Application Security Engineer
Jobot
A bit about us: We are a large, diversified organization with a broad portfolio of businesses, brands, and digital products operating across multiple industries. Our technology and cybersecurity teams support a complex enterprise environment while giving individual business units the flexibility to operate and innovate within their own markets. As our application security program continues to evolve, we are investing in modern security tooling, automation, and AI-assisted capabilities that help development teams build and deploy securely without slowing delivery. Why join us? Build, don't just maintain. You'll have an opportunity to help shape and mature an enterprise AppSec program rather than simply inherit a fully established environment. Work across a highly diverse technology ecosystem. The organization supports multiple businesses and development teams, creating exposure to a wide variety of applications, technology stacks, and security challenges. Bring AI into real-world security workflows. This team is actively exploring how AI can improve application security operations, from smarter triage to automated testing and remediation. High visibility and meaningful impact. Your work will influence how development teams across the organization approach secure software development and will be visible to senior technology and security leadership. Technical depth with strategic influence. This role combines hands-on engineering with the opportunity to establish standards, influence development leaders, and help determine the future direction of the AppSec program. Job Details We are seeking an experienced Application Security Engineer to play a key role in building and scaling our application security program. This position will have visibility across the full AppSec lifecycle, from discovering and inventorying applications across the enterprise to implementing security tooling, integrating controls into CI/CD pipelines, and helping development teams adopt secure engineering practices. This is not a purely heads-down technical role. The right person will be equally comfortable working with security tools and code as they are partnering with engineering leaders across independent business units. Success will require technical depth, strong communication skills, and the ability to influence teams without direct authority. This is a hybrid position requiring three days per week onsite at one of our designated offices. What You'll Do Lead application discovery and inventory efforts across multiple business units, including application ownership mapping, technology stack profiling, and risk tiering. Implement, integrate, and operate modern application security tooling, including SAST, SCA, secrets scanning, container security, and Infrastructure-as-Code scanning. Embed security tooling and controls directly into CI/CD pipelines to make security part of the development lifecycle rather than a separate process. Design and implement AI-assisted triage workflows to help prioritize findings, reduce false positives, and prevent development teams from becoming overwhelmed by security alerts. Establish and evolve secure SDLC standards, threat modeling practices, security requirements, and development gates. Partner closely with engineering and development leaders to create practical AppSec playbooks that improve security while supporting speed of delivery. Help shape the organization's approach to AI within application security, including evaluating emerging capabilities such as AI-assisted code review, agentic security testing, automated security requirements, and remediation guidance. Develop meaningful metrics and executive-level reporting that connect application security initiatives to measurable reductions in business and technology risk. Required Qualifications 7+ years of experience in application security, product security, or security engineering. 3+ years of experience supporting complex environments with multiple independent business units, brands, product groups, or engineering organizations. Hands-on experience implementing and operating modern AppSec tools such as Semgrep, Snyk, Checkmarx, Veracode, Apiiro, Ox Security, GitHub Advanced Security, or similar platforms. Code-level proficiency in at least three commonly used programming languages such as Python, JavaScript/TypeScript, Java, C#, or Go, with the ability to review code and effectively validate security findings. Strong scripting and automation skills, ideally in Python or a comparable language. Experience building integrations using REST APIs and working within CI/CD environments such as GitHub Actions, GitLab CI, Jenkins, or Azure DevOps. Demonstrated success influencing engineering teams and driving security adoption without direct authority. Strong understanding of the OWASP Top 10, modern application attack patterns, software supply chain risks, and threat modeling methodologies such as STRIDE or PASTA. Preferred Qualifications Experience incorporating LLM or AI-based capabilities into security workflows, including alert triage, finding summarization, remediation guidance, or security automation. Familiarity with security and compliance frameworks such as HITRUST, HIPAA, NIST AI RMF, or SOC 2. Experience working within a regulated, healthcare, or healthcare-adjacent