Application Security Engineer
$100k - $150kBright Vision Technologies
Application Security Engineer
Job Title: Application Security EngineerSalary Range: 100k$/Annum-150k$/Annum
Location: 100% Remote (Continental United States)
Position Type: In-house Bright Vision Technologies SOW engagement (no third-party client or vendor)
Experience: 5+ years
Sponsorship: No new H1B sponsorship available. H1B transfers welcomed for qualified candidates.
Employment Type: Full-time, direct W2 with Bright Vision Technologies (no C2C, no 1099, no third-party)
Engagement: Long-term, multi-year, aligned to the Bright Vision SOW delivery roadmap
Compensation: Competitive base salary commensurate with experience, plus benefits.
Employment Terms & Visa Policy
This is a 100% remote, full-time, direct W2 position with Bright Vision Technologies.
This role is part of Bright Vision Technologies’ in-house Statement of Work (SOW) engagement. The client, end customer, and employer for this position is Bright Vision Technologies — there is no third-party client, vendor, or implementation partner involved.
We do not engage in C2C, 1099, or third-party arrangements for this role.
BUT STRICTLY NO C2C/1099/3RD PARTY COMPANIES. ALL OUR ROLES ARE W2 AND NO 3RD PARTY BROKERING PLEASE.
Candidates must be willing to work directly as a full-time W2 employee of Bright Vision Technologies and contribute to our in-house SOW deliverables.
No new H1B sponsorship is available for this role.
However, candidates who are currently on a valid H1B visa and require a transfer are welcome to apply. We will support H1B transfers for qualified candidates.
For every role, a technical coding assessment is mandatory. Please apply only if you are confident in your technical abilities and hands-on experience.
Job Summary
We are looking for an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio. The role blends hands-on offensive and defensive skills with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down. The ideal candidate brings deep technical security expertise, strong software engineering fundamentals, and a track record of shipping security improvements that meaningfully reduce risk in production.
Key Responsibilities
- Conduct threat modeling and security architecture reviews for new and existing applications and services.
- Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components.
- Operate and tune SAST, DAST, IAST, SCA, and secret-scanning tools across CI/CD pipelines.
- Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking.
- Build paved-road libraries and frameworks that make secure patterns the default for engineering teams.
- Lead red-team and purple-team exercises against internal applications and drive remediation of identified weaknesses.
- Implement and operate runtime protections including WAF, RASP, bot protection, and abuse-detection mechanisms.
- Design and enforce secure authentication, authorization, session management, and cryptographic patterns.
- Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments.
- Develop and deliver application security training, lunch-and-learns, and onboarding content for engineering staff.
- Respond to security incidents involving application vulnerabilities or active exploitation.
- Track and apply emerging threats and CVEs that may affect the application portfolio.
- Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures — so that the system remains supportable, auditable, and easy to onboard new engineers onto over time.
- Stay current with application security research and emerging defensive tooling.
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
- Five or more years of application security or security engineering experience.
- Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns.
- Hands-on experience performing code review across at least two major languages.
- Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling.
- Strong understanding of authentication, authorization, and cryptographic primitives.
- Experience with cloud security and modern infrastructure controls.
- Strong communication skills with technical and non-technical audiences.
- Proficiency in at least one programming language for tooling and automation.
- Experience working closely with engineering teams in an Agile environment.
- Industry certifications such as OSCP, OSCE, GWAPT, or CISSP.
- Experience with offensive security tooling and red-team operations.
- Bug bounty experience, public CVEs, or open-source security contributions.
- Familiarity with AI/LLM application security considerations.
- Exposure to regulated industries with strict compliance requirements.
Would you like to know more about this opportunity?
For immediate consideration, please send your resume to View email address on brightvisiontechnologies.applytojob.com or contact us at Show phone number. Learn more about Bright Vision Technologies at
We recognize that our people are our strength, and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company.
We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs.
Bright Vision Technologies is an Equal Opportunity Employer, including Disability/Veterans.
Position offered by “No Fee Agency.”
Equal Employment Opportunity (EEO) Statement
Bright Vision Technologies (BV Teck) is committed to equal employment opportunity (EEO) for all employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected status as defined by applicable federal, state, or local laws. This commitment extends to all aspects of employment, including recruitment, hiring, training, compensation, promotion, transfer, leaves of absence, termination, layoffs, and recall.
BV Teck expressly prohibits any form of workplace harassment or discrimination. Any improper interference with employees' ability to perform their job duties may result in disciplinary action up to and including termination of employment.
- ...SourcePro Search is conducting a search for an experienced Senior Application Security Engineer in Washington, DC. The ideal candidate will serve as subject matter expert integrating secure design for applications and services within the system development lifecycle. This...Suggested
- ...Community Service and Employee Engagement events are atop our calendar events! MBL Technologies is seeking an experienced Application Security Engineer to support the security and integrity of enterprise applications within a federal environment. This role will focus on...SuggestedFull timeRemote work
- ...crucial skill that they are seeking expertise in here is securing AI systems. The hiring manager needs someone who can enhance... ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure...SuggestedRemote work
- ...Application Security Engineer We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted environments, with open source libraries embedded inside thousands...SuggestedFlexible hours
- ...Application Security Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise...Suggested
$140k - $160k
Overview Edgewater is currently seeking an Application Security Engineer who will be a hands‑on subject matter expert in Microsoft Azure cloud technologies, application security, security architectures, security tools, and methodologies. The Application Security Engineer...Contract workLocal areaRemote work$110k
Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data...Full time$62k - $141k
Application Security Engineer Work together with the client and application community to maintain a resilient security posture for highly visible applications. Remediate application security flaws in conjunction with the application security team. Lead security discussions...Local area$210k - $230k
...report into the Director, Information Security and build relationships with technology... ...payment systems to identify and remediate application vulnerabilities. This individual... ...increase our AppSec posture and enable our engineers to code safely. Innovate with AI and deliver...Full timeWork at officeFlexible hours- ...A leading security solutions firm is seeking a Senior Application Security Engineer in Washington, DC. The ideal candidate will integrate secure design in application development and collaborate on security solutions. They should have extensive experience in cybersecurity...
