Top Application Security Engineer Jobs

15 Days AgoSaved
In-Office
San Francisco, CA, USA
145K-180K Annually
Senior level
145K-180K Annually
Senior level
Healthtech
Work with engineering to embed security in the SDLC: perform secure code reviews, threat modeling, vulnerability identification (SAST/DAST/SCA), validate findings, manage pen tests, coach developers on remediation, and build security awareness and training.
Top Skills: C++Ci/CdClaude CodeDastGithub CopilotPenetration TestingPythonSastScaTesting Frameworks
15 Days AgoSaved
In-Office or Remote
2 Locations
Senior level
Senior level
Information Technology • Legal Tech • Analytics
Lead embedding security into software delivery by partnering with engineering teams to improve CI/CD security, triage and remediate findings, design secure-by-default patterns, automate security validation and evidence generation, facilitate threat modeling, and provide reusable templates and guidance to reduce risk at scale.
Top Skills: Automated Security ToolingCi/CdIdentity And Access ManagementSecrets ManagementSecurity AutomationThreat Modeling
15 Days AgoSaved
In-Office or Remote
2 Locations
Senior level
Senior level
Artificial Intelligence • Healthtech • Information Technology • Other • Analytics
Embed security into software delivery by partnering with engineering teams to improve CI/CD pipeline security, triage and remediate findings, perform threat modeling, design secure-by-default patterns, build reusable templates and automation, support compliance and audit evidence, and communicate security standards and best practices.
Top Skills: Automated Security ToolingCi/CdIdentity And Access ManagementSecrets ManagementSecurity AutomationThreat Modeling
15 Days AgoSaved
Remote
2 Locations
126K-173K Annually
Senior level
126K-173K Annually
Senior level
Healthtech • Pharmaceutical • Manufacturing
Operate and enhance application security tooling, author automation (Python), run and tune authenticated/unauthenticated DAST scans for web apps/APIs, validate and triage vulnerabilities using OWASP standards, track and verify remediation, ensure compliance with HIPAA/SOC II/NIST/FedRAMP, and build reporting solutions for leadership.
Top Skills: AWSAzureDastFedrampGdprHipaaHitrustNist 800-53Owasp Top 10PostmanPythonQualysRestful ApisSoc IiSwaggerTenable
15 Days AgoSaved
Hybrid
Tysons, VA, USA
115K-145K Annually
Junior
115K-145K Annually
Junior
Software • Cybersecurity • Defense • Data Privacy
Review and secure application releases by analyzing source code, validating vulnerabilities, producing proof-of-concept exploits, threat modeling, improving DevSecOps pipelines (SAST/DAST/SCA/IaC), securing container runtimes, and producing clear remediation reports for engineers and executives.
Top Skills: AngularAnsible VaultAWSAws KmsAzureAzure DevopsAzure Key VaultBurp SuiteContainer SecurityDastEntraFalcoGithub ActionsGitlab CiGitlab Secrets ManagerIac ScanningJavaJwtKeycloakKubernetesKubesecNeuvectorOauthPostgresRest ApisSastScaSecrets DetectionSpring BootSQLTrivy
15 Days AgoSaved
In-Office
Irvine, CA, USA
97K-138K Annually
Senior level
97K-138K Annually
Senior level
Automotive • Information Technology
Maintain and enforce cloud security standards across AWS, Azure, and GCP. Ensure cloud logging is ingested into centralized SIEM, operate CSPM tools to detect and drive remediation of misconfigurations, support incident response and risk assessments, and collaborate with engineering and security teams to enforce governance and improve cloud security posture.
Top Skills: AWSAzureCentralized Log ManagementCis BenchmarkCloud Identity And Access ManagementCloud-Native Logging And Monitoring ServicesCspmGCPLaceworkPrisma CloudSIEMWiz
15 Days AgoSaved
Remote
USA
169K-220K Annually
Senior level
169K-220K Annually
Senior level
Healthtech • Software
Lead offensive application security work across the core product: hunt and remediate vulnerabilities, harden systems, safeguard PHI, scale AI-driven vulnerability discovery, mentor engineers, and partner with SRE and security teams to improve resilience and disaster recovery.
