Principal Application Security Engineer
$172k - $240kJobgether
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Application Security Engineer based in the United States. This is a senior technical leadership role focused on embedding application security into software engineering at enterprise scale.
You will partner with development, DevOps, platform engineering, and SRE teams to reduce risk while enabling fast, secure delivery.
The role combines hands-on security engineering with strategic influence across applications, APIs, cloud environments, and CI/CD pipelines.
You will shape secure-by-design practices, scalable controls, reference architectures, automation, and engineering standards.
You will also help advance security approaches for AI-enabled applications and responsible use of AI in software development.
Success requires strong technical judgment, credibility with engineers, and the ability to turn complex security risks into practical solutions.
This is an opportunity to influence security maturity across a large, distributed engineering organization while remaining close to the technology. Accountabilities:
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
You will partner with development, DevOps, platform engineering, and SRE teams to reduce risk while enabling fast, secure delivery.
The role combines hands-on security engineering with strategic influence across applications, APIs, cloud environments, and CI/CD pipelines.
You will shape secure-by-design practices, scalable controls, reference architectures, automation, and engineering standards.
You will also help advance security approaches for AI-enabled applications and responsible use of AI in software development.
Success requires strong technical judgment, credibility with engineers, and the ability to turn complex security risks into practical solutions.
This is an opportunity to influence security maturity across a large, distributed engineering organization while remaining close to the technology. Accountabilities:
- Lead complex secure code reviews, threat modeling exercises, and secure design assessments across applications, APIs, and shared services, translating technical findings into actionable guidance.
- Design, integrate, and continuously improve application security controls across CI/CD platforms, developer workflows, and engineering environments.
- Identify security control gaps, coverage weaknesses, and delivery friction, then drive remediation through automation, platform improvements, and secure-by-design patterns.
- Define and promote secure coding standards, reference architectures, playbooks, tooling, and automated security capabilities that can scale across engineering teams.
- Act as a senior security advisor to engineering and platform teams, influencing architecture, design decisions, remediation strategies, and development practices.
- Advance application security for AI-enabled development and applications by assessing emerging threats, establishing practical guardrails, and promoting responsible AI adoption.
- Provide deep expertise in API security, including authentication, authorization, monitoring, secure integration patterns, and protection against common attack techniques.
- Partner with web and platform teams to design, deploy, and optimize application-layer protections such as WAF policies and rules.
- Help strengthen software supply chain security through dependency management, pipeline hardening, SBOM practices, artifact integrity, provenance, and package governance.
- Define application security metrics, maturity indicators, and risk-based reporting to prioritize improvements and demonstrate measurable impact.
- 10+ years of experience in Application Security Engineering, with significant hands-on experience integrating security into software design, development, and delivery.
- Deep expertise in secure application architecture, secure coding, code-level vulnerability analysis, threat modeling, and application security assessment.
- Background in software engineering, application development, or architecture, with the ability to operate credibly from high-level design through code and runtime environments.
- Strong knowledge of authentication, authorization, session management, secrets management, API security, and common vulnerability classes including OWASP Top 10 risks, injection, deserialization, SSRF, insecure design, access-control issues, and dependency vulnerabilities.
- Hands-on experience securing modern technology stacks such as C#, Java, Python, JavaScript/TypeScript, Go, or comparable languages and frameworks.
- Strong experience integrating SAST, SCA, DAST, IaC scanning, container security, API security testing, and software supply chain controls into CI/CD pipelines and developer workflows.
- Proven ability to independently investigate complex technical problems, identify root causes, and deliver practical remediation.
- Excellent written and verbal communication skills, with the ability to influence engineers, technical leaders, and senior stakeholders through expertise and collaboration.
- Demonstrated ownership, accountability, mentoring ability, and experience raising application security standards across engineering organizations.
- Experience creating security standards, playbooks, secure reference architectures, or scalable security practices.
- Familiarity with software supply chain security, Zero Trust, secure platform engineering, policy-as-code, cloud-native security, and runtime application protection is highly valued.
- Experience securing AI-enabled applications or advising teams on the secure use of AI and LLM-based capabilities is a plus.
