Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$115k - $145k
Full-time

Veilant

Company Description We were early to the fight against Ubiquitous Technical Surveillance, and we’ve been pushing the edge ever since. Our mission is to help government and enterprise organizations understand and manage commercial data risks, shape their digital signatures, and operate with confidence in an increasingly complex information landscape. We build and integrate advanced, tech-forward solutions to problems our customers often don’t know they have – until it matters most. We move fast, think critically, and deliver where it counts. What’s in it for you? We work hard and do fun things. You’ll work on high-impact, technically challenging problems alongside a team that values teamwork over competition. Veilant offers a solid work-life balance and flexible remote work options. At Veilant, you’ll work with the most talented software developers, systems engineers, and subject matter experts, building tools and systems that make a real difference. Job Description Veilant is looking for an Application Security Engineer to join our InfoSec team and help validate, secure, and continuously improve software developed by internal and partner engineering teams. This role is ideal for someone who combines a software engineering foundation with an attacker mindset. You will review major and minor software releases before deployment, identify and validate vulnerabilities, create proof-of-concept demonstrations where appropriate, and provide practical remediation guidance that developers can act on. You will not simply file security tickets and move on. You will work closely with engineering teams to understand application architecture, business logic, user workflows, data sensitivity, and production environments so that your findings are accurate, contextualized, and useful. You will work collaboratively across Veilant’s software, DevSecOps, and infrastructure teams. In this role, you will: Audit software releases across major and minor cycles to intercept and remediate security flaws before deployment. Analyze source code to identify, isolate, validate, and contextualize vulnerabilities in complex application codebases. Build safe proof-of-concept examples to demonstrate exploitation paths and verify the real-world impact of discovered risks. Contextualize findings based on application business logic, user workflows, data sensitivity, and production use cases. Author clear remediation guidance and partner with development teams to implement effective patches, controls, or architectural mitigations. Intercept and analyze application-layer network traffic using tools such as Burp Suite or similar intercepting proxies to inspect encrypted payloads, API calls, and authentication flows. Assess and help secure core architectures across REST APIs, SQL databases, PostgreSQL, JWT/OAuth, identity providers, and token-based authentication mechanisms. Perform threat modeling for web applications based on use cases, data flows, user roles, trust boundaries, and production environments. Improve DevSecOps pipelines by integrating, tuning, and operationalizing SAST, DAST, SCA, IaC scanning, secrets detection, and container security tooling. Support container runtime security efforts using monitoring and runtime protection tools such as Falco, NeuVector, or similar technologies. Create standardized security reporting that translates technical findings into clear risk narratives for both engineering teams and executive stakeholders. What You Will Accomplish in Your First Six Months Within your first six months, success in this role will look like: Building a repeatable AppSec review process for major and minor software releases, helping engineering teams identify and resolve security issues before deployment. Integrating and improving SAST, DAST, and SCA checks in CI/CD pipelines so that security testing becomes a reliable part of the development lifecycle rather than a late-stage blocker. Establishing threat modeling practices for web applications using common frameworks and applying them to Veilant’s Angular front-end, Java Spring Boot back-end, REST APIs, SQL databases, and authentication flows. Partnering with engineering and software teams to improve secure coding practices through practical feedback, remediation guidance, and collaborative reviews. Implementing best practices in container runtime security, including