Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$160k

New Charter Technologies, Inc.

We are seeking an Application Security Engineer to join our product engineering team. This role focuses on embedded security within internal tooling and supports a roadmap toward a public‑facing SaaS product. The position is remote (United States) and full‑time. Key Responsibilities Embedded Security Partnership Serve as the primary security resource for engineering teams in close coordination with information security, advising on design decisions, authentication patterns, and API security as features are built. Conduct lightweight, developer‑friendly threat modeling for new features and services, right‑sized to the actual audience and risk profile (internal vs. public‑facing). Lead collaboration between engineering and information security teams through architecture and code reviews with actionable guidance that helps teams ship, not slow down. Responsible for remediation and enforcement of security standards as set forth by the information security team. Define and maintain a tiered security standard that distinguishes expectations for internal tooling, production SaaS, and public‑facing products. Engage constructively with the enterprise security organization, translating between compliance and governance language and the engineering team's operational reality. Tooling & Automation Ensure adherence to GitHub Advanced Security (GHAS) configuration and security standards through ongoing tuning across code scanning, secret scanning, Dependabot, and security campaigns within GitHub Enterprise. Integrate security tooling into CI/CD pipelines as policy‑as‑code feedback loops, not manual gates. Develop and maintain GitHub Actions workflows with reusable, security‑enforcing components. Drive remediation velocity metrics and coverage reporting across engineering teams. Cloudflare & Azure Security Collaborate with information security teams to assess and secure workloads across Cloudflare (Workers, Access, WAF, Zero Trust) and Azure (Managed Identities, Key Vault, Defender, IAM) for both internal and opco‑facing services. Apply platform‑appropriate security controls as our architecture spans both environments, calibrating to the risk profile of each workload. Evaluate and harden authentication flows, API security patterns, and service‑to‑service trust boundaries across Cloudflare and Azure environments. Contribute to container and cloud workload security as infrastructure patterns evolve. Development Contributions Contribute to internal security tooling, automation, and integrations using Python and/or Go. Build security utilities such as vulnerability aggregation pipelines, policy enforcement tooling, or developer‑facing security dashboards. Collaborate with information security and engineering teams on secure service design patterns, OAuth2.0/OIDC flows, and API security controls. Compliance & Risk Support SOC2 readiness as the product matures toward public customers, mapping application security controls to Trust Services Criteria. Triage and prioritize vulnerability findings based on actual business risk rather than CVSS scores alone, distinguishing real issues from noise in a SaaS‑native environment. Partner with GRC and the enterprise security organization on evidence collection and audit preparation, without allowing compliance prep to dominate engineering time. Required Qualifications 7+ years in application security, secure software development, or a closely related discipline. Demonstrated ability to operate as an embedded security partner within engineering, working side by side with developers. Deep, hands‑on experience with GitHub Advanced Security or equivalent tooling, including code scanning, secret scanning, Dependabot, and security policy enforcement within GitHub Enterprise. Experience with threat‑modeling methodologies (STRIDE, PASTA, or similar) applied to real‑world systems, with instinct for right‑sizing the process to actual risk. Proficiency in Python and/or Go, comfortable reading, writing, and reviewing production‑grade code. Strong command of OWASP Top10, common vulnerability classes, and secure design principles. Experience securing SaaS or product engineering workloads rather than enterprise IT or perimeter‑focused environments. Experience securing workloads on Cloudflare (WAF, Access, Zero Trust, Workers) and Microsoft Azure (IAM, Managed Identities, Key Vault, Defender), with demonstrated depth in one and working familiarity in the other. Solid understanding of container security concepts with hands‑on Docker experience. Excellent communication skills, with the ability to translate complex security risk into developer‑actionable guidance and executive‑level business context. Familiarity with SOC2 Trust Services Criteria and how application security controls map to compliance requirements. Preferred Qualifications Experience with DAST tooling (e.g., OWASP ZAP, Burp Suite Pro) integrated into automated pipelines. Familiarity with infrastructure‑as‑code security scanning (Terraform or similar). Experience with API security standards including OAuth2.0, OpenID Connect, and API gateway security patterns. Relevant certifications such as CSSLP, GWEB, or OSCP. AI/LLM security awareness, including prompt injection, data exposure, and model supply chain risks. Familiarity with MCP (Model Context Protocol) server architectures and the security implications of LLM‑to‑tool integrations. Exposure to OWASP Top10 for LLM Applications or similar emerging AI security frameworks. Expected compensation starting at $160k and up, dependent on experience. What Success Looks Like In this role, success means developers ship more secure code faster, not slower. You earn trust by speaking the language of engineering, making the secure path the easy path, and knowing when to raise a flag versus when to let something ship. You apply proportionate security judgment across a spectrum from exploratory internal tooling to production SaaS, and you never mistake compliance theater for actual security. The ideal candidate brings depth to identify serious security issues, engineering credibility to help teams fix them at scale, and pragmatism to distinguish real risk from noise in a SaaS‑native, developer‑first environment. New Charter Technologies is committed to creating an inclusive environment and is proud to be an equal‑opportunity employer. We recruit, employ, train, compensate, and promote regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status. #J-18808-Ljbffr New Charter Technologies, Inc.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in Denver, CO vacancy
  • $40 per hour

