Hybrid Senior Application Security Engineer

Posted 5 hours ago

Apply now

About the role

  • Senior Application Security Engineer leading AppSec program in a global fintech company. Collaborating with cross-functional teams to enhance security practices across the software development lifecycle.

Responsibilities

  • Lead the organization’s Application Security (AppSec) program with a focus on continuous improvement and measurable outcomes
  • Define and enforce AppSec strategy, roadmap, and KPIs in alignment with enterprise security goals
  • Collaborate with software engineering teams to integrate security controls, best practices, and policies throughout the SDLC
  • Promote a "security by design" culture by coaching and mentoring developers on secure coding practices
  • Support threat modeling, secure code reviews, and security architecture discussions
  • Implement, configure, and maintain application security tooling (SAST, DAST, SCA, IaC scanning, container security)
  • Integrate security checks into CI/CD pipelines using GitHub and other platforms
  • Evaluate emerging technologies and recommend tools that enhance automation and scalability
  • Partner with SOC analysts to investigate application-layer alerts, incidents, and vulnerabilities
  • Track and report key security metrics, including vulnerability remediation timelines, pipeline coverage, and compliance with policies
  • Provide executive reporting and actionable insights on AppSec maturity and risk reduction progress

Requirements

  • 5+ years of professional experience in information security with a focus on application security
  • Hands-on experience with security testing tools such as SAST, DAST, SCA, fuzzing, and API testing platforms
  • Proficiency with GitHub or similar development platforms and integration of security into CI/CD pipelines
  • Ability to evaluate and implement automation strategies for AppSec processes
  • Experience presenting complex security findings to both technical and non-technical audiences
  • Familiarity with SOC operations, incident response workflows, and integrating AppSec into broader enterprise security practices
  • Understanding of vulnerability management and risk prioritization processes in large organizations
  • Certifications such as GWAPT, GWEB, CSSLP, OSWE, or other relevant industry credentials are a plus

Benefits

  • Comprehensive medical insurance, dental insurance, and vision insurance
  • Life and disability insurance
  • Fertility benefits
  • Wellness resources
  • Paid sick time
  • Generous paid time off and holidays
  • Employee Assistance Program (EAP)
  • Complimentary Calm app subscription
  • Immediate vesting in a 401(k) plan
  • Health Savings Account (HSA) and Flexible Spending Account (FSA) options
  • Commuter benefits
  • Employee discount programs
  • Paid maternity leave and paid paternity leave (including for adoptive parents)
  • Legal plan options
  • Pet insurance coverage

Job title

Senior Application Security Engineer

Job type

Experience level

Senior

Salary

$139,000 - $188,830 per year

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job