- Experience with cloud environments such as Azure, AWS, or GCP, Terraform or similar IaC technologies, and Akamai protections is advantageous.
- Experience working as an Application Security Champion, embedded security lead, principal engineer, or senior engineer responsible for security within product or application teams is a plus.
- Strong ability to influence decentralized or federated engineering organizations through partnership, standards, enablement, and technical leadership.
- Base salary range of $172,000-$240,000 , depending on experience, skills, and geographic considerations.
- 15% annual bonus target , subject to applicable plan terms and conditions.
- Comprehensive employee benefits package covering health and other wellness needs.
- Remote work opportunity within the United States.
- Opportunity to work in an AI-forward environment that encourages experimentation, continuous learning, and responsible adoption of emerging technologies.
- Significant technical influence across enterprise application security, cloud-native environments, APIs, CI/CD, software supply chains, and AI-enabled applications.
- Collaborative culture focused on professional growth, knowledge sharing, and meaningful technology impact.
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the Principal Application Security Engineer in United States vacancy
- ...Time$160k - $225kA GPU cloud computing startup, revolutionizing the computing landscape, is looking to hire a Principal Product and Application Security Engineer to join their team as a founding engineer. This startup has hit a $1B valuation, closed their Series A...PrincipalFull time
- ...Principal Application Security Engineer In this role, you will: · Drive strategic efforts and lead transformative projects in the application security program. The ideal candidate will lead the charge in identifying and developing our next generation automation and...PrincipalWork experience placement
$172k - $240k
...Job Summary Join CDW and help secure the software, platforms, and... ...Security team, you will help shape how application security is embedded into engineering at scale—partnering across... ...while enabling delivery. As a Principal Application Security Engineer, you...PrincipalLocal areaRemote work$177k - $225k
Role Description Are you passionate about securing global-scale ecommerce services and applications that power millions of customers across over a... ...around the globe? We are looking for a hands-on Principal Product Security Engineer to lead our Secure Development Lifecycle...PrincipalFull timeRemote work$144.2k - $288.4k
...Summary ~Development, Standards & Secure Design: ~Lead development and enforcement of application and AI security policies,... ...: ~Serve as the principal SME for securing AI-enabled applications... ...Leadership & Influence: ~Influence engineering and product teams to integrate...PrincipalHourly payFull timeTemporary workLocal area$177k - $225k
...Summary: Are you passionate about securing global-scale ecommerce services and applications that power millions of customers across over a hundred... ...the globe? We are looking for a hands-on Principal Product Security Engineer to lead our Secure Development Lifecycle assurance...PrincipalFull timeLocal areaRemote work$97.9k - $166.7k
...Data Center, Telecommunication and Industrial and Defense applications. Headquartered in Lowell, Massachusetts, MACOM has design centers... ...customers insights into our entire portfolio.Applications Engineer - Principal Our customer applications require high speed (GHz) ICs for...Principal- Chicago, Illinois100% RemoteFull Time$140k - $160kA consulting company is looking to bring on a hands on a Senior Application Security Engineer to work with clients on new development. You'll perform code reviews, conduct SAST/DAST/SCA scans, identify vulnerabilities in...Full time
- ...against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR... ...disability. Envision yourself at BarracudaAs a Senior Application Security Engineer, you’ll help shape the future of our AppSec program. You’ll...WorldwideFlexible hours
$90k - $180k
...integration, and operational health of ASPM, SSPM, and related security platforms.Partner with Application Security teams to align Product Security tooling with... ...: - StockSummaryAs a Senior Application Security Engineer at Walmart, you will provide critical security and...Full timeTemporary workPart time- Job DescriptionSenior Application Security EngineerBasic PurposeWe are seeking an experienced Senior Application Security Engineer with strong expertise in application security testing, vulnerability management, and DevSecOps advisory services. The successful candidate...
