Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Application Security Engineer

Eleven Recruiting

Lead Application Security Engineer

We are a specialized technology staffing agency supporting professional and financial services companies. Why do we stand out in technology staffing? We listen and act as advisors for our candidates on how they can best add value, find interesting projects, and pave a path for career advancement. We advocate for best pay, diversity in tech, and best job-fit for every candidate we place. Our client, a leading financial services firm, is seeking a Lead Application Security Engineer to join their team in New York, NY!

Responsibilities:
  • Perform threat modeling on applications to determine associated risks and appropriate controls.
  • Understand implementation nuances and associated risk-related findings.
  • Understand application threat models and control standards to ensure secure application design.
  • Validate secure design and adoption of required security controls.
  • Define and implement security tools like SAST, SCA, and Secret Scanning.
  • Operationalize the adoption and usage of such tools.
  • Ensure developers and others understand secure coding and application delivery practices and expectations.
  • Build out a security champion culture amongst the development teams.
  • Support application penetration testing through program development and testing execution.
  • Engage in secure code reviews and overall application security assessments.
  • Establish and enforce governance frameworks to ensure compliance with industry regulations and standards.
  • Monitor and report on compliance with security policies and procedures.
Qualifications:
  • 8+ years of hands-on professional experience in an Application Security focused role with a background in software development (IDE/CLI).
  • Bachelor's Degree in Computer Science, Information Technology/Security or a related field.
  • Experience in working with software development teams, providing security oversight in complex application ecosystems.
  • Proven expertise in IDEs, version control systems, CI/CD pipeline management, SDLC maturity, SaaS security tools (SCA, SAST & DAST) and application inventory management.
  • Experience with Snyk and GitHub are a plus.
  • Strong background in application architecture, security controls, cloud and penetration testing.
  • Excellent collaboration, critical thinking skills and the ability to work in a dynamic environment.
  • Familiarity with industry security standards and frameworks such as OWASP, NIST, ISO 27001 or MITRE Telecommunication&CK and testing tools like Burp Suite.
  • Familiarity with the regulatory environment of the financial services industry or a similarly regulated industry and its impact on application security is a plus.
  • Commitment to staying informed on security trends and threats, using this knowledge to enhance security measures.
  • U.S. Citizen, operate in the Eastern Time Zone and able to report to the NYC metro area office(s).
  • Professional Certifications, such as CISSP, CSSLP, CASE, GWEB, CSSLP, MCSA/MCSE are a plus.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Lead Application Security Engineer in New York, NY vacancy
  •  ...APPLY! At Scroll, we operate on the bleeding edge of a fast-moving frontier of zk technology, research and innovation. The Application Security Engineer will be responsible for improving the zkEVM-based zkRollup security, ensuring that Scroll is one of the safest Layer 2’s... 
    Suggested
    Work at office
    Remote work
    Home office
    Flexible hours

    Blockchain Works

    New York, NY
    2 days ago
  •  ...Because at Valence, the work worth doing is the kind that redefines work itself. The Role We are seeking a seasoned Application Security Engineer to help us secure our products and platform that serve our Fortune 500 customers. In this pivotal role, you will be... 
    Suggested
    Full time
    Freelance
    Work from home

    Valence

    New York, NY
    1 day ago
  •  ...GuidePoint Security is looking for an Application Security Engineer to work remotely from the U.S. The role involves running security tools, integrating security practices into CI/CD pipelines, and collaborating with development teams. Ideal candidates will have at least... 
    Suggested
    Remote work
    Flexible hours

    GuidePoint Security

    New York, NY
    4 days ago
  • $130k - $218k

     ...A leading blockchain company is seeking a Senior Application Security Engineer to join their growing security team. The role involves embedding security throughout the software development lifecycle for MetaMask products, ensuring they meet high-security standards. Applicants... 
    Suggested
    Remote work

    ConsenSys

    New York, NY
    2 days ago
  •  ...A leading web platform company is seeking a Senior Application Security Engineer to enhance their secure development practices. This remote role involves collaborating with engineering teams, identifying security vulnerabilities, and leading security initiatives. Candidates... 
    Suggested
    Remote work

