← Все вакансии/Senior/jobgether
SeniorRemoteUS

Application Security Engineer

J
jobgether
Зарплата
$10,000–$12,100
Уровень
Senior
Формат
Remote
О роли

Описание вакансии

About the company

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Application Security Engineer based in the United States.

Responsibilities
  • Design, build, and continuously improve application security capabilities that enable secure software development at enterprise scale.
  • Develop reusable security automations, integrations, APIs, workflows, and developer tools that reduce manual effort and improve security scalability.
  • Establish secure-by-default golden paths, paved roads, reusable patterns, and engineering practices that encourage adoption of secure development methodologies.
  • Design and implement security solutions across source code, open-source dependencies, containers, cloud-native applications, CI/CD pipelines, infrastructure as code, developer platforms, and software supply chains.
  • Partner with Cloud Security and engineering teams to integrate security capabilities across application, cloud, infrastructure, and software supply chain workflows.
  • Improve vulnerability prioritization, triage, remediation, validation, reporting, and overall time to remediation.
  • Develop security patterns, guardrails, and reusable implementations that enable safe adoption of AI-assisted development tools, coding assistants, and agentic workflows.
  • Apply automation and AI-enabled techniques to improve vulnerability analysis, remediation planning, developer guidance, and security workflow efficiency.
  • Build integrations between Application Security platforms, GitHub, CI/CD systems, developer portals, ticketing platforms, reporting tools, and other engineering systems.
  • Create telemetry, dashboards, and reporting pipelines that provide actionable visibility into application risk, security coverage, and remediation progress.
  • Serve as a senior technical authority in Application Security, secure software development, software supply chain security, and secure AI development.
  • Partner with architects, platform engineers, cloud security specialists, and development teams to translate security strategy into effective technical implementations.
  • Mentor engineers and contribute to improving engineering standards, automation capabilities, and technical depth across the team.
Requirements
  • 8+ years of experience in Application Security, Security Engineering, DevSecOps, Software Engineering, or a closely related technical discipline.
  • Deep expertise in secure software development, Application Security, vulnerability management, and software supply chain security.
  • Hands-on experience building security automation, integrations, APIs, platforms, developer tooling, or comparable engineering solutions.
  • Strong software engineering and scripting capabilities using Python or similar programming languages.
  • Practical experience integrating AppSec technologies such as SAST, SCA, secrets detection, container security, CI/CD security, and vulnerability management into developer workflows.
  • Ability to solve complex and ambiguous technical problems and drive adoption through implementation, documentation, communication, and collaboration.
  • Familiarity with AI-assisted software development, agentic workflows, and their associated security considerations.
  • Experience with platforms such as Snyk, Wiz Code, GitHub Advanced Security, Checkmarx, Veracode, or comparable Application Security technologies is preferred.
  • Experience building secure developer platforms, internal engineering tools, paved roads, golden paths, or reusable security services is advantageous.
  • Knowledge spanning Application Security and Cloud Security, including cloud-native architectures, containers, Kubernetes, infrastructure as code, CI/CD security, CSPM, CNAPP, or related technologies.
  • Experience with software supply chain security, SBOM capabilities, dependency risk management, and artifact security processes is a plus.
  • Experience applying AI to vulnerability management, remediation workflows, security operations, or developer productivity is highly desirable.
  • Strong communication, collaboration, technical leadership, and mentoring abilities.
Conditions
  • Annual salary range of $120,000–$145,000, with eligibility for a bonus.
  • Fully remote work arrangement.
  • Medical, dental, and vision insurance.
  • 401(k) retirement benefits.
  • Paid leave and vacation benefits.
  • Tuition reimbursement.
  • Access to a variety of employee discounts and additional perks.
  • Opportunity to work on enterprise-scale Application Security and emerging AI security initiatives.
  • Ability to influence secure software development practices across engineering and technology teams.
  • Ongoing opportunities for technical leadership, mentoring, and professional development.
Стек и навыки

С чем работаем