Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$70.3k - $101.3k

City of St. Charles, MO

Description

Your Impact

The Application Security Engineer is responsible for embedding security throughout the software development lifecycle (SDLC), leading application security testing, and driving vulnerability remediation efforts.


About CivicPlus

At CivicPlus, we strive to bring our company vision to life through innovation and collaboration. Supported by approachable leadership and transparent communication, we're empowered to make an impact on local government and the residents they serve. Grow your career alongside great people, where authenticity is welcome, successes are celebrated, and potential is nurtured.

What You'll Do

As a AppSec Engineer, you will:
  • Perform security code reviews, threat modeling, and architecture reviews across all development projects as part of secure Software Development Lifecycle (SDLC).
  • Collaborate with development teams to integrate secure design, secure coding standards, and security controls across the SDLC.
  • Identify, track, and validate vulnerabilities and security defects from security testing and scanning, collaborating with development teams to inform and prioritize remediation within compliance timeline requirements.
  • Coordinate external, independent penetration testing of production environments.
  • Lead application security testing, including static, dynamic, and interactive application security testing (SAST, DAST, IAST).
  • Serve as a subject matter expert on application security vulnerabilities (such as the OWASP Top 10) and emerging threats.
  • Partner closely with organizational functions and key stakeholders to provide guidance, tooling, and training to development teams and ensure secure design principles are applied, risks are mitigated, and applications are resilient against modern threats.
What We're Looking For

We know that excellent candidates come from diverse backgrounds. Even if you don't meet 100% of the listed requirements, we encourage you to apply!

Preferred Qualifications:


Experience
  • 3 - 7 Years of experience in application security, secure development, penetration testing, or related field
  • Working experience in application testing or security testing tooling (including SAST, DAST, and/or IAST)
  • Working experience integrating secure design principles into change management, code review, CI/CD pipelines, and supporting secure development operations.
Certifications
  • Security+, GSEC, GSSP or equivalent
  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, Information Systems, or a related field (preferred)
Skills
  • Strong understanding of Secure Software Development Lifecycle (SSDLC), application security controls, and vulnerability management
  • Familiarity with secure coding practices across multiple development languages (such as C#, Go, Java, JavaScript, or Python)
  • Knowledge of cloud-native and SaaS application environments
Why CivicPlus?

This role offers:
  • Embed security into how software is built. Partner with engineering teams to integrate secure design and coding practices throughout the development lifecycle.
  • Find and fix vulnerabilities before they become risks. Lead application security testing and guide remediation across modern SaaS and cloud-based platforms.
  • Be a trusted security advisor to developers. Provide hands-on guidance, tooling, and training that help teams build resilient applications from the start.
  • Strengthen the security of products used by local governments. Help ensure CivicPlus applications remain secure, reliable, and resilient against evolving threats.
Compensation and Benefits
  • Estimated Salary Grade Range: $70,300-$101,300
    • Anticipated Hiring Range: $70,000 - $80,000
    • The actual salary offer will carefully consider a wide range of factors, including your skills, qualifications, experience and is based on a 40-hour work week.
  • Benefits: Comprehensive health insurance, dental insurance, vision insurance, Flexible Time Off, 401(k) plan, and more.
Our Hiring Process
  • Introductory call with Talent Acquisition
  • Interview with the Hiring Manager
  • Panel Interview with CivicPlus team members, including an interview project activity
  • Offer
Note: The process may vary slightly depending on the role.


Additional Information
  • CivicPlus is currently unable to provide visa sponsorship for this position now or in the future. Applicants must be authorized to work in the US.
  • We encourage you to apply as soon as possible, as applications will be reviewed on a rolling basis, and the posting may close earlier at the discretion of the Talent Acquisition team

Equal Opportunity Commitment

CivicPlus is proud to be an Equal Employment Opportunity employer. We celebrate and support diversity for the benefit of our employees, products, clients, and communities. Reasonable accommodations are available during the interview process.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in United States vacancy
  •  ...Senior Security Engineer – Secure Code Review San Francisco, California On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software... 
    Suggested
    Full time

