Application Security Engineer
$70.3k - $101.3kCity of St. Charles, MO
Description Your Impact The Application Security Engineer is responsible for embedding security throughout the software development lifecycle (SDLC), leading application security testing, and driving vulnerability remediation efforts.
About CivicPlus At CivicPlus, we strive to bring our company vision to life through innovation and collaboration. Supported by approachable leadership and transparent communication, we're empowered to make an impact on local government and the residents they serve. Grow your career alongside great people, where authenticity is welcome, successes are celebrated, and potential is nurtured. What You'll Do As a AppSec Engineer, you will:
Experience
Additional Information
Equal Opportunity Commitment CivicPlus is proud to be an Equal Employment Opportunity employer. We celebrate and support diversity for the benefit of our employees, products, clients, and communities. Reasonable accommodations are available during the interview process.
About CivicPlus At CivicPlus, we strive to bring our company vision to life through innovation and collaboration. Supported by approachable leadership and transparent communication, we're empowered to make an impact on local government and the residents they serve. Grow your career alongside great people, where authenticity is welcome, successes are celebrated, and potential is nurtured. What You'll Do As a AppSec Engineer, you will:
- Perform security code reviews, threat modeling, and architecture reviews across all development projects as part of secure Software Development Lifecycle (SDLC).
- Collaborate with development teams to integrate secure design, secure coding standards, and security controls across the SDLC.
- Identify, track, and validate vulnerabilities and security defects from security testing and scanning, collaborating with development teams to inform and prioritize remediation within compliance timeline requirements.
- Coordinate external, independent penetration testing of production environments.
- Lead application security testing, including static, dynamic, and interactive application security testing (SAST, DAST, IAST).
- Serve as a subject matter expert on application security vulnerabilities (such as the OWASP Top 10) and emerging threats.
- Partner closely with organizational functions and key stakeholders to provide guidance, tooling, and training to development teams and ensure secure design principles are applied, risks are mitigated, and applications are resilient against modern threats.
Experience
- 3 - 7 Years of experience in application security, secure development, penetration testing, or related field
- Working experience in application testing or security testing tooling (including SAST, DAST, and/or IAST)
- Working experience integrating secure design principles into change management, code review, CI/CD pipelines, and supporting secure development operations.
- Security+, GSEC, GSSP or equivalent
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, Information Systems, or a related field (preferred)
- Strong understanding of Secure Software Development Lifecycle (SSDLC), application security controls, and vulnerability management
- Familiarity with secure coding practices across multiple development languages (such as C#, Go, Java, JavaScript, or Python)
- Knowledge of cloud-native and SaaS application environments
- Embed security into how software is built. Partner with engineering teams to integrate secure design and coding practices throughout the development lifecycle.
- Find and fix vulnerabilities before they become risks. Lead application security testing and guide remediation across modern SaaS and cloud-based platforms.
- Be a trusted security advisor to developers. Provide hands-on guidance, tooling, and training that help teams build resilient applications from the start.
- Strengthen the security of products used by local governments. Help ensure CivicPlus applications remain secure, reliable, and resilient against evolving threats.
- Estimated Salary Grade Range: $70,300-$101,300
- Anticipated Hiring Range: $70,000 - $80,000
- The actual salary offer will carefully consider a wide range of factors, including your skills, qualifications, experience and is based on a 40-hour work week.
- Benefits: Comprehensive health insurance, dental insurance, vision insurance, Flexible Time Off, 401(k) plan, and more.
- Introductory call with Talent Acquisition
- Interview with the Hiring Manager
- Panel Interview with CivicPlus team members, including an interview project activity
- Offer
Additional Information
- CivicPlus is currently unable to provide visa sponsorship for this position now or in the future. Applicants must be authorized to work in the US.
- We encourage you to apply as soon as possible, as applications will be reviewed on a rolling basis, and the posting may close earlier at the discretion of the Talent Acquisition team
Equal Opportunity Commitment CivicPlus is proud to be an Equal Employment Opportunity employer. We celebrate and support diversity for the benefit of our employees, products, clients, and communities. Reasonable accommodations are available during the interview process.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in United States vacancy
- ...Senior Security Engineer – Secure Code Review San Francisco, California On-site | Full-Time My client is seeking a Senior Security Engineer to join their Application Security practice. This role is ideal for a hands-on AppSec professional with a strong software...SuggestedFull time
- ...Job Title: AppSec Engineer Location: Rockville, MD or Tysons, VA (3 days onsite in a week) Pen testing SAST / DAST Burp... ...etc.) AI/GenAI JD: Plan, coordinate and implement application security practices in each phase of software development life cycle...Suggested3 days per week
$40 per hour
...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback... ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some...SuggestedHourly payFull timePart timeRemote work$175k
...Overview: Corporate Tools is hiring an Security Engineer for $175,000/year. You will be a traditional company employee. This is a... ...understanding of security knowledge of testing mobile, native applications, web applications, distributed and database systems ~...SuggestedFull timeWork at officeLocal areaRemote workFlexible hoursWeekend work$213k
...About the role We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team. This role is hands-on and impact driven. You will work directly with mobile, backend, and platform...SuggestedFull timeWork at officeLocal areaRemote workNight shift- ...public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a... ...reimbursement and more. We’re Looking For We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security...Contract workRemote work
- ...Application Security Engineer One of our large financial clients is looking for an experienced Application Security Engineer to join their team. If the below requirements fit your skillset, feel free to apply. Duration: Long Term/Multi Year Contract Location:...Long term contractRemote work
