Application Security Specialist

Spencer Rose

Woodbridge Township (NJ)

Hybrid

USD 140,000 - 180,000

Full time

23 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Spencer Rose, Iselin, New Jersey, seeks an Application Security Specialist (Vice President) to assess real-world application risk and guide engineers in secure design and remediation. The role is hands-on, partnering with developers and focusing on translating findings into actionable risk decisions.

The position offers hybrid work with two days in the New Jersey office and includes an annual discretionary bonus. CISSP/CSSLP/GWAPT/GWEB or equivalent is preferred but not required.

Qualifications

  • 5+ years of experience in application security, secure coding, vulnerability management and secure-by-design practices.
  • Knowledge of OWASP Top 10 and common vulnerabilities.
  • Ability to read code, validate findings, identify root causes and advise on remediation.
  • Experience with threat modelling and secure design reviews.
  • Practical knowledge of SAST, DAST, SCA, API security, and secrets detection.

Responsibilities

  • Analyse and validate findings from SAST, DAST, SCA, API security testing and code reviews.
  • Assess vulnerabilities based on exploitability, business impact, compensating controls and risk.
  • Partner with developers to prioritize remediation and implement secure solutions.
  • Lead threat modelling, secure design reviews and architecture risk reviews.
  • Promote secure coding standards and reusable security patterns.
  • Provide AppSec expertise to improve security testing and SDLC processes.

Skills

AppSec experience
OWASP Top 10
Threat modelling
Secure coding
Code review
SAST/DAST/SCA
AI-assisted analysis
Communication

Education

CS/Cybersecurity degree

Tools

SAST tools
DAST tools
SCA tools
API security testing

Job description

Application Security Specialist (Vice President)

Iselin, New Jersey

$140,000–$180,000 per annum + annual discretionary bonus

On behalf of a Leading financial services organisation, I am seeking an Application Security Specialist to help development teams build secure, resilient software. This is a hands-on AppSec role focused on assessing real-world application risk, validating security findings, and providing practical guidance to engineers. This is an exciting role that will offer exposure to the latest AI technologies.

Your focus will be on interpreting results, prioritising meaningful risk, and partnering with developers on remediation and secure design.

The organisation is pleased to offer the role on hybrid basis with two days required in their New Jersey office, therefore you must be within reasonable commuting distance to this location.

Responsibilities:

  • Analyse and validate findings from SAST, DAST, SCA, API security testing, penetration tests, AI-assisted analysis, and code reviews.
  • Assess vulnerabilities based on exploitability, business impact, compensating controls, and overall risk.
  • Partner with developers to prioritise remediation and implement secure solutions.
  • Lead threat modelling, secure design reviews, and architecture risk reviews.
  • Promote secure coding standards and reusable security patterns.
  • Provide AppSec expertise to improve security testing and SDLC processes.

Experience / Skills required:

  • At least 5 years experience in application security, secure coding, vulnerability management, and secure-by-design practices.
  • Knowledge of OWASP Top 10 and common application/API vulnerabilities.
  • Ability to read code, validate findings, identify root causes, and advise on remediation.
  • Experience with threat modelling and secure design reviews.
  • Practical knowledge of SAST, DAST, SCA, API security, and secrets detection.
  • Experience in AI-assisted analysis would be advantageous but not essential.
  • Strong communication, risk judgement, and a collaborative, coaching-oriented approach.
  • Degree in Computer Science, Cybersecurity, or a related discipline, or equivalent experience.
  • CISSP, CSSLP, GWAPT, GWEB, or equivalent certification preferred, but not required.

*PLEASE NOTE: The organisation are unable to offer Sponsorships or transfer of visa’s, therefore you must be eligible to work full time in the US.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Specialist
Senior Application Security Specialist

CLS Group • Woodbridge Township (NJ)

On-site
USD 140,000 - 180,000
Application Security Analyst
Application Security Analyst

Myconsumers • Lake Forest (IL)

Hybrid
USD 67,000 - 109,000
Medical insurance
Dental insurance
Vision insurance
+2
Application Security Engineer
Application Security Engineer

Franklin Fitch • New York (NY)

On-site
USD 130,000 - 200,000
Application Security Specialist
Application Security Specialist

Motion Recruitment • Greensboro (NC)

Hybrid
USD 100,000 - 130,000
Application Security Specialist
Application Security Specialist

barclays • United States

On-site
USD 175,000 - 225,000
Application Security Architect
Application Security Architect

US Tech Solutions • Jersey City (NJ)

On-site
USD 90,000 - 120,000
Application Security Architect – AI / GenAI
Application Security Architect – AI / GenAI

Reuben Cooley Inc. • New York (NY)

On-site
USD 150,000 - 190,000
Application Security Engineer
Application Security Engineer

Experienced Recruiting Partners, LLC. • City of Albany (NY)

On-site
USD 120,000 - 160,000
Application Security Analyst
Application Security Analyst

Barclays • Hanover Township (IL)

On-site
USD 125,000 - 170,000
Application Security Engineer
Application Security Engineer

Unisys • Rockville (MD)

On-site
USD 100,000 - 130,000