Product Security Engineer

Kforce Inc

New York (NY)

On-site

USD 140,000 - 190,000

Full time

34 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Kforce Inc. is seeking an experienced Application Security professional in New York to partner with software teams, conduct security testing, and guide remediation across the SDLC.

You will influence architecture, implement security controls, and integrate security into CI/CD pipelines. Responsibilities include threat modeling, security reviews, and delivering education to engineers while staying abreast of emerging threats.

Qualifications

  • Bachelor's degree or higher in CS/IT/Cybersecurity or related field.
  • 7+ years in Application Security or similar role.
  • Experience partnering with software development teams.
  • Hands-on security testing, remediation and assessments.
  • Code reviews and secure development guidance.
  • Familiarity with cloud security and DevSecOps.
  • Experience securing CI/CD pipelines and development workflows.
  • Knowledge of OWASP Top 10 and web vulnerabilities.
  • Strong understanding of secure SDLC and modern web architectures.
  • Excellent communication for technical and non-technical stakeholders.

Responsibilities

  • Promote secure coding practices and security-by-design with engineering teams.
  • Conduct application security assessments and testing.
  • Identify vulnerabilities and guide remediation efforts.
  • Perform code reviews and provide secure development recommendations.
  • Help design and implement security controls for internal and customer apps.
  • Integrate security tooling into CI/CD and workflows.
  • Participate in threat modeling and security reviews.
  • Develop and maintain security standards and policies.
  • Support incident response for app/product security.
  • Deliver security education for engineering teams.
  • Stay updated on emerging threats and technologies.

Skills

App security testing
Vulnerability remediation
CI/CD security
Threat modeling
Security architecture
Cloud security
Secure SDLC
Security governance

Education

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field

Tools

DevSecOps tooling
CI/CD tooling

Job description

Responsibilities
  • Partner with software engineers and technical leaders to promote secure coding practices and security-by-design principles
  • Perform application security assessments and penetration testing activities
  • Identify vulnerabilities and guide teams through remediation efforts
  • Conduct code reviews and provide recommendations to improve application security
  • Help design and implement security controls for internally developed and customer-facing applications
  • Integrate security tooling and controls into CI/CD pipelines and development workflows
  • Participate in threat modeling, security architecture reviews, and secure SDLC initiatives
  • Develop and maintain security standards, policies, and best practices
  • Support incident response activities related to application and product security
  • Deliver security education and awareness programs for engineering teams
  • Stay current on emerging threats, vulnerabilities, and security technologies
Requirements
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
  • 7+ years of experience in Application Security, Product Security, or a closely related security engineering role
  • Experience partnering directly with software development teams
  • Hands‑on experience with application security testing, vulnerability remediation, and security assessments
  • Experience performing code reviews and providing secure development guidance
  • Familiarity with cloud security and DevSecOps practices
  • Experience securing CI/CD pipelines and integrating security into development workflows
  • Knowledge of OWASP Top 10 and common web application vulnerabilities
  • Strong understanding of secure SDLC practices and modern web application architecture
  • Strong communication skills with the ability to influence both technical and non‑technical stakeholders
Preferred Experience
  • Prior software engineering or development background
  • Experience supporting cloud‑native applications and modern distributed architectures
  • Experience helping build, mature, or scale a Product Security or Application Security program
  • Familiarity with secure development practices across web applications, APIs, and microservices
Why Consider This Opportunity?
  • High‑impact role with visibility across engineering and technology teams
  • Opportunity to shape security strategy and influence software development practices
  • Exposure to modern cloud, DevSecOps, and application security initiatives
  • Collaborative, technology‑driven environment
  • Strong compensation package including bonus opportunities
  • Long‑term career growth and advancement potential

If you're passionate about secure software development and enjoy working closely with engineering teams to build security into the development process, we'd love to hear from you.

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Product Security Engineer
Product Security Engineer

Kforce Inc • Boston (MA)

On-site
USD 140,000 - 200,000
DevSecOps Architect
DevSecOps Architect

Kforce Inc • Fort Lauderdale (FL)

On-site
USD 120,000 - 180,000
Medical insurance
Dental insurance
Vision insurance
+1
Senior Product Security Engineer
Senior Product Security Engineer

Gofractional • Northern (KY)

Hybrid
USD 83,000 - 165,000
Medical coverage
Dental coverage
Vision coverage
+7
Product Security Engineer
Product Security Engineer

GoMining • Georgia

Hybrid
USD 120,000 - 180,000
Professional growth
Remote or hybrid format
Vacation and holidays
+3
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Product Security Engineer
Product Security Engineer

GoMining • Town of Poland (NY)

Hybrid
USD 120,000 - 190,000
Professional growth support
Flexible hours
Vacation and holidays
Application Engineer, Cyber Security
Application Engineer, Cyber Security

Inmar Inc. • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+2
Security Engineer - Product Security (Senior)
Security Engineer - Product Security (Senior)

Cogent • All (MO)

On-site
USD 100,000 - 300,000
Senior Application Security Engineer
Senior Application Security Engineer

Clear Capital • Reno (NV)

On-site
USD 111,000 - 145,000
Profit-sharing bonus
401(k) with employer match
Comprehensive health insurance
Application Security Engineer - Plano, TX
Application Security Engineer - Plano, TX

Motion Recruitment Partners LLC • Plano (TX)

On-site
USD 120,000 - 180,000
Medical Insurance
Dental Benefits
Vision Benefits
+2