- Ernst & Young Oman seeks an Application Security Engineer to enhance security tools and manage development platforms. You will collaborate with teams to integrate security processes and automate deployments while ensuring optimal security measures throughout the software...
$210k - $230k
Upside is seeking an experienced Security Engineer to identify and mitigate application vulnerabilities. This role requires expertise in application security and a deep understanding of AWS architecture. Responsibilities include innovating security solutions and conducting...Work at office- ...A leading company in IT Services is seeking a Senior Application Security Engineer to enhance application security throughout the software development lifecycle. The role includes performing security assessments, integrating security practices into CI/CD pipelines, and...
- ...Job Title: Senior Application Security Engineer Get AI-powered advice on this job and access more exclusive features. Direct message the job poster from Unisys. Key Skills and Bonuses: Pentest, OWASP, SAST/DAST/IAST. Bonus: LLM, US citizenship preferred, AWS,...Full time
- ...Application Security Engineer I Responsible for supporting application security through security testing, vulnerability management, secure design collaboration, automation support, and incident response participation, contributing to secure development practices across...
$77.5k - $140.9k
...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to...Summer holidayFlexible hours- Ernst & Young Oman is hiring an Application Security Engineer in Arlington, Virginia. The role involves managing application development platforms and optimizing security tools while ensuring operational efficiency through automation. Ideal candidates should have a relevant...Flexible hours
- SourcePro Search is seeking a Mid-Level Application Engineer - Cyber Security Analytics Engineer in Washington, DC. The ideal candidate will develop and manage software tools to support Enterprise Management, focusing on software specifications, program design, and documentation...
- We are conducting a search for a Mid‑Level Application Engineer - Cyber Security Analytics Engineer. We are seeking an ideal candidate who can develop and manage software tools to support Enterprise Management. This role involves formulating and defining specifications...
$105k - $130k
...government and nonprofit organizations and individuals. Applications Engineer The Applications Engineer is a highly skilled technical position... ...project work with minimal supervision, ensuring stable, secure, and scalable application solutions aligned with business...Temporary workWork at officeRemote work$86k - $111k
...easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity. Xometry is looking to add an Senior Application Engineer, CNC Machining. The role is responsible for client quoting, supplier sourcing, production planning, and supporting on-time order...$133k - $166k
...What You'll Do We are seeking a Senior Application Engineer I to lead the advanced configuration, integration, and optimization... ...vendors, and internal stakeholders to ensure applications are secure, scalable, and fully leveraged to meet complex business needs...WorldwideFlexible hours- ...A technology company is looking for an Application Engineer in Washington, DC. The role involves developing and maintaining software applications, collaborating with engineering teams, and staying updated on software trends. This position also includes developing quantum...
- ...Role Summary The Application Engineer is responsible for developing and maintaining software applications to support the company's business operations. Main Responsibilities and Duties Develop and maintain software applications. Collaborate with the engineering team to...
$107.63k
...Posting Title Application Engineer II Overview Application Engineer II in Washington, D.C. Application development, integration, maintenance... .... Participate in new functionality development to ensure secure, elegant and low maintenance date designs are adopted. Email...$135k - $150k
...Suvi is looking for an Applications Engineer III (PIPELINE POSITION) to work in Washington, DC. We are seeking a talented Applications Engineer... ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee, you will be...Full timePart timeFor contractorsLocal areaRemote work$146k - $150k
...Suvi is seeking an Applications Engineer III in Washington, DC. The applications developer will design, develop and maintain the FBI's Electronic... ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee , you will be...Full timePart timeFor contractorsLocal areaRemote work- ...Application Engineer We are seeking a skilled and experienced Application Engineer to design, develop, implement, and maintain software tools... ...: Continuously monitor the health and status of security tool suites through IT system management. Maintain, upgrade...Relocation packageFlexible hours
- ...at Fortune 1000 companies to tap into global manufacturing capacity. Xometry is seeking a driven and technically-minded Application Engineer, Injection Molding to join our team. In this role, you'll be a critical link between our customers, sales team, and engineering...
- ...Senior OCI Application Engineer (Level III) Tharseo IT is seeking a senior OCI Application Engineer (Level III) to support a federal program... ...connectivity issues that may involve network security group (NSG) rules and related controls. Supervise software...For subcontractorRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- senior application security engineer Silver Spring, MD
- application performance engineer Silver Spring, MD
- software applications developer Silver Spring, MD
- app developer Silver Spring, MD
- senior cloud security engineer Silver Spring, MD
- IT security engineer Silver Spring, MD
- information technology security engineer Silver Spring, MD
- aws cloud security engineer Silver Spring, MD
- network security engineer Silver Spring, MD
- security engineer Silver Spring, MD


