Senior Application Security Engineer – Threat Research

Hispanic Alliance for Career Enhancement

Columbia (SC)

On-site

USD 107,000 - 284,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, vision coverage
Paid time off
Retirement savings options
Wellness programs

Job summary

CVS Health is seeking a Staff Application Security Engineer - Threat Research to secure healthcare software across cloud and enterprise environments. You will embed security in the SDLC, conduct assessments, model threats, and guide teams on remediation while building scalable protections for applications and sensitive data.

You will mentor engineers, drive automation, and influence architecture decisions. Strong cloud, container, and scripting skills, plus excellent communication, are essential

Qualifications

  • 7+ years of experience in application security, information security, software engineering, or related roles.
  • 5+ years of experience with programming or scripting languages such as Java, Python, JavaScript, C#, C/C++, PowerShell, or Shell scripting.
  • 3+ years of experience securing public cloud environments including AWS, Azure, or Google Cloud Platform.
  • 3+ years of experience with container technologies including Docker and Kubernetes.
  • 3+ years of experience with Infrastructure as Code or Security as Code practices.
  • 3+ years of experience performing application security assessments, vulnerability analysis, and threat modeling.

Responsibilities

  • Implement and support application security standards, policies, and best practices.
  • Partner with engineering teams to integrate security into design, development, testing, and deployment processes.
  • Promote secure coding practices and assist teams in remediating security findings.
  • Contribute to security automation initiatives that improve efficiency and scalability.
  • Research emerging threats, vulnerabilities, attack techniques, and security trends.
  • Perform application security assessments, threat modeling, and vulnerability analysis.
  • Evaluate risks and provide actionable recommendations to engineering teams.
  • Leverage threat intelligence to enhance application security controls and detection capabilities.
  • Design, configure, and support security technologies across cloud and enterprise environments.
  • Assist with implementation and management of security controls that protect applications, APIs, and data.
  • Support vulnerability management and remediation programs.
  • Contribute to the development of scalable and resilient security architectures.
  • Work closely with software engineers, architects, platform teams, and security stakeholders.
  • Participate in design reviews to ensure security requirements are incorporated early in the development lifecycle.
  • Communicate technical security findings to both technical and non-technical audiences.
  • Participate in security investigations and incident response activities as needed.
  • Support operational security functions across cloud and enterprise environments.
  • Assist in identifying root causes and implementing long-term remediation strategies.
  • Serve as a technical mentor for engineers and application security practitioners.
  • Share knowledge through training sessions, presentations, and documentation.
  • Contribute to building a culture of security awareness and continuous learning.
  • Evaluate emerging security tools and technologies.
  • Contribute to security research initiatives and proof-of-concept efforts.
  • Recommend process improvements that strengthen the effectiveness of application security programs.

Skills

Java
Python
JavaScript
C#
C/C++
PowerShell
Shell scripting
Threat modeling
Security assessments
Cloud security

Education

Bachelor's degree in Computer Science, Information Security, or related field

Tools

Docker
Kubernetes
AWS
Azure
Google Cloud Platform
Web Application Firewall
CI/CD pipelines

Job description

CVS Health is seeking a Staff Application Security Engineer - Threat Research to secure healthcare software across cloud and enterprise environments. You will embed security in the SDLC, conduct assessments, model threats, and guide teams on remediation while building scalable protections for applications and sensitive data.

You will mentor engineers, drive automation, and influence architecture decisions. Strong cloud, container, and scripting skills, plus excellent communication, are essential

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer - Threat Research
Senior Application Security Engineer - Threat Research

Stryker Corporation • Phoenix (AZ)

On-site
Confidential
Comprehensive benefits
Medical, dental, vision
Paid time off
+2
Senior Application Security Engineer, Threat Research
Senior Application Security Engineer, Threat Research

Koitecc Solutions • Columbus (OH)

On-site
USD 107,000 - 284,000
Senior Application Security Engineer - Threat Research
Senior Application Security Engineer - Threat Research

Stryker Corporation • Cheyenne (WY)

Hybrid
Confidential
Medical coverage
Dental coverage
Vision coverage
+2
Senior Application Security Engineer - Threat Research
Senior Application Security Engineer - Threat Research

Stryker Corporation • Hartford (CT)

On-site
Confidential
Comprehensive benefits package
Equity and bonus programs
Senior Application Security Engineer: Threat Research
Senior Application Security Engineer: Threat Research

Hispanic Alliance for Career Enhancement • Washington

On-site
USD 107,000 - 284,000
Senior Application Security Engineer – Threat Research
Senior Application Security Engineer – Threat Research

Hispanic Alliance for Career Enhancement • Honolulu (HI)

On-site
USD 166,000 - 225,000
Senior Application Security Engineer — Threat Research & Cloud
Senior Application Security Engineer — Threat Research & Cloud

Hispanic Alliance for Career Enhancement • Augusta (ME)

On-site
USD 107,000 - 284,000
Benefits package
Paid time off
Retirement savings
Senior Application Security Engineer - Threat Research
Senior Application Security Engineer - Threat Research

Koitecc Solutions • Austin (TX)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Bonus program
Equity awards
Staff Application Security Engineer — Threat Research
Staff Application Security Engineer — Threat Research

Stryker Corporation • Boise (ID)

Hybrid
Confidential
Senior Application Security Engineer, Threat Research
Senior Application Security Engineer, Threat Research

Stryker Corporation • Sacramento (CA)

Hybrid
Confidential
Medical, dental, vision coverage
Paid time off
Retirement savings options
+1