Top Skills: Ai Agents And FrameworksPenetration Testing ToolsPhi Deidentification PracticesSecurity Monitoring ToolsSre ToolingVulnerability Research Tools
15 Days AgoSaved
In-Office
6 Locations
101K-168K Annually
Senior level
101K-168K Annually
Senior level
Fintech
Lead development and maturation of the Application Security program. Maintain and integrate appsec testing platforms, review and triage scan results, produce metrics, mentor development teams, monitor CVEs, and coordinate with Audit, Governance, and Compliance to improve security posture.
Top Skills: AngularBlackduckBurp SuiteC#Ci/CdContainersCSSDastDatabasesDevsecopsHTMLIastJavaJavaScriptJfrogOwaspPostmanPrismacloudReactRest ApisSastSynopsys
15 Days AgoSaved
In-Office
2 Locations
99K-225K Annually
Mid level
99K-225K Annually
Mid level
Information Technology
Support and secure DoD enterprise architectures by designing, implementing, and administering F5 BIG-IP (LTM, APM, ASM), working in DoD IL and private clouds, configuring VMware/NSX-T micro-segmentation and SD-WAN, troubleshooting with stakeholders, and ensuring compliance with federal security standards and cryptography best practices.
Top Skills: ApmAsmCliDod Il CloudsDod StigF5 Big-Ip Virtual EditionFedrampFipsLinuxLtmMicrosoft TeamsMtlsNist 800-53Nsx-TOffice 365PkiRdpSd-WanSshTlsUnixVMware
15 Days AgoSaved
In-Office
Colorado Springs, CO, USA
99K-225K Annually
Senior level
99K-225K Annually
Senior level
Information Technology
Lead application security engineer responsible for designing and implementing Zero Trust application and network security across enterprise/DoD environments. Develop and troubleshoot network infrastructure, integrate security controls (firewalls, application delivery, micro-segmentation), improve reliability and availability, lead cross-functional teams, and ensure compliance with DoD/ federal security requirements. Requires Secret clearance.
Top Skills: A10CiscoColortokensF5FortinetIllumioJuniperNetscalerNginxPalo AltoRouting And SwitchingVersaZero Trust
15 Days AgoSaved
Hybrid
New York, NY, USA
Senior level
Senior level
Artificial Intelligence • HR Tech • Machine Learning • Natural Language Processing • Software • Conversational AI • Generative AI
Lead application security for an AI-native enterprise coaching platform: review code and architecture, threat model, perform manual pentests, build security tooling, advise DevOps on infrastructure security, support incident response and SOC processes, and handle client-facing security needs.
Top Skills: Ai ToolingAWSDevOpsIncident ResponseIso 27001Manual PentestingMdmNistNlpOwasp Top 10PythonSocSoc 2Threat ModelingTypescript
Reposted 20 Days AgoSaved
Remote
United States
100K-160K Annually
Entry level
100K-160K Annually
Entry level
Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
Perform hands-on application and system security assessments: discover and validate vulnerabilities, develop proof-of-concepts and custom tooling, conduct threat modeling and architecture reviews, and communicate clear remediation guidance to clients while contributing to security research.
Top Skills: AslrCC++CfiDepGoJavaScriptPythonRustTypescript
New

Track Smarter, Apply Better.

Ditch the spreadsheets. Organize your job search with our freeApplication Tracker.

Use For Free
Application Tracker Preview
Reposted 22 Days AgoSaved
Hybrid
Pittsburgh, PA, USA
86K-158K Annually
Mid level
86K-158K Annually
Mid level
Machine Learning • Payments • Security • Software • Financial Services
Perform application security engineering and manual code/security reviews throughout the SDLC. Triage and remediate web application vulnerabilities, validate compensating controls, support incident response, and coach engineering teams on secure coding practices.