visibility, monitoring, and runtime protections for containerized workloads. Writing standardized security reports that clearly communicate risk, impact, and remediation steps for both executive-level stakeholders and engineering teams. Qualifications What We Are Looking For Strong candidates will bring: Ability to obtain a Security Clearance 2+ years of software development experience in Java. Hands-on experience reviewing or securing applications built with Java Spring Boot, Angular, REST APIs, SQL databases, and PostgreSQL. Working knowledge of authentication and authorization technologies, including JWT, OAuth, identity providers, Entra, Keycloak, and token-based access models. Experience intercepting, decrypting, manipulating, and analyzing web or application network traffic. Demonstrated ability to find, validate, and explain vulnerabilities in a real codebase. Familiarity with CI/CD tools such as GitLab CI, Azure DevOps, or GitHub Actions. Experience with containerized environments and orchestration tools such as Kubernetes. Exposure to infrastructure-as-code and container scanning tools such as Trivy, Kubesec, or similar technologies. Understanding of cloud hosting environments such as Azure or AWS. Familiarity with secrets management tools such as GitLab Secrets Manager, AWS KMS, Azure Key Vault, or Ansible Vault. Experience with automated application security testing, including SAST, DAST, and SCA. Familiarity with runtime security and monitoring tools for containers, such as Falco, NeuVector, or similar platforms. Hands-on web security testing experience using Burp Suite or comparable tooling. Strong written communication skills, including the ability to write reports for both technical and non-technical audiences. OSWE, OSCP, and/or GXPN certifications are highly desirable. The Kind of Person Who Will Thrive Here You will do well in this role if you are curious, collaborative, and comfortable working across both code and security. You know how to speak with developers in practical terms, explain risk without creating unnecessary friction, and help teams ship secure software without slowing the mission down. You are someone who can move from reviewing source code, to analyzing an API request, to modeling a threat scenario, to writing a report that an executive can understand. You enjoy solving problems at the root cause, not just documenting symptoms. Additional Information Why You’ll Love Working Here: Innovative Environment: Work in a setting where your ideas and expertise are valued. Collaborative Culture: Be part of a team that supports each other and works toward shared goals. Career Growth: Opportunities for professional development and career advancement. What is the Compensation Range for this role? The salary range for this position is $115,000 to $145,000 annually for full-time status. Actual compensation within this range at Veilant is determined by numerous factors including but not limited to the candidate's qualifications, including experience, education, certifications, technical skills, as well as contract-specific affordability and labor categories, the scope and responsibilities of the role, market and business considerations, and geographic location. Here are some Perks! Flexible PTO + holidays Generous 401k match benefit up to 10%, with an automatic 3% safe harbor contribution and additional matching based on employee contributions. Medical (HSA & PPO Plans Available), dental, vision, disability, and life insurance Employer Contribution to Health Savings Account (HSA) Learning & Development opportunities Professional coaching services Get the technology you want to do your job We have free daily snacks & drinks Physical Requirements: Must be able to remain in a stationary position 50% of the time. The person in this position needs to occasionally move about inside the office Constantly work with computers and other information technology equipment The ability to communicate information and ideas in a classroom style format, may stand at a podium for long periods of time We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace. If you require a reasonable accommodation to apply for a position with Veilant through its online applicant system, please contact Veilant's Talent Management Department at View phone number on click.appcast.io or contact us through e-mail at View email address on click.appcast.io Compensation: USD 115000 - USD 145000 - yearly