    AGS

    San Francisco, CA
    1 hour ago
  •  ...Job Title: AppSec Engineer Location: Rockville, MD or Tysons, VA (3 days onsite in a week) Pen testing SAST / DAST Burp...  ...etc.) AI/GenAI JD: Plan, coordinate and implement application security practices in each phase of software development life cycle... 
    Suggested
    3 days per week

    Unisys

    Rockville, MD
    1 day ago
  • $40 per hour

     ...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback...  ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some... 
    Suggested
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Ely, MN
    1 day ago
  • $175k

     ...Overview: Corporate Tools is hiring an Security Engineer for $175,000/year. You will be a traditional company employee. This is a...  ...understanding of security knowledge of testing mobile, native applications, web applications, distributed and database systems ~... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Flexible hours
    Weekend work

    Corporate Tools

    United States
    5 days ago
  • $213k

     ...About the role We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team. This role is hands-on and impact driven. You will work directly with mobile, backend, and platform... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Night shift

    Chime Financial, Inc

    United States
    1 day ago
  •  ...public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a...  ...reimbursement and more. We’re Looking For We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security... 
    Contract work
    Remote work

    ShorePoint Inc

    Herndon, VA
    6 days ago
  •  ...Application Security Engineer One of our large financial clients is looking for an experienced Application Security Engineer to join their team. If the below requirements fit your skillset, feel free to apply. Duration: Long Term/Multi Year Contract Location:... 
    Long term contract
    Remote work

    Software Technology Inc

    United States
    2 days ago
  • $215k - $230k

     ...A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates should... 

    Crypto Pro Network

    New York, NY
    4 days ago
  • $150k - $160k

     ...Senior Cybersecurity Engineer (Application Security) The Senior Cybersecurity Engineer (Application Security) is responsible for protecting our organization's software applications and services from threats by embedding security practices into the software development... 
    For contractors
    Work at office
    Remote work
    Flexible hours

    United Natural Foods

    United States
    1 day ago
  •  ...Swapcard Security Engineer Swapcard is the leading AI-powered event platform designed to drive revenue growth and foster meaningful connections...  ...tools (eg. Burp Suite). Solid understanding of common application vulnerabilities (OWASP Top 10, SSRF, IDOR, etc.).... 
    Work experience placement
    Remote work
    Work from home

    Swapcard

    United States
    5 days ago
  •  ...Application Security Engineer Client: Securian Financial Location: Remote - Preferrably local to St. Paul, MN (Will consider A+ candidates from permissible locations). The manager sees value in being able to come onsite, but he is open to considering fully remote... 
    Contract work
    Temporary work
    Local area
    Remote work

    Samprasoft

    United States
    4 days ago
  •  ...Senior Application Security Engineer We are seeking a highly skilled and proactive Senior Application Security Engineer to join our growing security team. You will be responsible for securing our applications throughout the software development lifecycle (SDLC). This... 
    Remote work

    e.l.f Cosmetics

    United States
    5 days ago
  •  ...Must Have:- • Seeking candidates with solid expertise in Manual web application penetration testing and Manual secure code review. • Expertise is performing Manual Test Case Scenarios is a must. • Identification of Vulnerabilities in Source Codes manually is a must... 
    Remote work

    Yochana

    United States
    2 days ago
  •  ...Appsecops Engineer The Application Security Engineer is responsible for designing, building, and maintaining the technical infrastructure that enables scalable application security across the organization. This role bridges software engineering and security disciplines... 
    Remote work

    Diverse Lynx

    United States
    2 days ago
  •  ...and maintain $1.21 billion in surplus. Amerisure is hiring!! This role can sit remote . We're looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to... 
    Local area
    Remote work
    Flexible hours
    Shift work

    Amerisure Mutual Insurance Company

    United States
    2 days ago
  • $100k - $150k

     ...Application Security Engineer Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable... 
    Full time
    H1b
    Remote work
    Visa sponsorship

