Senior Staff App Sec Engineer – Threat Modeling Lead

Omnissa

New Bern, Morehead City (NC, NC)

Hybrid

USD 220,000 - 270,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Employee ownership
Health insurance
401(k) with matching contributions
Disability insurance
Paid time off

Job summary

Omnissa is seeking an experienced Application Security Engineer – Staff 2 to shape the security direction across our product portfolio. This senior technical leader will drive threat modeling, secure design, and security architecture for distributed and cloud-native systems.

You will mentor engineers, scale security reviews, and advance SDL maturity while collaborating with product, security, and engineering teams across hybrid work locations in the United States.

Qualifications

  • 12+ years of hands-on application security experience with demonstrated technical depth and influence.
  • Deep knowledge of application security vulnerabilities and mitigation techniques, with prioritization by real business impact.
  • Proven ability to lead threat modeling, secure design, and security architecture for complex distributed and cloud-native systems.
  • Proficiency in Java or C++, with ability to read, reason about, and review production code.
  • Security breadth across application, system, cloud, and mobile domains.
  • History of driving technical change and raising the security bar across teams, and mentoring senior engineers.
  • Excellent documentation and communication skills, including influencing engineering and product leadership.
  • Self-starter who is adaptable, works independently, and brings clarity to ambiguous problems.
  • Pragmatic mindset; able to identify practical short-term and long-term strategic solutions.

Responsibilities

  • Set technical direction for application security across the portfolio—defining standards, patterns, and guardrails adopted by engineering teams at scale.
  • Lead threat modeling for distributed, cloud-native, and mobile architectures as a repeatable practice embedded in the development lifecycle.
  • Define security architecture reference designs that reduce the need for per-feature security reviews.
  • Identify architectural risk early and influence roadmap and design decisions before implementation begins.
  • Perform manual code review and application security testing across Java and C++ codebases; codify findings into reusable guidance.
  • Scale code review coverage using AI-assisted analysis and custom CodeQL queries tuned to Omnissa's codebase.
  • Conduct variant analysis to ensure confirmed vulnerability classes are remediated consistently across the codebase.
  • Triage and validate externally reported vulnerabilities—assess exploitability, severity, business impact, and drive remediation to closure.
  • Translate findings into systemic recommendations addressing root-cause design or implementation gaps.
  • Define and evolve the SDL—identify gaps, drive measurable improvements, and own the iteration cycle.
  • Improve the feature security review program so that security work shifts left into design and scales across teams.
  • Mature the product penetration testing program—define scope, methodology, and cadence; ensure findings drive systemic fixes.
  • Build and scale the security champions program; mentor engineers and create training that extends security capability beyond the security team.
  • Establish metrics that make program effectiveness visible to engineering and product leadership.

Skills

Threat modeling
Security architecture
Secure design
Java/C++
Code review
Mentoring engineers
Documentation
Influence leadership
Self-starter
Pragmatism

Education

Bachelor's degree in CS or related

Job description

Omnissa is seeking an experienced Application Security Engineer – Staff 2 to shape the security direction across our product portfolio. This senior technical leader will drive threat modeling, secure design, and security architecture for distributed and cloud-native systems.

You will mentor engineers, scale security reviews, and advance SDL maturity while collaborating with product, security, and engineering teams across hybrid work locations in the United States.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff II AppSec Engineer — Lead Security Architect
Staff II AppSec Engineer — Lead Security Architect

Omnissa • Central (SC)

Hybrid
USD 220,000 - 270,000
Employee ownership
Health insurance
401(k) with matching
+2
Staff II: Lead Application Security Architect
Staff II: Lead Application Security Architect

Omnissa • Washington

Hybrid
USD 220,000 - 270,000
Employee ownership
Health insurance
401(k) with matching
+3
Staff 2: Application Security Architect (Hybrid/Remote)
Staff 2: Application Security Architect (Hybrid/Remote)

Omnissa • Time (IL)

Hybrid
USD 220,000 - 270,000
Employee ownership
Health insurance
401(k) with matching
+2
Staff II - Application Security Engineer
Staff II - Application Security Engineer

Omnissa • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Health insurance
401(k) matching contributions
Paid time off
Senior Application Security Architect & Engineer
Senior Application Security Architect & Engineer

Omnissa • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Health insurance
401(k) matching contributions
Paid time off
Senior Application Security Engineer, Staff 2 (Hybrid)
Senior Application Security Engineer, Staff 2 (Hybrid)

Omnissa, LLC • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Employee Ownership
Health Insurance
401k with Matching Contributions
+1
Senior Application Security Engineer, Staff 2 (Hybrid)
Senior Application Security Engineer, Staff 2 (Hybrid)

Omnissa, LLC • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Employee Ownership
Health Insurance
401k with Matching Contributions
+1
Staff II - Application Security Engineer
Staff II - Application Security Engineer

Omnissa, LLC • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Employee Ownership
Health Insurance
401k with Matching Contributions
+1
Staff II - Application Security Engineer
Staff II - Application Security Engineer

Omnissa, LLC in • Atlanta (GA)

Hybrid
USD 220,000 - 270,000
Hybrid Application Security Engineer: Hands-On & Impactful
Hybrid Application Security Engineer: Hands-On & Impactful

Omnissa • Atlanta (GA)

Hybrid
USD 112,000 - 186,000
Employee ownership
Health insurance
401k with matching