Senior Application Security Engineer (REMOTE)
Amerisure Mutual Insurance Company
Amerisure creates exceptional value for its partners, policyholders, and employees. As a property and casualty insurance company, Amerisure's promise to our partner agencies and policyholders begins with a comprehensive line of insurance products designed to protect businesses, as well as the health and safety of every employee. With an A.M. Best "A" (Excellent) rating, Amerisure serves mid-sized commercial enterprises focused in construction, manufacturing and healthcare. Ranked as one of the top 100 Property & Casualty companies in the United States, we proudly manage nearly $1 Billion of Direct Written Premium and maintain $1.21 billion in surplus. Amerisure is hiring!! This role can sit remote . We're looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to safeguard our applications from the ground up. The ideal candidate will possess the following skill set.
Summary Statement The Senior IT Security Engineer designs, implements, and maintains security controls to protect the organization's systems and data. This role leads security monitoring, vulnerability management, and incident response efforts, while embedding security throughout the SDLC and integrating testing capabilities into CI/CD pipelines. The engineer supports secure development practices and conducts application and API penetration testing. Working closely with development, QA, DevOps, and architecture teams, this role strengthens the security posture of mission-critical SaaS and hybrid cloud applications. The Senior Engineer also advises leadership on security strategies, emerging technologies, and alignment with business goals, ensuring innovative, compliant, and effective security solutions. Essential Tasks/Major Duties
#LI-Remote Just as we are committed to creating exceptional value for our Partners For Success® agencies and policyholders, Amerisure also remains committed to being an employer of choice. We reinforce this commitment by adhering to an Employee Value Proposition that, in part, is provided through a competitive total rewards package. This package includes competitive base pay, performance-based incentive pay, comprehensive health and welfare benefits, a 401(k) savings plan with profit sharing, and generous paid time off programs. We also offer flexible work arrangements to promote work-life balance. Recognized as one of the Best and Brightest® Companies to Work For in the Nation and one of Business Insurance magazine's Best Places to Work in Insurance, we provide a workplace that fosters excellence and professional growth. If you are looking for a collaborative and rewarding career, Amerisure is looking for you. Amerisure Mutual Insurance Company is an Equal Employment Opportunity employer. Amerisure provides equal employment opportunities to all employees and applicants without regard to race, color, religion, sex (to include sexual orientation and gender identity), national origin, age, disability, genetic information, veteran status, or any other protected characteristic under applicable federal, state, or local laws. Amerisure complies with all applicable laws governing nondiscrimination in employment in all locations where the company operates. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Amerisure prohibits harassment or discrimination of any kind and is committed to maintaining a workplace free from unlawful harassment or discrimination. Amerisure prohibits retaliation against anyone who reports discrimination, participates in an investigation, or opposes unlawful practices. Any improper interference with an employee's ability to perform their job duties may result in disciplinary action, up to and including termination.
Summary Statement The Senior IT Security Engineer designs, implements, and maintains security controls to protect the organization's systems and data. This role leads security monitoring, vulnerability management, and incident response efforts, while embedding security throughout the SDLC and integrating testing capabilities into CI/CD pipelines. The engineer supports secure development practices and conducts application and API penetration testing. Working closely with development, QA, DevOps, and architecture teams, this role strengthens the security posture of mission-critical SaaS and hybrid cloud applications. The Senior Engineer also advises leadership on security strategies, emerging technologies, and alignment with business goals, ensuring innovative, compliant, and effective security solutions. Essential Tasks/Major Duties
- Configure, implement, and maintain security systems with a hands-on approach to ensure the integrity, availability and resilience of the organization's IT infrastructure, applications and data.
- Serve as a subject matter expert for application, API, and integration security across the enterprise. Establish and embed secure development requirements, best practices, patterns, and guardrails (Left Shift) across platforms, technology stacks, and development teams to enhance the overall application and API security posture.
- Define, design, implement, and continuously improve application security processes, tools, and metrics. Integrate and optimize SAST, SCA, IAST, DAST, and secrets detection tools within CI/CD pipelines, and monitor, track, and report application and API security metrics to leadership.
