Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Remote Senior Application Security Engineer

$218k - $273k
Full-time

Apollo.io

Remote
  • Remote job

Apollo.io is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally, from rapidly growing startups to some of the world’s largest enterprises. Founded in 2015, the company is one of the fastest growing companies in SaaS, raising approximately $250 million to date and valued at $1.6 billion. Apollo.io provides sales and marketing teams with easy access to verified contact data for over 210 million B2B contacts and 35 million companies worldwide, along with tools to engage and convert these contacts in one unified platform. By helping revenue professionals find the most accurate contact information and automating the outreach process, Apollo.io turns prospects into customers. Apollo raised a series D in 2023 and is backed by top-tier investors, including Sequoia Capital, Bain Capital Ventures, and more, and counts the former President and COO of Hubspot, JD Sherman, among its board members.

Role Overview

The Senior Application Security Engineer is a senior individual contributor responsible for strengthening Apollo’s secure software development lifecycle and reducing application risk across product, platform, and AI-powered features.

This role blends deep code-level application security work with strong cross-functional partnership. It includes application security reviews, threat modeling, AppSec tooling, findings triage and remediation follow-through, external testing intake, and developer enablement.

This role is calibrated at the L6 senior-IC level: owning semi-annual or annual goals, solving ambiguous problems with sound judgment, improving operational processes, and driving meaningful cross-team collaboration and influence.

Key Responsibilities

Secure SDLC, design review, and threat modeling

  • Own and continuously improve the secure software development lifecycle for Apollo applications so security is embedded into design, implementation, and deployment.
  • Perform application security reviews, threat modeling, and deep code-level analysis for high-impact product, platform, and AI features before launch.
  • Provide practical security architecture guidance to Engineering, Product, and IT teams
  • Help define and maintain application-security guardrails, secure design expectations, code review standards, and risk models for new and existing systems.

Vulnerability management and hands-on remediation

  • Drive execution-heavy vulnerability management across internal reviews, bug bounty, pentests, SCA/runtime findings, and other research signals, ensuring findings are validated, prioritized, routed clearly, and tracked through remediation and verification within SLAs.
  • Go beyond identifying issues: read the code, explain root cause, propose the safest fix, and directly implement or support remediation when needed for complex vulnerabilities.
  • Perform hands-on validation and offensive security testing of applications and fixes, including exploit development, bypass testing, adversarial thinking, and focused red-team-style exercises, to confirm remediations address the underlying issue rather than only the initial symptom.
  • Work across the kinds of application security issues common in modern SaaS environments, including authentication and authorization weaknesses, access control risks, OAuth and CSRF design flaws, SSRF, cryptographic and verification issues, information disclosure and data exposure risks, unsafe execution and deserialization patterns, and dependency or runtime vulnerabilities.
  • Apply clear, risk-based severity decisions using exploitability, data sensitivity, customer impact, and blast radius

Tooling, automation, and AI

  • Configure and improve AppSec tooling and integrations, including SAST configuration, ignore lists, dashboards, and other controls that maintain useful coverage without excessive noise.
  • Select, build, or refine security tooling, small automations, and workflow enrichments that reduce manual effort and scale AppSec operations responsibly.
  • Use AI to automate, transform, and scale security and engineering-adjacent processes where it materially improves speed, consistency, or signal quality, while still validating outputs with strong engineering judgment.
  • Embed AI-specific security checks into SSDLC reviews and code analysis, including input and output handling, AI-exposed APIs, prompt and response guardrails, and abuse or data-exfiltration paths.
  • Partner cross-functionally on AI security requirements and controls so AI systems and AI-powered features are designed, deployed, and operated securely.

Engineering enablement and partnership

  • Support and scale security enablement for engineers and security champions, including secure coding, AppSec, and AI-safety content.
  • Provide actionable remediation guidance, secure patterns, and examples that help engineering teams fix issues quickly and correctly.
  • Partner closely with Engineering, Product, Platform, Data, Legal, and other security teams to keep AppSec priorities aligned with business risk and product velocity.
  • Produce clear documentation, metrics, and written narratives that improve AppSec visibility, observability, and decision-making.

What Good Looks Like

  • Owns meaningful AppSec goals over a semi-annual or annual horizon and independently identifies the right solutions to ambiguous, open-ended problems.
  • Drives cross-team collaboration and operational improvements beyond isolated tickets or one-off reviews
  • Makes informed decisions by balancing technical detail, business context, customer trust, and long-term risk
  • Sets a high bar for ownership, communication, mentoring, and technical judgment, and helps raise the effectiveness of peers and partner teams.

