Senior Application Security Engineer

Interactive Resources - iR

Jacksonville (FL)

On-site

USD 120,000 - 180,000

Full time

23 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Interactive Resources - iR is seeking a Senior Application Security Engineer to strengthen security across the software development lifecycle. This hands-on role focuses on testing, vulnerability management, DevSecOps integration, and partnering with development teams to improve secure practices.

The ideal candidate will have extensive experience with SAST, DAST, and SCA, and will integrate security testing into CI/CD pipelines while helping teams remediate vulnerabilities and adopt secure

Qualifications

  • 5+ years in application security or related fields.
  • Hands-on testing with SAST/DAST and vulnerability management.
  • Experience integrating security testing into CI/CD pipelines.
  • Ability to guide developers on secure coding practices.
  • Knowledge of APIs, microservices, containers, and modern architectures.

Responsibilities

  • Administer and optimize SAST, DAST, and SCA platforms.
  • Manage SonarQube configurations, gates, and reporting.
  • Integrate security testing into CI/CD and DevSecOps workflows.
  • Analyze findings, reduce false positives, and prioritize vulnerabilities.
  • Partner with developers to remediate vulnerabilities.
  • Provide secure coding guidance and create security metrics and dashboards.
  • Identify patterns and improve tools and processes.
  • Support security reviews and risk assessments.
  • Automate security workflows and reporting where appropriate.

Skills

SAST & DAST
SCA
CI/CD security
DevSecOps collaboration

Tools

SonarQube
Veracode
Checkmarx
Fortify
Burp Suite Enterprise

Job description

We are seeking a Senior Application Security Engineer to help strengthen application security across the software development lifecycle. This is a hands‑on technical role focused on application security testing, vulnerability management, DevSecOps integration, and partnering directly with development teams to improve secure development practices.

The ideal candidate has experience administering and optimizing SAST, DAST, and SCA technologies, integrating security testing into CI/CD pipelines, and helping development teams understand and remediate application vulnerabilities.

Key Responsibilities
  • Administer, configure, tune, and optimize SAST, DAST, and SCA security scanning platforms
  • Manage SonarQube or comparable code quality/security analysis tools, including scanning configurations, quality gates, integrations, and reporting
  • Integrate application security testing into CI/CD and DevSecOps workflows
  • Analyze and validate security findings, reduce false positives, and help prioritize vulnerabilities
  • Partner directly with developers and engineering teams to drive vulnerability remediation
  • Provide secure coding guidance and support application security best practices
  • Develop security metrics, dashboards, and reporting around vulnerabilities, remediation, and scanning effectiveness
  • Identify recurring vulnerability patterns and recommend improvements to tools, processes, and development practices
  • Support application architecture reviews, secure design discussions, and targeted code reviews
  • Assist with security documentation, risk assessments, and audit‑related requests
  • Automate security workflows and reporting where appropriate
Required Experience
  • 5+ years of experience across application security, cybersecurity, software engineering, DevSecOps, or vulnerability management
  • 3+ years of hands‑on experience with application security scanning technologies
  • Strong experience with SAST and DAST, including configuration, execution, tuning, triage, and reporting
  • Experience with SCA and vulnerability remediation
  • Experience administering SonarQube or a comparable platform
  • Experience integrating security controls into CI/CD pipelines
  • Strong understanding of application vulnerabilities and secure development practices
  • Experience working directly with developers to investigate and remediate security findings
  • Familiarity with APIs, microservices, containers, and modern application architectures
Preferred Experience
  • Veracode, Checkmarx, Fortify, Contrast Security, Burp Suite Enterprise, or similar AppSec platforms
  • OWASP and secure SDLC practices
  • Python, PowerShell, APIs, or other security automation/scripting
  • Security dashboards, metrics, and executive reporting
  • Experience within banking, financial services, or another regulated enterprise environment
  • CISSP, CSSLP, GIAC, OSWE, cloud security, or similar security certifications
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

Corps Team • Jacksonville (FL)

On-site
USD 92,000 - 107,000
Application Security Engineer
Application Security Engineer

BridgeView • New York (NY)

On-site
USD 120,000 - 160,000
Senior Application Security Engineer
Senior Application Security Engineer

High Trail • Arlington (VA)

On-site
USD 140,000 - 190,000
Application Security Engineer
Application Security Engineer

RedStream Technology • Charlotte (NC)

On-site
USD 120,000 - 150,000
Senior Application Security Specialist
Senior Application Security Specialist

CLS Group • Woodbridge Township (NJ)

On-site
USD 140,000 - 180,000
Application Security Analyst
Application Security Analyst

AccruePartners • Fort Mill (SC)

Hybrid
USD 70,000 - 90,000
Ongoing investment in professional development
Exposure to modern security platforms
Collaborative team environment
Security Engineer
Security Engineer

Wall Street Consulting Services LLC • New York (NY)

On-site
USD 140,000 - 190,000
Security Engineer – SAST & SCA (Application Security)
Security Engineer – SAST & SCA (Application Security)

US staffing Inc • San Jose (CA)

On-site
USD 150,000 - 210,000
Application Security Engineer
Application Security Engineer

Compunnel Inc. • Orlando (FL)

On-site
USD 80,000 - 120,000
Senior Application Security Engineer
Senior Application Security Engineer

Matlen Silver • Atlanta (GA)

On-site
USD 120,000 - 160,000