Senior Application Security Specialist

CLS Group

Woodbridge Township (NJ)

On-site

USD 140,000 - 180,000

Full time

8 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CLS Group is seeking an Application Security Specialist in New Jersey to help development teams build secure software. This VP-level, hands-on role focuses on interpreting security findings and guiding engineers to secure implementations.

The incumbent will lead threat modelling, secure design reviews, and architecture risk assessments for new features and APIs, while promoting practical secure coding practices across the SDLC. This is a high-impact, non-tooling leadership position.

Qualifications

  • Degree in a technology discipline or equivalent practical experience.
  • Security certifications such as CISSP, CSSLP, GWAPT, GWEB preferred but not required.

Responsibilities

  • Analyze and validate findings from SAST, DAST, SCA, API security testing, and code reviews.
  • Assess vulnerabilities in context, considering exploitability and business impact.
  • Explain issues to developers, prioritize remediation, and support secure implementation choices.
  • Lead or facilitate threat modelling and architecture risk reviews for new features and APIs.
  • Promote secure coding standards and practical guidance to reduce recurring issues.
  • Provide AppSec expertise to improve testing, reporting, and SDLC processes without tool ownership.

Skills

AppSec experience
Secure coding
Vulnerability management
Threat modelling
Communication with engineering teams
Architecture risk reviews

Education

Bachelor's degree in CS / related
Security certifications (CISSP, CSSLP, GWAPT, GWEB)

Job description

  • Job title – Application Security Specialist
  • Department – IT Security
  • Level – Vice President
  • Reports to – Director, Application Security
  • Location – New Jersey
  • Compensation – $140,000–$180,000 base salary + variable compensation + 401(k) match + benefits

We’re hiring an Application Security Specialist to help development teams build secure, resilient software. This is a hands‑on AppSec role for someone who can interpret security findings, understand real‑world application risk, and turn that insight into practical guidance for engineers.

This is not a DevSecOps tooling integration role: engineering teams own security tool integration, automation, and pipeline operation. Your focus will be on understanding the output of those tools, separating meaningful risk from noise, and partnering with developers to improve the security of the code we write.

What you’ll do:
  • Analyze and validate findings from SAST, DAST, SCA, API security testing, AI-assisted analysis, penetration testing, and code reviews.
  • Assess vulnerabilities in context, considering exploitability, business impact, compensating controls, and realistic application risk.
  • Work closely with development teams to explain issues clearly, prioritize remediation, and support secure implementation choices.
  • Lead or facilitate threat modelling, secure design reviews, and architecture risk reviews for new features, services, APIs, and platforms.
  • Promote secure coding standards, reusable security patterns, and practical guidance that reduce recurring vulnerability themes.
  • Provide AppSec subject‑matter expertise to improve security testing, reporting, and SDLC processes without owning pipeline integration or tool administration.
What you’ll bring:
  • Strong experience in application security, secure coding, secure‑by‑design practices, application security testing, and vulnerability management.
  • Solid understanding of common application and API vulnerability classes, including the OWASP Top 10, and how to remediate them in modern software environments.
  • Ability to read and reason about code well enough to validate findings, identify root causes, and discuss remediation options with developers.
  • Experience with threat modelling, architecture risk reviews, secure design reviews, or similar AppSec activities.
  • Practical knowledge of SAST, DAST, SCA, API security, secrets detection, and related testing approaches, with an emphasis on interpreting results rather than administering tools.
  • Clear communication skills and the ability to translate security risk into practical guidance for engineering, product, and technology leadership audiences.
  • Collaborative mindset, sound risk judgement, and a coaching style that helps development teams improve their security capability over time.
Qualifications:
  • Degree in a technology discipline such as Computer Science, Information Management, Computer Engineering, Cybersecurity, or equivalent practical experience.
  • Relevant security certifications such as CISSP, CSSLP, GWAPT, GWEB, or equivalent are preferred but not required.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Specialist
Application Security Specialist

Spencer Rose • Woodbridge Township (NJ)

Hybrid
USD 140,000 - 180,000
Manager Application Security
Manager Application Security

Citizens • Woodbridge Township (NJ)

On-site
USD 133,000 - 190,000
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Director Application Security
Director Application Security

Vibehackers • Austin (TX), Northern (KY)

Hybrid
USD 180,000 - 250,000
Medical Insurance
Dental Insurance
Life Insurance
+3
Senior Security Engineer
Senior Security Engineer

STEPS Talent • New York (NY)

Hybrid
USD 140,000 - 190,000
Application Security Engineer
Application Security Engineer

Franklin Fitch • New York (NY)

On-site
USD 130,000 - 200,000
Application Security Analyst
Application Security Analyst

AccruePartners • Fort Mill (SC)

Hybrid
USD 70,000 - 90,000
Ongoing investment in professional development
Exposure to modern security platforms
Collaborative team environment
Application Security Specialist
Application Security Specialist

Motion Recruitment • Greensboro (NC)

Hybrid
USD 100,000 - 130,000
Application Security Architect
Application Security Architect

Alarm.com • Tysons (VA)

On-site
USD 140,000 - 210,000
Application Security Engineer
Application Security Engineer

IPolarity LLC • Whippany (NJ)

On-site
USD 146,136,000 - 197,713,000