Top Application Security Engineer Jobs

10 Days AgoSaved
Easy Apply
Remote or Hybrid
United States
Easy Apply
165K-295K Annually
Expert/Leader
165K-295K Annually
Expert/Leader
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Leads Samsara’s application security and vulnerability management programs across cloud, firmware, IoT, and corporate systems. Responsibilities include setting technical strategy, reducing remediation time, developing automation, guiding engineering teams, mentoring security engineers, assessing high-profile vulnerabilities, supporting incident investigations, and participating in on-call response. The role requires extensive security experience, programming proficiency, AWS expertise, vulnerability management knowledge, and practical use of AI/LLM tooling.
Top Skills: Ai/Llm ToolingAWSAws LambdaC/C++Ci/CdCvssDastEpssFedrampGoJavaScriptPythonSastScaSemgrepTinesWiz
Reposted 10 Days AgoSaved
Hybrid
Seattle, WA, USA
146K-234K Annually
Senior level
146K-234K Annually
Senior level
AdTech • eCommerce • Information Technology • Software • Travel • Generative AI
Embed security across the SDLC by integrating and automating SAST/DAST/SCA and supply-chain protections, operating and tuning vulnerability management tooling, conducting threat modeling and security/code reviews, partnering with engineering and product teams to remediate risks, and safely applying AI/ML to improve security automation and triage.
Top Skills: Ai/MlAttestationCi/CdDastDependency ScanningGhasGithub ActionsJavaJenkinsOx SecurityPythonQualysSastSbomScaSigningSpinnakerVulnerability Management PlatformsWiz
11 Days AgoSaved
Remote or Hybrid
Santa Clara, CA, USA
176K-308K Annually
Senior level
176K-308K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Secure ServiceNow instances by assessing configurations against security baselines, identifying misconfigurations, validating customer-reported findings, and providing actionable remediation guidance. The role develops hardening guidance, distinguishes product vulnerabilities from configuration issues, partners with Product Security and Engineering, supports customer escalations, and drives scalable improvements to security tooling, detection, and risk-reduction processes.
Top Skills: Ai-Powered ToolsApplication SecuritySaas Security Posture ManagementServicenowServicenow Platform
Reposted 12 Days AgoSaved
Remote or Hybrid
4 Locations
214K-245K Annually
Senior level
214K-245K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Mobile • Payments • Retail • Software
Drive application security by running SAST/SCA, threat modeling, vulnerability management, and remediation. Advise on secure architecture, train engineers, support pentests/bug bounties, and administer AWS Control Tower and IAM. Innovate with AI to improve AppSec tooling and practices.
Top Skills: Aws Control TowerAws LambdaChatgptDynamoDBGithub ActionsGithub Advanced SecurityGithub CopilotIamPythonS3SastScaSnowflakeSnsSQLSqsTerraformVpc
13 Days AgoSaved
Remote
United States
145K-183K Annually
Senior level
145K-183K Annually
Senior level
Fintech • Financial Services
Conduct manual penetration tests and secure code reviews across web applications, APIs, AWS infrastructure, and AI systems. Develop AI-assisted security tooling, test LLM applications and agents, triage SAST findings, tune detection rules, support security reviews before production, and communicate risks and remediation priorities to engineering teams.
Top Skills: Ai AgentsAPIsAWSGoLlmsPythonRubySastSecure SdlcTypescript
13 Days AgoSaved
Remote
USA
160K-210K Annually
Senior level
160K-210K Annually
Senior level
Artificial Intelligence • Machine Learning • Software • Defense
Build and scale application security for a SaaS platform by integrating SAST, SCA, DAST, secrets scanning, and container/IaC checks into CI/CD. Partner with engineering and DevOps teams on threat modeling, secure code reviews, vulnerability remediation, incident response, and secure development practices. The role also supports compliance goals and translates security risks clearly to engineers.
Top Skills: Ci/CdContainer SecurityDastDevsecopsGithub ActionsInfrastructure As Code (Iac)JavaScriptLlm WorkflowsNist Risk Management FrameworkPythonSastScaSecrets ScanningTypescript
13 Days AgoSaved
Easy Apply
Hybrid
Austin, TX, USA
Easy Apply
Senior level
Senior level
Artificial Intelligence • Cloud • Security • Software
Partner with product, platform, and infrastructure teams to embed security into products and AWS cloud architecture. Conduct application security assessments, code reviews, threat modeling, penetration tests, red-team exercises, and vulnerability remediation. Assess AI and agentic AI capabilities, investigate security findings and customer concerns, support incident response, monitor threat intelligence, and automate security processes. Occasional on-call participation may be required.