$160.3k - $240.5k
...architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top... ...millions of creators and their users.We are seeking a Senior Application Security Engineer with profound expertise in application security. In this...Full timeWork at officeRemote workWorldwide- The Application Security team is responsible for the solutions and processes that secure Vanguard applications and operations. As an Application... ...(containers, serverless, API, AI/ML).Provide hands-on engineering support for security incidents, threat events, vulnerability...Full time
- ...SerDes Alliance (ASA) Motion Link multi-Gigabit connectivity for next-generation sensors and vehicle displays. As part of the Applications Engineering team, you will work with both internal engineering teams to develop collaterals to ease customer adoption of our SerDes...PrincipalFull timeWork at officeLocal areaRemote work
$111k - $144.4k
Remote - US / Reno, NVAdministration - Enterprise Information Security /Full-Time /RemoteThe Sr. Application Security Engineer is responsible for validating that application services are designed and implemented with high security standards. The role analyzes the security...Full timeTemporary workWork experience placementRemote work$135k - $150k
...while our focus on creativity and innovative solutions empowers our customer communities to thrive.We are seeking a Senior Application Security Engineer to lead hands-on application security testing, secure code review, and secure SDLC enablement across moder application...Full timeTemporary workWork at officeLocal areaRemote work3 days per week- ...providing critical information about the right treatments for the right patients, at the right time.Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to lead efforts in identifying and remediating vulnerabilities across web,...Full time
$50 per hour
...WorthStandard Job DescriptionWhat You Will Be DoingAs the Applications Engineer Principal - Level 6 you will be responsible for providing expert... ...leadership on funding capture strategies and proposals to secure resources for upcoming projects.Gather and assess product...PrincipalFull timeTemporary workWork experience placementCasual workFlexible hours$165k - $225k
...with the talent and ambition to build the technology that secures it.OUR MISSIONTrue Anomaly delivers decisive capabilities... ...advantage and we are better together.YOUR MISSIONAs a Senior Application Security Engineer, you will be instrumental in implementing and auditing...Permanent employmentShift work$99k - $225k
Application Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you’ll use...Full timeContract workPart timeWork at officeLocal areaRemote work- ...across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management services.... ...Requirements:Experience in software engineering with specialized experience in designing, developing...
$120k - $202.5k
Who We’re Looking For:The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec), Application Detection and Response (ADR), and DevSecOps. The ideal candidate will have hands...Full timeTemporary workFlexible hours$93.6k - $157.56k
OverviewAs someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative and... ...-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping secure...- ..., Best in Brightest in the Nation, and Great Place to Work, we do much more than talk the talk. We're looking for an Application Security Engineer joining our IT & Security team to build and mature our application security program as we continue to scale our SaaS platform...Local area
$159.3k - $202.4k
Amazon's Information Security team is looking for a security engineer well-versed in the network and system security space to join our security operations... ...to protect our networks, endpoints, servers and applications. You will get the opportunity to work on large-scale...InternshipFlexible hours- ...the US, UK, Europe, Japan and Canada, and has been used for more than 500,000 patients worldwide. We are looking for an Application Security Engineer to work with our engineering team to ensure security is an integral part of our Software Development Lifecycle (SDLC). In...Work at officeLocal areaWorldwideRelocation3 days per week
- ...Premium and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to...Full timeLocal areaRemote workFlexible hoursShift work
$100.63k - $167.79k
...goals. Job Overview:As a member of the Information Security team, the Sr. Application Security Engineer will be responsible for helping to develop, mature,... ...in or create an account to apply to this position. Principals only. EOE.Information on Interviews:LPL will only communicate...Full timeWork from home$175k - $215k
...enterprise intelligence at scale by giving organizations secure, governed access to all their data, wherever it lives. Built... .... Learn more at starburst.ai.About the roleAs our Senior Application Security Engineer, you'll be the technical owner of application and product...Local areaFlexible hoursShift work$127k - $160.55k
...knowledge you've gained, and the personal interests that shape who you are.Position OverviewZelis is seeking an experienced Application Security Engineer with deep expertise in Software Composition Analysis (SCA) to strengthen the security of our software supply chain and...Full timeWork at officeLocal areaVisa sponsorshipFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Application Security Engineer. Be the first to apply!
Related searches
- principal network engineer United States
- aerospace engineering director United States
- principal devops engineer United States
- principal application developer United States
- director sales engineering United States
- mechanical engineering project manager United States
- civil engineer project manager United States
- principal security engineer United States
- principal engineer United States
- principal battery engineer United States