Vacancy posted 9 hours ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in United States vacancy
  • Application Security (AppSec) Engineer $60/hr W2 Onsite - Maryland Heights, MO Cog Kit BGV must be cleared to start What are the top 3 skills required for this role? • Application Security (AppSec) • Secure SDLC / DevSecOps • SAST, DAST, IAST, SCA • Web, Mobile... 
    Suggested
    Full time
    Shift work

    IPolarity LLC

    Hanover, PA
    1 day ago
  • $134.6k - $175k

     ...lower cost through early diagnosis and longitudinal care management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does. This is a hands-on offensive security role on our Eng Core team,... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    Clover Health

    United States
    9 hours ago
  • $157k - $216k

     ...join us! About the Role AlphaSense is investing in the next generation of our Application Security capability, a continuous, AI-augmented, layered defense program built for a SaaS engineering organization where AI agents and human developers ship code side by side at... 
    Suggested
    Full time
    Contract work
    Local area
    Remote work

    AlphaSense

    United States
    1 day ago
  • $100k - $160k

     ...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and... 
    Suggested
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship

    Bright Vision Technologies

    United States
    1 day ago
  • IMPACT Impact As a Staff Engineer on our Application Security team, you will be instrumental in leading and driving secure practices across Shipt. You’ll be responsible for development practices across our engineering organization and building software systems... 
    Suggested
    Full time
    Work at office
    1 day per week

    Summit Health

    Georgia
    9 hours ago
  •  ...providing critical information about the right treatments for the right patients, at the right time.Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to lead efforts in identifying and remediating vulnerabilities across web,... 
    Full time

    Tempus

    Chicago, IL
    3 days ago
  • $145k - $155k

     ...weeks per quarter), leaving 5 additional remote days to be used as needed.As a key member of the Security Engineering team, this person will help lead HarbourVest’s Application Security program. The Application Security Engineer (ASE) will serve in a multi-functional role... 
    Full time
    Work at office
    Local area
    Remote work
    1 day per week

    HarbourVest Partners

    Boston, MA
    2 days ago
  • The Application Security team is responsible for the solutions and processes that secure Vanguard applications and operations. As an Application...  ...(containers, serverless, API, AI/ML).Provide hands-on engineering support for security incidents, threat events, vulnerability... 
    Full time

    Vanguard

    Malvern, PA
    1 day ago
  • DescriptionWe are looking for an Application Security Engineer to strengthen secure software delivery and partner closely with engineering teams in Reading, Pennsylvania. This role focuses on embedding security throughout the software lifecycle, from architecture and development... 

    Robert Half

    Reading, PA
    3 days ago
  •  ...of people and we’re just getting started.About The RoleOur Security Engineering team builds intelligent systems that protect Opendoor and our...  ...where they matter, not gates where they don't.As our Application Security Engineer, you'll own how we find, prioritize, and... 
    Work at office
    Monday to Friday
    Shift work

    Opendoor

    Miami, FL
    5 days ago
  • $127k - $160.55k

     ...knowledge you've gained, and the personal interests that shape who you are.Position OverviewZelis is seeking an experienced Application Security Engineer with deep expertise in Software Composition Analysis (SCA) to strengthen the security of our software supply chain and... 
    Full time
    Work at office
    Local area
    Visa sponsorship
    Flexible hours

    Zelis

    Boston, MA
    1 day ago
  •  ...Premium and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to... 
    Full time
    Local area
    Remote work
    Flexible hours
    Shift work

    Amerisure Insurance Company

    Farmington Hills, MI
    3 days ago
  • $99k - $225k

    Application Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Huntsville, AL
    4 days ago
  •  ...organization, both internally and externallyAbility to travel as required by business and on-call availabilityThe Senior Application Security Engineer is a deeply technical, hands-on engineering and architect-level role responsible for establishing and leading the... 

    CBIZ

    Independence, OH
    4 days ago
  •  ...across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management services....  ...Requirements:Experience in software engineering with specialized experience in designing, developing... 

    Comtech

    Washington DC
    5 days ago
  • $100k - $167.5k

    Who We’re Looking For:The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec) and DevSecOps. The ideal candidate will have hands-on experience in application security,... 
    Full time
    Temporary work
    Flexible hours

    State Street Bank

    Quincy, MA
    4 days ago
  • Senior Application Security EngineerThis role has been designed as 'Hybrid' with a requirement that you will work on average 2 days per week...  ...Description:SummaryWe are seeking an experienced Application Security Engineer to join our Cyber Security organization and strengthen the... 
    Full time
    Work experience placement
    Work at office
    Local area
    Immediate start
    2 days per week

    Hewlett Packard Enterprise

    San Jose, CA
    5 days ago
  •  ...against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR...  ...disability. Envision yourself at BarracudaAs a Senior Application Security Engineer, you’ll help shape the future of our AppSec program. You’ll... 
    Worldwide
    Flexible hours

    Barracuda

    Ann Arbor, MI
    1 day ago
  • $120k - $202.5k

    Who We’re Looking For:The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec), Application Detection and Response (ADR), and DevSecOps. The ideal candidate will have hands... 
    Full time
    Temporary work
    Flexible hours

    State Street Bank

    Quincy, MA
    4 days ago
  • $93.6k - $157.56k

    OverviewAs someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative and...  ...-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping secure... 

