Senior Application Security Engineer [Remote]
TRM Labs
- Remote job
TRM Labs is a blockchain intelligence company committed to fighting crime and creating a safer world. By leveraging blockchain data, threat intelligence, and advanced analytics, our products empower governments, financial institutions, and crypto businesses to combat illicit activity and global security threats. At TRM, you'll join a mission-driven, fast-paced team made up of experts in law enforcement, data science, engineering, and financial intelligence, tackling complex global challenges daily. Whether analyzing blockchain data, developing cutting-edge tools, or collaborating with global organizations, you'll have the opportunity to make a meaningful and lasting impact.
The Security team is responsible for and committed to securing all things at TRM. From our customers to our code, and everything in between, the security team is involved in all aspects of the business. We are looking for an Application Security Engineer to build mission-critical infrastructure that ensures the highest levels of availability, performance, and application security at TRM for products as built and deployed. From designing the technical strategy to company-wide best practices and implementation, you’ll work closely with engineering and engineering leadership to ensure TRM’s products are safe and secure.
The impact you’ll have here:
- Lead application security reviews and threat modeling, including secure code review, architectural design, and testing.
- Develop automated testing and mature our Secure SDLC.
- Own and perform application security vulnerability management.
- Coordinate penetration testing engagements.
- Support software engineers and product teams by developing application security best practices.
- Develop and maintain the bug bounty program.
- Bootstrap platform security initiatives that help protect TRM data.
- Inspire a culture of security across the engineering organization by fostering security champions within engineering teams and coordinating secure code training.
What we’re looking for:
- Minimum 8 years of experience in Software Development and testing.
- BS (or equivalent) in Computer Science, Computer Engineering, or related field.
- Proficiency in software development languages: Python, NodeJS, React
- Strong understanding of encryption, authentication, and authorization protocols
- Deep experience with common software flaws (e.g., OWASP and CWE), testing methodologies , and using common security tooling for testing.
- Professional experience with open source, commercial, or native security solutions for cloud providers such as GCP and AWS. Experience with modern secure software development lifecycles, threat modeling, and best practices.
- Experience with conducting efficient and comprehensive code security reviews on a daily or weekly basis
- Experience triaging and remediating vulnerabilities in software packages or libraries
- Experience with Software Security tools such as Github advanced security or other SAST, DAST, and SCA tools
- Experience with Web application testing frameworks such as BurpSuite, OWASP ZAP, etc.
- Experience with Threat modeling tools such as OWASP Threat Dragon, etc.
- Experience working in a previous agile-based software development role required
- Experience Red Teaming or penetration testing applications and infrastructure
- Professional experience with cloud providers (e.g., GCP and AWS), modern secure software development lifecycles, and best practices.
- Strong written and verbal communication skills.
- Security certifications such as OSCP, CEH, GWAPT are a plus.
- Familiarity with security frameworks (e.g., NIST SP 800-171 SSDF) is a plus
About the Team:
- The culture of our team is built on mutual respect, where everyone's opinion is valued and heard.
- We prioritize flexibility and efficiency, always seeking smarter ways to work without compromising quality.
- Transparency is at the heart of how we operate, both within the team and with the business, as we focus on clearly communicating and addressing cyber risks.
- Our collaborative approach ensures that we not only mitigate these risks but also align our efforts with business goals to protect and drive success.
Team’s Time Zones:
- Eastern Standard Time (EST - GMT-4)
- Pacific Standard Time (PST - GMT-7)
- Central European Summer Time (CET - GMT+2)
Learn about TRM Speed in this position:
- Prioritize Rapid Threat Assessments: Efficiently perform security risk assessments and triage vulnerabilities based on immediate risk to the business, focusing on the most critical issues with minimal delays.
- Integrate Security Early in Development: Embed security testing and reviews within our Product Shipping Framework and CI/CD pipelines to ensure that security is automated and runs parallel to the fast-paced development cycle, preventing bottlenecks.
- Proactively Educate Developers: Conduct just-in-time security training for developers and engineers, offering real-time advice and code reviews to help them produce secure code without interrupting their workflow.
- Optimize Tools for Speed: Leverage lightweight and efficient security tools that can be quickly integrated into development environments without slowing down deployments, ensuring continuous and secure product iterations.
Life at TRM Labs
Leadership Principles
Our LPs are foundational elements of our strategy, guiding how we make decisions, how we treat each other, and how we behave day-to-day.
- Impact-Oriented Trailblazer – We put customers first, driving for speed, focus, and adaptability.
- Master Craftsperson – We prioritize speed, high standards, and distributed ownership.
- Inspiring Colleague – We value humility, candor, and a one-team mindset.
Accelerate your Career
Join a mission-driven team of industry leaders and make a real-world impact—disrupting terrorist networks, recovering stolen funds, and more. At TRM, you will:
- Work alongside top experts and learn every day.
- Embrace a growth mindset with development opportunities tailored to your role.
- Take on high-impact challenges in a fast-paced, collaborative environment.