environment. Strong cloud security knowledge across AWS, Azure, or GCP. Contributions to the broader application security community through open-source projects, conference presentations, research, detection rules, or similar work. Jobot is an Equal Opportunity Employer. We provide an inclusive work environment that celebrates diversity and all qualified candidates receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, age (40 and over), disability, military status, genetic information or any other basis protected by applicable federal, state, or local laws. Jobot also prohibits harassment of applicants or employees based on any of these protected categories. It is Jobot's policy to comply with all applicable federal, state and local laws respecting consideration of unemployment status in making hiring decisions. Sometimes Jobot is required to perform background checks with your authorization. Jobot will consider qualified candidates with criminal histories in a manner consistent with any applicable federal, state, or local law regarding criminal backgrounds, including but not limited to the Los Angeles Fair Chance Initiative for Hiring and the San Francisco Fair Chance Ordinance. Information collected and processed as part of your Jobot candidate profile, and any job applications, resumes, or other information you choose to submit is subject to Jobot's Privacy Policy, as well as the Jobot California Worker Privacy Notice and Jobot Notice Regarding Automated Employment Decision Tools which are available at jobot.com/legal. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Jobot, and/or its agents and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here: jobot.com/privacy-policy Jobot
- ...We are looking for a hands-on Director, Application Security Engineering to strengthen our cybersecurity posture and partner directly with teams building software across web, mobile, data, and AI-enabled workflows. This role will embed security into delivery practices...SuggestedWork at officeShift work3 days per week
- ...Job Title: Senior Application Security Engineer Location- Princeton, NJ & NYC, NY (Hybrid) Duration- Full time Employment Summary: ~8-15+ years in software engineering and application security, with substantial hands‑on development experience (not security‑adjacent...SuggestedFull time
$100k - $140k
...collaborative teammates, read on. Your Impact to our Mission Zocdoc’s most important asset is our people. As an Application Security Engineer, you’ll play a meaningful role in helping our development organization build secure software with confidence. In this role...SuggestedFlexible hours$160k - $200k
...Senior Application Security Engineer New York, New York, United States The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security organization...Suggested$220k - $250k
...headquartered in New York City with offices around the world. To learn more, go to About The Role We’re seeking a Lead Application Security Engineer to help advance Zeta Global’s application and platform security posture through AI-native security practices,...Suggested$168k - $240k
...a wide range of simple, reliable, and secure crypto products and services to individuals... ...reach, and impact. The Department: Application Security consequences of security... ...AppSec builds the tools to make AI-first engineering secure. The Role: Staff Application...Work at officeRemote workFlexible hours- Senior Application Security Engineer AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people...Work at officeWork from homeVisa sponsorshipWork visa
- ...Workplaces (2026) Fortune Best Workplaces in New York™ (2026) Great Place to Work Certified™ The Role We are seeking a Senior Application Security Engineer to join Savvy Wealth at our NYC headquarters. This is a hands-on, in-the-weeds engineering role. You will execute the...Work at office
- Application Security Engineer One of our large financial clients is looking for an experienced Application Security Engineer to join their team. If the below requirements fit your skillset, feel free to apply. Duration: Long Term/Multi Year Contract Location: NYC or San...Long term contractRemote work
$200k - $235k
Senior Security Application Engineer New York, United States BitGo is the digital asset infrastructure company delivering custody, wallets, staking, trading, financing, stablecoins, and settlement services from regulated cold storage. Since 2013, BitGo has focused on accelerating...Full timeWork at officeWorldwide- ...What You'll Do: Be part of a team of engineers to implement client specific security policies in the CI/CD security tools including but not limited to SAST, OSS and SCA applications. Work with Development, DevOps and Security teams to identify and develop automated...Work experience placement
- Application Security Engineer Our client is looking for an experienced Cloud & Application Security Engineer to design, implement, validate, and operate security controls across our cloud infrastructure, applications, and software delivery pipelines. Individual will partner...
- The Estée Lauder Companies Inc. is seeking an experienced Application Security professional to evangelize our security strategy under the Global Head of Application Security. You will work on SDLC security, DevSecOps, and multi-cloud initiatives to deliver trusted software...
