Senior Application Security Engineer [Remote-US]

Quanata

United States

On-site

USD 220,000 - 350,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Monthly wellness allowance
401(k) plan with company match
Professional development budget of $5,000

Job summary

Quanata is looking for a Senior Application Security Engineer to provide expertise in security best practices for software development. You'll work with various teams to resolve complex security challenges, enhance application security, and support secure development practices. The role requires 6-8 years of application security or full-stack development experience, along with a strong understanding of secure coding in JavaScript/TypeScript and experience with code scanning tools. This remote-first position offers a competitive salary ranging from $220,000 to $350,000 along with extensive benefits.

Qualifications

  • 6-8 years of experience in application security or full-stack development.
  • Strong understanding of secure coding practices and web standards.
  • Experience with offensive security testing such as pentesting.

Responsibilities

  • Collaborate with product teams on overall product security management.
  • Perform security design reviews and threat modeling.
  • Review source code and deployment configurations for vulnerabilities.

Skills

Secure coding in JavaScript/TypeScript
Full-stack development with security expertise
Code scanning tools (CodeQL, Semgrep)
Vulnerability assessment (OWASP Top 10)
Effective communication

Education

Bachelor’s degree or equivalent relevant experience

Tools

Node.js
Snyk

Job description

The role

As a Senior Application Security Engineer, you will serve as the primary partner for web and backend engineering teams, helping embed security best practices throughout the software development lifecycle. You will support secure design, conduct threat modeling, review backend and frontend code, and lead integration of security tools into developer workflows. Your role bridges frontend and API security, and you will be responsible for helping developers resolve complex security challenges across product surfaces.

Day-to-Day Responsibilities
  • Partner with one product portfolio to facilitate overall product security management, emphasis on AI/ML‑specific security concerns and cross‑functional work with data science teams
  • Perform security design reviews and threat modeling on APIs, web features, and service integrations, including integrating SAST, SCA, and DAST tools into CI/CD pipelines
  • Support secure development practices across security champions and engineering
  • Review source code and deployment configurations for security vulnerabilities
  • Collaborate with developers to triage, fix, and validate vulnerability findings
  • Participate in cross‑functional incident response and remediation planning
  • Draft and maintain AppSec guidance for engineering teams and security champions
  • Contribute to security awareness and enablement across the engineering org
  • Develop AppSec related integrations and deployments of automation solutions (ASVS scanning, burpsuite enterprise)
  • Support application security integration reviews, SaaS security assessments, OSS reviews
About you
  • Bachelor’s degree or equivalent relevant experience
  • 6‑8 years of experience in application security or full‑stack development with security expertise
  • Strong understanding of secure coding in JavaScript/TypeScript, Node.js, and web standards
  • Familiar with application risk and vulnerabilities (OWASP Top 10, API Security, SSRF, etc.)
  • Experience with code scanning tools (e.g., CodeQL, Semgrep, SonarQube, Snyk)
  • Comfortable reading and debugging complex codebases across the stack
  • Clear and thoughtful communicator with the ability to guide engineers at all levels
  • Working concepts of offensive security testing such as pentesting or bug bounties
Bonus Points
  • Experience with GraphQL security
  • Participation in security champions programs or secure SDLC rollouts
  • Contributions to open‑source security tooling
  • Familiarity with infrastructure‑as‑code and container security
Salary

$220,000 to $350,000*

*The final salary offered will be determined based on the selected candidate's skills and experience, as well as the internal salary structure at Quanata. Our aim is to offer a competitive and equitable compensation package that reflects the candidate's expertise and contributions to our organization.

Additional Details
  • Benefits : We provide a wide variety of health, wellness and other benefits. These include medical, dental, vision, life insurance and supplemental income plans for you and your dependents, a Headspace app subscription, monthly wellness allowance and a 401(k) plan with a company match.
  • Work from Home Equipment : A one‑time payment of $2K will be provided to cover the purchase of in‑home office equipment and furniture at your discretion. Our teams work with MacBook Pros, which we will deliver to you fully provisioned prior to your first day.
  • Paid Time Off : All employees accrue four weeks of PTO in their first year of employment. New parents receive twelve weeks of fully paid parental leave which may be taken within one year after the birth and/or adoption of a child. The twelve weeks is applicable to both birthing and non‑birthing parents.
  • Personal and Professional Development : All employees receive up to $5,000 each year for professional learning, continuing education and career development. All team members also receive LinkedIn Learning subscriptions and access to various coaching opportunities through BetterUp.
  • Location : We are a remote‑first company for most positions so you may work from anywhere you like in the U.S., excluding U.S. territories. Work may be required to be done at one of our local offices as desired.
  • Hours : We maintain core meeting hours from 9 AM – 2 PM Pacific Time for collaborating with team members across all time zones.

Quanata, LLC is an equal opportunity workplace. We are committed to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or veteran status. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. If you require a reasonable accommodation, please reach out for assistance.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

Qualia • United States

Hybrid
USD 180,000 - 210,000
401k program
Comprehensive health plans
Flexible time-off policy
Principal Application Security Architect - 861
Principal Application Security Architect - 861

Quantinuum • Broomfield (CO)

On-site
USD 184,000 - 230,000
Health, dental and vision insurance
401(k) with company match
Paid holidays and vacation
+2
Senior Infrastructure Security Software Engineer (Remote)
Senior Infrastructure Security Software Engineer (Remote)

SwiftCruit • United States

Remote
USD 172,000 - 250,000
Medical, dental, and vision coverage
Equity refreshers
Remote work reimbursement
+2
Cloud Enablement Engineer [Remote-US]
Cloud Enablement Engineer [Remote-US]

Quanata, LLC • Northern (KY)

Hybrid
USD 155,000 - 205,000
Health benefits
401(k) with company match
Remote-friendly
+6
Engineering Manager, Information Security
Engineering Manager, Information Security

Qualia • Austin (TX)

Hybrid
USD 180,000 - 230,000
Health plans
401k
Commuter benefits
+6
Security Operations Analyst Unqork · $70k – $90k Middle just now
Security Operations Analyst Unqork · $70k – $90k Middle just now

Remote Genie • Northern (KY)

Hybrid
USD 70,000 - 90,000
Remote-first culture
Unlimited PTO
Medical, dental, vision covered
+2
Staff Application Security Engineer
Staff Application Security Engineer

Triwill Group • United States

On-site
USD 120,000 - 145,000
Fully remote work arrangement
Information Technology Security Architect
Information Technology Security Architect

Quanta Services, Inc. • Houston (TX)

On-site
USD 140,000 - 190,000
Senior GRC Analyst at Quantexa New York, NY
Senior GRC Analyst at Quantexa New York, NY

Quantexa • New York (NY)

On-site
USD 100,000 - 180,000
Competitive salary
Company bonus
401(k) match up to 5%
+2
IT Security Architect
IT Security Architect

Quanta Services, Inc. • Houston (TX)

On-site
USD 150,000 - 210,000