     ...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback...  ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some... 
    Suggested
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Denver, CO
    3 days ago
  • $165k - $225k

     ...with the talent and ambition to build the technology that secures it. OUR MISSION True Anomaly delivers decisive capabilities...  ...we are better together. YOUR MISSION As a Senior Application Security Engineer, you will be instrumental in implementing and auditing... 
    Suggested
    Permanent employment
    Shift work

    True Anomaly

    Denver, CO
    5 days ago
  •  ...Security Analyst Key Responsibilities (with Technologies): Conduct in-depth security testing on front-end web and mobile apps to uncover...  ...to refine testing strategies. Technologies: SET (Social-Engineer Toolkit), Gophish, OSINT tools (e.g., Maltego, Recon-ng) Utilize... 
    Suggested

    My3Tech Inc

    Englewood, CO
    4 days ago
  • $110k

    Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data... 
    Suggested
    Full time

    Ryder System, Inc.

    Denver, CO
    3 days ago
  • New Charter Technologies, Inc. is seeking an Application Security Engineer to join their product engineering team. This remote position focuses on embedded security within internal tooling and will support a roadmap toward a public-facing SaaS product. Ideal candidates... 
    Suggested
    Remote job

    New Charter Technologies, Inc.

    Denver, CO
    5 days ago
  • $70k - $100k

     ...Application Engineer - Valve : This is a full-time on-site role for an Application Engineer with Applied Control at our Headquarters in Centennial, CO. We are looking for a knowledgeable and skilled Application Engineer to join our team. Technical Expertise - Provide... 
    Full time
    Flexible hours

    Applied Control

    Centennial, CO
    4 days ago
  • $120k - $160.5k

     ...United States Government Space Technology Export Regulations, the applicant must be a U.S. citizen, lawful permanent resident of the U.S.,...  ...team. We are looking to add several Senior Applications Engineer II to our rapidly growing customer-facing team. In this... 
    Permanent employment
    Full time
    Contract work
    Work experience placement
    Local area

    CesiumAstro

    Westminster, CO
    5 days ago
  • $9.4k

     ...systems, including their equipment and applications. You will collaborate closely with our...  ...and service teams, playing a key role in securing projects and contributing to our...  ...municipal utilities, industrial plants, engineering consultants, and contractors-to assess... 
    Temporary work
    For contractors
    Work at office
    Immediate start
    Flexible hours

    Harrington Process Solutions

    Denver, CO
    3 days ago
  • $86k - $111k

     ...Senior Application Engineer, CNC Machining Denver, CO Xometry powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry's digital marketplace gives manufacturers the critical resources... 

    Xometry

    Denver, CO
    15 days ago
  •  ...the approved solution architecture and the existing enterprise application UFacts. This role will work and collaborate with the Solution...  ...development tools and approaches and leverage best practices in coding, security and documentation. The role will work directly with agency... 
    Contract work
    For contractors
    Work experience placement

    Advance American Tech, Inc.

    Denver, CO
    1 day ago
  •  ...Application Engineer Date: Jun 1, 2026 Location: Denver, CO, US, 80202 Rochester Hills, MI, US, 48309 Company: Gates Corporation Are you inspired by challenging the status quo? Do you thrive in collaborative environments that drive results? If so, Gates could... 
    Full time
    Work at office
    Immediate start
    Visa sponsorship

    Gates Corporation

    Denver, CO
    2 days ago
  • $85k - $95k

     ...Role We're looking for a hands-on, technically curious Applications Engineer to take ownership of the performance, reliability, and optimization...  ...system design improvements and ensure compliance with data security and regulatory standards Provide technical guidance... 

    Xylem

    Aurora, CO
    2 days ago
  •  ...Application Engineer, Injection Molding Denver, CO Xometry powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry's digital marketplace gives manufacturers the critical resources... 

    Xometry

    Denver, CO
    16 days ago
  •  ...passionate and forward-thinking experts. We're one of the largest engineering and system integration firms in the United States providing...  ...resources available at that site. We are seeking an Application Engineer (proposals focus) to be responsible for initial consultation... 
    Local area
    Remote work

    E Tech Group

    Denver, CO
    3 days ago
  •  ...Applications Engineer 2 We are from US IT Solutions, an ISO Certified, E-Verify, WMBE Certified organization established in 2005 in CA. Our company is serving various State, Local and County Departments for over 10 years. USITSOL has been helping clients innovate across... 
    Local area

    Tech Marketing

    Denver, CO
    5 days ago
  • $70k

     ..., Metal Working, Supply Chain Services and Service Centers. Check out our many videos to learn more! Summary: The Applications Engineer will design, select, and configure pumps and fluid systems, support applications engineering with equipment sizing, pricing,... 
    Full time
    Work at office
    Flexible hours
    Shift work

    DXP Enterprises

    Sheridan, CO
    3 days ago
  • $45 - $50 per hour

     ...Job Title: Senior Video Application Engineer Location: Denver, CO 80111 (Onsite from Day 1) Duration: 6 Months Interview Mode: WebEx + In-Person Pay Rate: $45 - $50 Job Summary We are seeking a Senior Video Application Engineer with strong experience... 

