Sr. Application Engineer, Cyber Security

inmar

Winston-Salem (NC)

On-site

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Inmar is seeking a Senior Application Engineer, Cyber Security to design, build, and automate security controls across our software, CI/CD pipelines, and cloud environments. You will partner with engineering teams to embed security into development and delivery.

This role requires deep hands-on security experience, a collaborative mindset, and strong communication to translate risk into actionable engineering work. Certifications and cloud security expertise are highly valued.

Qualifications

  • BS in CS or related technical field.
  • 10+ years security engineering with software background.
  • OSCP, CISSP, GCIH, GXPN, GPEN preferred.
  • Deep knowledge of web and mobile security and OWASP.
  • Experience with security in CI/CD and DevOps.
  • Experience with Burp and Metasploit.
  • Strong communication and collaboration.

Responsibilities

  • Be the primary security expert for multiple product lines and act as the point of contact for engineering and security.
  • Design, write, and maintain custom security tools and automation scripts for CI/CD security checks.
  • Guide developers at the code level with remediation patterns and secure architectures.
  • Support engineering with security fixes, proper scanner usage, and proactive security in designs.
  • Lead threat modeling sessions and prioritize remediation based on risk.

Skills

Security engineering
Software development
Threat modeling
Cloud security
OWASP standards
CI/CD security
Automation scripting
Vulnerability remediation
Communication

Education

Bachelor of Science in Computer Science

Tools

Burp Suite
Metasploit
Docker
Kubernetes

Job description

The Sr. Application Engineer, Cyber Security is responsible for building, managing and supporting information security that underpins all internal and external user technology services, according to security policies and best practices.

The Sr. Application Engineer, Cyber Security is a security-focused software engineer responsible for designing, building, and automating security controls directly into application architectures, CI/CD pipelines, and software development workflows. This individual is accountable for identifying weaknesses in our security posture within the application or web space while defining methods to achieve security control requirements via automation or highly efficient means that further support timely delivery with minimal overhead. They work across internal and external teams of infrastructure specialists and software engineers making sure services are delivered and used securely as required, offering advice and guidance on security decisions and ensuring the effective use of common tools and patterns.

The incumbent must have a collaborative, service-oriented mentality, a high sense of ownership, and a strong track record of driving security initiatives to completion. They excel at communicating complex risk concepts to engineering teams, providing proactive status updates on architectural reviews and security remediation efforts, and managing production changes responsibly.

Additional insights, experience or background in any of the following are also of great value: NIST, ISO 27001, Data Protection & Privacy, Threat Modeling (STRIDE), Static & Dynamic Security Analysis (SAST/DAST), Penetration Testing, Secure Software Architecture & Design, Developer Workflow Governance & Branch Protections, CI/CD Security Gates & Supply Chain Controls, API Security & Identity (OAuth2, OIDC), Microservices, Containers (Docker, Kubernetes), Cloud Security (AWS, Azure, GCP) & Architecture, Agile/DevOps Methodologies, Process Maturity, and related frameworks.

Primary Accountabilities Technical (80%)
  • Be the primary security expert for multiple product lines and act as the point of contact for engineering and security.
  • Design, write, and maintain custom security tools, automation scripts, and custom scanner rules to streamline security checks in CI/CD pipelines.
  • Partner directly with software developers at the code level - providing actionable code snippets, refactoring recommendations, and technical architectural patterns to remediate complex vulnerabilities.
  • Support engineering with implementing security fixes, ensuring security scanners are utilized correctly, and develop strategies to proactively secure their architecture.
  • Review development frameworks for security functionality, consistency, and uplift opportunities.
  • Perform threat modeling sessions and leverage them to prioritize time based on risk impact.
  • Implement and/or assess existing security controls.
  • Produce detailed technical designs and document all work using required standards, methods and tools, including prototyping tools where appropriate.
  • Design systems characterized by managed levels of risk, manageable business and technical complexity and meaningful impact; works with well-understood technology and identifies appropriate patterns.
Project Management (20%)
  • Work with application development teams to ensure secure software development lifecycle (S-SDLC) implementation and validation.
  • Educate and train product teams.
  • Evaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical cyber security subjects.
Required Qualifications:
  • Bachelor of Science Degree in Computer Science, or a Bachelor of Arts Degree in a related technical field
  • 10+ years of related work experience in security engineering with prior experience as a Software Engineer, Backend Developer, or Full-Stack Developer.
  • Or any equivalent combination of experience and training/certification that provides the required knowledge, skills, and abilities needed to complete the major responsibilities/essential functions of the position
  • Certifications preferred. OSCP, CISSP, GCIH, GXPN, GPEN
  • Strong experience in web and mobile application security
  • Strong experience in distributed platform development security and design
  • In-depth knowledge of web and mobile security standards and best practices (OWASP, etc.)
  • Strong foundation in core information security principles and concepts (HTTPS, TLS, OAuth, etc.)
  • Experience with industry tools and technologies such as Burp, Metasploit, etc.
  • Demonstrated proficiency in building production-grade applications using modern programming languages (e.g., Java, Python, Go, TypeScript/JavaScript).
  • Solid understanding of public cloud security deployment and implementation issues (AWS, Azure, GCP)
  • Understanding of audits and standards requirements such ISO 27001, PCI DSS, SOC 1 & 2, etc.
  • Proven expertise in enterprise-grade a
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Application Engineer, Cyber Security
Application Engineer, Cyber Security

Inmar Inc. • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+2
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Application Security Engineer
Application Security Engineer

ALLTECH CONSULTING SVC INC • Georgia

On-site
USD 100,000 - 130,000
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
APPLICATION SECURITY ENGINEER
APPLICATION SECURITY ENGINEER

Target Labs, Inc • Rockville (MD)

On-site
USD 100,000 - 130,000
Security Development Engineering
Security Development Engineering

FSR, LLC. • Herndon (VA)

Hybrid
USD 90,000 - 130,000
Staff Security Engineer (Product Security and Architecture)
Staff Security Engineer (Product Security and Architecture)

Compass • Ventura (CA)

On-site
USD 150,000 - 230,000
Security Engineer
Security Engineer

Horizontal Talent • Brooklyn Park (MN)

On-site
USD 120,000 - 160,000
Senior Security Engineer
Senior Security Engineer

SourcePro Search • Los Angeles (CA)

On-site
USD 140,000 - 210,000