Top Application Security Engineer Jobs

5 Days AgoSaved
Hybrid
Boston, MA, USA
96K-120K Annually
Junior
96K-120K Annually
Junior
Consumer Web • eCommerce • Software
Supports application security through threat modeling, risk assessments, vulnerability triage and remediation, security scanning, developer training, investigations, and implementation of security controls. Partners with development and senior security teams to protect cloud-first infrastructure using AWS, Kubernetes, and related technologies while developing secure coding and SDLC expertise.
Top Skills: AIAWSCi/CdContainersGitGoInfrastructure As CodeJavaKubernetesMlPython
8 Days AgoSaved
Remote or Hybrid
US
172K-240K Annually
Expert/Leader
172K-240K Annually
Expert/Leader
Information Technology
Leads enterprise application security through secure code reviews, threat modeling, architecture assessments, CI/CD security controls, secure coding standards, API protections, WAF tuning, and software supply chain security. Partners with engineering, DevOps, platform, and SRE teams to remediate risks, automate controls, secure AI-enabled applications, and improve organization-wide security practices. Serves as a principal technical advisor and mentor while defining scalable guardrails, playbooks, metrics, and reference architectures.
Top Skills: AkamaiApi Security TestingAWSAzureC#Ci/CdContainer SecurityDastGCPGoInfrastructure As Code (Iac) ScanningJavaJavaScriptPolicy-As-CodePythonSastSbomScaSoftware Supply Chain SecurityTerraformTypescriptWeb Application Firewall (Waf)
11 Days AgoSaved
Easy Apply
Remote or Hybrid
United States
Easy Apply
140K-180K Annually
Senior level
140K-180K Annually
Senior level
AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Lead application security engineering across the SDLC using AI-assisted threat modeling, automated security testing, vulnerability prioritization, and secure-by-default controls. Partner with Engineering, Product, QA, DevOps, and AI platform teams to secure applications, APIs, cloud infrastructure, data, and AI/ML systems. Build security automation, CI/CD controls, policy-as-code guardrails, developer enablement, and proactive defenses against emerging threats such as prompt injection and data poisoning.
Top Skills: AIAi/MlAWSAzureBurp SuiteCi/CdContainer ScanningDastDjangoDockerFastapiGCPGithub Advanced SecurityIac ScanningInfrastructure-As-CodeJwtKubernetesNode.jsOauth2OidcOwasp ZapPolicy-As-CodeReactSastScaSemgrepSnykSonarqubeTrivy
11 Days AgoSaved
Easy Apply
Hybrid
San Francisco, CA, USA
Easy Apply
140K-180K Annually
Senior level
140K-180K Annually
Senior level
AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Leads application security engineering across the SDLC by applying AI-assisted threat modeling, security validation, vulnerability management, and automated controls. Integrates security testing into CI/CD pipelines, develops secure-by-default patterns and policy-as-code guardrails, monitors application, cloud, API, data, and AI/ML threats, and guides remediation. Partners with Engineering, Product, QA, DevOps, and AI platform teams to improve security maturity, developer enablement, and proactive defense.
Top Skills: AIAi/MlAWSAzureBurp SuiteCi/CdDastDjangoDockerFastapiGCPGithub Advanced SecurityInfrastructure As CodeJwtKubernetesNode.jsOauth2OidcOwasp Top 10Owasp ZapPolicy As CodeReactSans Cwe Top 25SastScaSemgrepSnykSonarqubeTrivy
11 Days AgoSaved
Easy Apply
Remote or Hybrid
9 Locations
Easy Apply
244K-305K Annually
Entry level
244K-305K Annually
Entry level
Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Sets application security direction and standards across engineering teams. Builds scalable security tooling, automation, and observability; leads threat modeling, risk assessments, code reviews, and multi-team remediation. Develops strategies for AI-powered systems and agentic development risks, API security, and software supply chain security. Partners with engineering and security teams, prioritizes investments, communicates risk to leadership, and mentors AppSec engineers.
Top Skills: Api SecurityDastDatadog ApmDatadog DashboardsDatadog LogsDatadog Service CatalogGoOwasp Top 10PythonRustSast
Reposted 11 Days AgoSaved
Remote or Hybrid
Post Falls, Idaho, USA
175K-175K Annually
Mid level
175K-175K Annually
Mid level
eCommerce • Legal Tech • Professional Services • Software • Data Privacy
The Security Engineer role involves identifying vulnerabilities, automating tasks in penetration testing, and creating security reports for various audiences.