Top Skills: AIAWSAzureGCPGoogle WorkspaceStride
19 Days AgoSaved
Hybrid
Boston, MA, USA
96K-120K Annually
Junior
96K-120K Annually
Junior
Consumer Web • eCommerce • Software
Supports application security through threat modeling, risk assessments, vulnerability triage and remediation, security scanning, developer training, investigations, and implementation of security controls. Partners with development and senior security teams to protect cloud-first infrastructure using AWS, Kubernetes, and related technologies while developing secure coding and SDLC expertise.
Top Skills: AIAWSCi/CdContainersGitGoInfrastructure As CodeJavaKubernetesMlPython
25 Days AgoSaved
Easy Apply
Remote or Hybrid
United States
Easy Apply
140K-180K Annually
Senior level
140K-180K Annually
Senior level
AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Lead application security engineering across the SDLC using AI-assisted threat modeling, automated security testing, vulnerability prioritization, and secure-by-default controls. Partner with Engineering, Product, QA, DevOps, and AI platform teams to secure applications, APIs, cloud infrastructure, data, and AI/ML systems. Build security automation, CI/CD controls, policy-as-code guardrails, developer enablement, and proactive defenses against emerging threats such as prompt injection and data poisoning.
Top Skills: AIAi/MlAWSAzureBurp SuiteCi/CdContainer ScanningDastDjangoDockerFastapiGCPGithub Advanced SecurityIac ScanningInfrastructure-As-CodeJwtKubernetesNode.jsOauth2OidcOwasp ZapPolicy-As-CodeReactSastScaSemgrepSnykSonarqubeTrivy
25 Days AgoSaved
Easy Apply
Hybrid
San Francisco, CA, USA
Easy Apply
140K-180K Annually
Senior level
140K-180K Annually
Senior level
AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Leads application security engineering across the SDLC by applying AI-assisted threat modeling, security validation, vulnerability management, and automated controls. Integrates security testing into CI/CD pipelines, develops secure-by-default patterns and policy-as-code guardrails, monitors application, cloud, API, data, and AI/ML threats, and guides remediation. Partners with Engineering, Product, QA, DevOps, and AI platform teams to improve security maturity, developer enablement, and proactive defense.
Top Skills: AIAi/MlAWSAzureBurp SuiteCi/CdDastDjangoDockerFastapiGCPGithub Advanced SecurityInfrastructure As CodeJwtKubernetesNode.jsOauth2OidcOwasp Top 10Owasp ZapPolicy As CodeReactSans Cwe Top 25SastScaSemgrepSnykSonarqubeTrivy
25 Days AgoSaved
Easy Apply
Remote or Hybrid
9 Locations
Easy Apply
244K-305K Annually
Entry level
244K-305K Annually
Entry level
Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Sets application security direction and standards across engineering teams. Builds scalable security tooling, automation, and observability; leads threat modeling, risk assessments, code reviews, and multi-team remediation. Develops strategies for AI-powered systems and agentic development risks, API security, and software supply chain security. Partners with engineering and security teams, prioritizes investments, communicates risk to leadership, and mentors AppSec engineers.
Top Skills: Api SecurityDastDatadog ApmDatadog DashboardsDatadog LogsDatadog Service CatalogGoOwasp Top 10PythonRustSast
Reposted 25 Days AgoSaved
Remote or Hybrid
Post Falls, Idaho, USA
175K-175K Annually
Mid level
175K-175K Annually
Mid level
eCommerce • Legal Tech • Professional Services • Software • Data Privacy
The Security Engineer role involves identifying vulnerabilities, automating tasks in penetration testing, and creating security reports for various audiences.
Top Skills: Ruby On RailsVue
New

Cut your apply time in half.

Use ourAI Assistantto automatically fill your job applications.

Use For Free
Application Tracker Preview
3 Days AgoSaved
Hybrid
Chandler, AZ, USA
87K-168K Annually
Junior
87K-168K Annually
Junior
Fintech • Financial Services
Conduct web, mobile, and API penetration testing using manual techniques and automated DAST tools. Configure scanners, analyze and validate findings, triage false positives, and produce technical reports. Collaborate with development and security teams on remediation, improve testing methodologies, and conduct peer reviews. Apply AI-enhanced security tools while accounting for model limitations, security risks, privacy, compliance, and ethical standards.