Required Skills & Experience

  • 5+ years of software engineering or application security experience, with meaningful hands-on AppSec depth in modern SaaS environments.
  • Strong software development skills and the ability to read, write, and ship production code; Ruby experience is highly valuable, and Python or similar scripting ability is a plus.
  • Strong Linux and cloud fundamentals, ideally with experience in GCP-backed environments.
  • Deep familiarity with common AppSec issues, secure design, secure authentication and authorization patterns, vulnerability management, and developer security tooling.
  • Demonstrated ability to perform deep code review, penetration testing, and exploit-oriented validation, and to either fix vulnerabilities directly or work closely with engineers to land durable remediations that hold up against bypass attempts and variant analysis.
  • Experience handling findings from bug bounty, pentests, internal reviews, or automated security tooling through closure and verification.
  • Experience using AI-assisted tools, automations, APIs, or structured workflows to improve engineering or security processes at scale.
  • Experience securing AI-powered systems or features, including AI API exposure, prompt and response handling, data protection, misuse scenarios, and monitoring expectations.
  • Strong written and verbal communication, stakeholder management, and influencing skills across technical and non-technical partners.

Preferred Qualifications

  • Experience supporting or leading security reviews for AI-native products, internal agents, or AI-assisted engineering workflows.
  • Experience improving secure-by-design practices and AppSec observability in a fast-moving engineering organization
  • Experience with security training, developer enablement, or security champions programs
  • Relevant security certifications are a plus

Example Success Outcomes

  • Improve the health and flow of AppSec findings by keeping prioritization, remediation, and verification moving within defined SLAs.
  • Complete recurring application reviews or threat models for important systems and features
  • Increase engineering adoption of secure patterns, AppSec tooling, and security training
  • Reduce manual toil and improve AppSec signal quality through targeted automation and responsible use of AI-assisted workflows.

The listed Pay Range reflects the total cash compensation inclusive of annual base salary and annual bonus as applicable. For sales roles, the range provided is the role’s On Target Earnings (“OTE”) range, meaning that the range includes both the sales commissions/sales bonus target and annual base salary for the role. This salary range may be inclusive of several career levels at Apollo and will be narrowed during the interview process based on a number of factors, including the candidate’s experience, qualifications, and location. Applicants interested in this role who are not located in the US may request the annual salary range for their location during the interview process.

Additional benefits for this role may include: equity; company bonus or sales commissions/bonuses; 401(k) plan; at least 10 paid holidays per year, flex PTO, and parental leave; employee assistance program and wellbeing benefits; global travel coverage; life/AD&D/STD/LTD insurance; FSA/HSA and medical, dental, and vision benefits.

Tier 1 Pay Range (San Francisco, New York City, Seattle)

$218,000—$273,000 USD

Tier 2 Pay Range (All other US Locations)

$190,000—$237,000 USD

We are AI Native

Apollo.io is an AI-native company built on a culture of continuous improvement. We’re on the front lines of driving productivity for our customers—and we expect the same mindset from our team. If you’re energized by finding smarter, faster ways to get things done using AI and automation, you’ll thrive here.

Why You’ll Love Working at Apollo

At Apollo, we’re driven by a shared mission: to help our customers unlock their full revenue potential. That’s why we take extreme ownership of our work, move with focus and urgency , and learn voraciously to stay ahead.

We invest deeply in your growth, ensuring you have the resources, support, and autonomy to own your role and make a real impact . Collaboration is at our core—we’re all for one , meaning you’ll have a team across departments ready to help you succeed. We encourage bold ideas and courageous action , giving you the freedom to experiment, take smart risks, and drive big wins.

If you’re looking for a place where your work matters, where you can push boundaries, and where your career can thrive—Apollo is the place for you.

Learn more here!

Jobicy JobID: 152253
Vacancy posted 13 days ago
Similar jobs that could be interesting for youBased on the Remote Senior Application Security Engineer in Remote vacancy
  • $325k - $405k

    A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience... 
    Remote job
    Senior

    Jobleads-US

    San Francisco, CA
    1 day ago
  •  ...Written Premium and maintain $1.21 billion in surplus. Amerisure is hiring!! This role can sit remote . We're looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering... 
    Remote work
    Senior
    Local area
    Flexible hours
    Shift work

    Amerisure Mutual Insurance Company

    United States
    3 days ago
  • $140k - $200k

     ...of simple, reliable, and secure crypto products and services...  .... The Department: Application Security Gemini operates...  ...expensive. The Role: Senior Application Security Engineer As a Senior...  ...with the flexibility of remote work. Expectations may vary... 
    Remote work
    Senior
    Work at office
    Flexible hours