    Webflow

    New York, NY
    2 days ago
  •  ...Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability...  .... Identify, triage, and remediate application-layer vulnerabilities, including broken...  ...strong relevant experience in software engineering or security operations with a focus on... 
    Remote work

    Crossing Hurdles

    New York, NY
    2 days ago
  •  ...every release. About the role We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-...  ...code, build threat models, ship paved-road libraries, and lead AI-specific security work: prompt injection, agent sandbox... 
    Flexible hours

    Brain Trust Inc

    New York, NY
    20 days ago
  •  ...Application Security Engineer We are seeking an Application Security Engineer who will support our client with ensuring security is integrated into all stages of software development. This role will be responsible for designing and building secure applications while... 

    Damco

    Brooklyn, NY
    6 days ago
  • $220k - $350k

     ...Senior Application Security Engineer [Remote-US] remote To help keep everyone safe, we encourage all applicants to pay close attention to protect...  ...talent and cutting-edge thinking with the long-term backing of leading insurer, State Farm. Learn more about us and our work at... 
    Extra income
    Local area
    Remote work
    Work from home
    Home office

    Quanata

    New York, NY
    2 days ago
  •  ...Application Security Engineer | Location: New York, NY or Charlotte, NC | Contract his Application Security Engineer contract role will embed security into the software development lifecycle to protect enterprise applications across web, mobile, and API ecosystems... 
    Contract work

    Delphi-US

    New York, NY
    9 hours ago
  • $60 - $65 per hour

     ...Application Security Engineer Location: Phoenix, AZ 85054 (Atlanta GA, or NY, NY) (Onsite/Hybrid) Pay Rate: $60.00 – $65.00 per hour (Strict W...  ...and Jefferson Wells. ManpowerGroup® ( NYSE : MAN ), the leading global workforce solutions company, helps organizations transform... 
    Hourly pay
    Weekly pay
    Temporary work
    Flexible hours

    Arizona Staffing

    New York, NY
    1 day ago
  • $135k - $200k

     ...Palantir builds the world's leading software for data-driven decisions...  ..., and commercial applications. We are trusted by our customers...  ...mission of the Application Security Team is to enable developers...  ...As an Application Security Engineer, you will be hands-on and have... 
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    New York, NY
    1 day ago
  •  ...to the fire. About the Role Polymarket is looking for an Application Security Engineer to embed security throughout our software development lifecycle...  ...processes that make secure development the default, and lead hands-on security assessments of our externally-facing... 
    Contract work
    Immediate start

    Polymarket

    New York, NY
    4 days ago
  •  ...believe talent deserves a human touch. Your application will be read by an actual person who’s...  ...discover the real you.****Application Security Engineer**Location: Remote (United States) |...  ...profile (internal vs. public-facing)• Lead collaboration between engineering and information... 
    Full time
    Remote work

    New Charter Technologies, Llc

    New York, NY
    2 days ago
  •  ...Description: About Us We are a leading global financial services...  ...range of investment banking, securities, investment management and...  ...Cybersecurity Strategy by architecting, engineering, deploying and operating...  ...and adoption of Cloud and application security control... 
    Work experience placement

    ALLTECH CONSULTING SVC INC

    New York, NY
    4 days ago
  •  ...rank among the leaders in areas like application development and AI/ML, and our people-...  ...are looking for a Senior Application Security Engineer to develop AI-enabled secure code scanning...  ...including Fortune 500 enterprises and leading product brands. - Work-life balance... 
    Flexible hours

    AgileEngine

    Jersey City, NJ
    2 days ago
  •  ...Drive enterprise-wide implementation of Application Security controls across CI/CD pipelines. Partner...  ...Enable decentralized security ownership across engineering teams. 2. Vulnerability & Threat Management Lead triage, analysis, and remediation of complex... 

    2T Consulting

    Jersey City, NJ
    3 hours ago
  • $215k - $230k

     ...A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates... 

