All roles

Senior Application Security Engineer

Remote · USA Full-time New today

We are seeking a highly skilled and proactive Senior Application Security Engineer to join our growing security team. You will be responsible for securing our applications throughout the software development lifecycle (SDLC). This includes - identifying vulnerabilities, - working with development teams to remediate risks, and - implementing security best practices and tools to ensure our applications are robust, secure, and compliant with relevant standards. \n Responsibilities: Perform manual and automated security assessments of web, mobile, and cloud applications Collaborate with development and engineering teams to embed security into SDLC (DevSecOps) Conduct secure code reviews, threat modeling exercises, and risk assessments to identify security weaknesses in application design. Implement and manage application security tools (SAST, DAST, SCA, IAST) Design and enforce security policies, standards, and procedures for application development Monitor, triage, and respond to application-layer vulnerabilities and incidents Work closely with QA and engineering teams to drive security testing and fix validation Lead the Incident Response effort for application-related security events. Stay current on the latest security threats, vulnerabilities, and industry's best practices Conduct developer training and promote a security-first culture within engineering Cross-train team members on Application Security principles. Actively participate in the broader corporate security efforts, including infrastructure security, end-user training, and vulnerability management. Rquirements: Overall 8+ years of experience Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience). 5+ years in application security, secure software development, and penetration testing. Strong understanding of web technologies (HTML, JavaScript, Python, REST APIs, etc.). Experience with security tools for code security, bug bounty programs, and the ability to integrate them into CI/DC pipelines for automated security testing. Familiarity with OWASP Top 10, SANS Top 25, CWE, CVE, and secure coding practices. Knowledge of cloud environments (AWS, Azure, GCP) and their security features. Strong communication and interpersonal skills, with the ability to collaborate effectively with technical and non-technical stakeholders. Preferred Qualifications: Industry certifications such as CSSLP, GWAPT, OSCP, or CEH Experience with container security and CI/CD pipeline integration Familiarity with regulatory and compliance frameworks (e.g., SOC 2, ISO 27001, PCI DSS) Prior experience working in agile, DevOps, or fast-paced development environments \n Apply To This Job

Related roles

Auditor

Remote · USA Full-time

Freelance Storyboard and Animatic Artist

Remote · USA Full-time

Expert Literature Books

Remote · USA Full-time

HR Operations Lead (m/w/d)

Remote · USA Full-time

Business Intelligence Specialist (m/w/d)

Remote · USA Full-time

Senior Sales Manager - Supply Partnerships (f/m/x)

Remote · USA Full-time

Quantitative Analyst – Legal & Financial Structures

Remote · USA Full-time

Sales Development Representative / SDR (m/w/d) 100 % Remote | Fokus Conversion statt Cold Outbound

Remote · USA Full-time

Sales Manager (m/w/d) Handballsport

Remote · USA Full-time

Quantitative Analyst – Legal & Financial Structures

Remote · USA Full-time

Experienced Part-Time Remote Amazon Data Entry Specialist – E-commerce Operations Support

Remote · USA Full-time

Senior Executive Assistant

Remote · USA Full-time

Experienced Data Entry Specialist – Live Chat, Remote, and Cyprus-Based Opportunity with arenaflex

Remote · USA Full-time

Experienced Data Entry Specialist – Remote Opportunity with arenaflex

Remote · USA Full-time

Customer Service Representative

Remote · USA Full-time

DevSecOps Engineer (Systems Integration)

Remote · USA Full-time

Experienced Full Stack Data Specialist – Advertisements Information Model Development at arenaflex

Remote · USA Full-time

Remote Customer Service Representative – Entry Level | No Experience Needed | Weekly Pay

Remote · USA Full-time

High Paying Customer Service Representative – Join arenaflex's Dynamic Team

Remote · USA Full-time

Remote Employment Attorney - Client Relations & Settlement Negotiation

Remote · USA Full-time