- Conduct comprehensive application and API security reviews, vulnerability assessments, and penetration testing, actively configuring and fine-tuning security tools to identify and remediate gaps.
- Collaborate with cross-functional teams to enforce security best practices and ensure compliance with relevant standards and frameworks (e.g., NIST CSF, NY DFS, MI DIFS, OWASP, HIPAA/HTRUST), configuring security solutions to meet evolving business and regulatory requirements.
- Lead incident response and digital forensics investigations, providing technical expertise to analyze cyber events and implement effective remediation actions that minimize operational impact.
- Mentor and guide security team members, sharing knowledge and expertise in application and API security, threat analysis, vulnerability management, cloud security, and cryptography, while fostering a collaborative, learning-driven team culture.
- Bachelor's degree or equivalent combination of education and experience.
- 7+ years of experience in Application and API Security within a DevSecOps environment.
- Required certifications include at least one CISSP, CSSLP, CCSP, GSEC, CEH, CISM, or CRISC, in addition to platform-specific certifications (AWS, Microsoft, Cisco, etc.) or domain specific certifications (OSWE, OSCP, GWAPT, or GWEB).
- Experience in Property & Casualty insurance or other regulated industries preferred.
- Proven experience securing SaaS and custom applications in complex multi-cloud environments, applying security best practices and compliance frameworks.
- Expert knowledge of secure SDLC principles, application and API security, container security, and secure coding practices. Deep familiarity with OWASP Top 10, OWASP API Security Top 10, and CWE in DevOps environments using TeamCity, Azure Pipelines, GitHub Actions, and Bitbucket Pipelines.
- Extensive experience automating security scans and integrating SAST, SCA, IAST, DAST, and secrets detection tools into CI/CD pipelines.
- Proficiency in managing application security tools, including SonarQube, Black Duck, Synopsys Seeker, Snyk, and Wiz Code.
- Strong understanding of modern authentication and authorization protocols, including OAuth2, OIDC, JWT, and mTLS.
- Knowledge of cryptographic protocols and standards such as SSL/TLS, SSH, PKI, and emerging quantum-resistant encryption techniques.
- Solid understanding of security standards and frameworks, including NIST CSF, NY DFS, MI DIFS, HIPAA/HITECH, MITRE ATT&CK, and domain-specific regulatory requirements.
- In-depth knowledge of common attack vectors and tactics, with a focus on proactive defense and risk mitigation.
- Proficient in vulnerability assessment and penetration testing tools, capable of identifying, analyzing, and remediating vulnerabilities across applications and systems.
- Familiarity with enterprise platforms such as Guidewire, Salesforce, Databricks, and SnapLogic is preferred.
- Skilled in leading team initiatives using project management and Agile methodologies.
- Excellent communication skills to clearly articulate security risks, policies, and remediation strategies to both technical and non-technical stakeholders.
#LI-Remote Just as we are committed to creating exceptional value for our Partners For Success® agencies and policyholders, Amerisure also remains committed to being an employer of choice. We reinforce this commitment by adhering to an Employee Value Proposition that, in part, is provided through a competitive total rewards package. This package includes competitive base pay, performance-based incentive pay, comprehensive health and welfare benefits, a 401(k) savings plan with profit sharing, and generous paid time off programs. We also offer flexible work arrangements to promote work-life balance. Recognized as one of the Best and Brightest® Companies to Work For in the Nation and one of Business Insurance magazine's Best Places to Work in Insurance, we provide a workplace that fosters excellence and professional growth. If you are looking for a collaborative and rewarding career, Amerisure is looking for you. Amerisure Mutual Insurance Company is an Equal Employment Opportunity employer. Amerisure provides equal employment opportunities to all employees and applicants without regard to race, color, religion, sex (to include sexual orientation and gender identity), national origin, age, disability, genetic information, veteran status, or any other protected characteristic under applicable federal, state, or local laws. Amerisure complies with all applicable laws governing nondiscrimination in employment in all locations where the company operates. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Amerisure prohibits harassment or discrimination of any kind and is committed to maintaining a workplace free from unlawful harassment or discrimination. Amerisure prohibits retaliation against anyone who reports discrimination, participates in an investigation, or opposes unlawful practices. Any improper interference with an employee's ability to perform their job duties may result in disciplinary action, up to and including termination.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Application Security Engineer (REMOTE) in United States vacancy