Top Skills: Ai-Enhanced Security ScannersBurp SuiteDastFiddlerGdprIbm AppscanInvictiOwasp Top 10Pci DssPythonShellWebinspect
3 Days AgoSaved
Hybrid
Irving, TX, USA
87K-168K Annually
Junior
87K-168K Annually
Junior
Fintech • Financial Services
Conduct penetration testing of web, mobile, and API applications using manual techniques and automated or AI-enhanced tools. Configure scanners, analyze and validate findings, triage false positives, document vulnerabilities, and collaborate with development and security teams on remediation. Improve testing methodologies, perform peer reviews, communicate with stakeholders, and ensure AI-assisted security work addresses compliance, privacy, ethical, and operational risks.
Top Skills: Ai-Enhanced Security ScannersAppscanBurp SuiteDynamic Application Security Testing (Dast)FiddlerGdprInvictiOwasp Top 10Pci DssPythonShellWeb TechnologiesWebinspect
3 Days AgoSaved
Hybrid
Charlotte, NC, USA
87K-168K Annually
Junior
87K-168K Annually
Junior
Fintech • Financial Services
Conduct penetration testing of web, mobile, and API applications using manual techniques and automated DAST tools. Configure scanners, analyze and validate findings, triage false positives, document vulnerabilities, and collaborate with development and security teams on remediation. Apply AI-enhanced security tools responsibly while accounting for model limitations, privacy, compliance, and ethical considerations. Contribute to testing methodology improvements, peer reviews, stakeholder communication, and knowledge sharing.
Top Skills: Ai-Enhanced Security ScannersAPIsAppscanBurp SuiteDastFiddlerInvictiMobile ApplicationsPythonShell ScriptingWeb ApplicationsWebinspect
3 Days AgoSaved
Hybrid
San Francisco, CA, USA
87K-168K Annually
Junior
87K-168K Annually
Junior
Fintech • Financial Services
Conduct penetration testing of web, mobile, and API applications using manual techniques and automated DAST tools. Analyze and validate vulnerabilities, triage false positives, produce technical reports, and collaborate with development and security teams on remediation. Configure scanners, apply AI-assisted security analysis responsibly, improve testing methodologies, and communicate findings to stakeholders while maintaining compliance with security, privacy, and ethical standards.
Top Skills: Ai-Enhanced Security ScannersAPIsAppscanBurp SuiteDynamic Application Security Testing (Dast)FiddlerGdprInvictiMobile ApplicationsOwasp Top 10Pci DssPythonShellWeb ApplicationsWebinspect
Reposted One Month AgoSaved
Hybrid
Miami, FL, USA
Senior level
Senior level
eCommerce • Fintech • Real Estate • Software • PropTech
Owner of application-layer security across consumer flows, GraphQL APIs, and AI-driven tooling. Build and operate AppSec tooling and triage, run threat modeling and security reviews, lead HackerOne and offensive testing, automate vulnerability triage and remediation with AI agents, and partner with engineering to harden authentication, authorization, and container/cloud security.
Top Skills: Agent FrameworksApollo GraphqlAWSAzureBurp SuiteClaudeCloudflare WafCodeqlDependabotGCPGithub Advanced SecurityGoGraphQLGrpcHackeroneKubernetesMcpOpenaiPythonRestRubySemgrepTerraformTypescript
3 Days AgoSaved
Remote
United States
112K-140K Annually
Senior level
112K-140K Annually
Senior level
Software
Own and implement application security across the software development lifecycle for multiple product lines. Define security controls, validation gates, standards, and guardrails; conduct architecture reviews; enhance CI/CD security; triage SAST, SCA, and penetration-testing findings; support incident response; maintain FedRAMP and CJIS compliance; and represent security practices in audits and customer engagements.
Top Skills: Aws CodepipelineAws GovcloudAws LambdaAzure GovernmentGitlab CiJavaJenkinsNexusPastaSastSbomScaSonarqubeStrideTenableTypescript
One Month AgoSaved
Remote or Hybrid
New York, NY, USA
120K-145K Annually
Senior level
120K-145K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Build and scale enterprise application security capabilities: design automations, integrations, developer tooling, golden paths, and secure AI guardrails. Secure code, dependencies, containers, IaC, CI/CD, and software supply chains; improve vulnerability triage, remediation, telemetry, and platform integrations while mentoring engineers and partnering with cloud and platform teams.