Top Skills: .NetIastJavaOwasp Top 10
YesterdaySaved
In-Office
Irving, TX, USA
Senior level
Senior level
Fintech
Implement and improve application security tooling across the secure software development lifecycle. Integrate security testing and controls into CI/CD pipelines, administer SAST, DAST, SCA, IAST, container, API, and supply-chain security capabilities, and support vulnerability remediation, governance, compliance reporting, and security automation. Partner with engineering and architecture teams to promote secure-by-design practices, develop security standards and documentation, and govern emerging AI-assisted development workflows.
Top Skills: Ai-Assisted Development ToolsApi Security TestingCi/CdContainer SecurityDastIastInfrastructure As Code (Iac)Owasp Api Security Top 10Owasp Top 10SastScaScriptingSecurity AutomationSoftware Supply Chain SecurityWorkflow Orchestration
Reposted One Month AgoSaved
Easy Apply
In-Office
Seattle, WA, USA
Easy Apply
165K-215K Annually
Senior level
165K-215K Annually
Senior level
Artificial Intelligence • Computer Vision • Machine Learning • Payments • Real Estate • PropTech
Lead application and product security across web, mobile, API, AI/CV, and cloud-native systems. Drive secure SDLC, DevSecOps, CI/CD and supply chain security, threat modeling, tooling/automation, vulnerability remediation, and developer enablement while partnering closely with engineering teams.
Top Skills: Ai/CvAPIsCi/CdCloud-NativeDevsecopsMobile ApplicationsScriptingSecure SdlcSoftware Supply Chain SecurityWeb Applications
Reposted One Month AgoSaved
Easy Apply
Remote or Hybrid
Chicago, IL, USA
Easy Apply
210K-260K Annually
Senior level
210K-260K Annually
Senior level
Fintech • Software • Financial Services
Lead application security efforts end-to-end: own vulnerability management, API and supply chain security, integrate security into design reviews and CI/CD, develop automation and tooling (SAST/SCA/DAST/container/dependency), perform threat modeling, triage vulnerabilities, and support incident response and remediation across engineering teams.
Top Skills: Ai/LlmsApi SecurityAWSCi/CdContainer SecurityDastDependency SecurityGCPGoPythonSastSca
4 Days AgoSaved
Remote
USA
150K-200K Annually
Senior level
150K-200K Annually
Senior level
Healthtech
Designs and executes application security practices across product and platform engineering teams. Responsibilities include integrating SAST, DAST, SCA, secret, IaC, API, mobile, container, and cloud-native security into CI/CD; conducting secure design reviews, threat modeling, code reviews, and testing; building automation, guardrails, policy-as-code, release risk gates, secure coding standards, SBOM processes, and vulnerability disclosure workflows.
Top Skills: Api SecurityCheckmarxCi/CdCloud-Native SecurityContainer SecurityDastGithub Advanced SecurityIac ScanningKubernetesMobile SecurityPolicy-As-CodeSastSbomScaSecret ScanningSemgrepSnykVeracode
One Month AgoSaved
Hybrid
North Chicago, IL, USA
85K-162K Annually
Junior
85K-162K Annually
Junior
Healthtech • Pharmaceutical
Implement and maintain application security tooling (SAST/DAST/IAST/SCA/ASPM), integrate security tests into CI/CD, triage and report findings, support developers on remediation, and evangelize secure development practices across teams and cloud/container environments.
Top Skills: AspmCi/CdCloudContainerizationCspmCweDastDevsecopsEndor LabsIastJavaNode.jsOwasp Top 10PythonSastScaSnyk
One Month AgoSaved
Hybrid
Irvine, CA, USA
110K-209K Annually
Senior level
110K-209K Annually
Senior level
Healthtech • Pharmaceutical
Lead implementation and administration of application security tooling (SAST/DAST/IAST/SCA/ASPM), integrate security tests into CI/CD and cloud pipelines, triage and deduplicate findings, support developers in remediation, evangelize secure development practices, and coach junior engineers.
