Haystack
← Back to Jobs
Technology
SI

Application Security Engineer required for a Long Term Hybrid position in Albany, NY.

Svam International, Inc.Albany, NY🇺🇸United StatesPosted 17 Aug 2026

Why This Role Stands Out

Advance your career as a Senior Application Security Engineer by collaborating with a talented development team on complex, multi-tier architecture projects, with a hybrid work model offering flexibility. This role is ideal for a security professional passionate about integrating security best practices into the SDLC and eager to contribute to a reputable company. Apply now to make a significant impact and grow your expertise.

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

We are trying to source Sr. Application Security Engineer for our direct client for a Long Term Hybrid position in Albany, NY. We need Sr. Security Engineer who will join talented Development Team who will handle the project which is built on a multi-tier architecture including Service Oriented architecture, multi-tier web applications using Java and various other COTS products. Application Security Engineer work closely with development teams to diagnose, document, and remediate application security vulnerabilities and identify appropriate security checkpoints in SDLC. Perform risk-based, technical assessments/penetration tests of applications, using dynamic and static scanning tools, and audits ensuring compliance with industry standards Consult with Development leadership on application development training.

Location          :  Albany, NY (Hybrid – Monday Tuesday onsite + alternating Fridays). Remote-only candidates will not be considered.

Required Qualifications

·       8+ years Information Technology.

·       5+ years in software development role as a Developer, or Architect

·       Java/Web development with strong secure coding background in RHEL and JBoss.

·      3+years with Application Security Engineering conducting assessments, penetration testing, implementing tools for dynamic /automated code review, dynamic and static application scanning (Fortify, SonarQube); consulting on security designs of applications, potential vulnerabilities, and remediation, and creating training materials on key security concepts.

·     Hands-on experience assessing new code commits, pull requests, and architecture changes for vulnerabilities, misconfigurations, and compliance risks.

·   Hands-on experience integrating AI-driven code analysis platforms into CI/CD pipelines to identify vulnerabilities and insecure coding patterns before deployment.

·     Hands-on experience designing and executing a repeatable process to aggressively prioritize issue dispositions and remediations of security findings — while providing clear, concise status updates and risk reporting to leadership and stakeholders.

Education:

Bachelor’s degree in Computer Science or related technical field, OR equivalent combination of education and experience  

Skills:

·   Strong oral and written communication skills, with a demonstrated ability to  communicate complex topics to colleagues, and management.

·        Demonstrated collaboration and teaching abilities.

·        Strong analytical skills. 

·     Identify and resolve problems in a timely manner; gather and analyze information skillfully; develop alternative solutions.

·         Critical thinking and creative problem solving  

Desired Qualifications

CISSP, CEH, CISA, OSCP, OSCE, or OSWE Certifications

Skills

SonarQube
Java
Penetration Testing

Similar jobs