Application Security Engineer
$175k - $215kQuanata
About Quanata: Quanata is a premier, internationally recognized insurance technology innovation leader, cybersecurity trailblazer, and digital product pioneer on an absolute mission to help ensure a better world through sophisticated, context-based risk prediction and prevention software solutions. Blending elite Silicon Valley software talent and cutting-edge technical thinking with the stable, long-term funding and strategic backing of leading enterprise insurer State Farm, Quanata operates as a wholly owned high-growth subsidiary. Our distributed agile engineering groups build, manage, and scale a full-stack, flexible, and increasingly AI-native insurance software platform that empowers our primary clients, State Farm and HiRoad Assurance Company, to adapt seamlessly to changing consumer market demands. Prioritizing an inclusive, high-craft, and intensely positive workplace culture, Quanata thrives on giving its engineering teams the freedom to make a quantifiable structural impact on real-world systems. The company provides high-agency security engineers with an uncompromised remote canvas to leverage state-of-the-art secure development lifecycles, manipulate advanced automated vulnerability scanners, and govern cloud infrastructure safety models safely across the United States.
Position Overview
We are seeking a highly analytical, systems-minded Application Security Engineer to join our core centralized Security collective in a full-time remote capacity across the United States. In this high-leverage and tech-centric defensive seat, you will step up to claim true individual operational and strategic accountability for building secure-by-default products and services across our entire AI-native insurance technology platform. Shifting completely away from routine standalone firewall provisioning, monotone audit questionnaire checking, or passive baseline network monitoring, you will operate as a principal application defense architect—partnering face-to-face with Product and Software Engineering pods to shift security left into early application design phases. This position requires an enterprise tech or SaaS application security veteran with 4 to 6+ years of software engineering depth who codes automated security guardrails fluidly natively using Cybersecurity parameters, audits web codebases for logic flaws smoothly natively using QA Engineer inspection playbooks, and commands advanced threat modeling methodologies confidently under shifting production deadlines.
Key Responsibilities
- SDLC Security Automation and Architecture: Design, develop, and implement automated security testing guardrails, static/dynamic code analysis workflows (SAST/DAST), and dependency validation gates across our continuous deployment tracks cleanly natively utilizing Cybersecurity guidelines.
- Advanced Platform Threat Modeling: Lead comprehensive threat modeling exercises across complex, distributed software systems, leveraging methodologies like STRIDE or PASTA to isolate architectural vulnerabilities early in product discovery cycles.
- Meticulous Secure Code Auditing: Review pull requests, conduct deep semantic secure code reviews, and perform thorough application security assessments natively leveraging QA Engineer frameworks to eliminate potential application injection patterns, logical auth bypasses, or data leakage bugs.
- Vulnerability Management and Triage: Investigate, categorize, prioritize, and drive the systematic remediation of application security vulnerabilities, coordinating remediation tracks alongside software development cells.
- Secure Coding Advocacy and Coaching: Foster a secure development culture across the technical group, driving interactive secure coding training, engineering workshops, and proactive technical threat awareness initiatives.
- Compliance and Privacy Risk Management: Partner in lockstep with distributed Data Privacy, Security Operations, and Corporate Business Assurance teams to ensure platform compliance with strict insurance industry data rules and risk management objectives.
- Security Documentation and Standards Curation: Formulate, document, and maintain highly clear, scalable application security standards, procedural manuals, and secure-by-design baseline playbooks implemented across all engineering cells.
- AI Ecosystem and LLM Security Hardening: Research, model, and deploy specific defensive guardrails tailored to AI models, tracking emerging vector spaces including Large Language Model (LLM) top risks, injection strains, and prompt engineering leaks.
Required Skills & Qualifications
- A minimum of 4 to 6 years of verified professional history running advanced software engineering, application security consulting, penetration testing, distributed cloud security programming, or technical systems auditing.
- Mandatory Field Focus Depth: A minimum of 2 years of documented experience explicitly focused on application security engineering tracks, showing a history of partnering directly with software development teams to eliminate application layer risks.
- Deep, authoritative technical command of modern secure-by-design software development principles, containerization risks, cloud application patterns, and cryptography basics.
- Expert-tier capability writing security scanning macros, deploying automated pipelines, and configuring code parsers natively utilizing Cybersecurity tools.
- Practical operational familiarity parsing software testing registries, tracking vulnerability matrices, and running automated regression logic natively using QA Engineer protocols.
- Comprehensive familiarity with standard application security frameworks, requiring deep functional command of OWASP Top 10, ASVS, and MASVS guidelines.
- Hands-on programming proficiency in at least one modern programming language (such as Python, Java, Go, or JavaScript) alongside deep familiarity with its specific security ecosystem, library flaws, and package management constraints.
