Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$175k - $215k
Full-time

Quanata

About Quanata: Quanata is a premier, internationally recognized insurance technology innovation leader, cybersecurity trailblazer, and digital product pioneer on an absolute mission to help ensure a better world through sophisticated, context-based risk prediction and prevention software solutions. Blending elite Silicon Valley software talent and cutting-edge technical thinking with the stable, long-term funding and strategic backing of leading enterprise insurer State Farm, Quanata operates as a wholly owned high-growth subsidiary. Our distributed agile engineering groups build, manage, and scale a full-stack, flexible, and increasingly AI-native insurance software platform that empowers our primary clients, State Farm and HiRoad Assurance Company, to adapt seamlessly to changing consumer market demands. Prioritizing an inclusive, high-craft, and intensely positive workplace culture, Quanata thrives on giving its engineering teams the freedom to make a quantifiable structural impact on real-world systems. The company provides high-agency security engineers with an uncompromised remote canvas to leverage state-of-the-art secure development lifecycles, manipulate advanced automated vulnerability scanners, and govern cloud infrastructure safety models safely across the United States.

Position Overview

We are seeking a highly analytical, systems-minded Application Security Engineer to join our core centralized Security collective in a full-time remote capacity across the United States. In this high-leverage and tech-centric defensive seat, you will step up to claim true individual operational and strategic accountability for building secure-by-default products and services across our entire AI-native insurance technology platform. Shifting completely away from routine standalone firewall provisioning, monotone audit questionnaire checking, or passive baseline network monitoring, you will operate as a principal application defense architect—partnering face-to-face with Product and Software Engineering pods to shift security left into early application design phases. This position requires an enterprise tech or SaaS application security veteran with 4 to 6+ years of software engineering depth who codes automated security guardrails fluidly natively using Cybersecurity parameters, audits web codebases for logic flaws smoothly natively using QA Engineer inspection playbooks, and commands advanced threat modeling methodologies confidently under shifting production deadlines.

Key Responsibilities

  • SDLC Security Automation and Architecture: Design, develop, and implement automated security testing guardrails, static/dynamic code analysis workflows (SAST/DAST), and dependency validation gates across our continuous deployment tracks cleanly natively utilizing Cybersecurity guidelines.
  • Advanced Platform Threat Modeling: Lead comprehensive threat modeling exercises across complex, distributed software systems, leveraging methodologies like STRIDE or PASTA to isolate architectural vulnerabilities early in product discovery cycles.
  • Meticulous Secure Code Auditing: Review pull requests, conduct deep semantic secure code reviews, and perform thorough application security assessments natively leveraging QA Engineer frameworks to eliminate potential application injection patterns, logical auth bypasses, or data leakage bugs.
  • Vulnerability Management and Triage: Investigate, categorize, prioritize, and drive the systematic remediation of application security vulnerabilities, coordinating remediation tracks alongside software development cells.
  • Secure Coding Advocacy and Coaching: Foster a secure development culture across the technical group, driving interactive secure coding training, engineering workshops, and proactive technical threat awareness initiatives.
  • Compliance and Privacy Risk Management: Partner in lockstep with distributed Data Privacy, Security Operations, and Corporate Business Assurance teams to ensure platform compliance with strict insurance industry data rules and risk management objectives.
  • Security Documentation and Standards Curation: Formulate, document, and maintain highly clear, scalable application security standards, procedural manuals, and secure-by-design baseline playbooks implemented across all engineering cells.
  • AI Ecosystem and LLM Security Hardening: Research, model, and deploy specific defensive guardrails tailored to AI models, tracking emerging vector spaces including Large Language Model (LLM) top risks, injection strains, and prompt engineering leaks.

