improve efficiency, detection, and remediation workflows.
- 5+ years of experience in application security, software engineering, or related cybersecurity roles, with strong exposure to SDLC environments.
- Deep understanding of application security domains including SAST, DAST, SCA, IAST, and RASP, and how they are operationalized in enterprise settings.
- Hands-on experience performing security testing using tools such as Burp Suite and modern AppSec platforms.
- Strong knowledge of cloud environments such as Amazon Web Services, Microsoft Azure, and Google Cloud, including serverless architectures.
- Experience with secure coding practices, API security, cryptographic fundamentals, and mitigation of common vulnerabilities aligned with OWASP Top 10.
- Ability to review and analyze codebases in multiple programming languages and communicate findings clearly to both technical and non-technical stakeholders.
- Strong communication skills with the ability to translate complex security risks into actionable guidance for clients.
- Experience working in Agile environments and managing multiple client engagements independently.
- Competitive annual compensation aligned with experience and expertise.
- Remote-first work model (U.S.-based) with flexibility depending on client needs.
- Comprehensive medical, dental, and vision insurance options with employer contributions.
- Flexible time off program and paid holidays.
- Home office, mobile phone, and internet allowances to support remote productivity.
- Retirement savings plan eligibility and additional financial wellness benefits.
- Opportunity to work with leading enterprise and public sector organizations on high-impact security challenges.
- Continuous learning environment with exposure to cutting-edge AppSec tools and technologies.
Requirements:
Benefits:
Explore More
Date Posted
06/25/2026
Views
0
Similar Jobs
Staff Software Engineer (Web Automation & Open Banking Infrastructure) - Jobgether
Views in the last 30 days - 0
View DetailsSr. Offensive Security Consultant (Alpha Group) - Jobgether
Views in the last 30 days - 0
View Details