$215k - $230k
...A leading blockchain intelligence firm is looking for an Application Security Engineer to secure mission-critical infrastructure. The role involves leading security reviews, developing testing methodologies, and managing vulnerability assessment processes. Candidates should...$150k - $160k
...Senior Cybersecurity Engineer (Application Security) The Senior Cybersecurity Engineer (Application Security) is responsible for protecting our organization's software applications and services from threats by embedding security practices into the software development...For contractorsWork at officeRemote workFlexible hours- ...Swapcard Security Engineer Swapcard is the leading AI-powered event platform designed to drive revenue growth and foster meaningful connections... ...tools (eg. Burp Suite). Solid understanding of common application vulnerabilities (OWASP Top 10, SSRF, IDOR, etc.)....Work experience placementRemote workWork from home
- ...Application Security Engineer Client: Securian Financial Location: Remote - Preferrably local to St. Paul, MN (Will consider A+ candidates from permissible locations). The manager sees value in being able to come onsite, but he is open to considering fully remote...Contract workTemporary workLocal areaRemote work
- ...Senior Application Security Engineer We are seeking a highly skilled and proactive Senior Application Security Engineer to join our growing security team. You will be responsible for securing our applications throughout the software development lifecycle (SDLC). This...Remote work
- ...Must Have:- • Seeking candidates with solid expertise in Manual web application penetration testing and Manual secure code review. • Expertise is performing Manual Test Case Scenarios is a must. • Identification of Vulnerabilities in Source Codes manually is a must...Remote work
- ...Appsecops Engineer The Application Security Engineer is responsible for designing, building, and maintaining the technical infrastructure that enables scalable application security across the organization. This role bridges software engineering and security disciplines...Remote work
- ...and maintain $1.21 billion in surplus. Amerisure is hiring!! This role can sit remote . We're looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to...Local areaRemote workFlexible hoursShift work
$100k - $150k
...Application Security Engineer Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable...Full timeH1bRemote workVisa sponsorship- ...A dynamic tech startup is seeking a Sr. Application Security Engineer to oversee the security of their innovative product. This role requires a strong background in application security and Kubernetes, along with proficiency in Go. You will lead security reviews, threat...Remote workFlexible hours
$150k - $190k
...As a Sr. Application Security Engineer at vCluster Labs, you are the architect of trust in our diverse ecosystem. In this role, you will be responsible for the end-to-end security of our product, ensuring that vCluster remains the de facto standard for secure Kubernetes...Remote workFlexible hoursShift work- ...Senior Application Security Engineer Moveworks is the Agentic AI Assistant platform that empowers the entire workforce. Our platform enables employees to converse with all of their business systems through natural language to quickly find answers and automate tasks....Work at officeRemote workFlexible hours
- ...Title: Software and Application Security Engineer Location: Lake Mary, Florida - Fully Remote Need to have good experience in Application security as well as a development Background. We are seeking a Sr Software Engineer to join our progressive information...Remote work
- ...Senior Application Security Engineer AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people...Remote workFlexible hours
$180k - $210k
...Senior Application Security Engineer At Qualia, we've built the leading B2B real estate technology that transforms the home buying and selling experience into a simple, secure, and enjoyable process. Our SMB and Enterprise products bring together users from across the...Work at officeRemote workFlexible hours$320k - $405k
...Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role: The Application Security team is at the forefront of building security into every phase...Contract workFor contractorsFor subcontractorWork at officeRemote workRelocationVisa sponsorshipWork visaFlexible hoursShift work- ...Job Title Application Security Engineer Client Booz Allen Hamilton Govt Agency SEC Position Application Security Engineer Location 100% Remote Contract Duration 12+ months Interview Process 2x video Onboarding Process Must obtain...Contract workRemote work
- ...operating modern, cloud-based products across multiple business verticals and technology stacks. We are looking for an Application Security Engineer to partner with Engineering, Product, and Security to make security an everyday part of how we build and ship software....Live inWork at officeLocal areaRemote workNight shift
$128k - $181.25k
...capture moments that reflect who they uniquely are. This is an exciting time for Shutterfly and we are looking for a Senior Application Security Engineer to join our team! In this position you will be an integral part of a developing and expanding Application Security...Remote work- ...APPLY! At Scroll, we operate on the bleeding edge of a fast-moving frontier of zk technology, research and innovation. The Application Security Engineer will be responsible for improving the zkEVM-based zkRollup security, ensuring that Scroll is one of the safest Layer 2’s...Work at officeRemote workHome officeFlexible hours
- A leading IT staffing firm is seeking an experienced Application Security Engineer for a remote role lasting over 12 months. Candidates should have extensive experience in Static and Dynamic Application Security Testing, along with knowledge of Java, Python, and .NET. Familiarity...Remote work
- ...A leading web platform company is seeking a Senior Application Security Engineer to enhance their secure development practices. This remote role involves collaborating with engineering teams, identifying security vulnerabilities, and leading security initiatives. Candidates...Remote work
- ...A leading privacy-focused blockchain company in the United States is seeking an experienced Application Security Engineer to ensure the security of its applications and services. The role involves threat modeling, vulnerability remediation, and collaboration with engineering...Remote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
Related searches
- application support engineer United States
- senior application security engineer United States
- application engineering manager United States
- project application engineer United States
- network applications engineer United States
- technical application engineer United States
- cnc applications engineer United States
- hydraulic application engineer United States
- application system engineer United States
- application engineer United States


