L
Lumindigital3mo ago
USD 120000–140000/yr
Application Security Engineer
EngineeringSecuritySecurity EngineerApplication Security EngineerCybersecurity
2 views0 saves0 applied
Quick Summary
Overview
Job Description Basic Function The Application Security Engineer ensures robust security practices within a highly regulated SaaS environment. Collaborating closely with Product and Development teams, this role embeds security throughout the Software Development Life Cycle (SDLC), from design to…
Technical Tools
awscsharpjavascripttypescriptcode-reviewcybersecurityoauthsaas
Job Description
Basic Function
The Application Security Engineer ensures robust security practices within a highly regulated SaaS environment. Collaborating closely with Product and Development teams, this role embeds security throughout the Software Development Life Cycle (SDLC), from design to deployment and ongoing maintenance. The engineer manages automated vulnerability scanning tools, coordinates penetration tests, advises on secure architecture, and supports compliance, risk management, and incident response initiatives.
Essential Functions and Responsibilities:Monitor and analyze security alerts and vulnerability reports, prioritizing and validating vulnerabilities for timely remediation.
Maintain and optimize automated vulnerability scanning systems (SAST/DAST), ensuring comprehensive application security assessments.
Own the design, implementation, and evolution of ASPM capabilities, integrating signals from SAST, DAST, SCA to manage runtime and production telemetry and define risk scoring models that balance exploitability, data sensitivity, and business impact.
Own and operate the company’s bug bounty program end-to-end, including program strategy, scope definition, and maturity evolution, triage, validation, and severity assessment of submissions and engagement with external security researchersCoordinate and manage third-party penetration tests, bug bounty programs, and vulnerability assessments, responding effectively to findings.
Collaborate cross-functionally to perform architectural and code reviews, delivering actionable recommendations for enhanced application security.
Develop and maintain application threat models to inform proactive risk management and security posture improvements.
Assist internal teams in vulnerability remediation using industry-standard tools (e.g., Veracode, Qualys, Rapid7, Burp).Support incident response activities, enabling rapid identification, containment, and resolution of application security incidents.
Stay current on emerging security threats, vulnerabilities, and industry best practices, translating insights into practical guidance.
Provide security expertise in risk management, compliance audits, and client communications to enhance the overall security posture.
Perform other duties as assigned
Position Specifications
Education: Bachelor’s degree in Computer Science, Management Information Systems, Cybersecurity, or a related field is required, or equivalent combination of education and experience
Experience: 4 years of experience in application security engineering, software engineering, with security focused roles3 years of hands-on experience identifying and qualifying application security vulnerabilities, preferably within web, financial services, or mobile application environments required. Experience with AWS, Git, and industry-standard application vulnerability platforms required.
Knowledge, Skills, & Abilities: Proficiency analyzing application source code (e.g., TypeScript, JavaScript, C#, Java, Swift) to identify security vulnerabilities. Strong technical knowledge of security vulnerabilities and standards (OWASP Top 10, CWE, CVSS scoring).Deep familiarity with authentication and authorization protocols (e.g., SAML, OAuth 2.0, JWT).Applied knowledge of cryptographic practices, including encryption standards, hashing algorithms, and authentication lifecycle management. Excellent analytical, communication, and coordination skills, with the ability to effectively manage and communicate security remediation tasks. Ability to maintain productivity and professionalism in remote or distributed team environments. Demonstrated passion for continuous security learning and staying updated on industry threats and trends.
Travel: Minimal, generally 12 days or less per year
Location & Eligibility
Where is the job
United States
Remote within one country
Who can apply
US
Listed under
United States
Listing Details
- Posted
- February 9, 2026
- First seen
- March 26, 2026
- Last seen
- May 13, 2026
Posting Health
- Days active
- 47
- Repost count
- 0
- Trust Level
- 43%
- Scored at
- May 13, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
Salary
USD 120000–140000
per year
External application · ~5 min on Lumindigital's site
Please let Lumindigital know you found this job on Jobera.
4 other jobs at Lumindigital
View all →Explore open roles at Lumindigital.
Similar Security Engineer jobs
View all →C
ClearcapitalRemoteApplication Security Engineer
Full-TimeRemote
Senior Application Security Engineer
Remote
Application Security Engineer
Remote
Application Security Engineer
Remote
T
TrueanomalyincSenior Application Security Engineer
$150k–$205k/yr
Senior Application Security Engineer
$158k–$238k/yr
Remote
Browse Similar Jobs
DevOps & Infrastructure3.5kSecurity2.6kDevops Engineer2.2kEngineering Manager1.6kBackend Engineering1.5kData Engineering1.4kFullstack Developer1.3kBackend Developer1.1kSoftware Architect1kFrontend Engineering968Frontend Developer947Qa Engineer932Mechanical Engineer847Mobile Developer846Electrical Engineer603IT & Administration595Design Engineer500Project Engineer422Mobile Development368Automation Engineer353
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.
L
Application Security EngineerUSD 120000–140000