- Outstanding written, verbal, and interpersonal communication attributes in fluent English, enabling total confidence when explaining abstract technical risks or influencing cross-functional engineering leads.
- Location Context: Position open exclusively to qualified application security engineers based permanently and resident within the United States to operate under a remote-first layout (excluding U.S. territories), with core mandatory collaboration meeting hours running from 9:00 AM to 2:00 PM Pacific Time daily.
Preferred Strategic Indicators (Nice to Have)
- Possession of a recognized, industry-vetted technical security credential, such as a CSSLP, GWEB, OSWE, or closely related penetration testing certification.
- Prior commercial security engineering background operating explicitly within highly regulated environments, such as insurtech ecosystems, financial services SaaS platforms, fintech gateways, or healthcare records architectures.
- Advanced hands-on experience executing dynamic mobile application security testing (iOS/Android tracking) or running live web penetration testing events.
- Active, documented involvement in the global cybersecurity community through open-source contributions, developer mentoring, security publications, or conference presentations.
What We Offer
- Enterprise-Backed Silicon Valley Salaried Blueprint: An highly attractive full-time base salary package structured transparently between $175,000 and $215,000 USD per year , calibrated precisely to evaluate your application security authority and automation craft depth.
- The exceptional professional canvas to claim absolute technical ownership over the application security systems protecting a hyper-growth AI-native InsurTech platform fully backed by State Farm.
- Profound work-from-home remote parameters offering a remote-first layout across America, complete scheduling trust outside core meeting frames, and zero physical geographic commuting friction (with voluntary physical office access available for candidates resident near San Francisco, CA or Providence, RI).
- An exceptional **$2,000 USD One-Time Payment Workspace Stipend** provided immediately upon hire to fully furnish your remote office layout, paired with a brand-new, fully provisioned corporate MacBook Pro delivered straight to your home.
- Immediate baseline access to premium comprehensive corporate healthcare and family balance benefits, including robust medical, dental, and vision packages for you and your dependents, supplemental income tracks, and a company matching 401(k) plan.
- Access to elite mental health and wellness provisions, featuring a premium subscription to the Headspace application and a recurring monthly monetary wellness allowance.
- Generous time-off benefits, including an accrual of 4 weeks of paid vacation (PTO) in your very first year of employment, alongside 12 weeks of fully paid parental leave available to both birthing and non-birthing parents alike.
- Unmatched career and personal development upskilling systems, offering up to **$5,000 USD cash every single year** to finance external professional learning courses or continuing education, a full subscription to LinkedIn Learning, and advanced professional coaching tracks managed through BetterUp.
$100.63k - $167.79k
...your success while helping clients pursue their financial goals. Job Overview:As a member of the Information Security team, the Sr. Application Security Engineer will be responsible for helping to develop, mature, and sustain the Application Security program for the...SuggestedFull timeWork from home$99k - $225k
Application Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$111k - $144.4k
Remote - US / Reno, NVAdministration - Enterprise Information Security /Full-Time /RemoteThe Sr. Application Security Engineer is responsible for validating that application services are designed and implemented with high security standards. The role analyzes the security...SuggestedFull timeTemporary workWork experience placementRemote work$160.3k - $240.5k
...architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top... ...millions of creators and their users.We are seeking a Senior Application Security Engineer with profound expertise in application security. In this...SuggestedFull timeWork at officeRemote workWorldwide- Job Role: Application Security Engineer with AWS, Cequence ,API Security(Remote)Location: RemotePrimary FocusDeployment and integration of Cequence API Security Wiz Federal Splunk and Cribl.AWS GovCloud federal government telecom or highly regulated cloud environments.Handson...SuggestedRemote work
- ...Premium and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to...Full timeLocal areaRemote workFlexible hoursShift work
$135k - $150k
...while our focus on creativity and innovative solutions empowers our customer communities to thrive.We are seeking a Senior Application Security Engineer to lead hands-on application security testing, secure code review, and secure SDLC enablement across moder application...Full timeTemporary workWork at officeLocal areaRemote work3 days per week- ...of people and we’re just getting started.About The RoleOur Security Engineering team builds intelligent systems that protect Opendoor and our... ...where they matter, not gates where they don't.As our Application Security Engineer, you'll own how we find, prioritize, and...Work at officeMonday to FridayShift work
$86.9k - $198k
Application Security EngineerThe Opportunity: Integrate security practices throughout the software development lifecycle to enhance and maintain... ...skillsMaster's degree in Cybersecurity, CS, Software Engineering, Information Assurance, or a related technical fieldCompensationAt...Full timeContract workPart timeWork at officeLocal areaRemote work- ...more details.Job SummaryThis role focuses on comprehensive application security testing and vulnerability management across the software development... ...scripts and code in Java and Python as needed for security engineering and automation.Vulnerability Management & ComplianceEnsure...Full timeWork at officeLocal areaRemote work1 day per week
