Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$100k - $150k

Bright Vision Technologies

Application Security Engineer

Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. As we continue to grow, we're looking for a skilled Application Security Engineer to join our dynamic team and contribute to our mission of transforming business processes through technology. This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential.

Job Title: Application Security Engineer

Location: 100% Remote (Continental United States)

Position Type: In-house Bright Vision Technologies SOW engagement (no third-party client or vendor)

Experience: 5+ years

Salary: $100K - $150K

Sponsorship: No new H1B sponsorship available. H1B transfers welcomed for qualified candidates.

Employment Type: Full-time, direct W2 with Bright Vision Technologies (no C2C, no 1099, no third-party)

Engagement: Long-term, multi-year, aligned to the Bright Vision SOW delivery roadmap

Compensation: Competitive base salary commensurate with experience, plus benefits.

This is a 100% remote, full-time, direct W2 position with Bright Vision Technologies. This role is part of Bright Vision Technologies' in-house Statement of Work (SOW) engagement. The client, end customer, and employer for this position is Bright Vision Technologies — there is no third-party client, vendor, or implementation partner involved. We do not engage in C2C, 1099, or third-party arrangements for this role. BUT STRICTLY NO C2C/1099/3RD PARTY COMPANIES. ALL OUR ROLES ARE W2 AND NO 3RD PARTY BROKERING PLEASE. Candidates must be willing to work directly as a full-time W2 employee of Bright Vision Technologies and contribute to our in-house SOW deliverables. No new H1B sponsorship is available for this role. However, candidates who are currently on a valid H1B visa and require a transfer are welcome to apply. We will support H1B transfers for qualified candidates. For every role, a technical coding assessment is mandatory. Please apply only if you are confident in your technical abilities and hands-on experience.

Job Summary

We are looking for an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio. The role blends hands-on offensive and defensive skills with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down. The ideal candidate brings deep technical security expertise, strong software engineering fundamentals, and a track record of shipping security improvements that meaningfully reduce risk in production.

Key Responsibilities

  • Conduct threat modeling and security architecture reviews for new and existing applications and services.
  • Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components.
  • Operate and tune SAST, DAST, IAST, SCA, and secret-scanning tools across CI/CD pipelines.
  • Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking.
  • Build paved-road libraries and frameworks that make secure patterns the default for engineering teams.
  • Lead red-team and purple-team exercises against internal applications and drive remediation of identified weaknesses.
  • Implement and operate runtime protections including WAF, RASP, bot protection, and abuse-detection mechanisms.
  • Design and enforce secure authentication, authorization, session management, and cryptographic patterns.
  • Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments.
  • Develop and deliver application security training, lunch-and-learns, and onboarding content for engineering staff.
  • Respond to security incidents involving application vulnerabilities or active exploitation.
  • Track and apply emerging threats and CVEs that may affect the application portfolio.
  • Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures — so that the system remains supportable, auditable, and easy to onboard new engineers onto over time.
  • Stay current with application security research and emerging defensive tooling.

Required Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • Five or more years of application security or security engineering experience.
  • Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns.
  • Hands-on experience performing code review across at least two major languages.
  • Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling.
  • Strong understanding of authentication, authorization, and cryptographic primitives.
  • Experience with cloud security and modern infrastructure controls.
  • Strong communication skills with technical and non-technical audiences.
  • Proficiency in at least one programming language for tooling and automation.
  • Experience working closely with engineering teams in an Agile environment.

Preferred Qualifications

  • Industry certifications such as OSCP, OSCE, GWAPT, or CISSP.
  • Experience with offensive security tooling and red-team operations.
  • Bug bounty experience, public CVEs, or open-source security contributions.
  • Familiarity with AI/LLM application security considerations.
  • Exposure to regulated industries with strict compliance requirements.
Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in United States vacancy
  •  ...Senior Security Engineer – Secure Code Review New York, NY On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software development... 
    Suggested
    Full time

    AGS

    New York, NY
    2 hours ago
  •  ...Job Title: AppSec Engineer Location: Rockville, MD or Tysons, VA (3 days onsite in a week) Pen testing SAST / DAST Burp...  ...etc.) AI/GenAI JD: Plan, coordinate and implement application security practices in each phase of software development life cycle... 
    Suggested
    3 days per week

