Application Security Engineer

SmartRent

Phoenix (AZ)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision insurance
Flexible and generous PTO
401(k) with employer contributions
Paid parental leave
Employee stock purchase plan

Job summary

SmartRent is seeking an Application Security Engineer to enhance the security of its platform. This role involves developing application security strategies, managing vulnerabilities, and collaborating across technical teams to safeguard operations.

The ideal candidate will possess 4–6 years of application security experience, knowledge of the OWASP Top 10, and expertise in multiple programming languages. A comprehensive benefits package is included for US employees.

Qualifications

  • Experience identifying and remediating application vulnerabilities.
  • Strong knowledge of modern authentication mechanisms, JWT and OAuth.
  • Hands-on experience with application security tools.

Responsibilities

  • Develop and execute an application security strategy.
  • Maintain secure coding standards and documentation.
  • Conduct regular application risk assessments.

Skills

Application security tools
Knowledge of OWASP Top 10
Experience with programming languages (Elixir, JavaScript, Ruby, Python)
Cloud security controls (AWS)
Vulnerability management
Strong communication skills
Problem-solving and analytical skills

Education

4–6 years of experience in application security
Industry certifications (CSSLP, GIAC GWAPT, CEH)

Tools

SAST platforms
DAST platforms
Burp Suite
GHAS
AWS security services

Job description

Who We Are

SmartRent (NYSE: SMRT) is revolutionizing how people live and work with the industry’s only end-to-end platform designed for the rental housing industry. By uniting purpose-built software, integrated hardware and full implementation and support in one ecosystem, we help owners and operators simplify operations, cut costs and deliver exceptional resident experiences. Recognized by Deloitte, HousingWire and the PropTech Breakthrough Awards, SmartRent is shaping the future of property technology and redefining what it means to make rental housing smarter.

Job Description

The Application Security Engineer is responsible for supporting the security and privacy of the SmartRent platform through the management of information security risk, system resilience, and compliance activities. This role uses cloud-native and third-party security tools to protect company assets and data across multiple platforms.

This role partners with engineering, development, and external stakeholders to implement and maintain security policies, processes, and standards, including secure software development lifecycle (SDLC) practices. Success in this role requires strong communication skills, the ability to coordinate across multiple technical teams, and the ability to support consistent security practices across the organization.

Responsibilities
  • Develop and execute a comprehensive application security strategy aligned with business objectives and industry standards.
  • Maintain and advise on secure coding standards, security documentation, and application security processes.
  • Deliver application security and privacy training for development teams.
  • Review source code to identify security vulnerabilities, insecure patterns, secrets exposure, and risks associated with AI-generated code.
  • Triage, reproduce, and support remediation of application vulnerabilities (e.g., SQL injection, XSS, access control weaknesses) identified through automated tools (SAST, DAST, SCA) or manual analysis.
  • Manage application security workflows, including task prioritization, ticket tracking, and coordination with development and DevOps teams.
  • Maintain and enhance SmartRent’s responsible disclosure and vulnerability reporting program.
  • Partner with developers to implement encryption, hashing, and secure key management practices.
  • Collaborate with developers and engineering teams to perform threat modeling, identify attack paths, and assess weaknesses.
  • Lead the investigation and mitigation of application-level security incidents, collaborating with the SOC and engineering teams to ensure rapid remediation and stakeholder communication.
  • Provide guidance on security and privacy controls for cloud infrastructure (AWS), application development, and IoT hardware.
  • Conduct regular application risk assessments to identify vulnerabilities and emerging threats.
  • Research emerging cybersecurity risks and recommend mitigation strategies as appropriate.
  • Perform adversarial testing and security validation of applications, including internal AI models and services.
  • Use cloud-native security tools to identify and secure large language model (LLM) integrations and implement appropriate security guardrails.
Required Qualifications
  • 4–6 years of experience in application security, including development and maintenance of security policies and collaboration with engineering and release teams.
  • Experience identifying and remediating application vulnerabilities across modern programming languages, including Elixir, JavaScript, Ruby, Python, or similar languages.
  • Strong knowledge of OWASP Top 10, OWASP API Top 10, and modern authentication mechanisms, including JWT and OAuth.
  • Hands‑on experience with application security tools, including SAST, DAST, and SCA platforms (e.g., GHAS, Burp Suite, Fortra, or similar tools).
  • Experience working with cloud security controls, including AWS‑native tools, web application firewalls (WAF), or similar technologies.
  • Experience managing or supporting vulnerability disclosure or bug bounty programs.
  • Strong written and verbal communication skills, with the ability to clearly communicate security requirements to technical teams.
  • Demonstrated problem‑solving and analytical skills in identifying and mitigating application security risks.
Preferred Qualifications
  • Industry certifications such as CSSLP, GIAC GWAPT, CEH, or equivalent security certifications.
  • Experience working with CloudFlare, AWS security services, or similar cloud‑native security tools.
  • Experience integrating security practices into SDLC processes.
  • Experience supporting threat modeling or application security architecture reviews.
We Put Our Employees First

