Application Security Engineer (Remote - US)

AI overview

Drive application security by embedding best practices into the SDLC and collaborating with teams to mitigate vulnerabilities in web applications and APIs.

This position is posted by Jobgether on behalf of a partner company. We are currently looking for a [Application Security Engineer] in [United States].

As an Application Security Engineer, you will be a hands-on contributor driving the security of modern web applications, APIs, and microservices. You will work closely with engineering and product teams to embed security into the software development lifecycle, ensuring compliance with regulatory standards and industry best practices. Your role will include designing secure solutions, performing threat modeling, automating security processes, and responding to security incidents. You will proactively identify vulnerabilities, implement mitigation strategies, and develop tools that enhance the organization’s security posture. This position requires collaboration, innovation, and a practical approach to balancing security with business priorities. Your efforts will help protect sensitive data and maintain the integrity of critical systems.

Accountabilities:

·         Embed security practices into the SDLC, collaborating with engineering teams to design, review, and implement secure solutions.

·         Develop and maintain security tools, automation, and testing frameworks (SAST, DAST, SCA) to proactively identify and remediate vulnerabilities.

·         Conduct threat modeling, security reviews, and risk assessments for applications, APIs, and microservices.

·         Lead application-related security incident response, including root cause analysis and preventive measures.

·         Ensure compliance with healthcare or regulated environment standards, integrating security into CI/CD pipelines.

·         Assess third-party libraries, SaaS providers, and cloud configurations for security and regulatory compliance.

·         Translate security strategies into actionable development plans, reusable components, and secure coding standards.

Requirements

·         5+ years of experience in information security, with a focus on application security and secure SDLC practices.

·         Proven hands-on experience designing, developing, and deploying security controls, code review, and vulnerability remediation.

·         Strong understanding of security architecture, threat modeling, and modern web application frameworks.

·         Experience with cloud technologies, containerization (Docker, Kubernetes), serverless platforms, and DevSecOps tools.

·         Proficiency in one or more programming languages such as Ruby, Python, Rust, or Go.

·         Familiarity with healthcare compliance frameworks (HIPAA, HITECH) is a plus.

·         Excellent problem-solving, analytical, and communication skills, with the ability to explain security risks to engineering teams.

·         Security certifications (SANS, OSCP, CSSLP) or healthcare security experience is advantageous.

Benefits

·         Competitive base salary and potential for performance-based bonuses.

·         Comprehensive medical, dental, vision, life, and disability coverage.

·         401(k) plan with company match.

·         Flexible time off, wellbeing days, paid holidays, and summer Fridays.

·         Paid parental leave and backup care.

·         Tuition reimbursement and professional development opportunities.

·         Employee resource groups and inclusive workplace culture.

Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching.
When you apply, your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly.
🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience, and achievements.
📊 It compares your profile to the job’s core requirements and past success factors to determine your match score.
🎯 Based on this analysis, we automatically shortlist the 3 candidates with the highest match to the role.
🧠 When necessary, our human team may perform an additional manual review to ensure no strong profile is missed.
The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role.
Once the shortlist is completed, we share it directly with the company that owns the job opening. The final decision and next steps (such as interviews or additional assessments) are then made by their internal hiring team.
Thank you for your interest!

 

#LI-CL1

Perks & Benefits Extracted with AI

  • Education Stipend: Tuition reimbursement and professional development opportunities.
  • Health Insurance: Comprehensive medical, dental, vision, life, and disability coverage.
  • Paid Parental Leave: Paid parental leave and backup care.
  • Paid Time Off: Flexible time off, wellbeing days, paid holidays, and summer Fridays.

Jobgether is the Largest Remote Job Platform worldwide with more than 160k remote jobs available across the world. Access the best flexible and remote jobs in just one click. Jobgether is your guide to the future of work, offering a variety of job oppo...

View all jobs
Get hired quicker

Be the first to apply. Receive an email whenever similar jobs are posted.

Ace your job interview

Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.

Application Security Engineer Q&A's
Report this job
Apply for this job