$130k - $218k
...A leading blockchain company is seeking a Senior Application Security Engineer to join their growing security team. The role involves embedding security throughout the software development lifecycle for MetaMask products, ensuring they meet high-security standards. Applicants...Remote workSenior- ...A leading web platform company is seeking a Senior Application Security Engineer to enhance their secure development practices. This remote role involves collaborating with engineering teams, identifying security vulnerabilities, and leading security initiatives. Candidates...Remote workSenior
- ...A tech startup is looking for a Sr. Application Security Engineer to secure their Kubernetes multi-tenancy solutions. This role involves core product... ...flexible working conditions, and a commitment to open-source development. Remote work culture is embraced. J-18808-Ljbffr...Remote workSeniorFlexible hours
- ...A dynamic tech startup is seeking a Sr. Application Security Engineer to oversee the security of their innovative product. This role requires a strong... ...competitive compensation, equity participation, and flexible work arrangements in a remote-first culture. #J-18808-Ljbffr...Remote workSeniorFlexible hours
- ...A venture-backed tech startup is seeking a Sr. Application Security Engineer to oversee the security of their innovative product. This role focuses on ensuring secure multi-tenancy within Kubernetes, leading threat modeling initiatives, and managing vulnerability lifecycles...Remote workSeniorFlexible hours
$67.67 - $112.78 per hour
...Job Description Title : Senior Application Security Engineer Location : Remote Job Type : Contract (12 Months) Compensation : $67.67 - $112.78/hr Industry: Retail --- About the Role We are partnering with a leading enterprise...Remote workSeniorContract work- ...mobile team understand and grow their revenue. We’re a remote‑first crew of 120+, spread across 25 countries, and... ...you’ll fit right in. The role: We are looking for a Senior, proactive Application Security Engineer to work closely with engineering teams, PMs and external...Remote workSenior
- ...for money during its onboarding process. Job Title: Senior Application Security Engineer (AI/ML) Contract Length: 6+ months Location: Iselin... ...Charlotte, NC/ Dallas, TX/ Phoenix, AZ 3 days onsite / 2 days remote (no fully remote option) Ref# 246279 This role...Remote workSeniorContract workVisa sponsorshipShift work3 days per week
- ...global energy companyis looking to bring on a hands on a Senior Application Security Engineer to be part of a team building out their AppSec program... ...opportunity for conversion or extension. This role is remote with occasional travel to Houston, TX. You may be expected...Remote workSeniorLong term contract
$128k - $181.25k
...an exciting time for Shutterfly and we are looking for a Senior Application Security Engineer to join our team! In this position you will be an... ...company benefits can be found at This opportunity can be remote, but candidates must reside in a state in which Shutterfly...Remote workSenior$27 per hour
...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the... ...means you'll gain experience in every aspect of crypto.Remote Flexibility: Enjoy the freedom and flexibility of a remote...Remote workSeniorContract workFlexible hours- ...Senior Application Security Engineer Moveworks is the Agentic AI Assistant platform that empowers the entire workforce. Our platform enables employees... ...with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned...Remote workSeniorWork at officeFlexible hours
$180k - $210k
...Senior Application Security Engineer At Qualia, we've built the leading B2B real estate technology that transforms the home buying and selling experience... ...etc.) - valued but not required While this role is remote work eligible, we have three office locations: San...Remote workSeniorWork at officeFlexible hours- ...holidays , to support a 24/7 environment. Respond to security incidents and operational escalations outside of... ...containment, eradication, and post-incident reviews. Senior Application Security Engineer - Blue Team Who You Are A defensive security...Remote workSeniorNight shift
$160k - $240k
...Application Security Engineer Zip is the AI platform for enterprise procurement — built for humans and agents working together. By orchestrating procurement across teams, tools, and suppliers with the help of AI agents, companies can secure the resources they need to...Remote workSeniorHome officeFlexible hours- ...Application Security Engineer Position will be hybrid (4 days in office and 1 day remote (remote day can be flexible). 10+ years of experience Strong experience designing and implementing AppSec programs within DevSecOps, including integration of SAST, SCA, DAST, and...Remote workSeniorWork at officeFlexible hoursShift work