$70 - $75 per hour
Role: Application Security Engineer Duration: 12 months contract with possibility of extension or C2H. Location: New York, NY (Hybrid) Pay rate range: $70 - $75/hr Job Description: About the Team: -The mission of the Cloud Security & Developer Enablement team is to implement...Contract workWork experience placementLocal area- MANDATORY SKILLS: • 1 5 years of experience in application security, with a proven track record of conducting vulnerability assessments, penetration... ...leading security teams or initiatives, mentoring junior engineers, and fostering a culture of security awareness within the...Flexible hours
- Application Security Engineer Looking for an application security engineer with a background in Java development and good experience working with application development tools: whitebox, blackbox, contrast security, sonarqube... Needs some programming experience. Any scripting...
$160k - $200k
Senior Application Security Engineer New York, New York, United States The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security organization, directly...- Estée Lauder Companies in New York seeks an experienced Application Security professional to lead secure SDLC initiatives, DevSecOps integration... ...and partners. This role emphasizes collaboration with IT, engineering, and security stakeholders to implement threat modeling,...
$85k - $105k
Application Security Engineer - Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and well-...Full timeH1bLocal areaImmediate startRemote workVisa sponsorship- AI Systems Security Specialist Client added a crucial skill that they are seeking expertise in here is securing AI systems.... ...Experience AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure as Code (...
- ...category-defining business and there has rarely been a team better positioned for the opportunity. Join us! The Role Our Application Security Engineers play a pivotal role in safeguarding our platform, driving everything from designing secure AWS architectures to...Remote workFlexible hours
- Overview Application Security Engineer Remote within the US US Citizen Approximately 8 Month Contract (w/ possible extensions) Summary The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of web application and zero...Contract workRemote work
$190k - $237k
...more, and counts the former President and COO of Hubspot, JD Sherman, among its board members. Role Overview The Senior Application Security Engineer is a senior individual contributor responsible for strengthening Apollo’s secure software development lifecycle and reducing...WorldwideFlexible hours- ...Premium and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to...Remote jobFull timeLocal areaFlexible hoursShift work
$192k - $240k
...support you need to grow your career. Engineering at Brex Engineering at Brex is about building... .... Our teams span Software, Data, Security, and IT, and operate with high autonomy... ...become leaders. What you’ll do As a Senior Application Security Engineer, you will focus on...Remote jobWork experience placement$135k - $200k
...defense, intelligence, and commercial applications. We are trusted by our customers to protect... .... The mission of the Application Security Team is to enable developers to be highly... ...important. As an Application Security Engineer, you will be hands-on and have wide-ranging...Work experience placementWork at officeRemote workWork from homeRelocation package$169k - $220k
...lower cost through early diagnosis and longitudinal care management of chronic conditions. We are looking for a Senior Application Security Engineer to break Counterpart Assistant before anyone else does. This is a hands-on offensive security role on our Eng Core team,...Work experience placementWork at officeRemote workFlexible hours$109k - $156k
...while providing a level of professionalism and service unsurpassed in the lending industry. Position Summary The Senior Application Security Engineer at Guild Mortgage will play a lead role in strengthening the security of our applications, including AI-enabled applications...Minimum wageWork at officeLocal areaWork from homeMonday to FridayShift work$82k - $118k
...available while providing a level of professionalism and service unsurpassed in the lending industry. Position Summary The Application Security Engineer at Guild Mortgage supports the security of our applications, including AI-enabled applications and services. Working...Minimum wageWork at officeLocal areaWork from homeMonday to FridayShift work$130k - $190k
...be the company's technical authority on the security of its software products. Bridges Information Security and Engineering — embedding security into the SDLC for a ~50... ...Why this role now The company is maturing its application security function from a position of...Remote workWork from homeWorldwideHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- hydraulic application engineer New York, NY
- application system engineer New York, NY
- junior application support engineer New York, NY
- application engineer New York, NY
- application performance engineer New York, NY
- network applications engineer New York, NY
- project application engineer New York, NY
- application support engineer New York, NY
- application operations engineer New York, NY
- senior application support engineer New York, NY


