Application Security Engineer
MicroStrategy
Company Description
Strategy (Nasdaq: MSTR) is at the forefront of transforming organizations into intelligent enterprises through data-driven innovation. We don't just follow trends-we set them and drive change. As a market leader in enterprise analytics and AI software, we've pioneered the BI and analytics space, empowering people to make better decisions and revolutionizing how businesses operate. We are now also at the forefront of AI disruption, providing data via our enterprise semantic layer to AI agents, tools, and platforms.
But that's not all. Strategy is also leading a groundbreaking shift in digital assets, adopting bitcoin as our primary treasury reserve asset in 2020. Since then, we have issued innovative bitcoin-backed securities and have been the leader in bitcoin treasury companies. This visionary move has helped us build a fortress balance sheet, and is solidifying our position as a forward-thinking, innovative force in the market.
Our people are the core of our success. At Strategy, you'll join a team of smart, creative minds working on dynamic projects with cutting-edge technologies. We thrive on curiosity, innovation, and a relentless pursuit of excellence.
Our corporate values-bold, agile, engaged, impactful, and united-are the foundation of our culture. As we lead the charge into the new era of AI and financial innovation, we foster an environment where every employee's contributions are recognized and valued.
Join us and be part of an organization that lives and breathes innovation every day. At Strategy, you're not just another employee, you're a crucial part of a mission to push the boundaries of analytics and redefine financial investment.
Job DescriptionApplication Security Engineer
Strategy (Nasdaq: MSTR) * Tysons Corner, VA * Full-time, 5 days/week on-site
Job Description
Join Strategy's IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategy's software applications by deploying AI-powered security tooling to protect the software development lifecycle at scale. You will be responsible for integrating security practices throughout the SDLC, ensuring our software products are resilient against vulnerabilities.
Responsibilities
AI Security Governance: Evaluate and establish guardrails for the secure use of AI coding assistants (e.g., Copilot, Cursor, Claude) within the engineering organization, including policy development around AI-generated code review, training data exposure risks, and prompt injection vulnerabilities in AI-integrated applications.
Secure SDLC Integration: Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing.
Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.
Security Assessments & Penetration Testing: Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws.
Secure Code Review: Analyze source code using both manual review and AI-assisted code analysis tools (e.g., GitHub Copilot Autofix, Semgrep, or similar) to surface vulnerabilities earlier in the development cycle and deliver actionable, in-context remediation guidance to developers.
Threat Modeling & Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture.
DevSecOps Enablement: Support and enhance DevSecOps initiatives by integrating AI-assisted security automation within CI/CD pipelines, including AI-powered SAST/DAST tools and LLM-based code scanning to accelerate vulnerability detection at the point of commit.
Incident Response & Remediation: Assist in investigating security incidents related to applications and work with engineering teams to remediate threats.
Security Awareness & Training: Educate and mentor developers on OWASP Top 10, SANS 25, and other security best practices.
-
Bachelor's degree in Computer Science, Engineering, or related field
Minimum 2 years of software development or software security experience in an agile environment
Hands-on experience applying Generative AI and/or ML to security use cases-such as vulnerability triage, threat detection, or secure code review automation-and a strong drive to stay current as AI security tooling evolves.
Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP)
Fluent in one or more programming languages, such as Python, Java, JavaScript
Strong knowledge of secure coding principles and application security frameworks
Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners)
Understanding of security standards and regulations (e.g., OWASP, NIST)
Experience with cloud security best practices in AWS, Azure, or GCP
Familiarity with AI/LLM-specific security risks including prompt injection, model poisoning, insecure output handling, and the OWASP Top 10 for LLM Applications.
Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues
Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders
Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills
Strategy is an equal opportunity employer. All applicants will receive consideration for employment without regard to race, creed, color, religion, national origin, gender, sex, sexual orientation, gender identity, disability, veteran status, age, genetic information, or any other legally-protected basis.
Strategy provides reasonable accommodation for qualified individuals with disabilities in the hiring process. If you have any difficulty using our online system and you need an accommodation due to a disability, you may contact us about your interest in employment View email address on click.appcast.io.
Visit Strategy's Careers page for additional information.
- ...Implement and develop, and integrate information security risk management into application and software development lifecycles. Develop and maintain security policies and standards. Provide risk assessments and/or threat modeling. Review source code, perform tests to enhance...Suggested
- ...customers’ business challenges, Take2 will work as a partner to best resolve client needs. Take2 is hiring a Senior Application Security Engineer. This is a fully remote role. Job Description ~6+ years of Information Technology experience ~3+ years of experience...SuggestedFull timeRemote work
- ...Job Description Application Security Engineer Strategy (Nasdaq: MSTR) • Tysons Corner, VA • Full-time, 5 days/week on-site Job Description Join Strategy's IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategy...SuggestedFull time
- ...VA Contract What You'll Do: Collaborate with a team of engineers to implement *** specific security policies in the CI/CD security tools including but not limited to SAST, DAST and SCA applications. Work with Development, DevOps and Security teams to...SuggestedContract workWork experience placement
- Responsible for supporting application security through security testing, vulnerability management, secure design collaboration, automation... ...innovative security tools and a team of dedicated security engineers to protect our products throughout their lifecycle.Job Summary...Suggested
- Bloomberg BNA is seeking an Application Security Engineer I to support the security of applications. Responsibilities include conducting security assessments, implementing controls, and collaborating with developers to ensure secure coding practices. This entry-level position...