Top Skills: AspmAstAWSAzureCi/CdCloudFormationContainerizationCspmCweDastDevsecopsEndor LabsIastInfrastructure As Code (Iac)JavaNode.jsOwasp Top 10PythonSastScaSnykTerraform
One Month AgoSaved
Hybrid
North Chicago, IL, USA
110K-209K Annually
Senior level
110K-209K Annually
Senior level
Healthtech • Pharmaceutical
Lead implementation and administration of application security tooling (SAST/DAST/IAST/SCA/ASPM), integrate security into CI/CD and cloud workflows, triage findings, support developers on remediation, produce security reports, evangelize secure development practices, and coach junior engineers to scale DevSecOps across the organization.
Top Skills: Application Security Posture Management (Aspm)AWSAzureCi/CdCloudFormationContainerizationContinuous DeploymentContinuous IntegrationCspmCweDastDevsecopsEndor LabsIastInfrastructure As Code (Iac)JavaNode.jsOwasp Top 10PythonSastScaSnykTerraform
15 Days AgoSaved
In-Office
Austin, TX, USA
165K-201K Annually
Senior level
165K-201K Annually
Senior level
Automotive • Hardware • Other • Energy • Industrial
Serve as a technical AppSec expert to identify, validate, and reduce application security risk via SAST/DAST/SCA and manual testing, threat modeling, secure design reviews, CI/CD tool integration, remediation validation, and security enablement across development teams.
Top Skills: Azure DevopsCi/CdDastGitOwasp Top 10SastScaSecure CodingThreat Modeling
15 Days AgoSaved
Remote
Corporal, CA, USA
Senior level
Senior level
Legal Tech
Build, deploy, and maintain AppSec tooling; integrate security into SDLC; triage SAST/DAST findings; automate penetration testing; lead secure coding and threat modeling; support vulnerability detection, remediation, and incident response.
Top Skills: .NetDastJavaPenetration Testing AutomationPythonSastSecure SdlcSource Code AnalysisVulnerability Detection ToolsWeb Application Penetration Testing
15 Days AgoSaved
In-Office
Richmond, VA, USA
81K-121K Annually
Junior
81K-121K Annually
Junior
Automotive • Retail
Support and improve application security by implementing and operating SAST/DAST, API and container security solutions; triage and resolve security issues; collaborate with dev and product teams; participate in on-call rotation; drive projects to completion and integrate security into DevSecOps practices.
Top Skills: .NetApi SecurityAWSAzureAzure DevopsC#Container SecurityDastDockerGCPGitJavaScriptKubernetesPowershellPythonRuntime Threat DetectionSastSecrets ManagementTeamcity
15 Days AgoSaved
In-Office
New York, NY, USA
150K-200K Annually
Senior level
150K-200K Annually
Senior level
Healthtech
Lead AppSec across the SDLC: design and implement application security controls, perform hands-on testing of web apps/APIs/cloud services, integrate automated security tooling into CI/CD, reduce developer friction, review architecture and code, support vulnerability management and incident response, evaluate third-party risks, and ensure healthcare regulatory compliance (e.g., HIPAA, GDPR).
Top Skills: APIsAWSAzureCi/CdContainer ScanningDastDatadogEntitleFlare.IoGCPGitlabIac ScanningOktaOrcaOwasp Top 10PrismaSastSecrets DetectionSumologicTorq
15 Days AgoSaved
In-Office
Streeterville, IL, USA
94K-154K Annually
Senior level
94K-154K Annually
Senior level
Healthtech • Kids + Family • Social Impact
Implement, validate, and maintain application security controls across database, middleware, web, API, and presentation layers. Identify and remediate application-layer risks, assess internet-facing exposures, enforce auth/credentials/encryption standards, coordinate with vendors and application owners, and drive remediation using vulnerability scanning and security testing. Improve application security posture and governance across a large portfolio of commercial third‑party applications.
Top Skills: APIsCis ControlsDastDatabaseEncryptionFirewallsIamMetasploitMiddlewareOauthOwasp Top 10QualysQualys WasSastSecrets ManagementSegmentationSsoWafWeb Server
All Filters
JobType
New Jobs
Job Category
Experience
Industry
Company Name
Company Size

Sign up now Access later

Create Free Account