    Bright Vision Technologies

    United States
    17 hours ago
  •  ...A dynamic tech startup is seeking a Sr. Application Security Engineer to oversee the security of their innovative product. This role requires a strong background in application security and Kubernetes, along with proficiency in Go. You will lead security reviews, threat... 
    Remote work
    Flexible hours

    vCluster

    Boston, MA
    6 days ago
  • $150k - $190k

     ...As a Sr. Application Security Engineer at vCluster Labs, you are the architect of trust in our diverse ecosystem. In this role, you will be responsible for the end-to-end security of our product, ensuring that vCluster remains the de facto standard for secure Kubernetes... 
    Remote work
    Flexible hours
    Shift work

    vCluster

    Austin, TX
    6 days ago
  •  ...Senior Application Security Engineer Moveworks is the Agentic AI Assistant platform that empowers the entire workforce. Our platform enables employees to converse with all of their business systems through natural language to quickly find answers and automate tasks.... 
    Work at office
    Remote work
    Flexible hours

    ServiceNow

    United States
    2 days ago
  •  ...Title: Software and Application Security Engineer Location: Lake Mary, Florida - Fully Remote Need to have good experience in Application security as well as a development Background. We are seeking a Sr Software Engineer to join our progressive information... 
    Remote work

    RIT Solutions Inc/ Tech Dev IT/ Texperts Inc/ConceptsIT, Inc...

    United States
    2 days ago
  •  ...Senior Application Security Engineer AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people... 
    Remote work
    Flexible hours

    AgileEngine

    United States
    14 hours ago
  • $180k - $210k

     ...Senior Application Security Engineer At Qualia, we've built the leading B2B real estate technology that transforms the home buying and selling experience into a simple, secure, and enjoyable process. Our SMB and Enterprise products bring together users from across the... 
    Work at office
    Remote work
    Flexible hours

    Qualia

    United States
    2 days ago
  • $320k - $405k

     ...Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role: The Application Security team is at the forefront of building security into every phase... 
    Contract work
    For contractors
    For subcontractor
    Work at office
    Remote work
    Relocation
    Visa sponsorship
    Work visa
    Flexible hours
    Shift work

    Anthropic

    Richmond, VA
    1 day ago
  •  ...Job Title Application Security Engineer Client Booz Allen Hamilton Govt Agency SEC Position Application Security Engineer Location 100% Remote Contract Duration 12+ months Interview Process 2x video Onboarding Process Must obtain... 
    Contract work
    Remote work

    Polarits

    Wilmington, DE
    5 days ago
  •  ...operating modern, cloud-based products across multiple business verticals and technology stacks. We are looking for an Application Security Engineer to partner with Engineering, Product, and Security to make security an everyday part of how we build and ship software.... 
    Live in
    Work at office
    Local area
    Remote work
    Night shift

    Centerfield Corporation

    United States
    4 days ago
  • $128k - $181.25k

     ...capture moments that reflect who they uniquely are. This is an exciting time for Shutterfly and we are looking for a Senior Application Security Engineer to join our team! In this position you will be an integral part of a developing and expanding Application Security... 
    Remote work

    Shutterfly

    New York, NY
    4 days ago
  •  ...APPLY! At Scroll, we operate on the bleeding edge of a fast-moving frontier of zk technology, research and innovation. The Application Security Engineer will be responsible for improving the zkEVM-based zkRollup security, ensuring that Scroll is one of the safest Layer 2’s... 
    Work at office
    Remote work
    Home office
    Flexible hours

    Blockchain Works

    New York, NY
    4 days ago
  • A leading IT staffing firm is seeking an experienced Application Security Engineer for a remote role lasting over 12 months. Candidates should have extensive experience in Static and Dynamic Application Security Testing, along with knowledge of Java, Python, and .NET. Familiarity... 
    Remote work

    Polarits

    Wilmington, DE
    5 days ago
  •  ...A leading web platform company is seeking a Senior Application Security Engineer to enhance their secure development practices. This remote role involves collaborating with engineering teams, identifying security vulnerabilities, and leading security initiatives. Candidates... 
    Remote work

    Webflow

    New York, NY
    4 days ago
  •  ...A leading privacy-focused blockchain company in the United States is seeking an experienced Application Security Engineer to ensure the security of its applications and services. The role involves threat modeling, vulnerability remediation, and collaboration with engineering... 
    Remote work
    Flexible hours

    Provable

    Richmond, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!