    Unisys

    Rockville, MD
    1 day ago
  • $175k

     ...Overview: Corporate Tools is hiring an Security Engineer for $175,000/year. You will be a traditional company employee. This is a...  ...understanding of security knowledge of testing mobile, native applications, web applications, distributed and database systems ~... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours
    Weekend work

    Corporate Tools

    United States
    5 days ago
  •  ...Application Security Engineer One of our large financial clients is looking for an experienced Application Security Engineer to join their team. If the below requirements fit your skillset, feel free to apply. Duration: Long Term/Multi Year Contract Location:... 
    Suggested
    Long term contract
    Remote work

    Software Technology Inc

    United States
    2 days ago
  • $213k

     ...About the role We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team. This role is hands-on and impact driven. You will work directly with mobile, backend, and platform... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Night shift

    Chime Financial, Inc

    United States
    1 day ago
  • $40 per hour

     ...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback...  ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Honolulu, HI
    1 day ago
  •  ...public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a...  ...reimbursement and more. We’re Looking For We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security... 
    Contract work
    Remote work

    ShorePoint Inc

    Herndon, VA
    6 days ago
  • $215k - $230k

     ...A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates should... 

    Crypto Pro Network

    New York, NY
    4 days ago
  •  ...Application Security Engineer Remote 12+ months Contract Client is looking for an Application Security Engineer to come in to support security protocols for multiple applications within Delta Dental’s environment. This role will work with a team and be assigned... 
    Contract work
    Remote work

    My3Tech Inc

    United States
    2 days ago
  • **We believe talent deserves a human touch. Your application will be read by an actual person who’s excited to discover the real you.****Application Security Engineer**Location: Remote (United States) | Employment Type: Full-Time**About the Role**We are looking for an Application... 
    Full time
    Remote work

    New Charter Technologies, Llc

    New York, NY
    4 days ago
  •  ...A leading web3 software company is seeking a Senior Application Security Engineer to embed security processes throughout the software development lifecycle. This role involves collaborating with development teams to secure applications, document vulnerabilities, and perform... 
    Remote work
    Flexible hours

    Hard Yaka

    United States
    3 days ago
  •  ...A leading web platform company is seeking a Senior Application Security Engineer to enhance their secure development practices. This remote role involves collaborating with engineering teams, identifying security vulnerabilities, and leading security initiatives. Candidates... 
    Remote work

    Webflow

    United States
    4 days ago
  • $227.9k

     ...on people’s everyday lives. We’re looking for an experienced security engineer who’s independent, excited about getting things done, and...  ...the ground running. Youll primarily be responsible for our application security, working with our product teams to work on new systems... 
    Remote work
    Flexible hours

    Wave Mobile Money

    Richmond, VA
    3 days ago
  • $180k - $190k

     ...role: Branch is seeking an experienced Security professional to join our team. This...  ...candidate will have a background in securing applications, networks, cloud environments, and...  ...security into the SDLC by partnering with Engineering to implement secure design patterns,... 
    Remote work
    Home office
    Flexible hours

    Branch

    Richmond, VA
    1 day ago
  •  ...pioneering projects, and fast‐tracking careers. Together, we turn ideas into action — let's get started! We invite a Senior Application Security Engineer to join our team remotely . Responsibilities Demonstrated ability to collaborate with other teams to achieve complex... 
    Remote work
    Relocation

    BrainRocket

    Staten Island, NY
    1 day ago
  •  ...VECTOR JOB OPENING JOB TITLE: Application Security Engineer JOB ID: 575 JOB CLEARANCE REQUIRED: TS/SCI clearance must be active. PRACTICE AREA: System Engineering LOCATION; Bethesda, Maryland (Hybrid) Onsite and remote work. PAY: W2 Salaried 1250... 
    Contract work
    Remote work
    Monday to Friday
    Flexible hours

    Vector Talent Resources

    United States
    5 days ago
  •  ...Senior Application Security Engineer Portugal The Tripadvisor Group connects people to experiences worth sharing, and aims to be the world's most trusted source for travel and experiences. We leverage our brands, technology, and capabilities to connect our global... 
    Remote work
    Worldwide
    Flexible hours