    Gemini

    United States
    2 days ago
  • $143k - $183k

     ...Senior Application Security Engineer Forward Financing is a financial technology company based in Boston, Massachusetts with team members throughout...  ...charitable donation match. Forward is proud to be a remote-first company, keeping workplace flexibility a top... 
    Remote work
    Senior
    Work at office
    Work from home
    Flexible hours

    Forward Financing

    United States
    23 hours ago
  • $169k - $220k

     ...management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does....  ...flexible time-off policy. Additionally, we embrace a remote-first culture that supports collaboration and flexibility... 
    Remote work
    Senior
    Work experience placement
    Work at office
    Flexible hours

    Clover Health

    United States
    2 days ago
  •  ...own bar on how to use it well. As a fully remote company (even before COVID!), we welcome applicants from almost anywhere. Our team collaborates...  .... The Role: Monarch is seeking a Senior Application Security Engineer to join our Security Engineering team... 
    Remote work
    Senior
    Work at office
    Immediate start
    Work from home
    Weekend work

    Monarch Money

    United States
    2 days ago
  •  ...Responsibilities Own security tooling and vulnerability management...  ...champions practice. Set application security standards, define...  ...of experience in software engineering or security, including 3+ years...  ...company otherwise operates remote-first. Medical, dental,... 
    Remote work
    Senior
    Full time
    Temporary work
    Work at office
    Monday to Friday

    CharterUP

    Austin, TX
    11 days ago
  • $130k - $218k

     ...means working with a fully remote, globally distributed team of...  ...users as a decentralized application development platform , an...  ...keep our users as safe and secure as possible. We are looking for a Senior Application Security Engineer to join our rapidly growing... 
    Remote work
    Senior
    Full time
    Contract work
    Worldwide
    Shift work

    Consensys

    Remote
    29 days ago
  • $218k - $273k

     ...more, and counts the former President and COO of Hubspot, JD Sherman, among its board members. Role Overview The Senior Application Security Engineer is a senior individual contributor responsible for strengthening Apollo’s secure software development lifecycle and... 
    Remote work
    Senior
    Full time
    Worldwide
    Flexible hours

    Apollo.io

    Remote
    13 days ago
  • $111k - $144.4k

     ...The Sr. Application Security Engineer is responsible for validating that application services are designed and implemented with high security standards...  ...Wherever it Leads, Whatever it Takes® - No matter how remote, complex, or unexpected. Our commitment never wavers.... 
    Remote work
    Senior
    Full time
    Temporary work
    Work experience placement

    Clear Capital | CubiCasa | restb.ai

    Remote
    5 days ago
  •  ...Sr. Application Security Engineering At Syncro, our vision is a world where all businesses thrive on enterprise-grade digital platforms - empowering...  ...prioritizes the employee and customer experiences. As a remote-first software company, we are relentlessly focused on... 
    Remote work
    Senior
    Live in

    Syncro

    United States
    23 hours ago
  •  ...Senior Application Security Engineer (AI-First Development) The primary responsibility of the Senior Application Security Engineer (AI-First Development) is to design, orchestrate, and validate the offensive security tooling and adversary-emulation capabilities used... 
    Remote work
    Senior

    Las Vegas Sands Corp.

    United States
    23 hours ago
  • $104.3k - $193.7k

     ...and collaborative culture where your voice is valued. We are seeking an experienced Senior Application Security Engineer to join our team in the corporate travel industry. This remote position requires a unique blend of application development experience and security... 
    Remote work
    Senior
    Immediate start
    Flexible hours

    American Express Global Business Travel

    United States
    3 days ago
  • $104.3k - $193.7k

     ...partner company, who manages all applications and next steps. Our partner is...  ...looking for a Sr. Application Security Engineer based in the United States. This is a senior application security...  ...collaborative global environment. Remote work opportunity within the United... 
    Remote work
    Senior
    Full time
    Flexible hours

    jobgether

    United States
    6 days ago
  • $160.3k - $240.5k

     ...energy, and government. Our Product Security team keeps that platform, and the software...  ...and their users.We are seeking a Senior Application Security Engineer with profound expertise in...  ...contact us at ****@*****.***: Remote, Texas, USAType: Full time
    Remote work
    Senior
    Full time
    Work at office
    Worldwide

    Unity Technologies

    Texas
    5 days ago
  • $98k - $146k

     ...in support of U.S. National Security and Defense. For the past forty...  ...by developing innovative remote sensing algorithms, tools, and...  ...citizenship for all employees. Applicants that do not meet this requirement...  ...opportunity for a talented engineer to support our programs... 
    Remote work
    Senior
    Temporary work
    For contractors
    Work experience placement
    Immediate start
    Flexible hours

    SciTec

    Boulder, CO
    23 days ago
  •  ...Leading the security of the software development life cycle, the full-time remote Senior Product Security Engineer will manage vulnerability assessments, provide technical mentorship, and conduct code reviews while ensuring secure architecture and AI integration. Key... 
    Remote work
    Senior
    Full time