We offer a comprehensive and competitive benefits package designed to support your well‑being and future. For our US employees, this includes medical, dental, vision, and life insurance with low deductibles and 75–100% employer contributions. We also provide flexible and generous PTO (because we know how important work‑life balance is), a competitive 401(k) with employer contributions, paid parental leave, discounted insurance plans for pets and legal services and an employee stock purchase plan to help you invest in your future.

You’ll fit right in if you:
  • Do the hard work and go out of your way to deliver excellence
  • Own outcomes and learn from your mistakes
  • Are a collaborative and supportive team player—win or lose, you lift others up
  • Value authenticity, diverse perspectives, and inclusion in the workplace
  • Have a passion for smart tech and the real estate industry
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

SightPlan • Phoenix (AZ)

On-site
USD 90,000 - 120,000
Medical, dental, and vision insurance
Flexible and generous PTO
Competitive 401(k) with employer contributions
Senior Vice President - Enterprise Data and AI
Senior Vice President - Enterprise Data and AI

SmartRent • Phoenix (AZ)

On-site
USD 180,000 - 230,000
Medical, dental, and vision insurance
401(k) with employer contributions
Paid parental leave
+1
Senior Application Security Engineer
Senior Application Security Engineer

Clear Capital | CubiCasa • Reno (NV)

On-site
USD 111,000 - 144,400
Medical, dental, and vision insurance
401(k) with employer match
Paid time off and holidays
+3
Director, Site Reliability Engineering
Director, Site Reliability Engineering

SmartRent • Phoenix (AZ)

On-site
USD 130,000 - 160,000
Medical, dental, vision, and life insurance
Flexible and generous PTO
401(k) with employer contributions
+2
AppSec Security Specialist
AppSec Security Specialist

Rezdy • United States

Hybrid
USD 110,000 - 160,000
National Sales Director (East)
National Sales Director (East)

SightPlan • United States

On-site
USD 130,000 - 180,000
Medical, dental, and vision insurance
Flexible and generous PTO
Competitive 401(k) plan with employer contributions
+2
Senior Application Security Engineer
Senior Application Security Engineer

Clear Capital • Reno (NV)

On-site
USD 111,000 - 145,000
Profit-sharing bonus
401(k) with employer match
Comprehensive health insurance
Compliance Analyst
Compliance Analyst

SmartRent • Phoenix (AZ)

On-site
USD 50,000 - 65,000
Medical, dental, vision, and life insurance
Flexible and generous PTO
401(k) with employer contributions
+2
National Sales Director (West)
National Sales Director (West)

SightPlan • United States

On-site
USD 100,000 - 150,000
Medical, dental, and vision insurance
Flexible and generous PTO
Employee stock purchase plan
Staff Application Security Engineer
Staff Application Security Engineer

Upside • Washington

Hybrid
USD 210,000 - 230,000
Medical/Dental/Vision
Equity
401(k)
+7