    TripAdvisor

    United States
    2 days ago
  •  ...Senior Application Security Engineer Food has lost its soul to modern convenience. And with it, it has lost the power to nourish, inspire, and connect us. So in 2018, CookUnity was founded as the first-of-its-kind platform that connects the world with the source of... 
    Remote work
    Flexible hours

    CookUnity

    United States
    2 days ago
  • $120k - $150k

     ...Our cybersecurity and information security teams at IDEXX contribute to a more resilient, adaptable, and security-aware enterprise...  ...quality patient care. IDEXX is seeking a Senior Application Security Engineer to join our Product & Application Security team... 
    Local area
    Remote work
    Worldwide
    Flexible hours

    IDEXX Laboratories

    United States
    1 day ago
  •  ...Junior Level Application Security Engineer A healthcare client is looking for two junior level application security engineers to join their devsecops team. The engineers will work fully remote and will be part of an initiative to migrate all application security scanning... 
    Remote work

    Insight Global

    United States
    1 day ago
  •  ...A tech startup is looking for a Sr. Application Security Engineer to secure their Kubernetes multi-tenancy solutions. This role involves core product security, threat modeling, and vulnerability management while collaborating on feature development. Ideal candidates will... 
    Remote work
    Flexible hours

    vCluster

    Salt Lake City, UT
    2 days ago
  •  ...Appsecops Engineer The Application Security Engineer is responsible for designing, building, and maintaining the technical infrastructure that enables scalable application security across the organization. This role bridges software engineering and security disciplines... 
    Remote work

    Diverse Lynx

    United States
    2 days ago
  •  ...and maintain $1.21 billion in surplus. Amerisure is hiring!! This role can sit remote . We're looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to... 
    Local area
    Remote work
    Flexible hours
    Shift work

    Amerisure Mutual Insurance Company

    United States
    2 days ago
  •  ...Swapcard Security Engineer Swapcard is the leading AI-powered event platform designed to drive revenue growth and foster meaningful connections...  ...tools (eg. Burp Suite). Solid understanding of common application vulnerabilities (OWASP Top 10, SSRF, IDOR, etc.).... 
    Work experience placement
    Remote work
    Work from home

    Swapcard

    United States
    5 days ago
  •  ...Application Security Engineer Client: Securian Financial Location: Remote - Preferrably local to St. Paul, MN (Will consider A+ candidates from permissible locations). The manager sees value in being able to come onsite, but he is open to considering fully remote... 
    Contract work
    Temporary work
    Local area
    Remote work

    Samprasoft

    United States
    4 days ago
  •  ...Must Have:- • Seeking candidates with solid expertise in Manual web application penetration testing and Manual secure code review. • Expertise is performing Manual Test Case Scenarios is a must. • Identification of Vulnerabilities in Source Codes manually is a must... 
    Remote work

    Yochana

    United States
    2 days ago
  •  ...Senior Application Security Engineer We are seeking a highly skilled and proactive Senior Application Security Engineer to join our growing security team. You will be responsible for securing our applications throughout the software development lifecycle (SDLC). This... 
    Remote work

    e.l.f Cosmetics

    United States
    5 days ago
  • $150k - $160k

     ...Senior Cybersecurity Engineer (Application Security) The Senior Cybersecurity Engineer (Application Security) is responsible for protecting our organization's software applications and services from threats by embedding security practices into the software development... 
    For contractors
    Work at office
    Remote work
    Flexible hours

    United Natural Foods

    United States
    1 day ago
  •  ...A dynamic tech startup is seeking a Sr. Application Security Engineer to oversee the security of their innovative product. This role requires a strong background in application security and Kubernetes, along with proficiency in Go. You will lead security reviews, threat... 
    Remote work
    Flexible hours

    vCluster

    Boston, MA
    6 days ago
  • $150k - $190k

     ...As a Sr. Application Security Engineer at vCluster Labs, you are the architect of trust in our diverse ecosystem. In this role, you will be responsible for the end-to-end security of our product, ensuring that vCluster remains the de facto standard for secure Kubernetes... 
    Remote work
    Flexible hours
    Shift work

    vCluster

    Austin, TX
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!