- Ernst & Young Oman is seeking an Application Security Engineer to enhance security tools and processes. Your role includes managing application security platforms, automating processes, and ensuring the adoption of secure coding practices. Collaborate with cybersecurity...
- Ernst & Young Oman is hiring an Application Security Engineer in Arlington, Virginia. The role involves managing application development platforms and optimizing security tools while ensuring operational efficiency through automation. Ideal candidates should have a relevant...Flexible hours
$110k
...Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data...Full time$110k
...Job Seekers can review the Job Applicant Privacy Policy by clicking here ( . Job Description : SUMMARY We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must...Full time$150.2k - $225.4k
...About the team: The Information Security organization advances the overall state of security at Rubrik through purposeful... ...information. About the role: Rubrik is seeking an Application Security Engineer. In this role, you will be responsible for ensuring that...Work experience placementLocal areaRemote workShift work$135k - $200k
...Application Security Engineer Palantir builds the world's leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions...Work experience placementWork at officeRemote workWork from homeRelocation package- ...AI Systems Security Specialist Client added a crucial skill that they are seeking expertise in here is securing AI systems... ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure as Code...
- ...If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Senior Application Security Engineer Reston, VA, US 2 days ago Requisition ID: 1075 Want to energize your career...Work at officeLocal area2 days per week3 days per week
- ...Job Title Must Have:- • Seeking candidates with solid expertise in manual web application penetration testing and manual secure code review. • Expertise in performing manual test case scenarios is a must. • Identification of vulnerabilities in source codes manually...
- ...SourcePro Search is conducting a search for an experienced Senior Application Security Engineer in Washington, DC. The ideal candidate will serve as subject matter expert integrating secure design for applications and services within the system development lifecycle. This...
- ...Application Security Engineer Braintrust is the AI observability platform. By connecting evals and observability in one workflow, Braintrust gives builders the visibility to understand how AI behaves in production and the tools to improve it. Teams at Notion, Stripe...Flexible hours
- ...Application Security Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise...
$140k - $160k
...Overview Edgewater is currently seeking an Application Security Engineer who will be a hands‑on subject matter expert in Microsoft Azure cloud technologies, application security, security architectures, security tools, and methodologies. The Application Security Engineer...Contract workLocal areaRemote work- ...Location- Hybrid in Memphis, TN, Addison, TX, or McLean, VA. Rate- $80-90/hr . ON W2 As Senior Lead Engineer for Application Security Architecture team, you will work closely with application team to help implement security solutions that are tailored...Work experience placement
$210k - $230k
...report into the Director, Information Security and build relationships with technology... ...payment systems to identify and remediate application vulnerabilities. This individual... ...increase our AppSec posture and enable our engineers to code safely. Innovate with AI and deliver...Full timeWork at officeFlexible hours$77.5k - $140.9k
...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to...Summer holidayFlexible hours- CGI Njoyn is looking for a Technical Analyst - Application Engineer in Washington, DC. This permanent full-time role requires expertise in software development and will involve automating processes within CGI's Momentum financial management system at a government agency...Permanent employmentFull time
- A leading security solutions firm is seeking a Senior Application Security Engineer in Washington, DC. The ideal candidate will integrate secure design in application development and collaborate on security solutions. They should have extensive experience in cybersecurity...
- Ernst & Young Oman seeks an Application Security Engineer to enhance security tools and manage development platforms. You will collaborate with teams to integrate security processes and automate deployments while ensuring optimal security measures throughout the software...
$210k - $230k
Upside is seeking an experienced Security Engineer to identify and mitigate application vulnerabilities. This role requires expertise in application security and a deep understanding of AWS architecture. Responsibilities include innovating security solutions and conducting...Work at office- ...skills and experience managing complex programs in a litigation environment. Responsibilities include developing and maintaining applications, translating requirements, and refining programs to enhance efficiency. The role requires substantial programming experience and...Full time
- ## Job Description# Sr Applications Engineer**Location:** Falls Church, Virginia (Remote) **Employment Type:** Contract to Perm* Implement and... ...Active Directory Services and manage application security, including Single-Sign-On and Certificate Management.* Ensure...Permanent employmentContract workRemote work
$131.7k - $206.45k
...Credit Union currently does not provide sponsorship for this role. Applicants must be authorized to work in the United States without the... ...Defense & Monitoring team within Navy Federal's Product Security Group. In this role, you will deliver on a dynamic team responsible...Full timeMonday to FridayShift work$47.85 - $57.85 per hour
...mutually agreeable solutions to close workflow gaps. Involves design, building, testing, and implementation of Epic integration application systems. Works with clinicians to create or adapt written protocols. Resource should able to troubleshoot the issues and provide...Hourly payWork experience placementLive inWork at officeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- senior application security engineer Falls Church, VA
- senior application support engineer Falls Church, VA
- application performance engineer Falls Church, VA
- senior app developer Falls Church, VA
- software applications developer Falls Church, VA
- senior application developer Falls Church, VA
- app developer Falls Church, VA
- IT security engineer Falls Church, VA
- network security engineer Falls Church, VA
- information technology security engineer Falls Church, VA