    ESRI

    Redlands, CA
    4 days ago
  • $111k - $144.4k

    Remote - US / Reno, NVAdministration - Enterprise Information Security /Full-Time /RemoteThe Sr. Application Security Engineer is responsible for validating that application services are designed and implemented with high security standards. The role analyzes the security... 
    Full time
    Temporary work
    Work experience placement
    Remote work

    Clear Capital

    Reno, NV
    1 day ago
  • $165k - $225k

     ...with the talent and ambition to build the technology that secures it.OUR MISSIONTrue Anomaly delivers decisive capabilities...  ...advantage and we are better together.YOUR MISSIONAs a Senior Application Security Engineer, you will be instrumental in implementing and auditing... 
    Permanent employment
    Shift work

    True Anomaly

    Denver, CO
    4 days ago
  •  ..., Best in Brightest in the Nation, and Great Place to Work, we do much more than talk the talk. We're looking for an Application Security Engineer joining our IT & Security team to build and mature our application security program as we continue to scale our SaaS platform... 
    Local area

    Awardco

    Lindon, UT
    4 days ago
  •  ...the US, UK, Europe, Japan and Canada, and has been used for more than 500,000 patients worldwide. We are looking for an Application Security Engineer to work with our engineering team to ensure security is an integral part of our Software Development Lifecycle (SDLC). In... 
    Work at office
    Local area
    Worldwide
    Relocation
    3 days per week

    HeartFlow

    San Francisco, CA
    3 days ago
  • $160.3k - $240.5k

     ...architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top...  ...millions of creators and their users.We are seeking a Senior Application Security Engineer with profound expertise in application security. In this... 
    Full time
    Work at office
    Remote work
    Worldwide

    Unity Technologies

    Texas
    2 days ago
  • $170k - $235k

     ...is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SR. APPLICATION SECURITY ENGINEER At SpaceX we’re leveraging our experience in building rockets and spacecraft to deploy Starlink, the world’s most... 
    Permanent employment
    Temporary work
    Work at office
    Worldwide
    Monday to Friday
    Flexible hours
    Weekend work

    SpaceX

    Redmond, WA
    3 days ago
  • Job DescriptionSecurity Application EngineerSeattle (Bellevue, WA) Long Term ProjectNeed GC...  ...Suite, Kali Linux) Job Description: Security team is seeking an enthusiastic Security...  ...such as billing ops, application support, engineering ops, finance, legal, privacy, risk... 

    USM Systems

    Seattle, WA
    3 days ago
  • Chicago, Illinois100% RemoteFull Time$140k - $160kA consulting company is looking to bring on a hands on a Senior Application Security Engineer to work with clients on new development. You'll perform code reviews, conduct SAST/DAST/SCA scans, identify vulnerabilities in... 
    Full time

    Motion Recruitment

    Chicago, IL
    2 days ago
  • $155k - $185k

    Responsible for leading application security engineering efforts, designing scalable security architectures, performing advanced risk assessments, integrating security across the SDLC, driving AI‑related security controls, evaluating vendor solutions, scaling automation... 
    Full time

    Bloomberg Industry Group

    Arlington, VA
    4 days ago
  • Job Role: Application Security Engineer with AWS, Cequence ,API Security(Remote)Location: RemotePrimary FocusDeployment and integration of Cequence API Security Wiz Federal Splunk and Cribl.AWS GovCloud federal government telecom or highly regulated cloud environments.Handson... 
    Remote work

    LTM

    Houston, TX
    17 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!