Required Skills & Qualifications

  • A minimum of 4 to 6 years of verified professional history running advanced software engineering, application security consulting, penetration testing, distributed cloud security programming, or technical systems auditing.
  • Mandatory Field Focus Depth: A minimum of 2 years of documented experience explicitly focused on application security engineering tracks, showing a history of partnering directly with software development teams to eliminate application layer risks.
  • Deep, authoritative technical command of modern secure-by-design software development principles, containerization risks, cloud application patterns, and cryptography basics.
  • Expert-tier capability writing security scanning macros, deploying automated pipelines, and configuring code parsers natively utilizing Cybersecurity tools.
  • Practical operational familiarity parsing software testing registries, tracking vulnerability matrices, and running automated regression logic natively using QA Engineer protocols.
  • Comprehensive familiarity with standard application security frameworks, requiring deep functional command of OWASP Top 10, ASVS, and MASVS guidelines.
  • Hands-on programming proficiency in at least one modern programming language (such as Python, Java, Go, or JavaScript) alongside deep familiarity with its specific security ecosystem, library flaws, and package management constraints.
  • Outstanding written, verbal, and interpersonal communication attributes in fluent English, enabling total confidence when explaining abstract technical risks or influencing cross-functional engineering leads.
  • Location Context: Position open exclusively to qualified application security engineers based permanently and resident within the United States to operate under a remote-first layout (excluding U.S. territories), with core mandatory collaboration meeting hours running from 9:00 AM to 2:00 PM Pacific Time daily.

Preferred Strategic Indicators (Nice to Have)

  • Possession of a recognized, industry-vetted technical security credential, such as a CSSLP, GWEB, OSWE, or closely related penetration testing certification.
  • Prior commercial security engineering background operating explicitly within highly regulated environments, such as insurtech ecosystems, financial services SaaS platforms, fintech gateways, or healthcare records architectures.
  • Advanced hands-on experience executing dynamic mobile application security testing (iOS/Android tracking) or running live web penetration testing events.
  • Active, documented involvement in the global cybersecurity community through open-source contributions, developer mentoring, security publications, or conference presentations.

What We Offer

  • Enterprise-Backed Silicon Valley Salaried Blueprint: An highly attractive full-time base salary package structured transparently between $175,000 and $215,000 USD per year , calibrated precisely to evaluate your application security authority and automation craft depth.
  • The exceptional professional canvas to claim absolute technical ownership over the application security systems protecting a hyper-growth AI-native InsurTech platform fully backed by State Farm.
  • Profound work-from-home remote parameters offering a remote-first layout across America, complete scheduling trust outside core meeting frames, and zero physical geographic commuting friction (with voluntary physical office access available for candidates resident near San Francisco, CA or Providence, RI).
  • An exceptional **$2,000 USD One-Time Payment Workspace Stipend** provided immediately upon hire to fully furnish your remote office layout, paired with a brand-new, fully provisioned corporate MacBook Pro delivered straight to your home.
  • Immediate baseline access to premium comprehensive corporate healthcare and family balance benefits, including robust medical, dental, and vision packages for you and your dependents, supplemental income tracks, and a company matching 401(k) plan.
  • Access to elite mental health and wellness provisions, featuring a premium subscription to the Headspace application and a recurring monthly monetary wellness allowance.
  • Generous time-off benefits, including an accrual of 4 weeks of paid vacation (PTO) in your very first year of employment, alongside 12 weeks of fully paid parental leave available to both birthing and non-birthing parents alike.
  • Unmatched career and personal development upskilling systems, offering up to **$5,000 USD cash every single year** to finance external professional learning courses or continuing education, a full subscription to LinkedIn Learning, and advanced professional coaching tracks managed through BetterUp.
Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in Remote vacancy
  • $100.63k - $167.79k

     ...your success while helping clients pursue their financial goals. Job Overview:As a member of the Information Security team, the Sr. Application Security Engineer will be responsible for helping to develop, mature, and sustain the Application Security program for the... 
    Suggested
    Full time
    Work from home

    LPL Financial

    Austin, TX
    2 days ago
  • $99k - $225k

    Application Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Colorado Springs, CO
    1 day ago
  • $111k - $144.4k