Top Skills: Ruby On RailsVue
Reposted 16 Days AgoSaved
Hybrid
Miami, FL, USA
Senior level
Senior level
eCommerce • Fintech • Real Estate • Software • PropTech
Owner of application-layer security across consumer flows, GraphQL APIs, and AI-driven tooling. Build and operate AppSec tooling and triage, run threat modeling and security reviews, lead HackerOne and offensive testing, automate vulnerability triage and remediation with AI agents, and partner with engineering to harden authentication, authorization, and container/cloud security.
Top Skills: Agent FrameworksApollo GraphqlAWSAzureBurp SuiteClaudeCloudflare WafCodeqlDependabotGCPGithub Advanced SecurityGoGraphQLGrpcHackeroneKubernetesMcpOpenaiPythonRestRubySemgrepTerraformTypescript
17 Days AgoSaved
Remote or Hybrid
New York, NY, USA
120K-145K Annually
Senior level
120K-145K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Build and scale enterprise application security capabilities: design automations, integrations, developer tooling, golden paths, and secure AI guardrails. Secure code, dependencies, containers, IaC, CI/CD, and software supply chains; improve vulnerability triage, remediation, telemetry, and platform integrations while mentoring engineers and partnering with cloud and platform teams.
Top Skills: APIsCheckmarxCi/CdCi/Cd SystemsCnappContainer SecurityContainersCspmGitGithub Advanced SecurityInfrastructure As CodeKubernetesPythonSastSbomScaSecrets DetectionSnykVeracodeWiz Code
Reposted 23 Days AgoSaved
Easy Apply
Remote or Hybrid
USA
Easy Apply
100K-140K Annually
Mid level
100K-140K Annually
Mid level
Healthtech • Information Technology • Software • Telehealth
Partner with engineering, compliance, and security teams to embed application security into the SDLC: triage static/SCA alerts, advise on OWASP Top 10 remediation, maintain developer playbooks and training, track security metrics and evidence for audits, and help shape AI governance and GenAI-safe workflows.
Top Skills: AWSAzureGCPGenerative AiGitGoJavaJavaScriptOwasp Top 10PythonSoftware Composition Analysis ToolsStatic Analysis Tools
24 Days AgoSaved
Easy Apply
Remote or Hybrid
United States
Easy Apply
140K-165K Annually
Senior level
140K-165K Annually
Senior level
Fintech • Financial Services
Own and evolve the application security program: embed secure SDLC practices, partner with engineering on design and code reviews, manage AppSec tooling (SAST/DAST/ASM/WAF/mobile), harden AWS deployments, integrate security into CI/CD, and lead vulnerability investigation and remediation efforts.
Top Skills: AppdomeAsmAWSCi/Cd PipelinesCloudflare WafCryptographic Key ManagementDastEcsGithub Advanced SecurityGoHadrianIamInvictiMobile Application Security ToolsPythonReact NativeRuby On RailsSastScaSecret ScanningSsl Certificates
3 Hours AgoSaved
In-Office
Farmington Hills, MI, USA
85K-105K Annually
Senior level
85K-105K Annually
Senior level
Artificial Intelligence • Information Technology • Software • Consulting
Embed security throughout the software development lifecycle by partnering with engineering teams, designing secure systems, conducting code reviews, identifying vulnerabilities, and reducing application risk. The role requires expertise in OWASP vulnerabilities, SAST, DAST, SCA, CI/CD security tooling, cloud security, authentication, authorization, cryptography, and security automation. Responsibilities also include communicating with technical and non-technical stakeholders and supporting secure software delivery in an Agile environment.
Top Skills: AgileCi/CdCloud SecurityDastOwasp Top 10SastSca
Reposted 29 Days AgoSaved
Easy Apply
Remote
2 Locations
Easy Apply
218K-273K Annually
Senior level
218K-273K Annually
Senior level
Artificial Intelligence • Enterprise Web • Information Technology • Productivity • Sales • Software • Database
Lead AppSec efforts across product, platform, and AI features by owning secure SDLC, performing threat modeling and deep code reviews, driving vulnerability management and remediation, building AppSec tooling and automations (including AI-assisted workflows), and enabling engineering teams with secure design guidance and training.
Top Skills: AIAi ApisBug BountyCryptographyCsrfDeserializationGCPLinuxOauthPentestingPythonRubySastScaSsrf
New

Track Smarter, Apply Better.

Ditch the spreadsheets. Organize your job search with our freeApplication Tracker.

