Enable job alerts via email!

Senior Application Security Engineer

Avalara Technologies

United States

Remote

USD 120,000 - 180,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading company as a Senior Application Security Engineer to build secure, scalable applications that support a growing global client base. You'll leverage your expertise in application security, automation, and AI-driven solutions to influence Avalara's security practices and culture, ensuring security is integrated into every aspect of development.

Benefits

Flexible working hours
Health and wellness benefits
Professional development opportunities

Qualifications

  • 8+ years of experience in application security or security engineering.
  • Strong programming proficiency in Python and GoLang.
  • Experience with Kubernetes and cloud infrastructure security.

Responsibilities

  • Build and improve an automated security pipeline integrated into CI/CD.
  • Lead development of Infrastructure-as-Code for application security.
  • Evaluate and integrate security tools into engineering workflows.

Skills

Application Security
Secure Software Development
Cloud Infrastructure Security
Kubernetes
Automation
Python
GoLang
Infrastructure-as-Code
AI/ML Tools
Security Automation

Education

Bachelor's Degree in Computer Science or Engineering

Tools

Terraform
CloudFormation
Git
Tenable
Wiz
Checkmarx
Mend
Acunetix
Burp Suite
CrowdStrike

Job description

What You'll Do

Join us in building a secure, scalable, and experienced platform to support Avalara's expanding business and global customer base.

As a Senior Application Security Engineer, you'll work with world-class engineers and architects to ensure security is embedded in everything we buildboth in today's systems and the future of our architecture. This role is perfect for someone passionate about automation, cloud-native security, and AI-driven application defense.

You'll help shape the future of Avalara Security, driving security as code, ensuring automation-first practices, and integrating modern AI tooling into security workflows.

You understand the value of developer empathy, moves quickly without sacrificing quality, and excels in an environment that combines startup energy with enterprise scale.

Job Responsibilities

  • You will build, maintain, and continuously improve an automated security pipeline framework integrated into our CI/CD environments.
  • You will lead development of Infrastructure-as-Code and Policy-as-Code for application security enforcement and consistency across environments.
  • You will evaluate and integrate security tools (SAST, DAST, SCA, CSPM, EDR) and AI-based solutions into engineering workflows and CI/CD pipelines.
  • You will provide applicable guidance and mentorship to development and Avalara Security engineering teams on secure development best practices.
  • Investigate, prototype, and apply AI/ML-based solutions for application behavior analysis, anomaly detection, and threat hunting.
  • Promote security by design across the organization, and help foster a security-first culture.
  • Contribute to the continuous refinement of the SDLC to ensure security is smooth, consistent, and measurable.

What You'll Need to be Successful

Required Qualifications

  • 8+ years of experience in application security, secure software development, or security engineering.
  • Strong programming proficiency in Python and GoLang (hands-on).
  • Experience with secure SDLC practices and CI/CD pipeline integration.
  • Strong hands-on experience with Kubernetes, container security, and cloud infrastructure securitypreferably AWS and GCP.
  • Experience with Infrastructure-as-Code (IaC) tools like Terraform or CloudFormation.
  • Working knowledge of cryptographic protocols and standards: TLS, OAuth, SAML, JWT, etc.
  • Familiarity with Git, modern source control practices, and agile development methodologies.
  • Experience working with a broad range of security tools, including:
    • Tenable, Wiz (Cloud Security Posture Management)
    • Checkmarx, Mend (SAST, SCA)
    • Acunetix, Burp Suite (DAST)
    • CrowdStrike (EDR/XDR)
  • Bachelor's Degree in Computer Science, Engineering, or a related field.
  • Proven experience contributing to security automation efforts within a security organization like Avalara Security.
  • Experience with AI/ML tools and frameworks applied to application security or behavior analytics.
  • Security certifications such as OSWE, CSSLP, AWS Security Specialty, or Kubernetes Security Specialist.
  • Passion for enabling developer-friendly security solutions and maximum automation.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Security Engineer, Application & Cloud

Rad AI

Remote

USD 150,000 - 180,000

6 days ago
Be an early applicant

Senior Application Security Engineer

Promote Project

Ohio

Remote

USD 67,000 - 123,000

5 days ago
Be an early applicant

Senior Application Security Engineer

Davita Inc.

Remote

USD 146,000 - 242,000

8 days ago

Senior Application Security Engineer Texas - Remote

Take-Two Interactive

Town of Texas

Remote

USD 90,000 - 130,000

8 days ago

Sr. Application Security Engineer (Remote)

Rula

Los Angeles

Remote

USD 110,000 - 150,000

Yesterday
Be an early applicant

Senior Security Engineer, Application Security

Trail of Bits

Remote

USD 150,000 - 200,000

6 days ago
Be an early applicant

Senior Application Security Engineer

House Rx

Washington

Remote

USD 150,000 - 180,000

2 days ago
Be an early applicant

Senior Application Security Engineer

EasyPost

On-site

USD 125,000 - 170,000

6 days ago
Be an early applicant

Senior Application Security Engineer - Virtual - USA

Kelly Services Inc.

Remote

USD 100,000 - 130,000

3 days ago
Be an early applicant