    Artech

    Greenwood Village, CO
    1 day ago
  •  ...We are looking for a Mid-Senior Java Engineer to join our growing multi-disciplinary team. As our Senior Java Engineer, you will provide...  ...high performance and availability of distributed systems and applications Develop state-of-the-art analytics tools to support... 
    Work experience placement

    Advance American Tech, Inc.

    Denver, CO
    3 days ago
  • $91.6k - $152.75k

     ...Position Summary The Hydraulic Pump and Motor Division is looking for an Applications Engineer. This position will be based out of their home office in the Denver, CO or Dallas, TX area. This position will be responsible for driving the strategic growth segments... 
    Temporary work
    For contractors
    Remote work
    Home office
    Night shift

    Parker Hannifin Corporation

    Denver, CO
    2 days ago
  •  ...regulation of state chartered commercial banks, trust companies, and state licensed money transmitters; holds charter and license application hearings and issues rules and regulations affecting regulated institutions; staff conducts examinations of state chartered... 
    Contract work
    Work at office
    Local area
    Work from home

    Advance American Tech, Inc.

    Denver, CO
    1 day ago
  • $90k - $105k

     ...from you! Your opportunity Be responsible for packaging applications to company standards and timeframes, inc. facilitating UAT...  ...into the Production environment, in adherence with Information Security policies and Change Management best practices, to globally distributed... 
    Flexible hours

    Janus Henderson Investors

    Denver, CO
    6 days ago
  • $65k - $85k

     ...chance to make a lasting impact in the communities we serve. We review every application carefully and appreciate your interest in growing your career with our team. Position: Application Engineer Salary Range: $65,000 - $85,000 per year (based on experience)... 
    Full time
    Temporary work
    For contractors
    Work experience placement
    Casual work
    Work at office
    Local area
    Monday to Friday

    CFM Company

    Denver, CO
    2 days ago
  •  ...IT Applications Engineer V, Mobile (iOS & Android) Atlanta, GA, or Greenwood Village, CO (Remote / Hybrid - 1 day/week onsite) Employment...  ...Firebase, AEM, REST APIs, Jenkins, GitHub Actions, Mobile Security Client is seeking an experienced IT Applications... 
    Permanent employment
    Full time
    Remote work
    Relocation
    1 day per week

    Veracity

    Greenwood Village, CO
    4 days ago
  • This position sits within an application engineering organization responsible for delivering enterprise-scale digital solutions that support critical...  ...and technical leadership to translate business needs into secure, scalable application solutions across the full software... 
    Local area
    Flexible hours

    Kaiser Permanente

    Denver, CO
    2 days ago
  • $180k - $258k

    Candid Health is seeking a Product Security Engineer focused on ensuring security as a core component of our products. The role involves leading threat modeling, collaborating with developers, and managing vulnerabilities, guaranteeing our software is secure by design.... 

    Candid Health

    Denver, CO
    1 day ago
  • A leading technology company is seeking a Bilingual Japanese Application Engineer. You will interface with engineering teams in Japan, provide technical support for semiconductor manufacturing, and manage customer relationships. A Bachelor’s Degree in Engineering and 2... 

    Interplace, Inc.

    Denver, CO
    4 days ago
  • $144k - $210k

    Eaton’s North American Sales division is currently seeking an Application Engineer - Mission Critical to join its team. This position is based in Littleton, CO, and only candidates located in the area will be considered. This exciting opportunity offers the chance to lead... 
    Full time
    For contractors
    H1b
    Local area
    Relocation
    Visa sponsorship

    Nutanix

    Littleton, CO
    4 days ago
  • $141k - $162k

     ...performing team that believes in each other, come build with us at Crusoe. About This Role: As the Senior Applications Electrical Engineer , you'll be the primary technical interface between our estimating team, our customers, and our Engineering/Manufacturing... 
    Full time
    Temporary work
    Work at office

    Crusoe

    Arvada, CO
    1 day ago
  •  ...Senior Applications Engineer – C#/GraphQL/ArcGIS/AGOL Developer Location: Prefer St. Louis, MO candidates. If outside St. Louis, must live in one of the following metro areas: Austin (TX), Charlotte (NC), Dallas (TX), Denver (CO), Chicago/Lockport (IL), Houston (TX)... 
    Live in
    Work at office
    Local area
    Remote work
    3 days per week

    Anveta

    Denver, CO
    2 days ago
  • $70k - $80k

    A global investment firm in Denver seeks a motivated individual skilled in application packaging and deployment. This role includes responsibilities such as delivering software, providing third-line support, and continuous improvement initiatives. The ideal candidate should... 

    Janus Henderson Global Investors

    Denver, CO
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!