Application Security Engineer
Quick Overview
Job Description
Position: Application Security Engineer (Senior AppSec)
Location: Remote
Duration: 6-12+ Months Contract
Role Overview
We are seeking experienced Senior Application Security Engineers to join our team and play a critical role in validating AIgenerated vulnerability findings and translating them into actionable technical remediation. This position requires strong expertise in application and product security, combined with a deep understanding of how vulnerabilities map to code and how developers remediate them in production environments. The ideal candidate will have a background as a software engineer who transitioned into AppSec, bringing both security insight and practical development knowledge.
Key Responsibilities
-
Validate AIgenerated vulnerability findings (e.g., from Anthropic s Mythos) and assess exploitability, severity, and business impact.
-
Trace vulnerabilities to their technical root cause at the code level.
-
Collaborate with development teams to design and implement secure remediation strategies.
-
Conduct secure code reviews, threat modeling, and vulnerability assessments.
-
Define and enforce secure SDLC practices across product teams.
-
Provide guidance on API security, OWASP Top 10 risks, and secure design principles.
-
Partner with product owners and engineering teams to ensure vulnerabilities are remediated effectively and deployed safely.
-
Document findings, remediation steps, and best practices to strengthen organizational security posture.
Required Skills
-
Strong background in Application Security / Product Security.
-
Handson experience with OWASP Top 10, SAST, vulnerability assessment, secure SDLC, threat modeling, code review, API security.
-
Ability to validate findings, assess severity, and trace vulnerabilities to root cause.
-
Experience working directly with developers to remediate vulnerabilities.
-
Strong communication skills to bridge security and engineering teams.
Ideal Profile
-
A software engineer turned AppSec professional someone who understands both the security problem and how developers actually fix it.
-
Proven ability to work across multiple product teams, enabling secure development practices.
-
Experience with modern CI/CD pipelines and integrating security tooling into developer workflows.
Skills
Similar jobs
Staff Security Engineer, Security Operations - Moveworks
ServiceNow, Inc. · Mountain View, United States
Just nowSenior Cyber Embedded Software Engineer
Motorola Solutions · Schaumburg, United States
Just nowPrincipal Cyber Software Engineer (iOS)
Nightwing · Sterling, United States
Just now$99k - $206k/yrCyber Incident Intelligence Analyst II
Absolute Business Solutions Corp · Linthicum Heights, United States
2 minutes ago20178 - Security Engineer II
Hyundai AutoEver America · West Point, United States
2 minutes ago$80k - $114k/yrCyber Software Engineer
Nightwing · Arlington, United States
2 minutes ago$64k - $128k/yr