    Virtual Vocations Inc

    United States
    4 days ago
  •  ...however, we are looking for someone with a stronger Application Security background. Certifications like DevSecOps and CISSP...  .... Overall, the client is looking for a strong Senior Application Security Engineer with DevSecOps Team Lead-level experience . App Sec... 
    Senior

    Anveta

    Houston, TX
    23 hours ago
  •  ...Leading Red Team engagements against critical applications, the full-time Senior Application Security Engineer (Offensive / Red Team) will shape an evolving offensive security practice, collaborating closely with the Blue Team to enhance detection, response, and defenses... 
    Senior
    Full time

    Virtual Vocations Inc

    United States
    4 days ago
  • $49.98 - $71.4 per hour

     ...Title: Senior Application Security Engineer Location: Jacksonville, FL Position Type: Contract - W2 Compensation Pay Range:$49.98-$71.40 Per Hr Description The role involves working in Jacksonville, FL, focusing on application security within... 
    Senior
    Contract work

    Mitchell Martin

    Jacksonville, FL
    4 days ago
  •  ...Job Title 6–8+ years of experience in Application Security, Product Security, or DevOps with a strong security focus. Extensive hands-on experience with SAST, SCA, DAST, IaC scanning, and integrating security tools into modern CI/CD pipelines. Proven ability to... 
    Senior

    Saxon Global

    San Antonio, TX
    3 days ago
  •  ...and water around the world. Position: Sr. Applications Engineer Location: Headquarters – Moon Township, PA (Remote Opportunities Available) Excellent Benefits...  ...with hours Monday-Friday 9:00-5:00 PM The Senior Applications Engineer provides the lead technical... 
    Remote work
    Senior
    Full time
    Worldwide
    Overseas
    Monday to Friday

    Calgon Carbon Corporation

    Moon, PA
    -6
  •  ...Senior Application Security Engineer Tasks: • Perform comprehensive cybersecurity risk analysis, identifying and prioritizing risks specifically related to application security. • Develop, socialize, and implement security strategies to address vulnerabilities... 
    Senior
    Flexible hours

    Network Temp Inc

    New York, NY
    2 days ago
  • $180k - $230k

     ...data infrastructure platform for hardware engineering teams. We turn high-frequency telemetry...  .... In This Role, You'll: Secure-by-default guardrails: Build the patterns...  ...in Go or Rust. ~ Strong grounding in application security: web and API vulnerability classes... 
    Senior
    Live in
    Work at office
    Relocation

    Sift

    Marina Del Rey, CA
    2 days ago
  •  ...Health is building out a dedicated product security team to protect our members and platform as we scale. As a Senior Product Security Engineer, you'll work shoulder-to-shoulder with...  ...frameworks and controls. Connect application-level telemetry to detection and response... 
    Remote work
    Senior
    Flexible hours

    Function Health

    United States
    2 days ago
  •  ...Application Security Engineer Company: VivSoft Work Type: Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: GitHub Actions, SAST, DAST, SCA, OWASP Requirements: Experience in security testing, CI/CD, and DevSecOps; strong knowledge of SAST/DAST... 
    Remote work
    Full time

    VivSoft

    United States
    2 days ago
  •  ...Come deliver this transformation. About the Role Security patterns that worked 20 years ago don't hold up anymore, especially as AI changes how fast engineering teams ship code. We're looking for an Application Security Engineer who combines real engineering depth... 
    Senior
    Full time
    Interim role
    Work at office
    Immediate start
    3 days per week

    Commure Athelas

    Mountain View, CA
    22 hours ago
  •  ...delivering integration-centric solutions, the full-time Senior Application Solution Engineer will focus on Oracle E Business Suite and Oracle Fusion...  ...specializing in eInvoicing and regulated reporting while working remotely. Key responsibilities Lead end-to-end solution design... 
    Remote work
    Senior
    Full time

    Virtual Vocations Inc

    United States
    4 days ago
  •  ...The Role We are seeking a Senior Application Security Engineer to join Savvy Wealth at our NYC headquarters. This is a hands-on, in-the-weeds engineering role. You will execute the security strategy set by our Director of IT & Information Security and our CTO, with... 
    Senior
    Work at office

    Savvy Wealth

    New York, NY
    3 days ago
  •  ...Application Security Engineer Location: Remote Purpose: The application security engineer shall have extensive experience in the involvement and understanding of cloud security controls (security-as-code) and target cloud infrastructure Google Cloud Platform (GCP... 
    Remote work

    Software Technology Inc

    United States
    23 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Remote Senior Application Security Engineer. Be the first to apply!