    Remote - US / Reno, NVAdministration - Enterprise Information Security /Full-Time /RemoteThe Sr. Application Security Engineer is responsible for validating that application services are designed and implemented with high security standards. The role analyzes the security... 
    Suggested
    Full time
    Temporary work
    Work experience placement
    Remote work

    Clear Capital

    Reno, NV
    3 days ago
  • $160.3k - $240.5k

     ...architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top...  ...millions of creators and their users.We are seeking a Senior Application Security Engineer with profound expertise in application security. In this... 
    Suggested
    Full time
    Work at office
    Remote work
    Worldwide

    Unity Technologies

    Texas
    4 days ago
  • Job Role: Application Security Engineer with AWS, Cequence ,API Security(Remote)Location: RemotePrimary FocusDeployment and integration of Cequence API Security Wiz Federal Splunk and Cribl.AWS GovCloud federal government telecom or highly regulated cloud environments.Handson... 
    Suggested
    Remote work

    LTM

    Houston, TX
    2 days ago
  •  ...Premium and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to... 
    Full time
    Local area
    Remote work
    Flexible hours
    Shift work

    Amerisure Insurance Company

    Farmington Hills, MI
    7 hours ago
  • $135k - $150k

     ...while our focus on creativity and innovative solutions empowers our customer communities to thrive.We are seeking a Senior Application Security Engineer to lead hands-on application security testing, secure code review, and secure SDLC enablement across moder application... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    3 days per week

    Nelnet

    Lincoln, NE
    2 days ago
  •  ...of people and we’re just getting started.About The RoleOur Security Engineering team builds intelligent systems that protect Opendoor and our...  ...where they matter, not gates where they don't.As our Application Security Engineer, you'll own how we find, prioritize, and... 
    Work at office
    Monday to Friday
    Shift work

    Opendoor

    Miami, FL
    2 days ago
  • $86.9k - $198k

    Application Security EngineerThe Opportunity: Integrate security practices throughout the software development lifecycle to enhance and maintain...  ...skillsMaster's degree in Cybersecurity, CS, Software Engineering, Information Assurance, or a related technical fieldCompensationAt... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    1 day ago
  •  ...more details.Job SummaryThis role focuses on comprehensive application security testing and vulnerability management across the software development...  ...scripts and code in Java and Python as needed for security engineering and automation.Vulnerability Management & ComplianceEnsure... 
    Full time
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Jersey City, NJ
    4 days ago
  • $99k - $225k

    Application Security Engineer, LeadThe Opportunity: A well-designed network is critical to move data and enable financial institutions to achieve their missions, but how can an organization make sure their network will fit their evolving needs? Crafting the right network... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Colorado Springs, CO
    4 days ago
  •  ...public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a...  ...reimbursement and more. Who we’re looking for: We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security... 
    Contract work
    Remote work

    GrabJobs

    Milwaukee, WI
    5 days ago
  •  ...crucial skill that they are seeking expertise in here is securing AI systems. The hiring manager needs someone who can enhance...  ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure... 
    Remote work

    RIT Solutions, Inc.

    United States
    4 days ago
  • $110k

     ...Job Seekers can review the Job Applicant Privacy Policy by clicking here ( . Job Description : SUMMARY We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must... 
    Full time

    Ryder

    Helena, MT
    1 day ago
  •  ...Senior Application Security Engineer DevSecOps and Cloud This is a remote position. Initially hybrid with 1 day a week on Wednesday and will eventually 5 days onsite Location: Chicago IL, Peoria IL or Dallas TX – local candidates only Key skills: Experience with... 
    Local area
    Remote work
    1 day per week

    3Core Systems

    Peoria, IL
    3 days ago
  • $150k - $196k

     ...Description Senior AppSec Engineer Location: Remote, USA Employment Type: Full-Time Benefits Offered: Vision,...  ...objective, job-related criteria. Summary The Senior Application Security Engineer joins the Information Security team and plays a key... 
    Full time
    Temporary work
    Remote work