Use For Free
Application Tracker Preview
Reposted 7 Days AgoSaved
In-Office
Atlanta, GA, USA
69K-101K Annually
Junior
69K-101K Annually
Junior
Food • Greentech • Logistics • Sharing Economy • Transportation • Agriculture • Industrial
Responsible for maintaining and implementing SAP software applications, managing security configurations, and providing application support and testing.
Top Skills: FioriHana DbS4HanaSAPSap BobjSap Btp
3 Days AgoSaved
In-Office
New York, NY, USA
75K-135K Annually
Senior level
75K-135K Annually
Senior level
Agency
Lead application security assessments across New York City agencies by operating SAST, DAST, and SCA platforms, validating vulnerabilities through manual testing and exploit reproduction, providing remediation and secure coding guidance, identifying systemic weaknesses, mentoring assessment staff, and producing technical and executive security reports.
Top Skills: DastSastSca
Reposted One Month AgoSaved
Hybrid
Chicago, IL, USA
130K-180K Annually
Senior level
130K-180K Annually
Senior level
Artificial Intelligence • Big Data • Healthtech • Machine Learning • Analytics • Biotech • Generative AI
Lead penetration testing and vulnerability remediation for web, mobile, and medical device applications, ensuring compliance with healthcare regulations.
Top Skills: AWSAzureBurp SuiteGCPJavaScriptMetasploitNmapPythonSnykTypescript
3 Days AgoSaved
In-Office
Boca Raton, FL, USA
Senior level
Senior level
Software
Architect and build automated application security layers across the SDLC for a large financial services program. Integrate and tune SAST, DAST, and SCA tools within enterprise CI/CD pipelines, develop AI-enabled secure code scanning and hardened baselines, automate secure coding patterns and runbooks, and provide code-level remediation guidance for Java and Python applications.
Top Skills: Ai AgentsCi/CdDastDevsecopsJavaLlmsPythonSastSca
9 Days AgoSaved
Remote or Hybrid
4 Locations
182K-288K Annually
Senior level
182K-288K Annually
Senior level
Healthtech • Social Impact • Software
Build and advance application and product security across the engineering organization. Responsibilities include establishing secure defaults, CI guardrails, security requirements, threat modeling, risk assessments, penetration testing, vulnerability remediation, secure coding education, roadmap ownership, and hands-on code review. The role partners closely with product, engineering, DevOps, and services teams to secure applications, microservices, and AI features while enabling efficient development.
Top Skills: Ci/CdDastMicroservicesPenetration TestingSastSbomThreat Modeling
Reposted 4 Days AgoSaved
In-Office
2 Locations
87K-198K Annually
Senior level
87K-198K Annually
Senior level
Information Technology
Lead integration of security across the SDLC: implement and assess Secure SDLC and app/product security programs, perform architecture reviews, threat modeling, and security assessments, advise on software supply chain and tooling (SAST/DAST/SCA/IaC), mentor team members, and translate technical risks into executive briefings and actionable roadmaps.
Top Skills: AgileApi SecurityAPIsArtifact IntegrityAuthenticationAuthorizationCloud-NativeCode SigningContainer SecurityContainersCryptographyDastDependency ManagementDevsecopsIac ScanningIec 62443Iso 27001KubernetesMicroservicesMitre Att&CkNist CsfNist SsdfOwasp SammSastSbomsScaScrumSecrets DetectionSecure Build PipelinesServerlessSoftware Composition AnalysisVulnerability Management
Reposted 9 Days AgoSaved
Remote
United States
100K-200K Annually
Mid level
100K-200K Annually
Mid level
Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
As a Security Engineer, you will conduct security assessments, develop security tools, perform architecture reviews, and collaborate on advanced security research.
Top Skills: CC++GoJavaScriptKotlinObjective-CPythonRubyRustSwiftTypescript
4 Days AgoSaved
In-Office
Framingham, MA, USA
100K-160K Annually
Expert/Leader
100K-160K Annually
Expert/Leader
Artificial Intelligence • Information Technology • Software • Consulting
Embed security throughout the software development lifecycle through threat modeling, architecture reviews, code reviews, vulnerability management, security tooling, red-team exercises, runtime protections, secure authentication and cryptography, cloud and container hardening, incident response, training, and technical documentation. The role partners closely with engineering teams to deliver secure software and reduce application risk.
