Senior Application Security Engineer managing application security with Django/Python at Energy Solutions. Focus on risk management, collaborating with development teams, and improving security practices.
Responsibilities
Contribute to the application security roadmap for our internal applications—prioritize risks and sequence work across codebases, application layer, and DevOps.
Consult with engineers to communicate requirements, create actionable tickets/acceptance criteria, and drive adoption.
Conduct pull request reviews focused on security, provide guidance on refactors, and approve/deny with clear rationale.
Serve as a steward for SAST/scanning: review static code scan results, triage findings, eliminate noise, and drive remediation with owners.
Build reference implementations in Django/Python (i.e. authentication patterns, input validation, secrets handling, rate limiting, geo-based access) without direct responsibility for production feature development.
Map SOC 2/NIST to engineering work: translate requirements into stories, controls, and automated evidence in CI/CD.
Threat modeling & architecture: navigate libraries/architectures and document secure patterns (ADRs/RFCs) that teams follow.
Oversee security related tasks in the Software Delivery Life Cycle (SDLC) to ensure software development activities remain in compliance.
Collaborate with software developers and code base leads.
Act as a liaison between technical requirements from the business (i.e. security, privacy, compliance) and development teams.
Participate as a subject matter expert in security architecture, including new designs and design reviews.
Recommend application security improvements based on best practices, OWASP standards and other web application security frameworks.
Review architecture and compliance-related code changes for security impact.
Ensure compliance with all company security policies and standards.
Manage and maintain all security related tickets, including recommendations, testing, and validation.
Requirements
Minimum of 5 years' experience in application security experience.
Practice and implementation with Django/Python with a clear application-security focus (production experience and impact, not theory).
Engineering background (software or DevOps/SRE) with the ability to read/modify code, review PRs, and build PoCs.
Experience with GitHub security, including reviewing static code scans, triage findings, eliminate noise, and drive remediation with owners.
Experience embedding secure SDLC into Git-based workflows and CI/CD (pre-commit, pipeline gates, policy-as-code).
Practical knowledge of SOC 2 and familiarity with NIST 800-53; can turn requirements into technical tasks and evidence.
Ability to operate across code, app, and DevOps (containers, IaC basics, secrets, logging/monitoring).
Clear, persuasive communication (verbal and written) and prioritization.
Excellent time management skills with a proven ability to meet deadlines.
Senior Application Engineer at Bank Frick responsible for technical operation of core banking system Olympic. Collaborate with team on middleware, Kubernetes configuration, and application security.
Sales Application Engineer developing Fluid Handling Technology projects for key accounts with a technical eye and sales flair in a hybrid role serving the Netherlands.
Proposal Engineer responsible for reviewing applications and generating equipment quotes for integration projects. Collaborating with vendors and internal teams to ensure accurate proposals and timely submissions.
Application Engineer responsible for designing and developing Oracle ERP - PVM solutions at Navy Federal. Collaborating with teams to leverage the full software development lifecycle for effective integration.
Applications Engineer responsible for conceptualizing and implementing robotic systems for various projects. Involves providing technical support and training for international branches.
Application Security Engineering Manager leading a global team to enhance application security. Collaborating with development teams to integrate security tools into software development lifecycle.
Applications Engineer handling quotations and technical responses for KSB's centrifugal pumps and auxiliary equipment. Collaborating with sales personnel and supporting the General Industrial market.
Field Product Specialist supporting customer teams with product differentiation and technical expertise in semiconductor testing. Delivering presentations and overseeing project scopes for customer applications.
Control and Protection Application Engineer at GE Grid Solutions designing control systems for HVDC schemes. Collaborating within a dynamic engineering team to improve grid technology and efficiency.
Senior Development Application Engineer providing solutions and technical leadership at GE Grid Solutions. Collaborating to drive innovation in protection and control devices.