    Crypto Pro Network

    New York, NY
    2 days ago
  •  ...Application Security Engineer - Vulnerability Operations (Mid-Level) Position: Contract Location: NJ/TX/NC Duration: 12+ months Job description: Required Qualifications & Skills: ~ Bachelor's degree in Computer Science,... 
    Contract work

    Lorven Technologies

    Jersey City, NJ
    4 days ago
  • $158k - $238k

     ...more performant digital experiences, and scale without heavy engineering support. From independent designers and creative agencies...  ...power what’s possible on the web. We’re looking for a Senior Application Security Engineer to help us level up Webflow’s secure development... 
    Permanent employment
    Full time
    Temporary work
    Fixed term contract
    Local area
    Remote work
    Flexible hours

    Webflow

    New York, NY
    2 days ago
  • $80 - $85 per hour

     ...risks specifically related to application security. ? Develop, socialize, and implement...  ...identified vulnerabilities. ? Lead the security implementation in...  ...Requirements Senior Application Security Engineer Mandatory Skills/Experience... 
    Contract work
    Flexible hours

    Network Temp Inc

    New York, NY
    4 days ago
  •  ...users (and help the developers behind them get paid), you’ll fit right in. The role: We are looking for a Senior, proactive Application Security Engineer to work closely with engineering teams, PMs and external parties to ensure that RevenueCat's products are secure.... 
    Remote work

    RevenueCat

    New York, NY
    2 days ago
  • $89.3k - $130k

     ...American Specialty Health Incorporated is looking for an Application Security Engineer II to enhance their Information Security team. The role focuses on protecting information assets from cybersecurity threats, ensuring compliance, and coordinating security measures across... 
    Remote work
    Work from home
    Home office

    American Specialty Health Incorporated

    New York, NY
    1 day ago
  • $405k

     ...Application Security Engineer Anthropic's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial...  ...from initial design through implementation. You will lead threat modeling and secure design reviews to proactively... 
    Work at office
    Visa sponsorship
    Flexible hours
    Shift work

    Colorwave Inc

    New York, NY
    3 days ago
  •  ...Fragomen is seeking a Security Engineer – Application Security to join their Cyber Security team in Pittsburgh. In this role, you will work to secure software development and help build a robust Application Security program. The ideal candidate will have over 5 years of... 

    Fragomen Worldwide

    New York, NY
    1 day ago
  • $200k - $350k

     ...Traversal is the AI Site Reliability Engineer (SRE) for the enterprise—...  ...from industry: Citadel Securities, Cockroach Labs, Datadog, DE...  ...Role As an Infrastructure & Application Security Engineer at Traversal...  ...Threat Modeling & Strategy: Lead threat modeling for new features... 
    Full time
    Work at office
    Flexible hours

    Traversal

    New York, NY
    3 days ago
  •  ...in U.S. Role Overview Are you passionate about securing global‑scale e‑commerce services and applications that power millions of customers across more than...  ...looking for a hands‑on Principal Product Security Engineer to lead Secure Development Lifecycle assurance processes... 
    Remote work
    Home office

    iHerb Inc.

    New York, NY
    2 days ago
  •  ...Bitwise Asset Management, Inc. is looking for a Staff Application Security Engineer to own the design and implementation of our application security program. This role provides the opportunity to build functions critical to the security of customer-facing products and... 
    Remote work

    Bitwise Asset Management

    New York, NY
    3 days ago
  • $10 per hour

     ...s ahead. About the Role: Our engineering organization is growing, and...  ...that growth comes an expanding application and infrastructure footprint...  ...requires dedicated application security ownership. This role exists...  ...engineering Threat Modeling Lead threat modeling exercises for... 
    Full time
    Temporary work
    For contractors
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Bitwise Asset Management

    New York, NY
    4 days ago
  •  ...Valence in New York is seeking a seasoned Application Security Engineer to enhance product security for our Fortune 500 customers. You will work with engineering teams, overseeing the security aspects of the application while collaborating across domains. The role demands... 

    Valence

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Application Security Engineer. Be the first to apply!