Senior Application Security Engineer – Vulnerability Operations

Veriipro

Jersey City (NJ)

On-site

USD 120,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Veriipro in Jersey City, New Jersey, is seeking an expert in Application Security with over 7 years’ experience to lead enterprise-wide initiatives. Responsibilities include driving the implementation of security controls, managing vulnerabilities, and enhancing CI/CD integrations.

The ideal candidate will possess a degree in Computer Science or Cybersecurity and will have hands-on experience with CI/CD security tooling. We offer a dynamic environment focused on continuous improvement and security trend adaptation.

Qualifications

  • 7+ years of experience in Application Security, Vulnerability Management, or Secure SDLC.
  • Strong expertise in secure design and threat modeling.
  • Hands-on experience with CI/CD security tooling.

Responsibilities

  • Drive enterprise-wide implementation of Application Security controls.
  • Lead triage and remediation of high-risk vulnerabilities.
  • Architect and enhance CI/CD security integrations.
  • Build dashboards and perform executive reporting on security posture.

Skills

Application Security
Vulnerability Management
Secure SDLC
CI/CD Security
Threat Modeling
Cloud Security

Education

Bachelor’s or Master’s degree in Computer Science or Cybersecurity

Tools

SAST
DAST
SCA
Power BI
Grafana

Job description

Roles and Responsibilities

1. Strategic AppSec Leadership

  • Drive enterprise-wide implementation of Application Security controls across CI/CD pipelines.
  • Partner with AppSec Champions to embed secure development practices and improve security adoption.
  • Define and manage tiered security control strategy (Tier 1–3) with quarterly migration goals.
  • Enable decentralized security ownership across engineering teams.

2. Vulnerability & Threat Management

  • Lead triage, analysis, and remediation of complex and high-risk vulnerabilities.
  • Serve as SME for modern threat classes including cloud-native risks, APIs, supply chain, containers, serverless, and emerging OWASP categories.
  • Perform threat modeling and security design reviews for critical applications.
  • Provide escalation support for advanced AppSec issues.

3. CI/CD Security & Automation

  • Architect and enhance CI/CD security integrations (SAST, DAST, SCA, secrets, IaC scanning).
  • Implement policy-as-code and automated security gating (merge/build prevention).
  • Develop reusable security automation frameworks and pipeline modules.

4. Governance & Reporting

  • Build dashboards, KPIs, and risk scorecards using tools like Power BI or Grafana.
  • Lead vulnerability governance forums and executive reporting on security posture and trends.
  • Manage risk registers, remediation tracking, and quarterly program alignment.

5. Enablement & Continuous Improvement

  • Mentor AppSec engineers and support security champion enablement programs.
  • Evaluate scanning outputs, reduce false positives, and improve detection quality.
  • Continuously enhance AppSec processes, tools, and onboarding workflows.
  • Stay current with emerging threats and security trends.
Required Qualifications
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field.
  • 7+ years of experience in Application Security, Vulnerability Management, or Secure SDLC.
  • Strong expertise in secure design, threat modeling, exploit analysis, and remediation strategies.
  • Hands-on experience with CI/CD security tooling (SAST, DAST, SCA, secrets, IaC scanning).
  • Proven experience working with engineering teams to drive AppSec adoption and governance.
  • Ability to analyze vulnerability trends and emerging/zero-day threats.
Preferred Qualifications
  • Cloud security experience across AWS, Azure, or GCP.
  • Certifications such as CISSP, CSSLP, OSCP, OSWE, GWAPT, or equivalent.
  • Experience with policy enforcement tools (OPA/Gatekeeper).
  • Knowledge of software supply chain security (SLSA, SBOM).
  • Experience building AppSec Champion or federated security models.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security (AppSec) Engineer/Architect
Application Security (AppSec) Engineer/Architect

TechDigital Group • Maryland Heights (MO)

On-site
USD 120,000 - 160,000
Staff Security Engineer, Application Security
Staff Security Engineer, Application Security

Jobtailor • California (MO)

On-site
USD 140,000 - 190,000
Application Security Analyst
Application Security Analyst

Stellantis • Auburn (AL)

On-site
USD 90,000 - 120,000
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Application Security Specialist
Application Security Specialist

Motion Recruitment • Greensboro (NC)

Hybrid
USD 100,000 - 130,000
Application Security (DevSecOps) Senior Engineer
Application Security (DevSecOps) Senior Engineer

Recru • Spring (TX)

On-site
USD 180,000 - 240,000
Application Security & VIPR Expert
Application Security & VIPR Expert

Armis • Town of Poland (NY)

On-site
USD 140,000 - 170,000
Security Engineer
Security Engineer

Veriipro • Seattle (WA)

On-site
USD 90,000 - 130,000
Application Security Engineer
Application Security Engineer

IPolarity • Hanover Township (NJ)

On-site
USD 68,000 - 97,000
Senior Manager, Cybersecurity – Application and Cloud Security
Senior Manager, Cybersecurity – Application and Cloud Security

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000