    OneStream Software

    Rochester, MI
    5 days ago
  •  ...Application Security Engineer . Location: Mexico Remote As a Google SecOps Engineer, you will be responsible for the end-to-end implementation and management of the Google Security Operations platform, including both SIEM and SOAR capabilities.... 
    Temporary work
    Remote work

    Noblesoft Technologies

    Mexico
    1 day ago
  • $134.6k - $175k

     ...lower cost through early diagnosis and longitudinal care management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does. This is a hands-on offensive security role on our Eng Core team,... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    Clover Health

    Remote
    1 day ago
  • $80k - $110k

     ...As an Application Security Engineer you will perform application security testing on web applications, mobile applications, microservices, infrastructure code, and open source code in order to expose weaknesses in their design and/or configuration that make them susceptible... 
    Full time
    Temporary work
    Work experience placement
    Remote work

    Clear Capital | CubiCasa

    Remote
    a month ago
  •  ...against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR...  ...Envision yourself at Barracuda   As a Senior Application Security Engineer, you’ll help shape the future of our AppSec program. You’ll... 
    Remote work
    Worldwide
    Flexible hours

    Barracuda Networks

    Ann Arbor, MI
    more than 2 months ago
  • $85k - $105k

     ...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship

    Bright Vision Technologies

    Troy, MI
    3 days ago
  • $140k - $200k

     ...Senior Application Security Engineer New York, New York; Miami, Florida; Remote (USA) Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to... 
    Work at office
    Remote work
    Flexible hours

    Gemini, Inc.

    Miami, FL
    2 days ago
  •  ...About the role As a Security Application Engineer, you will play a key role in embedding security, compliance, and reliability into our IoT cloud applications across their full lifecycle. You combine hands‑on security engineering with process ownership and regulatory awareness... 
    Permanent employment
    Contract work
    Work from home
    2 days per week

    Daikin group

    Cedar Grove, WI
    4 days ago
  • $60 - $62 per hour

     ...experience — talk with your recruiter to learn more. Base pay range $60.00/hr - $62.00/hr Hello We are looking for Senior Application Security Engineers Locations: Hybrid Roles in Charlotte, NC, Westlake, TX, Chandler, AZ and Minneapolis, MN – 3 days Onsite and 2 days... 
    Contract work
    H1b
    Remote work

    Motion Recruitment

    Minneapolis, MN
    4 days ago
  • $117.2k - $146.6k

     ...a global leader in stored energy solutions for industrial applications. We have over thirty manufacturing and assembly plants worldwide...  ...and/or location. Job Purpose The Application Security Engineer is responsible for strengthening the security of our... 
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work
    Worldwide

    EnerSys Delaware, Inc.

    United States
    4 days ago
  • $100k - $160k

     ...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship

    Bright Vision Technologies

    Andover, MA
    8 days ago
  • $180k - $225k

     ...open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things...  ...Join our dynamic team as a Senior Application Security Engineer , where you'll play a pivotal role in securing the Temporal... 
    Full time
    Temporary work
    Part time
    Work at office
    Remote work
    Work from home
    Home office

    Temporal Technologies

    Remote
    1 day ago
  • $89.3k - $120k

     ...American Specialty Health Incorporated (ASH) is seeking an Application Security Engineer II to join our Information Security department. The primary purpose of this position is to protect and defend the information security posture and information assets from cyber... 
    Full time
    Work experience placement
    Local area
    Remote work
    Work from home

    American Specialty Health Incorporated

    Remote
    a month ago
  •  ...Application Security Engineer Looking for an application security engineer with a background in Java development and good experience working with application development tools: whitebox, blackbox, contrast security, sonarqube... Needs some programming experience.... 
    Remote work

    Samprasoft

    United States
    5 days ago
  •  ...Senior Application Security Engineer Our team is growing and we're hiring a Senior Application Security Engineer to join our engineering team and enable our next phase of growth. Canary's engineering team is fully remote! This role focuses on embedding security into... 
    Work at office
    Remote work

    Canary Technologies

    United States
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!