$220k - $350k
...Senior Application Security Engineer [Remote-US] remote To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search. When applying for a position online you are at risk of being targeted by malicious actors...Remote workSeniorExtra incomeLocal areaWork from homeHome office$158k - $238k
...experiences, and scale without heavy engineering support. From independent designers and... ...on the web. We’re looking for a Senior Application Security Engineer to help us level up Webflow’... ...procedures. About the role: Location: Remote‑first (United States; BC & ON, Canada...Remote workSeniorPermanent employmentFull timeTemporary workFixed term contractLocal areaFlexible hours$120k - $150k
...Our cybersecurity and information security teams at IDEXX contribute to a more resilient, adaptable, and security-aware... ...delivering high quality patient care. IDEXX is seeking a Senior Application Security Engineer to join our Product & Application Security team...Remote workSeniorLocal areaWorldwideFlexible hours- ...seeking a Senior Application Security Engineer to join our NYC-based security team in a hybrid capacity. This role is designed for a technical expert with 5-6 years of experience in AppSec who is eager to spearhead the firm's transition into AI Security. You will start...Remote workSeniorImmediate start
$325k - $405k
A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience...Remote jobSenior$213k
...Senior Application Security Engineer Remote, USA; San Francisco, CA, USA About the Role We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team. This role is hands-...Remote workSeniorFull timeWork at officeLocal areaNight shift- A leading AI research firm is seeking a Security Engineer, Application Security. In this role, you will identify and mitigate security vulnerabilities through assessments and collaboration with development teams. The ideal candidate has extensive experience in cybersecurity...Remote jobSenior
- ...A leading security consulting firm seeks a Senior Application Security Engineer to manage security risks and ensure safe application development practices in the cloud. This remote role requires designing secure development frameworks and mentoring teams on best practices...Remote workSeniorFixed term contract
- ...global energy company is looking to bring on a hands on Senior Application Security Engineer to be part of a team building out their AppSec program from... ...role is on-site in Houston for the first 4 weeks, then remote with occasional travel. Required Skills & Experience 5...Remote workSeniorLong term contract
- ...The Role Want to work on building out security from the ground up at the leading edge of AI in healthcare globally... ...looking for a very experienced and highly motivated Senior or Staff Application Security Engineer to join our team as one of the first engineers on the...Remote workSeniorHourly payFull timeFlexible hours
$140k - $200k
Role As a Senior Application Security Engineer on the Application Security team, you will be a trusted partner to engineering, product, and business... ...benefits of in‑person collaboration with the flexibility of remote work. Expectations may vary by location and role, so...Remote workSeniorWork at officeFlexible hours- ...in Plano, TX is seeking an experienced Application Security Analyst to enhance security within... ...of experience in DevOps and security engineering, holds a degree in Computer Science or... ...hybrid work model, with 3 days onsite and 2 days remote. #J-18808-Ljbffr IVID TEK INCRemote workSenior
- ...to meet you. The Team The Security Engineering team at Imprint is foundational... ...our infrastructure, applications, and data from threats, all... ...technology. The Role As a Senior Application Security Engineer... ...splitting your time between remote work and 3 days per week on...Remote workSeniorFlexible hoursShift work3 days per week
- ...projects, and fast‐tracking careers. Together, we turn ideas into action — let's get started! We invite a Senior Application Security Engineer to join our team remotely . Responsibilities Demonstrated ability to collaborate with other teams to achieve complex objectives....Remote workSeniorRelocation
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Application Security Engineer (REMOTE). Be the first to apply!
Related searches
- senior application security engineer United States
- application engineer United States
- junior application support engineer United States
- application system engineer United States
- network applications engineer United States
- cnc applications engineer United States
- project application engineer United States
- field applications engineer United States
- hydraulic application engineer United States
- application support engineer United States

