Remote App Security Engineer — CI/CD & Vulnerability Mgmt

Arcadia Power, Inc.

Washington, Northern (District of Columbia, KY)

Hybrid

USD 131,000 - 235,000

Full time

8 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote-first culture
Flexible PTO
11 holidays
10 sick days
Bereavement leave
2 PD days
Parental Leave
Premium benefits

Job summary

Arcadia Power, Inc. is seeking a hands-on Application Security Engineer to own the vulnerability management lifecycle across SAST, DAST, and SCA tooling, and to automate security tasks in the CI/CD pipeline.

You will drive threat modeling with product and engineering, serve as the security SME during incidents, and help embed security across teams in a remote-first, US-wide environment. A SaaS security background and strong communication skills are highly valued.

Qualifications

  • 3–5 years of dedicated Application Security experience in SaaS or cloud-native environments.
  • Hands-on with two or more of SAST, DAST, SCA, or CSPM tooling.
  • Strong knowledge of CI/CD pipelines and ability to wire integrations.
  • Experience securing containers (Docker, Kubernetes) and API security patterns.

Responsibilities

  • Own end-to-end vulnerability management lifecycle across SAST, DAST, and SCA tooling.
  • Automate security tooling integrations within the CI/CD pipeline to reduce manual work.
  • Launch and run a Security Champions program across geographies.
  • Act as application-layer security SME during incidents, supporting triage and root cause analysis.
  • Collaborate with Product and Engineering leadership to embed security earlier in SDLC.

Skills

SAST
DAST
SCA
CSPM tooling
CI/CD pipelines
Docker
Kubernetes
API security (REST/GraphQL)
Security risk communication
Threat modeling

Tools

GitHub Actions
Jenkins
GitLab CI
Snyk
Checkmarx
Semgrep
Wiz
Cloud security tooling

Job description

Arcadia Power, Inc. is seeking a hands-on Application Security Engineer to own the vulnerability management lifecycle across SAST, DAST, and SCA tooling, and to automate security tasks in the CI/CD pipeline.

You will drive threat modeling with product and engineering, serve as the security SME during incidents, and help embed security across teams in a remote-first, US-wide environment. A SaaS security background and strong communication skills are highly valued.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer Remote (Remote, US) · Remote
Application Security Engineer Remote (Remote, US) · Remote

Arcadia Power, Inc. • Washington, Northern (KY)

Hybrid
USD 131,000 - 235,000
Remote-first culture
Flexible PTO
11 holidays
+5
Remote App Security Engineer – DevSecOps Focus
Remote App Security Engineer – DevSecOps Focus

Ardent Management Consulting, Inc. • Northern (KY)

Hybrid
USD 110,000 - 160,000
Health coverage
Flexible PTO
Federal holidays off
+3
Senior Vulnerability & App Security Engineer (Remote)
Senior Vulnerability & App Security Engineer (Remote)

PSI Services LLC • United States

On-site
USD 106,000 - 144,000
401(k) plan
Pension/retirement
Generous PTO
+5
Remote AppSec Engineer: CI/CD Security & SAST/DAST
Remote AppSec Engineer: CI/CD Security & SAST/DAST

AgileEngine • Tampa (FL)

Hybrid
USD 120,000 - 160,000
Professional growth
Competitive compensation
Exciting projects
+1
Remote AppSec Engineer - CI/CD Security & Automation
Remote AppSec Engineer - CI/CD Security & Automation

AgileEngine • Baltimore (MD)

Hybrid
USD 110,000 - 150,000
Professional growth
Competitive compensation
Exciting projects
+1
Security Engineer — Cloud, AppSec & Vulnerability (Remote)
Security Engineer — Cloud, AppSec & Vulnerability (Remote)

Socket.dev • Miami (FL)

Hybrid
USD 90,000 - 140,000
Health Care Plan
Retirement Plan
Life Insurance
+7
AppSec Engineer - Remote CI/CD Automation & Threat Modeling
AppSec Engineer - Remote CI/CD Automation & Threat Modeling

ProducePay • United States

On-site
USD 131,000 - 236,000
Remote first culture
Flexible PTO
12 annual holidays
+6
Remote Application Security Engineer - DevSecOps Impact
Remote Application Security Engineer - DevSecOps Impact

ArdentMC • United States

Remote
USD 110,000 - 160,000
Health insurance
Flexible PTO
Federal holidays off
+3
Remote AppSec Engineer – CI/CD Security & Automation
Remote AppSec Engineer – CI/CD Security & Automation

AgileEngine • Blacksburg (VA)

Hybrid
USD 120,000 - 160,000
Professional growth
Competitive compensation
Exciting projects
+1
Remote AppSec Engineer: Secure SDLC & APIs
Remote AppSec Engineer: Secure SDLC & APIs

Far Coder • Northern (KY)

Hybrid
USD 120,000 - 140,000
Remote US
Office in Manhattan
Unlimited vacation
+7