Top Skills: Ci/CdCloud SecurityCryptographyDastIastKubernetesOwasp Top 10RaspSastScaWaf
5 Days AgoSaved
In-Office
9 Locations
87K-198K Annually
Mid level
87K-198K Annually
Mid level
Information Technology
Designs, implements, and administers F5 BIG-IP and proxy-based security solutions within DoD enterprise and cloud architectures. Troubleshoots TLS and mutual TLS, supports AWS cloud environments, and works with DoD clients and stakeholders on enterprise architecture issues. Applies knowledge of cryptography, PKI, hashing, networking, federal compliance standards, and Linux or UNIX systems. Requires Secret clearance and at least a high school diploma or GED.
Top Skills: AWSCliCryptographyDod StigF5 Big-IpFedrampFipsForward Web ProxyHashing AlgorithmsLinuxMicrosoft TeamsMutual TlsNetworking ProtocolsNist 800-53Office 365PkiRdpReverse Web ProxySshTlsUnix
5 Days AgoSaved
In-Office
9 Locations
87K-198K Annually
Mid level
87K-198K Annually
Mid level
Information Technology
Designs, implements, administers, and troubleshoots F5 BIG-IP and inline break-and-inspect proxy solutions within DoD enterprise and cloud architectures. Configures TLS and mutual TLS, applies cryptographic and PKI standards, resolves issues with DoD stakeholders, and supports secure modernization of legacy and new applications. The role requires a Secret clearance and familiarity with federal compliance standards, Linux or UNIX, networking, and cloud environments.
Top Skills: CliCloud ComputingCryptographyDod StigF5 Big-IpFedrampFipsForward Web ProxyHashing AlgorithmsLinuxMicrosoft TeamsMutual TlsNetworking ProtocolsNist 800-53Office 365Public Key Infrastructure (Pki)RdpReverse Web ProxySshTlsUnix
5 Days AgoSaved
In-Office
9 Locations
87K-198K Annually
Mid level
87K-198K Annually
Mid level
Information Technology
Designs, implements, and administers F5 BIG-IP and proxy-based break-and-inspect solutions within DoD enterprise and cloud architectures. Troubleshoots TLS and mutual TLS configurations, supports AWS and hybrid cloud environments, and resolves architecture issues with DoD clients and stakeholders. Applies knowledge of cryptography, PKI, federal compliance standards, Linux or UNIX systems, and networking protocols while supporting national security missions.
Top Skills: AWSCliCryptographyDod StigEnterprise Cloud ArchitectureF5 Big-IpFedrampFipsForward Web ProxyHashing AlgorithmsLinuxMicrosoft Office 365Microsoft TeamsMutual Tls (Mtls)Networking ProtocolsNist 800-53Public Key Infrastructure (Pki)RdpReverse Web ProxySshTlsUnix
5 Days AgoSaved
In-Office
New York, NY, USA
144K-288K Annually
Expert/Leader
144K-288K Annually
Expert/Leader
Fitness • Healthtech • Retail • Pharmaceutical
Leads application and data security engineering across cloud, on-premises, and colocation environments. Develops security policies, standards, testing, vulnerability analysis, WAF and Layer 7 protections, and secure software development practices. Supports incident response and on-call operations, researches emerging threats, mentors engineers, and contributes to security strategy, risk assessments, compliance, and roadmap planning.
Top Skills: AWSAzureCC#C++CcpaCsaDockerGCPGdprHipaaHitrustInfrastructure-As-CodeJavaJavaScriptKubernetesNistPciPowershellPythonSecurity-As-CodeShell ScriptSnowflakeSoftware-Defined Networking (Sdn)Web Application Firewall (Waf)
12 Days AgoSaved
Remote
United States
120K-140K Annually
Mid level
120K-140K Annually
Mid level
Computer Vision • Digital Media • Kids + Family • Mobile • Software • Sports
Operate application security across the SDLC, including secure design, code reviews, threat modeling, API security, DevSecOps tooling, CI/CD security gates, cloud and container security, vulnerability management, and risk communication. Partner with engineering teams on secure coding standards, AWS, Kubernetes, Terraform, mobile ecosystems, and responsible AI integration. Participate in an on-call rotation and develop scalable security platforms, paved roads, documentation, and developer training.
Top Skills: Ai/MlAndroidAWSBugcrowdCdnCi/CdGithub ActionsGithub Advanced Security (Ghas)GraphQLInfrastructure As Code (Iac)iOSKotlinKubernetesNowsecureOwasp Top 10RestSwiftTerraformTypescriptWeb Application Firewall (Waf)Wiz
All Filters
JobType
New Jobs
Job Category
Experience
Industry
Company Name
Company Size

Sign up now Access later

Create Free Account