Top Skills: APIsCheckmarxCi/CdCi/Cd SystemsCnappContainer SecurityContainersCspmGitGithub Advanced SecurityInfrastructure As CodeKubernetesPythonSastSbomScaSecrets DetectionSnykVeracodeWiz Code
5 Days AgoSaved
Remote
United States
Senior level
Senior level
Artificial Intelligence • Cloud • Information Technology • Cybersecurity
Performs application security assessments, secure code reviews, API and CMS security testing, threat modeling, vulnerability analysis, and remediation validation. Integrates SAST, DAST, dependency scanning, secrets management, and security controls into CI/CD pipelines. Advises developers and architects on secure coding, authentication, encryption, and DevSecOps practices while supporting monitoring and incident triage. Requires an active Top Secret clearance, technical bachelor’s degree, seven years of relevant experience, and Security+, CISSP, or CCSP certification.
Top Skills: APIsAWSCertificate ManagementCi/CdCmsDastDevsecopsEncryptionIamKubernetesOwasp Top 10SastSoftware Composition AnalysisSsoToken-Based Authentication
5 Days AgoSaved
In-Office
Glastonbury, CT, USA
100K-160K Annually
Expert/Leader
100K-160K Annually
Expert/Leader
Artificial Intelligence • Information Technology • Software • Consulting
The Application Security Engineer embeds security throughout the software development lifecycle. Responsibilities include threat modeling, security architecture reviews, manual code reviews, security tooling across CI/CD pipelines, vulnerability management, red-team exercises, runtime protection, authentication and cryptographic controls, cloud and Kubernetes hardening, security training, incident response, and technical documentation. The role partners closely with engineering teams to reduce application risk and improve secure development practices.
Top Skills: Bot ProtectionCi/CdCloud SecurityCryptographyDastIastKubernetesOwasp Top 10RaspSastScaSecret ScanningThreat ModelingWaf
5 Days AgoSaved
Remote
United States
Mid level
Mid level
Biotech
Build and mature the application security program across the SDLC. Manage SAST, DAST, SCA, and IAST tooling; conduct penetration tests and vulnerability assessments; drive remediation; and embed Secure by Design practices. Partner with engineering on threat modeling, secure coding, architecture reviews, and CI/CD integration. Support HIPAA, NIST, and GDPR compliance through audits, reporting, documentation, policies, and cross-functional risk reduction initiatives.
Top Skills: Burp SuiteC#/.NetCi/Cd PipelinesDastIastJavaJavaScriptOauthOpenid ConnectOwasp Top 10PythonSAMLSastScaSonarqube
6 Days AgoSaved
In-Office or Remote
Boston, MA, USA
143K-243K Annually
Mid level
143K-243K Annually
Mid level
Healthtech • Information Technology • Telehealth
Lead application security strategy and DevSecOps implementation across engineering teams. Own application security capabilities, including SAST, SCA, DAST, API security testing, vulnerability management, and CI/CD controls. Lead API security discovery, testing, onboarding, findings routing, and operational readiness. Partner with product, engineering, DevOps, infrastructure, IAM, and enterprise security teams to identify architectural weaknesses, improve SDLC adoption, automate abuse-case coverage, and operate hardened platforms.
Top Skills: Api GatewayApi Security TestingCi/CdCloud PlatformsContainersDastDockerIamInfrastructure As CodeJSONJwtOauth 2.0Openid ConnectRestSAMLSastScaSecrets ManagementService BusTerraform
6 Days AgoSaved
In-Office
Farmington Hills, MI, USA
85K-105K Annually
Senior level
85K-105K Annually
Senior level
Artificial Intelligence • Information Technology • Software • Consulting
Embed security throughout the software development lifecycle by partnering with engineering teams, designing secure systems, conducting code reviews, identifying vulnerabilities, integrating security tooling, and reducing application risk. The role requires hands-on offensive and defensive security expertise, cloud security knowledge, programming ability, and strong communication skills. Preferred experience includes security certifications, red-team operations, bug bounties, public CVEs, AI/LLM security, and regulated industries.
Top Skills: AuthenticationAuthorizationCi/CdCloud SecurityCryptographyDastOwasp Top 10SastSca
Reposted One Month AgoSaved
Easy Apply
Remote or Hybrid
USA
Easy Apply
100K-140K Annually
Mid level
100K-140K Annually
Mid level
Healthtech • Information Technology • Software • Telehealth
Partner with engineering, compliance, and security teams to embed application security into the SDLC: triage static/SCA alerts, advise on OWASP Top 10 remediation, maintain developer playbooks and training, track security metrics and evidence for audits, and help shape AI governance and GenAI-safe workflows.
Top Skills: AWSAzureGCPGenerative AiGitGoJavaJavaScriptOwasp Top 10PythonSoftware Composition Analysis ToolsStatic Analysis Tools
All Filters
JobType
New Jobs
Job Category
Experience
Industry
Company Name
Company Size

Sign up now Access later

Create Free Account