Application Security Engineer

Bright Vision Technologies

Cranberry Township (Butler County)

Remote

USD 100,000 - 160,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Bright Vision Technologies is seeking an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio.

The role blends hands‑on offensive and defensive security with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field.
  • 10+ years of application security or security engineering experience.
  • Strong knowledge of OWASP Top 10 and vulnerability classes.
  • Hands-on code review across multiple languages and CI/CD‑integrated security.
  • Experience with cloud security and modern infrastructure controls.
  • Excellent communication with technical and non‑technical audiences.

Responsibilities

  • Conduct threat modeling and security reviews for new and existing apps and services.
  • Perform code reviews and secure design consultations with engineering teams.
  • Operate and tune SAST, DAST, IAST, SCA, and secret‑scanning tools across CI/CD.
  • Drive vulnerability management including triage, prioritization, and ownership.
  • Develop secure patterns and reusable libraries for engineering teams.
  • Lead red‑team/purple‑team exercises and remediation efforts.
  • Implement runtime protections like WAF, RASP, bot protection, and anomaly detection.
  • Design secure authentication, authorization, session management, and crypto patterns.
  • Harden container, Kubernetes, and cloud environments in coordination with infra teams.
  • Create and deliver security training materials for engineers.
  • Respond to incidents and track emerging threats/CVEs affecting apps.

Skills

OWASP Top 10
CI/CD tooling
SAST
DAST
IAST
SCA
Cloud security
Programming for tooling
Communication skills
Agile

Education

Bachelor's degree in Computer Science or Cybersecurity

Tools

SAST tools
DAST tools
SCA tools
CI/CD pipelines
WAF/RASP

Job description

Application Security Engineer – Remote


Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States.


This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential.


Job Title:Application Security Engineer


Location:100% Remote (U.S.)


Position Type:Full-time, Direct W2


Salary Range:$100,000–$160,000 Annually


Experience Required:10+ years


Sponsorship:U.S. Citizens, Green Card Holders, EAD Holders, and H-1B transfer candidates are encouraged to apply. We are unable to sponsor new H-1B visa petitions for this position.


Job Summary:We are looking for an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio. The role blends hands‑on offensive and defensive skills with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down. The ideal candidate brings deep technical security expertise, strong software engineering fundamentals, and a track record of shipping security improvements that meaningfully reduce risk in production.


Key Responsibilities


  • Conduct threat modeling and security architecture reviews for new and existing applications and services.

  • Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components.

  • Operate and tune SAST, DAST, IAST, SCA, and secret‑scanning tools across CI/CD pipelines.

  • Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking.

  • Build paved‑road libraries and frameworks that make secure patterns the default for engineering teams.

  • Lead red‑team and purple‑team exercises against internal applications and drive remediation of identified weaknesses.

  • Implement and operate runtime protections including WAF, RASP, bot protection, and abuse‑detection mechanisms.

  • Design and enforce secure authentication, authorization, session management, and cryptographic patterns.

  • Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments.

  • Develop and deliver application security training, lunch‑and‑learns, and onboarding content for engineering staff.

  • Respond to security incidents involving application vulnerabilities or active exploitation.

  • Track and apply emerging threats and CVEs that may affect the application portfolio.

  • Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures — so that the system remains supportable, auditable, and easy to onboard new engineers onto over time.

  • Stay current with application security research and emerging defensive tooling.


Required Qualifications


  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.

  • Ten or more years of application security or security engineering experience.

  • Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns.

  • Hands‑on experience performing code review across at least two major languages.

  • Deep familiarity with SAST, DAST, SCA, and CI/CD‑integrated security tooling.

  • Strong understanding of authentication, authorization, and cryptographic primitives.

  • Experience with cloud security and modern infrastructure controls.

  • Strong communication skills with technical and non‑technical audiences.

  • Proficiency in at least one programming language for tooling and automation.

  • Experience working closely with engineering teams in an Agile environment.


Preferred Qualifications


  • Industry certifications such as OSCP, OSCE, GWAPT, or CISSP.

  • Experience with offensive security tooling and red‑team operations.

  • Bug bounty experience, public CVEs, or open‑source security contributions.

  • Familiarity with AI/LLM application security considerations.

  • Exposure to regulated industries with strict compliance requirements.


Bright Vision Technologies is an Equal Opportunity Employer.


Equal Employment Opportunity (EEO) Statement


Bright Vision Technologies (BV Teck) is committed to equal employment opportunity (EEO) for all employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected status as defined by applicable federal, state, or local laws. This commitment extends to all aspects of employment, including recruitment, hiring, training, compensation, promotion, transfer, leaves of absence, termination, layoffs, and recall.


BV Teck expressly prohibits any form of workplace harassment or discrimination. Any improper interference with employees' ability to perform their job duties may result in disciplinary action up to and including termination of employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Bright Vision Technologies • Rochester Hills (MI)

Remote
USD 85,000 - 105,000
AppSec Engineer
AppSec Engineer

Bright Vision Technologies • Hillsboro (OR)

Remote
USD 80,000 - 100,000
Software Security Engineer
Software Security Engineer

Bright Vision Technologies • Leander (TX)

Remote
USD 145,000 - 165,000
Staff Applications Engineer
Staff Applications Engineer

Bright Vision Technologies • Columbus (OH), Dublin (OH)

Remote
USD 150,000 - 190,000
AI Security Engineer
AI Security Engineer

Bright Vision Technologies • Rochester Hills (MI)

Remote
USD 80,000 - 105,000
Backend Systems Engineer
Backend Systems Engineer

Bright Vision Technologies • Austin (TX)

Remote
USD 100,000 - 150,000
Python Software Architect
Python Software Architect

Bright Vision Technologies • Eden Prairie (MN)

Remote
USD 100,000 - 150,000
Senior .NET Solutions Developer
Senior .NET Solutions Developer

Bright Vision Technologies • Kirkland (WA)

Remote
USD 100,000 - 150,000
Software Test Engineer
Software Test Engineer

Bright Vision Technologies • Austin (TX)

Remote
USD 105,000 - 125,000
Java Application Architect
Java Application Architect

NEPSE Trading • Northern (KY)

Hybrid
USD 100,000 - 150,000