Point your AI agent at freehire and let it find you a job.

Get the CLI →

Jobgether

NewBe an early applicant

Application Security Engineer

Posted Updated
Discussion

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Security Engineer based in United States.

As an Application Security Engineer, you will help embed security throughout the software development lifecycle, from architecture and design through deployment and remediation. You will lead application security testing and help development teams identify and address vulnerabilities efficiently. The role combines hands-on security engineering with close collaboration across software development and operations teams. You will contribute to secure coding practices, threat modeling, code reviews, and security testing programs. You will also help protect cloud-native and SaaS applications against evolving threats and common application vulnerabilities. This is a remote opportunity within a technology-focused environment that values responsible innovation, automation, and continuous improvement.

Accountabilities

  • Perform security code reviews, threat modeling, and architecture reviews across development projects as part of a secure SDLC.

  • Partner with engineering teams to integrate secure design principles, coding standards, and appropriate security controls throughout development and deployment processes.

  • Lead application security testing activities, including SAST, DAST, and IAST, and evaluate findings for risk and remediation priority.

  • Identify, document, track, and validate security vulnerabilities and defects, working with development teams to meet established compliance and remediation timelines.

  • Coordinate independent external penetration testing of production environments and support the review and remediation of resulting findings.

  • Serve as an application security subject matter expert on vulnerabilities such as the OWASP Top 10 and emerging application security threats.

  • Integrate security practices into code review, change management, CI/CD pipelines, and secure development operations.

  • Promote secure development practices by collaborating with technical teams, sharing guidance, and helping improve application security processes and controls.

  • Use AI and automation tools responsibly to improve security analysis, productivity, decision-making, and the quality of security outcomes.

  • Requirements

    • 3–7 years of experience in application security, secure software development, penetration testing, or a related cybersecurity discipline.

    • Hands-on experience with application security testing tools and methodologies, including SAST, DAST, and/or IAST.

    • Practical experience incorporating secure design principles into software development, code review, change management, CI/CD pipelines, or DevSecOps environments.

    • Knowledge of application security vulnerabilities, secure coding practices, threat modeling, and the OWASP Top 10.

    • Familiarity with secure coding across multiple programming languages such as C#, Go, Java, JavaScript, or Python.

    • Experience with cloud-native and SaaS application environments.

    • Strong analytical and problem-solving skills, with the ability to assess vulnerabilities and collaborate effectively on remediation.

    • Ability to communicate technical security concepts clearly to software engineers and other stakeholders.

    • Demonstrated ability to use AI tools thoughtfully to improve productivity, analysis, decision-making, and work quality.

    • A Security+, GSEC, GSSP, or equivalent security certification is preferred.

    • A bachelor's degree in Computer Science, Cybersecurity, Information Security, Information Systems, or a related field is preferred.

    • Must be authorized to work in the United States; visa sponsorship is not available for this position.

    • Benefits

      • Estimated salary grade range of $70,300–$101,300 per year.

      • Anticipated hiring range of approximately $80,000–$90,000 per year, with the final offer based on skills, qualifications, experience, and other job-related factors.

      • Comprehensive health insurance.

      • Dental and vision insurance.

      • Flexible Time Off.

      • 401(k) plan.

      • Remote work environment.

      • Opportunities to work with modern security, software development, automation, and AI technologies.

      • Collaborative environment focused on innovation, professional growth, and responsible technology adoption.

      • Reasonable accommodations available throughout the interview process.

      • Hiring process generally includes an introductory Talent Acquisition call, hiring manager interview, panel interview with an interview project, and offer stage; the process may vary by role.

How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available