Senior Application Security Engineer managing application security with Django/Python at Energy Solutions. Focus on risk management, collaborating with development teams, and improving security practices.
Responsibilities
Contribute to the application security roadmap for our internal applications—prioritize risks and sequence work across codebases, application layer, and DevOps.
Consult with engineers to communicate requirements, create actionable tickets/acceptance criteria, and drive adoption.
Conduct pull request reviews focused on security, provide guidance on refactors, and approve/deny with clear rationale.
Serve as a steward for SAST/scanning: review static code scan results, triage findings, eliminate noise, and drive remediation with owners.
Build reference implementations in Django/Python (i.e. authentication patterns, input validation, secrets handling, rate limiting, geo-based access) without direct responsibility for production feature development.
Map SOC 2/NIST to engineering work: translate requirements into stories, controls, and automated evidence in CI/CD.
Threat modeling & architecture: navigate libraries/architectures and document secure patterns (ADRs/RFCs) that teams follow.
Oversee security related tasks in the Software Delivery Life Cycle (SDLC) to ensure software development activities remain in compliance.
Collaborate with software developers and code base leads.
Act as a liaison between technical requirements from the business (i.e. security, privacy, compliance) and development teams.
Participate as a subject matter expert in security architecture, including new designs and design reviews.
Recommend application security improvements based on best practices, OWASP standards and other web application security frameworks.
Review architecture and compliance-related code changes for security impact.
Ensure compliance with all company security policies and standards.
Manage and maintain all security related tickets, including recommendations, testing, and validation.
Requirements
Minimum of 5 years' experience in application security experience.
Practice and implementation with Django/Python with a clear application-security focus (production experience and impact, not theory).
Engineering background (software or DevOps/SRE) with the ability to read/modify code, review PRs, and build PoCs.
Experience with GitHub security, including reviewing static code scans, triage findings, eliminate noise, and drive remediation with owners.
Experience embedding secure SDLC into Git-based workflows and CI/CD (pre-commit, pipeline gates, policy-as-code).
Practical knowledge of SOC 2 and familiarity with NIST 800-53; can turn requirements into technical tasks and evidence.
Ability to operate across code, app, and DevOps (containers, IaC basics, secrets, logging/monitoring).
Clear, persuasive communication (verbal and written) and prioritization.
Excellent time management skills with a proven ability to meet deadlines.
Technical Lead working within a cross - functional scrum team at Vanguard. Lead and coach developers, ensuring viability of IT deliverables with strong programming background.
Technical Architect designing application architectures for SAS Viya solutions on Azure and AWS. Collaborating with teams to deliver reliable and scalable cloud - based solutions.
Technical Customer Support Engineer at congatec providing support throughout the software product design lifecycle. Ensuring customer satisfaction and collaborating closely with various teams.
Field Application Engineer providing technical support throughout the product lifecycle for congatec software products. Ensure high customer satisfaction through technical support and customer trainings.
Application Support Engineer managing application support for pharmaceutical production systems in Indianapolis. Partnering with global teams to ensure reliability and compliance in a regulated environment.
Mid - level Application Support Engineer providing Tier 2 / Tier 3 support for manufacturing applications at PA Solutions. Strong SQL experience needed to ensure system reliability in a regulated environment.
Application Security Engineer providing expertise in cybersecurity for government projects. Collaborating within a team to perform security assessments and enhance secure development practices.
Applications Engineer providing pre - sales technical support for robotics solutions at Brooks Automation. Supporting OEMs and distributors with expertise in motion control and collaborative robotics technology.
Senior Quantum Applications Engineer working with partners on quantum algorithms and applications. Mapping solutions to Atom Computing hardware and guiding fault tolerant algorithm development.
Technical liaison for valued customers in the beverage - focused application engineering role. Support sales and provide solutions while traveling to customer sites across North America.