Application Security Engineer

Experienced Recruiting Partners, LLC.

City of Albany (NY)

On-site

USD 120,000 - 160,000

Full time

10 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Experienced Recruiting Partners, LLC. is seeking an Application Security Engineer to lead security coding efforts within a multi-tier Java/Web environment. You will work with development teams to diagnose and remediate vulnerabilities, champion secure SDLC practices, and advance CI/CD security tooling across deployments.

The role emphasizes hands-on security assessments, collaboration with leadership, and ongoing research into attack vectors and trends to strengthen defenses.

Qualifications

  • Bachelor's degree in Computer Science or related field or equivalent experience.
  • 8+ years IT experience; 5+ years in software development/architecture roles.
  • Strong secure coding background in Java/Web development, RHEL, and JBoss.
  • 3+ years in Application Security Engineering with assessments and tooling (dynamic/static analysis).
  • Experience integrating AI-driven code analysis into CI/CD pipelines; ability to train teams.

Responsibilities

  • Diagnose, document, and remediate application security vulnerabilities; identify security checkpoints in SDLC.
  • Perform risk-based assessments and penetration tests using dynamic and static scanning tools; ensure industry standards compliance.
  • Consult with Development leadership on secure development training.
  • Research new attack vectors and stay current with cybersecurity trends.
  • Design and execute repeatable remediation prioritization; report risk status to leadership.

Skills

Secure Java/Web
CI/CD security
Penetration testing
Static/Dynamic analysis
Communication
Critical thinking
Collaboration

Education

Bachelor's degree in Computer Science or related field
Equivalent combination of education and experience

Tools

Fortify
SonarQube

Job description

Client is looking for strong hands on coding engineer -- Take the lead regarding security coding for future changes
  • Client is looking for someone local to Albany, NY area, not able to consider remote candidates
  • Per client requirements: Must be US Citizen or Green Card Holders status
Application Security Engineer :
  • You’ll join client’s talented Development Team. The project is built on a multi-tier architecture including Service Oriented architecture, multi-tier web applications using Java and various other COTS products.
  • Work closely with development teams to diagnose, document, and remediate application security vulnerabilities and identify appropriate security checkpoints in SDLC.
  • Perform risk-based, technical assessments/penetration tests of applications, using dynamic and static scanning tools, and audits ensuring compliance with industry standards
  • Consult with Development leadership on application development training.
  • Research new attack vectors and stay current with cybersecurity news and trends.
Requirement:
  • 8+ years Information Technology.
  • 5+ years in software development role as a Developer, or Architect
  • Bachelor’s degree in Computer Science, or related technical field, OR equivalent combination of education and experience
  • Java/Web development with strong secure coding background in RHEL and JBoss.
  • 3+years with Application Security Engineering conducting assessments, penetration testing, implementing tools for dynamic /automated code review, dynamic and static application scanning (Fortify, SonarQube); consulting on security designs of applications, potential vulnerabilities, and remediation, and creating training materials on key security concepts.
  • Hands-on experience assessing new code commits, pull requests, and architecture changes for vulnerabilities, misconfigurations, and compliance risks.
  • Hands-on experience integrating AI-driven code analysis platforms into CI/CD pipelines to identify vulnerabilities and insecure coding patterns before deployment.
  • Hands-on experience designing and executing a repeatable process to aggressively prioritize issue dispositions and remediations of security findings — while providing clear, concise status updates and risk reporting to leadership and stakeholders.
  • Strong oral and written communication skills, with a demonstrated ability to communicate complex topics to colleagues, and management.
  • Demonstrated collaboration and teaching abilities.
  • Strong analytical skills.
  • Identify and resolve problems in a timely manner; gather and analyze information skillfully; develop alternative solutions.
  • Critical thinking and creative problem solving

Plus: CISSP, CEH, CISA, OSCP, OSCE, or OSWE Certifications

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer JBoss Contract to Hire Hybrid
Application Security Engineer JBoss Contract to Hire Hybrid

Experienced Recruiting Partners • City of Albany (NY)

Hybrid
USD 120,000 - 180,000
Hybrid work arrangement
Application Security Engineer
Application Security Engineer

The Amatriot Group • City of Rensselaer (NY)

On-site
USD 90,000 - 110,000
Application Security Engineer
Application Security Engineer

Compunnel Inc. • Orlando (FL)

On-site
USD 80,000 - 120,000
Application Security Analyst
Application Security Analyst

Stellantis • Auburn (AL)

On-site
USD 90,000 - 120,000
Sr. Application Security Engineer
Sr. Application Security Engineer

Bridge Technologies and Solutions • San Francisco (CA)

On-site
USD 120,000 - 160,000
Sr. Application Security Engineer
Sr. Application Security Engineer

Bridge Technologies and Solutions • Montvale (NJ)

On-site
USD 80,000 - 110,000
Sr. Application Security Engineer
Sr. Application Security Engineer

Bridge Technologies and Solutions • Cherry Hills Village (CO)

On-site
USD 80,000 - 110,000
Application Security Engineer ( Only USC Or GC)
Application Security Engineer ( Only USC Or GC)

LinQ Global Group • Philadelphia

Hybrid
USD 110,000 - 160,000
Application Offensive Security Consultant
Application Offensive Security Consultant

StaffWorthy • Jersey City (NJ)

On-site
USD 90,000 - 120,000
Application Security Architect
Application Security Architect

US Tech Solutions • Jersey City (NJ)

On-site
USD 90,000 - 120,000