- Thrive in a culture of coaching, where feedback is fast, direct, and built to help you level up. We expect everyone to both give and receive feedback as part of how we get better—together.
What to Expect at TRM
TRM moves fast— really fast . We know a lot of startups say that, but we mean it. We operate with urgency, ownership, and high standards. As a result, you’ll be joining a team that’s highly engaged, mission-driven, and constantly evolving.
To support this intensity, we’re also intentional about rest and recharge. We offer generous benefits, including PTO, Holidays, and Parental Leave for full time employees.
That said, TRM may not be the right fit for everyone . If you're optimizing for work life balance, we encourage you to:
- Ask your interviewers how they personally approach balance within their teams, and
- Reflect on whether this is the right season in your life to join a high-velocity environment.
- Be honest with yourself about what energizes you—and what drains you
We’re upfront about this because we want every new team member to thrive—not just survive.
Thrive as a Global Team
As a remote-first company, TRM Labs is built for global collaboration.
- We cultivate a strong remote culture through clear communication, thorough documentation, and meaningful relationships.
- We invest in offsites, regional meetups, virtual coffee chats, and onboarding buddies to foster collaboration.
- By prioritizing trust and belonging, we harness the strengths of a global team while staying aligned with our mission and values.
Join our mission!
We’re looking for team members who thrive in fast-paced, high-impact environments and love building from the ground up. TRM is remote-first, with an exceptionally talented global team. If you enjoy solving tough problems and seeing your work make a difference for billions of people, we want you here. Don’t worry if your experience doesn’t perfectly match a job description— we value passion, problem-solving, and unique career paths. If you’re excited about TRM’s mission, we want to hear from you.
Recruitment agencies
TRM Labs does not accept unsolicited agency resumes. Please do not forward resumes to TRM employees. TRM Labs is not responsible for any fees related to unsolicited resumes and will not pay fees to any third-party agency or company without a signed agreement.
Privacy Policy
By submitting your application, you are agreeing to allow TRM to process your personal information in accordance with the TRM Privacy Policy
Learn More : Company Values | Interviewing | FAQs
- ...available! The details are below. Beware of scams. S3 never asks for money during its onboarding process. Job Title: Senior Application Security Engineer (AI/ML) Contract Length: 6+ months Location: Iselin NJ 08830/ Charlotte, NC/ Dallas, TX/ Phoenix, AZ 3 days...SeniorContract workRemote workVisa sponsorshipShift work3 days per week
- ...Senior Application Security Engineer Remote RegScale is a continuous controls monitoring (CCM) platform that helps organizations automate and scale their security, risk, and compliance programs. We are at an inflection point, transitioning from startup execution...SeniorRemote workAll shiftsShift work
- ...Senior Application Security Engineer We are seeking a highly skilled and proactive Senior Application Security Engineer to join our growing security team. You will be responsible for securing our applications throughout the software development lifecycle (SDLC). This...SeniorRemote work
- ...Senior Application Security Engineer Become a founding member of the Application Security team at CookUnity. You'll work closely with disparate groups inside of CookUnity's engineering organization, ranging from our Infrastructure and Software Engineering teams to...SeniorRemote workFlexible hours
$160k - $240k
..., and suppliers with the help of AI agents, companies can secure the resources they need to innovate faster than ever before... ...and integrity of our customers' data. As our first Application Security Engineer , you will take on a dynamic and high impact role. You will...SeniorHome officeFlexible hours$120k - $150k
...Our cybersecurity and information security teams at IDEXX contribute to a more resilient, adaptable, and security-aware... ...delivering high quality patient care. IDEXX is seeking a Senior Application Security Engineer to join our Product & Application Security team...SeniorLocal areaRemote workWorldwideFlexible hours- ...Job Description Senior Application Security Engineer - Threat Modeling & AI Security *]:pointer-events-auto R6Vx5W_threadScrollVars scroll-mb-[calc(var(--scroll-root-safe-area-inset-bottom,0px)+var(--thread-response-height))] scroll-mt-[calc(var(--header-height...SeniorContract workRemote work
- ...Senior Application Security Engineer Poland The Tripadvisor Group connects people to experiences worth sharing, and aims to be the world's most trusted source for travel and experiences. We leverage our brands, technology, and capabilities to connect our global...SeniorPermanent employmentContract workRemote workWorldwideFlexible hours
- ...within DevSecOps, including integration of SAST, SCA, DAST, and related tooling into CI/CD pipelines. Deep understanding of application security testing approaches (SAST for code analysis, DAST for runtime testing, SCA for open-source risk) and how they complement each...SeniorWork at officeRemote workFlexible hoursShift work
$130k - $218k
A leading blockchain company is seeking a Senior Application Security Engineer to join their growing security team. The role involves embedding security throughout the software development lifecycle for MetaMask products, ensuring they meet high-security standards. Applicants...SeniorRemote job$128k - $181.25k
...Senior Application Security Engineer (Offensive / Red Team) At Shutterfly, we make life's experiences unforgettable. We believe there is extraordinary power in the self-expression. That's why our family of brands helps customers create products and capture moments...SeniorRemote work$180k - $210k
