Application Security Engineer enhancing security in applications and CI/CD pipelines at Hewlett Packard Enterprise. Collaborating with engineering and DevOps teams to implement security measures across the organization.
Responsibilities
Integrate security practices throughout the SDLC in partnership with engineering and DevOps teams.
Promote secure coding standards, tooling, and automation.
Design, implement, and maintain security controls within CI/CD platforms (GitHub Actions, Jenkins, GitLab, Azure DevOps, etc.).
Ensure software integrity through code signing, artifact validation, and provenance.
Automate SAST, DAST, SCA, and container image scanning in the build and release pipelines.
Automated AI specific vulnerability scanning into CI/CD to catch insecure LLM orchestration patters.
Identify and remediate misconfigurations and access control gaps in pipeline environments.
Design, deploy, and tune WAF rules and API security protections.
Conduct API risk assessments and promote secure API design patterns.
Perform secure code reviews and support automated security testing coverage across pipelines.
Triage, prioritize, and track vulnerabilities across source code, CI/CD pipelines, and deployed services.
Facilitate threat modeling for applications, APIs, and delivery pipelines.
Perform threat modeling on RAG architecture and autonomous agents.
Expand security automation around API discovery, dependency scanning, SBOM generation, and secrets detection.
Mentor engineering teams on secure coding and secure pipeline practices.
Support the Security Champions program.
Act as a trusted advisor to product, platform engineering, and DevOps teams, translating technical risks into business impact.
Partner with SOC/IR teams during software supply chain or pipeline-related security incidents.
Assess and guide the secure adoption of AI capabilities within enterprise applications—focusing on data security, access controls, model input/output handling, and preventing misuse within internal systems.
Leverage AI‑powered security tools to identify anomalies, code risks, and pipeline misconfigurations within internal applications and CI/CD systems.
Requirements
5–8+ years in Application Security, Product Security, or Secure Software Development
Applications Engineer providing application support in semiconductor manufacturing to strengthen market position. Collaborating with customers and sales to improve tool utilization and respond to future development feedback.
GenAI Application Engineer building applications with AI frameworks at Capgemini. Collaborating on LLMs integration and enhancing workflows with intelligent tooling.
Applications Engineer providing technical support for Gensets at Moteurs Baudouin. Ensuring documentation is validated and supporting installation activities for generators.
Mechanical Application Engineer developing product solutions and technical documentation for AEG. Collaborating with teams and providing technical support for project management and sales.
Electrical Application Engineer developing and supporting electrical designs in collaboration with R&D department. Performing engineering studies and simulations using tools like PSPICE and MATLAB/Simulink.
Field Applications Engineer specializing in AI datacenter system design at NVIDIA. Provide onsite technical engagement for large AI computing system deployments.
Application Engineer developing and supporting transaction management applications across check processing and remittance workflows. Bridging technical teams and end - users to meet business needs and enhance user experiences.
Field Application Engineer providing innovative solutions in FPGA and Embedded Systems design. Involves customer support, technical presentations, and collaboration with partners.
Application Engineer II providing advanced technical application support for HVAC systems. Responsible for product training, technical support, and customer interaction across sales channels.