$99k - $225k
Application Security Engineer, LeadThe Opportunity: A well-designed network is critical to move data and enable financial institutions to achieve their missions, but how can an organization make sure their network will fit their evolving needs? Crafting the right network...Full timeContract workPart timeWork at officeLocal areaRemote work- ...public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a... ...reimbursement and more. Who we’re looking for: We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security...Contract workRemote work
- ...crucial skill that they are seeking expertise in here is securing AI systems. The hiring manager needs someone who can enhance... ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure...Remote work
$110k
...Job Seekers can review the Job Applicant Privacy Policy by clicking here ( . Job Description : SUMMARY We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must...Full time- ...Senior Application Security Engineer DevSecOps and Cloud This is a remote position. Initially hybrid with 1 day a week on Wednesday and will eventually 5 days onsite Location: Chicago IL, Peoria IL or Dallas TX – local candidates only Key skills: Experience with...Local areaRemote work1 day per week
$150k - $196k
...Description Senior AppSec Engineer Location: Remote, USA Employment Type: Full-Time Benefits Offered: Vision,... ...objective, job-related criteria. Summary The Senior Application Security Engineer joins the Information Security team and plays a key...Full timeTemporary workRemote work- ...Application Security Engineer . Location: Mexico Remote As a Google SecOps Engineer, you will be responsible for the end-to-end implementation and management of the Google Security Operations platform, including both SIEM and SOAR capabilities....Temporary workRemote work
$134.6k - $175k
...lower cost through early diagnosis and longitudinal care management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does. This is a hands-on offensive security role on our Eng Core team,...Full timeWork experience placementWork at officeRemote workFlexible hours$80k - $110k
...As an Application Security Engineer you will perform application security testing on web applications, mobile applications, microservices, infrastructure code, and open source code in order to expose weaknesses in their design and/or configuration that make them susceptible...Full timeTemporary workWork experience placementRemote work- ...against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR... ...Envision yourself at Barracuda As a Senior Application Security Engineer, you’ll help shape the future of our AppSec program. You’ll...Remote workWorldwideFlexible hours
$85k - $105k
...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and...Full timeH1bLocal areaImmediate startRemote workVisa sponsorship$140k - $200k
...Senior Application Security Engineer New York, New York; Miami, Florida; Remote (USA) Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to...Work at officeRemote workFlexible hours- ...About the role As a Security Application Engineer, you will play a key role in embedding security, compliance, and reliability into our IoT cloud applications across their full lifecycle. You combine hands‑on security engineering with process ownership and regulatory awareness...Permanent employmentContract workWork from home2 days per week
$60 - $62 per hour
...experience — talk with your recruiter to learn more. Base pay range $60.00/hr - $62.00/hr Hello We are looking for Senior Application Security Engineers Locations: Hybrid Roles in Charlotte, NC, Westlake, TX, Chandler, AZ and Minneapolis, MN – 3 days Onsite and 2 days...Contract workH1bRemote work$117.2k - $146.6k
...a global leader in stored energy solutions for industrial applications. We have over thirty manufacturing and assembly plants worldwide... ...and/or location. Job Purpose The Application Security Engineer is responsible for strengthening the security of our...Temporary workWork experience placementWork at officeLocal areaRemote workWorldwide$100k - $160k
...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and...Full timeH1bLocal areaImmediate startRemote workVisa sponsorship$180k - $225k
...open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things... ...Join our dynamic team as a Senior Application Security Engineer , where you'll play a pivotal role in securing the Temporal...Full timeTemporary workPart timeWork at officeRemote workWork from homeHome office$89.3k - $120k
...American Specialty Health Incorporated (ASH) is seeking an Application Security Engineer II to join our Information Security department. The primary purpose of this position is to protect and defend the information security posture and information assets from cyber...Full timeWork experience placementLocal areaRemote workWork from home- ...Application Security Engineer Looking for an application security engineer with a background in Java development and good experience working with application development tools: whitebox, blackbox, contrast security, sonarqube... Needs some programming experience....Remote work
- ...Senior Application Security Engineer Our team is growing and we're hiring a Senior Application Security Engineer to join our engineering team and enable our next phase of growth. Canary's engineering team is fully remote! This role focuses on embedding security into...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- senior application security engineer Remote
- project application engineer Remote
- application performance engineer Remote
- cnc applications engineer Remote
- application system engineer Remote
- application security engineer Remote
- field applications engineer Remote
- application operations engineer Remote
- application engineering manager Remote
- application support engineer Remote