...Senior Application Security Engineer At Qualia, we've built the leading B2B real estate technology that transforms the home buying and selling experience into a simple, secure, and enjoyable process. Our SMB and Enterprise products bring together users from across...SeniorWork at officeRemote work$180k - $220k
...Senior Application Security Engineer, AI and Machine Learning San Francisco, California, United States; Seattle, Washington, United States Who We Are Lightning AI is the company behind PyTorch Lightning. Founded in 2019, we build an end-to-end platform for developing...SeniorWork at officeWork from homeFlexible hours2 days per week$325k - $405k
A leading AI research firm in San Francisco is seeking a Security Engineer for Application Security. The role involves identifying and mitigating security vulnerabilities, conducting assessments, and developing security tools. Ideal candidates will have extensive experience...SeniorRemote job$97.1k - $161.8k
...Information Security Specialist Responsible for capturing and... ...the areas of secure coding, application authentication, encryption,... ...Develop and implement engineering's technical security policies... ...Technology, and occasionally senior leaders within Cybersecurity...SeniorWork experience placementRemote workWorldwide$157k - $216k
...investing in the next generation of our Application Security capability, a continuous, AI-augmented... ...defense program built for a SaaS engineering organization where AI agents and human... ...code side by side at high velocity. As a Senior AI Application Security Engineer, you...SeniorContract workLocal areaRemote work$62k - $141k
Phase2 Technology is looking for an Application Security Engineer to work with clients on maintaining application security. This role involves remediating security flaws, leading discussions on best practices, and conducting dynamic and static testing using tools like Burp...SeniorRemote job- A leading AI research firm is seeking a Security Engineer, Application Security. In this role, you will identify and mitigate security vulnerabilities through assessments and collaboration with development teams. The ideal candidate has extensive experience in cybersecurity...SeniorRemote job
- STATE STREET CORPORATION is looking for Advanced Defensive Application Security Engineers to join a dedicated team aimed at securing critical network environments and applications. The role provides an opportunity for remote work for highly skilled candidates. Ideal candidates...SeniorRemote work
$180k - $225k
...Senior Application Security Engineer United States - Remote Opportunity About Us Temporal is an open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things like delivering features faster...SeniorFull timeTemporary workPart timeRemote workWork from homeHome office- ...Senior Application Security Engineer Want to work on building out security from the ground up at the leading edge of AI in healthcare globally? We're looking for a very experienced and highly motivated Senior Application Security Engineer to join our team as one of...SeniorHourly payFull timeRemote workFlexible hours
$5,250 per month
...innovative technology-driven B2B payments organization seeking a curious, inquisitive, highly skilled and motivated Senior Application Security Engineer to join our team. Our company values collaboration, creativity, and excellence in delivering cutting-edge solutions...Senior16 hoursFull timeTemporary workLocal areaRemote work$75 - $80 per hour
...Immediate need for a talented Senior Application Security Engineer (DevSecOps | SAST/DAST/SCA | CI/CD Security) . This is a 06+ months contract opportunity with long-term potential and is located in Charlotte, NC (Hybrid) . Please review the job description below and...SeniorContract workLocal areaImmediate start- ...and our customers' business challenges, Take2 will work as a partner to best resolve client needs.Take2 is hiring a Senior Application Security Engineer. This is a fully remote role.Job Description6+ years of Information Technology experience3+ years of experience with...SeniorRemote work
- ...pioneering projects, and fast‑tracking careers. Together, we turn ideas into action — let’s get started! We invite a Senior Application Security Engineer to join our team remotely . Responsibilities Demonstrated ability to collaborate with other teams to achieve...SeniorRemote workRelocation
- We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout...SeniorRemote jobContract workFlexible hours
$140k - $200k
Role As a Senior Application Security Engineer on the Application Security team, you will be a trusted partner to engineering, product, and business teams across Gemini. You will help guide teams to design and build secure products while building systems and culture that...SeniorWork at officeRemote workFlexible hours$130k - $218k
...MetaMask aims to create a thriving engineering organization that supports the... ...key manager and web3 application development platform. As this user... ...that we keep our users as safe and secure as possible. We are looking for a Senior Application Security Engineer to...SeniorRemote workShift work- A global energy companyis looking to bring on a hands on a Senior Application Security Engineer to be part of a team building out their AppSec program from the ground up. This role is highly technical, and requires candidates with previous experience working in OTand/or...SeniorLong term contractRemote work
$220k - $350k
Senior Application Security Engineer [Remote-US] remote To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search. When applying for a position online you are at risk of being targeted by malicious actors...SeniorRemote jobExtra incomeLocal areaWork from homeHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Application Security Engineer [Remote]. Be the first to apply!
- application system engineer Remote
- junior application support engineer Remote
- hydraulic application engineer Remote
- senior application security engineer Remote
- application performance engineer Remote
- application engineer Remote
- application engineering manager Remote
- network applications engineer Remote
- cnc applications engineer Remote
- field applications engineer Remote


