$160,000 – $210,000/yr

Application Security Engineer

Remotemid
EngineeringSecurity Engineer
4 views0 saves0 applied

Quick Summary

Overview

Vannevar builds AI systems for the Department of War's most consequential missions.

Technical Tools
EngineeringSecurity Engineer

Vannevar builds AI systems for the Department of War's most consequential missions. We have 125 deployments across every branch and combatant command spanning our core platform and five distinct products. An an example of how we work, when major combat operations started with Iran, we fielded a new product supporting 24/7 operations and 9,000+ users in three months.

How we build is our advantage: we deploy forward with the people who own the mission. Our engineers, product team, and CTO deploy forward to the point of friction, including visiting units in Ukraine. We focus on embedding directly with operational units supporting great power competition with China, combat operations with Iran, and counter-narcotics missions.

About the Role

~1 min read

As an Application Security Engineer, you will help build security into our SaaS platform, ensuring we can quickly ship secure features to our customers. You will partner with software, DevOps, and platform teams, while coordinating with audit partners, to embed threat modeling, automated SAST/SCA/DAST, and rapid vulnerability response into every stage of our SDLC. Your work will be pivotal in protecting customer data, meeting compliance milestones, and scaling our security posture as the company grows.

Responsibilities

~1 min read
  • →Implement and deploy enterprise standard SAST, SCA, secrets-scan, DAST, and container/IaC checks in CI/CD
  • →Embed with development teams to run threat models, review critical PRs, and coach secure-by-default habits.
  • →Drive a shift-left vulnerability detection program to identify and remediate vulnerabilities earlier in the software development lifecycle (SDLC).
  • →Coordinate with DevOps for application security issues that cross between application and infrastructure layers
  • →Support incident-response for product issues and feed lessons back into code, docs, and process.
  • 5 + years in Application / Product Security
  • Hands-on experience securing web applications and automating AppSec workflows.
  • Familiarity with DevSecOps practices and container security & patching
  • Experience with GitHub Actions, Python, TypeScript/JavaScript
  • Clear, concise communicator who can translate risk for engineers

Nice to Have

~1 min read
  • Experience securing LLM workflows
  • Experience with NIST Risk Management Framework
  • Experience with software security at a U.S. defense contractor
  • Active Security Clearance (or ability to obtain one) and willingness to travel onsite

What We Offer

~1 min read
✓Health, dental, and vision insurance
✓100% remote - work from anywhere in the US
✓401k matching
✓Mental benefits
✓Flexible work environment - you manage your workday
✓Pet and child care reimbursement during travel
✓Unlimited PTO

Location & Eligibility

Where is the job
Worldwide
Fully remote, anywhere in the world
Who can apply
Open to applicants worldwide

Listing Details

Posted
September 1, 2026
First seen
September 1, 2026
Last seen
October 4, 2026

Posting Health

Days active
32
Repost count
0
Trust Level
43%
Scored at
October 4, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Application Security Engineer$160k–$210k